The following Fedora EPEL 5 Security updates need testing:
https://admin.fedoraproject.org/updates/glpi-0.72.4-3.svn11497.el5
https://admin.fedoraproject.org/updates/gnucash-2.2.9-5.el5
https://admin.fedoraproject.org/updates/wordpress-mu-2.9.2-1.el5
https://admin.fedoraproject.org/updates/gromacs-4.5.2-1.el5
https://admin.fedoraproject.org/updates/pootle-2.1.2-1.el5
The following builds have been pushed to Fedora EPEL 5 updates-testing
389-ds-base-1.2.7-0.5.a4.el5
cmake-fedora-0.3.0-1.el5
gromacs-4.5.2-1.el5
nagios-plugins-check-updates-1.4.9-1.el5
python-redis-2.0.0-2.el5
rabbitmq-server-2.1.1-1.el5
redis-2.0.3-2.el5
Details about builds:
================================================================================
389-ds-base-1.2.7-0.5.a4.el5 (FEDORA-EPEL-2010-3605)
389 Directory Server (base)
--------------------------------------------------------------------------------
Update Information:
1.2.7.a4 release - git tag 389-ds-base-1.2.7.a4
Bug 647932 - multiple memberOf configuration adding memberOf where there is no member
Bug 491733 - dbtest crashes
Bug 606545 - core schema should include numSubordinates
Bug 638773 - permissions too loose on pid and lock files
Bug 189985 - Improve attribute uniqueness error message
Bug 619623 - attr-unique-plugin ignores requiredObjectClass on modrdn operations
Bug 619633 - Make attribute uniqueness obey requiredObjectClass
This is the 389-ds-base 1.2.7 Alpha 3 release. On Fedora 14 and later, this package uses
openldap instead of mozldap. This release fixes some serious problems with upgrade and
replication, as well as many other bugs.
new release 1.2.6.1 to fix several moderate bugs:
Bug 634561 - Server crushes when using Windows Sync Agreement
Bug 635987 - Incorrect sub scope search result with ACL containing ldap:///self
Bug 612264 - ACI issue with (targetattr='userPassword')
Bug 606920 - anonymous resource limit- nstimelimit - also applied to "cn=directory
manager"
Bug 631862 - crash - delete entries not in cache + referint
Put back the selinux dependencies I removed during a merge commit . . .
new release 1.2.6.1 to fix several moderate bugs:
Bug 634561 - Server crushes when using Windows Sync Agreement
Bug 635987 - Incorrect sub scope search result with ACL containing ldap:///self
Bug 612264 - ACI issue with (targetattr='userPassword')
Bug 606920 - anonymous resource limit- nstimelimit - also applied to "cn=directory
manager"
Bug 631862 - crash - delete entries not in cache + referint
Put back the selinux dependencies I removed during a merge commit . . .
This is the 389-ds-base 1.2.7 Alpha 3 release. On Fedora 14 and later, this package uses
openldap instead of mozldap. This release fixes some serious problems with upgrade and
replication, as well as many other bugs.
new release 1.2.6.1 to fix several moderate bugs:
Bug 634561 - Server crushes when using Windows Sync Agreement
Bug 635987 - Incorrect sub scope search result with ACL containing ldap:///self
Bug 612264 - ACI issue with (targetattr='userPassword')
Bug 606920 - anonymous resource limit- nstimelimit - also applied to "cn=directory
manager"
Bug 631862 - crash - delete entries not in cache + referint
Put back the selinux dependencies I removed during a merge commit . . .
new release 1.2.6.1 to fix several moderate bugs:
Bug 634561 - Server crushes when using Windows Sync Agreement
Bug 635987 - Incorrect sub scope search result with ACL containing ldap:///self
Bug 612264 - ACI issue with (targetattr='userPassword')
Bug 606920 - anonymous resource limit- nstimelimit - also applied to "cn=directory
manager"
Bug 631862 - crash - delete entries not in cache + referint
Put back the selinux dependencies I removed during a merge commit . . .
This is the 389-ds-base 1.2.7 Alpha 3 release. On Fedora 14 and later, this package uses
openldap instead of mozldap. This release fixes some serious problems with upgrade and
replication, as well as many other bugs.
new release 1.2.6.1 to fix several moderate bugs:
Bug 634561 - Server crushes when using Windows Sync Agreement
Bug 635987 - Incorrect sub scope search result with ACL containing ldap:///self
Bug 612264 - ACI issue with (targetattr='userPassword')
Bug 606920 - anonymous resource limit- nstimelimit - also applied to "cn=directory
manager"
Bug 631862 - crash - delete entries not in cache + referint
Put back the selinux dependencies I removed during a merge commit . . .
new release 1.2.6.1 to fix several moderate bugs:
Bug 634561 - Server crushes when using Windows Sync Agreement
Bug 635987 - Incorrect sub scope search result with ACL containing ldap:///self
Bug 612264 - ACI issue with (targetattr='userPassword')
Bug 606920 - anonymous resource limit- nstimelimit - also applied to "cn=directory
manager"
Bug 631862 - crash - delete entries not in cache + referint
Put back the selinux dependencies I removed during a merge commit . . .
This is the 389-ds-base 1.2.7 Alpha 3 release. On Fedora 14 and later, this package uses
openldap instead of mozldap. This release fixes some serious problems with upgrade and
replication, as well as many other bugs.
new release 1.2.6.1 to fix several moderate bugs:
Bug 634561 - Server crushes when using Windows Sync Agreement
Bug 635987 - Incorrect sub scope search result with ACL containing ldap:///self
Bug 612264 - ACI issue with (targetattr='userPassword')
Bug 606920 - anonymous resource limit- nstimelimit - also applied to "cn=directory
manager"
Bug 631862 - crash - delete entries not in cache + referint
Put back the selinux dependencies I removed during a merge commit . . .
new release 1.2.6.1 to fix several moderate bugs:
Bug 634561 - Server crushes when using Windows Sync Agreement
Bug 635987 - Incorrect sub scope search result with ACL containing ldap:///self
Bug 612264 - ACI issue with (targetattr='userPassword')
Bug 606920 - anonymous resource limit- nstimelimit - also applied to "cn=directory
manager"
Bug 631862 - crash - delete entries not in cache + referint
Put back the selinux dependencies I removed during a merge commit . . .
--------------------------------------------------------------------------------
ChangeLog:
* Mon Nov 1 2010 Rich Megginson <rmeggins(a)redhat.com> - 1.2.7-0.5.a4
- 1.2.7.a4 release - git tag 389-ds-base-1.2.7.a4
- Bug 647932 - multiple memberOf configuration adding memberOf where there is no member
- Bug 491733 - dbtest crashes
- Bug 606545 - core schema should include numSubordinates
- Bug 638773 - permissions too loose on pid and lock files
- Bug 189985 - Improve attribute uniqueness error message
- Bug 619623 - attr-unique-plugin ignores requiredObjectClass on modrdn operations
- Bug 619633 - Make attribute uniqueness obey requiredObjectClass
* Wed Oct 27 2010 Rich Megginson <rmeggins(a)redhat.com> - 1.2.7-0.4.a3
- 1.2.7.a3 release - a2 was never released - this is a rebuild to pick up
- Bug 644608 - RHDS 8.1->8.2 upgrade fails to properly migrate ACIs
- Adding the ancestorid fix code to ##upgradednformat.pl.
* Fri Oct 22 2010 Rich Megginson <rmeggins(a)redhat.com> - 1.2.7-0.3.a3
- 1.2.7.a3 release - a2 was never released
- Bug 644608 - RHDS 8.1->8.2 upgrade fails to properly migrate ACIs
- Bug 629681 - Retro Changelog trimming does not behave as expected
- Bug 645061 - Upgrade: 06inetorgperson.ldif and 05rfc4524.ldif
- are not upgraded in the server instance schema dir
* Tue Oct 19 2010 Rich Megginson <rmeggins(a)redhat.com> - 1.2.7-0.2.a2
- 1.2.7.a2 release - a1 was the OpenLDAP testday release
- git tag 389-ds-base-1.2.7.a2
- added openldap support on platforms that use openldap with moznss
- for crypto (F-14 and later)
- many bug fixes
- Account Policy Plugin (keep track of last login, disable old accounts)
* Fri Oct 8 2010 Rich Megginson <rmeggins(a)redhat.com> - 1.2.7-0.1.a1
- added openldap support
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #576869 - Tracking bug for 389 Directory Server 1.2.7
https://bugzilla.redhat.com/show_bug.cgi?id=576869
[ 2 ] Bug #634561 - Server crushes when using Windows Sync Agreement
https://bugzilla.redhat.com/show_bug.cgi?id=634561
[ 3 ] Bug #631862 - crash - delete entries not in cache + referint
https://bugzilla.redhat.com/show_bug.cgi?id=631862
--------------------------------------------------------------------------------
================================================================================
cmake-fedora-0.3.0-1.el5 (FEDORA-EPEL-2010-3608)
CMake helper modules for fedora developers
--------------------------------------------------------------------------------
Update Information:
- New macro: SETTING_FILE_GET_VARIABLES_PATTERN
- New macro: PACK_SOURCE_FILES
- Fixed: Variable lost in SETTING_FILE_GET_ALL_VARIABLES and
SETTING_FILE_GET_VARABLE.
- Fixed: Variable values won't apply in SETTING_FILE_GET_ALL_VARIABLES
- UseUninstall finds cmake_uninstall.in in additional paths:
/usr/share/cmake/Modules and /usr/share/cmake/Modules
- Minor improvements in CMakeLists.txt and project.spec.in templates.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Nov 2 2010 Ding-Yi Chen <dchen at redhat.com> - 0.3.0-1
- New macro: SETTING_FILE_GET_VARIABLES_PATTERN
- New macro: PACK_SOURCE_FILES
- Fixed: Variable lost in SETTING_FILE_GET_ALL_VARIABLES and
SETTING_FILE_GET_VARABLE.
- Fixed: Variable values won't apply in SETTING_FILE_GET_ALL_VARIABLES
- UseUninstall finds cmake_uninstall.in in additional paths:
/usr/share/cmake/Modules and /usr/share/cmake/Modules
- Minor improvements in CMakeLists.txt and project.spec.in templates.
* Wed Oct 20 2010 Ding-Yi Chen <dchen at redhat.com> - 0.2.4-1
- cmake-fedora-newprj.sh: New option "-e" that extract value from specified
spec or spec.in.
- Now usage is printed instead of junk output when project_name is not given.
- Source code (whatever is packed) and tarball dependency now checked.
--------------------------------------------------------------------------------
================================================================================
gromacs-4.5.2-1.el5 (FEDORA-EPEL-2010-3607)
Fast, Free and Flexible Molecular Dynamics
--------------------------------------------------------------------------------
Update Information:
Upgrade to 4.5.2, fixing CVE-2010-4001 and a bunch of other bugs. See full release notes
at
http://www.gromacs.org/About_Gromacs/Release_Notes/Versions_4.5.x .
--------------------------------------------------------------------------------
ChangeLog:
* Mon Nov 1 2010 Jussi Lehtola <jussilehtola(a)fedoraproject.org> - 4.5.2-1
- Update to 4.5.2.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #644596 - CVE-2010-4001 gromacs: insecure library loading vulnerability
https://bugzilla.redhat.com/show_bug.cgi?id=644596
--------------------------------------------------------------------------------
================================================================================
nagios-plugins-check-updates-1.4.9-1.el5 (FEDORA-EPEL-2010-3611)
A Nagios plugin to check if Red Hat or Fedora system is up-to-date
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #546445 - Review Request: nagios-plugins-check-updates - A Nagios plugin to
check if Red Hat or Fedora system is up-to-date
https://bugzilla.redhat.com/show_bug.cgi?id=546445
--------------------------------------------------------------------------------
================================================================================
python-redis-2.0.0-2.el5 (FEDORA-EPEL-2010-3609)
A Python client for redis
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #630339 - Review Request: python-redis - A Python client for redis
https://bugzilla.redhat.com/show_bug.cgi?id=630339
--------------------------------------------------------------------------------
================================================================================
rabbitmq-server-2.1.1-1.el5 (FEDORA-EPEL-2010-3606)
The RabbitMQ server
--------------------------------------------------------------------------------
Update Information:
New upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Mon Nov 1 2010 Hubert Plociniczak <hubert.plociniczak(a)gmail.com> 2.1.1-1
- New Upstream Release
--------------------------------------------------------------------------------
================================================================================
redis-2.0.3-2.el5 (FEDORA-EPEL-2010-3610)
A persistent key-value database
--------------------------------------------------------------------------------
Update Information:
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #619237 - Review Request: redis - A persistent key-value database
https://bugzilla.redhat.com/show_bug.cgi?id=619237
--------------------------------------------------------------------------------