The following Fedora EPEL 7 Security updates need testing:
Age URL
585
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-3c9292b62d
condor-8.6.11-1.el7
326
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-c499781e80
python-gnupg-0.4.4-1.el7
324
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-bc0182548b
bubblewrap-0.3.3-2.el7
34
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-fa8a2e97c6
python-waitress-1.4.3-1.el7
12
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-b8f44a854a
weechat-2.7.1-1.el7
12
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-b467e9784b
php-horde-Horde-Form-2.0.20-1.el7
5
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-7e106e25f9
timeshift-20.03-1.el7
1
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-42d19f5f91
chromium-80.0.3987.149-1.el7
1
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-33500a2742
tor-0.3.5.10-1.el7
1
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-7c64d8ca18
ckeditor-4.14.0-1.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
R-highlight-0.5.0-1.el7
R-qtl-1.46.2-1.el7
libmodsecurity-3.0.2-6.el7
numix-icon-theme-0.1.0-24.20200320.gitea068b4.el7
python-dialog-3.3.0-17.el7
seamonkey-2.53.1-3.el7
Details about builds:
================================================================================
R-highlight-0.5.0-1.el7 (FEDORA-EPEL-2020-0334b468c0)
R Syntax Highlighter
--------------------------------------------------------------------------------
Update Information:
R-highlifgt 0.5.0 First build for EPEL 8.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Mar 20 2020 Mattias Ellert <mattias.ellert(a)physics.uu.se> - 0.5.0-1
- Update to 0.5.0
* Tue Jan 28 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.4.7.2-7
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
* Mon Aug 12 2019 Elliott Sales de Andrade <quantum.analyst(a)gmail.com> - 0.4.7.2-6
- Remove explicit dependencies provided by automatic dependency generator
* Mon Aug 12 2019 Elliott Sales de Andrade <quantum.analyst(a)gmail.com> - 0.4.7.2-5
- Rebuild with automatic Provides
* Wed Jul 24 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.4.7.2-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
* Thu Jan 31 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.4.7.2-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
* Thu Jul 12 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.4.7.2-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
R-qtl-1.46.2-1.el7 (FEDORA-EPEL-2020-ed43a28ba5)
Tools for analyzing QTL experiments
--------------------------------------------------------------------------------
Update Information:
Update to latest version
--------------------------------------------------------------------------------
ChangeLog:
* Sat Mar 21 2020 Mattias Ellert <mattias.ellert(a)physics.uu.se> - 1.46.2-1
- Update to 1.46-2
* Tue Feb 18 2020 Tom Callaway <spot(a)fedoraproject.org> - 1.44.9-7
- rebuild against R without libRlapack.so
* Tue Jan 28 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.44.9-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
* Thu Sep 19 2019 Mattias Ellert <mattias.ellert(a)physics.uu.se> - 1.44.9-5
- Unify specfile
* Mon Aug 12 2019 Elliott Sales de Andrade <quantum.analyst(a)gmail.com> - 1.44.9-4
- Remove explicit dependencies provided by automatic dependency generator
* Wed Jul 24 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.44.9-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
* Thu Jan 31 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.44.9-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
libmodsecurity-3.0.2-6.el7 (FEDORA-EPEL-2020-61faf4c2ff)
A library that loads/interprets rules written in the ModSecurity SecRules
--------------------------------------------------------------------------------
Update Information:
Fix DoS vulnerability (CVE-2019-19886, RHBZ #1801720 / #1801719)
--------------------------------------------------------------------------------
ChangeLog:
* Sat Mar 21 2020 Othman Madjoudj <athmane(a)fedoraproject.org> - 3.0.2-6
- Fix DoS vulnerability (CVE-2019-19886, RHBZ #1801720 / #1801719)
* Fri Feb 1 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.0.2-5
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1801720 - CVE-2019-19886 libmodsecurity: denial of service in
Transaction::addRequestHeader in transaction.cc [epel-7]
https://bugzilla.redhat.com/show_bug.cgi?id=1801720
[ 2 ] Bug #1801719 - CVE-2019-19886 libmodsecurity: denial of service in
Transaction::addRequestHeader in transaction.cc [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1801719
--------------------------------------------------------------------------------
================================================================================
numix-icon-theme-0.1.0-24.20200320.gitea068b4.el7 (FEDORA-EPEL-2020-e564e17f42)
Numix Project icon theme
--------------------------------------------------------------------------------
Update Information:
Update to release 20.03.20: * mimetype symlinks * mesonbuild symlinks *
More geolocation stuff
--------------------------------------------------------------------------------
ChangeLog:
* Sat Mar 21 2020 Brendan Early <mymindstorm(a)evermiss.net> -
0.1.0-24.20200320.gitea068b4
- Update to release 20.03.20
* Wed Jan 29 2020 Fedora Release Engineering <releng(a)fedoraproject.org> -
0.1.0-23.20190920.gitcfef86f
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1815699 - numix-icon-theme-20.03.20 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1815699
--------------------------------------------------------------------------------
================================================================================
python-dialog-3.3.0-17.el7 (FEDORA-EPEL-2020-31e8cf4959)
Python interface to the Unix dialog utility
--------------------------------------------------------------------------------
Update Information:
support for python3, rhbz#1800888 Do we still need support for python2?
--------------------------------------------------------------------------------
ChangeLog:
* Sat Feb 2 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.3.0-17
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
* Wed Oct 10 2018 Miro Hron��ok <mhroncok(a)redhat.com> - 3.3.0-16
- Python2 binary package has been removed
See
https://fedoraproject.org/wiki/Changes/Mass_Python_2_Package_Removal
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.3.0-15
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Tue Jun 19 2018 Miro Hron��ok <mhroncok(a)redhat.com> - 3.3.0-14
- Rebuilt for Python 3.7
* Fri Feb 9 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.3.0-13
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
* Thu Jul 27 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.3.0-12
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
* Sat Feb 11 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.3.0-11
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild
* Mon Dec 19 2016 Miro Hron��ok <mhroncok(a)redhat.com> - 3.3.0-10
- Rebuild for Python 3.6
* Tue Jul 19 2016 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
3.3.0-9
-
https://fedoraproject.org/wiki/Changes/Automatic_Provides_for_Python_RPM_...
* Thu Feb 4 2016 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.3.0-8
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1800888 - Please build for epel7 & epel8 (dependency for python-pvc)
https://bugzilla.redhat.com/show_bug.cgi?id=1800888
--------------------------------------------------------------------------------
================================================================================
seamonkey-2.53.1-3.el7 (FEDORA-EPEL-2020-c513b3c1ca)
Web browser, e-mail, news, IRC client, HTML editor
--------------------------------------------------------------------------------
Update Information:
Upgrade to 2.53.1 SeaMonkey-2.53.1, being initially based on the Firefox-56 and
Thunderbird-56 code, incorporates now a lot of backported features and security
fixes from the newer Firefox/Thunderbird versions up to 75. That way it tries to
be a modern browser, preserving the same time the familiar user interface and
the ability to use traditional extensions and addons. This version makes
changes to your profile that can't be reverted in case you want to go back to a
previous version of SeaMonkey. You MUST absolutely do a full backup of your
profile (~/.mozilla/seamonkey/ dir) BEFORE trying to run new version. SeaMonkey
now uses GTK3 library for GUI interface. If you experienced some size issues, go
to "about:config" and try to set "layout.css.devPixelsPerPx"
preference to "1"
(or any other preferred value). You can also use gtk3's environment variables
GDK_SCALE and/or GDK_DPI_SCALE (useful for HiDPI displays). Since Classic theme
uses system desktop theme, it might behaves incorrectly when the underlying
theme (still) does not support gtk3. Full theme add-ons may need changes
because of user interface and internal changes. If you find any problem with
themes, contact the theme author. Before reporting a problem with the user
interface, please make sure to recreate it with either the Classic or Modern
theme. This version now includes "Lightning" calendar. It becomes a standard
part of Thunderbird/SeaMonkey, being just technically organized as an extension.
This version returns providing of Chatzilla and DOM inspector extensions, just
as it always was before. It is likely you need to update your third party
extensions to newer versions. Poorly designed or incompatible extensions can
cause unpredictable problems. If you encounter some strange issues, try
"seamonkey -safe-mode" from command line. Unfortunately, it is now impossible
to continue support of npapi plugins. Thus, java applets no more work :( . All
modern browsers have dropped such support years ago, and even plugin owners
recommend to not use it anymore. Search "browsers with java support" if you
still need it. Sorry for that. Flash is still supported, at least until its EOL
at the end of 2020. Since 2.53.1, 32-bit version (i686 arch) does not provided,
because no more supported. The old format of keys and certificates storage in
the user profiles still preserved in Fedora. DO NOT TOUCH key3.db and cert8.db
files (as it might be recommended in the upstream release notes) -- they still
works as expected. Please, read upstream release notes for more info
https://www.seamonkey-project.org/releases/seamonkey2.53.1/
--------------------------------------------------------------------------------
ChangeLog:
* Sat Mar 21 2020 Dmitry Butskoy <Dmitry(a)Butskoy.name> 2.53.1-3
- fix localization for bundled calendar and chatzilla (#1815109)
- clear obsolete stuff from desktop-file-install
* Wed Mar 4 2020 Dmitry Butskoy <Dmitry(a)Butskoy.name> 2.53.1-2
- add patch for classic theme (#1808197)
- build with clang
* Fri Feb 28 2020 Dmitry Butskoy <Dmitry(a)Butskoy.name> 2.53.1-1
- Upgrade to 2.53.1
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1808197 - seamonkey-2.53.1.source is available
https://bugzilla.redhat.com/show_bug.cgi?id=1808197
--------------------------------------------------------------------------------