The following Fedora EPEL 9 Security updates need testing:
Age URL
4
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-bd2367203c
gifsicle-1.95-1.el9
The following builds have been pushed to Fedora EPEL 9 updates-testing
buildbot-3.11.0-2.el9
chromium-122.0.6261.69-1.el9
debootstrap-1.0.134-1.el9
imhex-1.33.0-1.el9
onnx-1.14.1-2.el9
python-klein-23.5.0-4.el9
python-tubes-0.2.0-12.el9
rust-env_filter-0.1.0-1.el9
rust-gif-0.13.1-1.el9
rust-gif0.12-0.12.0-1.el9
rust-image-0.24.9-1.el9
stockfish-16.1-1.el9
virtme-ng-1.22-1.el9
yacreader-9.14.2-1.el9
Details about builds:
================================================================================
buildbot-3.11.0-2.el9 (FEDORA-EPEL-2024-6a21863972)
Build/test automation system
--------------------------------------------------------------------------------
Update Information:
Initial EL-9 build
--------------------------------------------------------------------------------
ChangeLog:
* Fri Jan 26 2024 Orion Poplawski <orion(a)nwra.com> - 3.11.0-2
- Fix database upgrade action
* Thu Jan 25 2024 Gwyn Ciesla <gwync(a)protonmail.com> - 3.11.0-1
- 3.11.0
* Tue Jan 23 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.10.1-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Fri Jan 19 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.10.1-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Tue Dec 26 2023 Gwyn Ciesla <gwync(a)protonmail.com> - 3.10.1-1
- 3.10.1
* Tue Dec 5 2023 Gwyn Ciesla <gwync(a)protonmail.com> - 3.10.0-1
- 3.10.0
* Thu Sep 28 2023 Gwyn Ciesla <gwync(a)protonmail.com> - 3.9.2-3
- Upgrade master databases and restart masters and workers on upgrade.
* Fri Sep 8 2023 Gwyn Ciesla <gwync(a)protonmail.com> - 3.9.2-2
- Adjust twisted pin.
* Tue Sep 5 2023 Gwyn Ciesla <gwync(a)protonmail.com> - 3.9.2-1
- 3.9.2
* Wed Aug 16 2023 Gwyn Ciesla <gwync(a)protonmail.com> - 3.9.0-1
- 3.9.0
* Wed Jul 19 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.8.0-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
* Tue Jul 4 2023 Python Maint <python-maint(a)redhat.com> - 3.8.0-2
- Rebuilt for Python 3.12
* Mon Apr 17 2023 Gwyn Ciesla <gwync(a)protonmail.com> - 3.8.0-1
- 3.8.0
* Fri Mar 3 2023 Gwyn Ciesla <gwync(a)protonmail.com> - 3.7.0-4
- migrated to SPDX license
* Mon Jan 30 2023 Orion Poplawski <orion(a)cora.nwra.com> - 3.7.0-3
- Drop dependency on mock
* Wed Jan 18 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.7.0-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild
* Mon Dec 5 2022 Gwyn Ciesla <gwync(a)protonmail.com> - 3.7.0-1
- 3.7.0
* Thu Sep 22 2022 Gwyn Ciesla <gwync(a)protonmail.com> - 3.6.1-1
- 3.6.1
* Thu Aug 25 2022 Gwyn Ciesla <gwync(a)protonmail.com> - 3.6.0-1
- 3.6.0
* Wed Aug 10 2022 Gwyn Ciesla <gwync(a)protonmail.com> - 3.5.0-1
- 3.5.0
* Wed Jul 20 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.3.0-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
* Wed Jun 29 2022 Python Maint <python-maint(a)redhat.com> - 3.3.0-5
- Rebuilt for Python 3.11
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2164900 - Please branch and build buildbot for EPEL 9
https://bugzilla.redhat.com/show_bug.cgi?id=2164900
--------------------------------------------------------------------------------
================================================================================
chromium-122.0.6261.69-1.el9 (FEDORA-EPEL-2024-c6bf47a782)
A WebKit (Blink) powered web browser that Google doesn't want you to use
--------------------------------------------------------------------------------
Update Information:
Update to 122.0.6261.69
--------------------------------------------------------------------------------
ChangeLog:
* Fri Feb 23 2024 Than Ngo <than(a)redhat.com> - 122.0.6261.69-1
- update to 122.0.6261.69
- fix build error on el8
- bz#2265039, built with -fwrapv for improved memory safety
- bz#2265043, built with -ftrivial-auto-var-init=zero for improved security and
preditability
* Wed Feb 21 2024 Than Ngo <than(a)redhat.com> - 122.0.6261.57-1
- update to 122.0.6261.57
* High CVE-2024-1669: Out of bounds memory access in Blink
* High CVE-2024-1670: Use after free in Mojo
* Medium CVE-2024-1671: Inappropriate implementation in Site Isolation
* Medium CVE-2024-1672: Inappropriate implementation in Content Security Policy
* Medium CVE-2024-1673: Use after free in Accessibility
* Medium CVE-2024-1674: Inappropriate implementation in Navigation
* Medium CVE-2024-1675: Insufficient policy enforcement in Download
* Low CVE-2024-1676: Inappropriate implementation in Navigation.
* Sun Feb 18 2024 Than Ngo <than(a)redhat.com> - 122.0.6261.39-1
- update to 122.0.6261.39
* Wed Feb 14 2024 Than Ngo <than(a)redhat.com> - 121.0.6167.184-1
- update to 121.0.6167.184
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2265256 - CVE-2024-1669 CVE-2024-1670 CVE-2024-1671 CVE-2024-1672
CVE-2024-1673 CVE-2024-1674 CVE-2024-1675 CVE-2024-1676 chromium: various flaws
[epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2265256
--------------------------------------------------------------------------------
================================================================================
debootstrap-1.0.134-1.el9 (FEDORA-EPEL-2024-00be32248c)
Debian GNU/Linux bootstrapper
--------------------------------------------------------------------------------
Update Information:
Automatic update for debootstrap-1.0.134-1.el9.
Changelog for debootstrap
* Mon Feb 26 2024 S��rgio M. Basto <sergio(a)serjux.com> - 1.0.134-1
- New release 1.0.134
* Wed Jan 24 2024 Fedora Release Engineering <releng(a)fedoraproject.org> -
1.0.132-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Fri Jan 19 2024 Fedora Release Engineering <releng(a)fedoraproject.org> -
1.0.132-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Mon Aug 28 2023 Fedora Release Monitoring <release-
monitoring(a)fedoraproject.org> - 1.0.132-1
- Update to 1.0.132 (#2129922)
--------------------------------------------------------------------------------
ChangeLog:
* Mon Feb 26 2024 S��rgio M. Basto <sergio(a)serjux.com> - 1.0.134-1
- New release 1.0.134
* Wed Jan 24 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.0.132-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Fri Jan 19 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.0.132-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Mon Aug 28 2023 Fedora Release Monitoring <release-monitoring(a)fedoraproject.org> -
1.0.132-1
- Update to 1.0.132 (#2129922)
--------------------------------------------------------------------------------
================================================================================
imhex-1.33.0-1.el9 (FEDORA-EPEL-2024-4d2fa38af4)
A hex editor for reverse engineers and programmers
--------------------------------------------------------------------------------
Update Information:
update to 1.33.0
--------------------------------------------------------------------------------
ChangeLog:
* Sun Feb 25 2024 Jonathan Wright <jonathan(a)almalinux.org> - 1.33.0-1
- update to 1.33.0
--------------------------------------------------------------------------------
================================================================================
onnx-1.14.1-2.el9 (FEDORA-EPEL-2024-b338e53868)
Open standard for machine learning interoperability
--------------------------------------------------------------------------------
Update Information:
onnx provides an open source format for AI models, both deep learning and
traditional ML. It defines an extensible computation graph model, as well as
definitions of built-in operators and standard data types.
--------------------------------------------------------------------------------
ChangeLog:
* Sat Feb 24 2024 Alejandro Alvarez Ayllon <a.alvarezayllon(a)gmail.com> - 1.14.1-2
- Backport of fixes for CVE-2024-27318 and CVE-2024-27319
* Wed Feb 21 2024 Diego Herrera C <dherrera(a)redhat.com>- 1.14.1-1
- Release 1.14.1
* Tue Jan 23 2024 Alejandro Alvarez Ayllon <a.alvarezayllon(a)gmail.com> - 1.14.0-10
- Build using protobuf-devel
* Sun Jan 21 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.14.0-9
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Wed Sep 20 2023 Diego Herrera C <dherrera(a)redhat.com> - 1.14.0-8
- Fix onnxruntime patch
* Wed Aug 30 2023 Diego Herrera C <dherrera(a)redhat.com> - 1.14.0-7
- Add fix to use with onnxruntime
* Sat Aug 5 2023 Diego Herrera C <dherrera(a)redhat.com> - 1.14.0-6
- Lower version requirement for parameterized.
- Lower version requirement for protobuf.
* Sat Aug 5 2023 Diego Herrera C <dherrera(a)redhat.com> - 1.14.0-5
- Build python libs using the proper macros.
* Thu Jul 20 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.14.0-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
* Mon Jun 19 2023 Python Maint <python-maint(a)redhat.com> - 1.14.0-3
- Rebuilt for Python 3.12
* Wed Jun 7 2023 Alejandro Alvarez Ayllon <a.alvarezayllon(a)gmail.com> - 1.14.0-2
- Patch protobuf headers with ONNX_API
- Ship .proto files
* Sat Jun 3 2023 Alejandro Alvarez Ayllon <a.alvarezayllon(a)gmail.com> - 1.14.0-1
- Release 1.14.0
* Thu May 18 2023 Diego Herrera <dherrera(a)redhat.com> - 1.13.0-3
- Fix License entry to comply with SPDX
- Add onnx-libs as an explicit dependency to the python package
* Sat Dec 17 2022 Alejandro Alvarez Ayllon <aalvarez(a)fedoraproject.org> - 1.13.0-2
- Release 1.13.0
* Wed Nov 23 2022 Alejandro Alvarez Ayllon <aalvarez(a)fedoraproject.org> - 1.12.0-1
- Release 1.12.0
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2264874 - Request EPEL 9
https://bugzilla.redhat.com/show_bug.cgi?id=2264874
--------------------------------------------------------------------------------
================================================================================
python-klein-23.5.0-4.el9 (FEDORA-EPEL-2024-6a21863972)
Python microframework built on werkzeug + twisted.web
--------------------------------------------------------------------------------
Update Information:
Initial EL-9 build
--------------------------------------------------------------------------------
ChangeLog:
* Fri Jan 26 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 23.5.0-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Mon Jan 22 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 23.5.0-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Fri Jul 21 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 23.5.0-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
* Wed Jul 5 2023 Gwyn Ciesla <gwync(a)protonmail.com> - 23.5.0-1
- 23.5.0
* Wed Jun 28 2023 Python Maint <python-maint(a)redhat.com> - 20.6.0-9
- Rebuilt for Python 3.12
* Fri Jan 20 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 20.6.0-8
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild
* Fri Jul 22 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 20.6.0-7
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
* Tue Jun 14 2022 Python Maint <python-maint(a)redhat.com> - 20.6.0-6
- Rebuilt for Python 3.11
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2164900 - Please branch and build buildbot for EPEL 9
https://bugzilla.redhat.com/show_bug.cgi?id=2164900
--------------------------------------------------------------------------------
================================================================================
python-tubes-0.2.0-12.el9 (FEDORA-EPEL-2024-6a21863972)
Flow control and backpressure for event-driven applications
--------------------------------------------------------------------------------
Update Information:
Initial EL-9 build
--------------------------------------------------------------------------------
ChangeLog:
* Fri Jan 26 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.2.0-12
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Mon Jan 22 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.2.0-11
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Fri Jul 21 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.2.0-10
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
* Wed Jun 28 2023 Python Maint <python-maint(a)redhat.com> - 0.2.0-9
- Rebuilt for Python 3.12
* Fri Jan 20 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.2.0-8
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild
* Fri Jul 22 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.2.0-7
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
* Tue Jun 14 2022 Python Maint <python-maint(a)redhat.com> - 0.2.0-6
- Rebuilt for Python 3.11
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2164900 - Please branch and build buildbot for EPEL 9
https://bugzilla.redhat.com/show_bug.cgi?id=2164900
--------------------------------------------------------------------------------
================================================================================
rust-env_filter-0.1.0-1.el9 (FEDORA-EPEL-2024-f65c8ababd)
Filter log events using environment variables
--------------------------------------------------------------------------------
Update Information:
Initial import (fedora#2263582).
--------------------------------------------------------------------------------
ChangeLog:
* Wed Feb 21 2024 Dorinda Bassey <dbassey(a)redhat.com> - 0.1.0-1
- Initial import (fedora#2263582).
--------------------------------------------------------------------------------
================================================================================
rust-gif-0.13.1-1.el9 (FEDORA-EPEL-2024-3285723a8d)
GIF de- and encoder
--------------------------------------------------------------------------------
Update Information:
Update the image crate to version 0.24.9.
Update the gif crate to version 0.13.1.
Add a compat package for version 0.12 of the gif crate.
Update to version 0.24.8.
--------------------------------------------------------------------------------
ChangeLog:
* Mon Feb 26 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.13.1-1
- Update to version 0.13.1; Fixes RHBZ#2259696
* Fri Jan 26 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.12.0-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Fri Jul 21 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.12.0-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
rust-gif0.12-0.12.0-1.el9 (FEDORA-EPEL-2024-3285723a8d)
GIF de- and encoder
--------------------------------------------------------------------------------
Update Information:
Update the image crate to version 0.24.9.
Update the gif crate to version 0.13.1.
Add a compat package for version 0.12 of the gif crate.
Update to version 0.24.8.
--------------------------------------------------------------------------------
ChangeLog:
* Mon Feb 26 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.12.0-1
- Initial import (gif 0.12 compat package)
--------------------------------------------------------------------------------
================================================================================
rust-image-0.24.9-1.el9 (FEDORA-EPEL-2024-3285723a8d)
Imaging library
--------------------------------------------------------------------------------
Update Information:
Update the image crate to version 0.24.9.
Update the gif crate to version 0.13.1.
Add a compat package for version 0.12 of the gif crate.
Update to version 0.24.8.
--------------------------------------------------------------------------------
ChangeLog:
* Mon Feb 26 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.24.9-1
- Update to version 0.24.9; Fixes RHBZ#2265612
* Mon Feb 19 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.24.8-3
- Include upstream patches to fix test failures on s390x and i686
* Fri Jan 26 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.24.8-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Sat Jan 13 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.24.8-1
- Update to version 0.24.8; Fixes RHBZ#2258266
--------------------------------------------------------------------------------
================================================================================
stockfish-16.1-1.el9 (FEDORA-EPEL-2024-d3d43874d5)
Powerful open source chess engine
--------------------------------------------------------------------------------
Update Information:
Update to 16.1 (close RHBZ#2265873)
https://github.com/official-stockfish/Stockfish/releases/tag/sf_16.1
--------------------------------------------------------------------------------
ChangeLog:
* Sun Feb 25 2024 Benjamin A. Beasley <code(a)musicinmybrain.net> - 16.1-1
- Update to 16.1 (close RHBZ#2265873)
* Sat Jan 27 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 16-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Sat Jul 22 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 16-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2265873 - stockfish-16.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2265873
--------------------------------------------------------------------------------
================================================================================
virtme-ng-1.22-1.el9 (FEDORA-EPEL-2024-859ab58722)
Quickly build and run kernels inside a virtualized snapshot of your live system
--------------------------------------------------------------------------------
Update Information:
Update to version 1.22
https://github.com/arighi/virtme-ng/releases/tag/v1.22
--------------------------------------------------------------------------------
ChangeLog:
* Mon Feb 26 2024 Ondrej Mosn����ek <omosnacek(a)gmail.com> - 1.22-1
- Update to version 1.22 (fedora#2265882)
--------------------------------------------------------------------------------
================================================================================
yacreader-9.14.2-1.el9 (FEDORA-EPEL-2024-b6fe08aaff)
Cross platform comic reader and library manager
--------------------------------------------------------------------------------
Update Information:
Initial package
--------------------------------------------------------------------------------
ChangeLog:
* Wed Feb 14 2024 Artem Polishchuk <ego.cordatus(a)gmail.com> - 9.14.2-1
- chore: Update to 9.14.2
* Tue Feb 6 2024 Artem Polishchuk <ego.cordatus(a)gmail.com> - 9.14.1-1
- chore: Update to 9.14.1
* Tue Feb 6 2024 Artem Polishchuk <ego.cordatus(a)gmail.com> - 9.13.1-4
- license: Convert to SPDX
* Sat Jan 27 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 9.13.1-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Sat Jul 22 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 9.13.1-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
* Sun Jul 16 2023 Artem Polishchuk <ego.cordatus(a)gmail.com> - 9.13.1-1
- chore: Update to 9.13.1
* Mon Jul 10 2023 Artem Polishchuk <ego.cordatus(a)gmail.com> - 9.13.0-1
- chore: Update to 9.13.0
* Sun Apr 23 2023 Artem Polishchuk <ego.cordatus(a)gmail.com> - 9.12.0-1
- chore: Update to 9.12.0
* Sat Jan 21 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 9.11.0-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild
* Sat Jan 7 2023 Artem Polishchuk <ego.cordatus(a)gmail.com> - 9.11.0-1
- chore: Update to 9.11.0
* Sun Oct 30 2022 Artem Polishchuk <ego.cordatus(a)gmail.com> - 9.10.0-1
- build: Update to 9.10.0
* Sun Oct 2 2022 Artem Polishchuk <ego.cordatus(a)gmail.com> - 9.9.2-1
- chore(update): 9.9.2
* Sun Sep 4 2022 Artem Polishchuk <ego.cordatus(a)gmail.com> - 9.9.1-1
- chore(update): 9.9.1
* Sun Sep 4 2022 Artem Polishchuk <ego.cordatus(a)gmail.com> - 9.9.0-1
- chore(update): 9.9.0
* Sat Jul 23 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 9.8.2-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
--------------------------------------------------------------------------------