The following Fedora EPEL 7 Security updates need testing: Age URL 509 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-1087 dokuwiki-0-0.24.20140929c.el7 272 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-dac7ed832f mcollective-2.8.4-1.el7 34 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-e0c08a1414 php-PHPMailer-5.2.16-2.el7 11 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-6eebbe7e97 p7zip-16.02-1.el7 10 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-7913c4c81c breeze-icon-theme-5.24.0-1.el7 extra-cmake-modules-5.24.0-1.el7 kf5-5.24.0-1.el7 kf5-attica-5.24.0-1.el7 kf5-baloo-5.24.0-1.el7 kf5-bluez-qt-5.24.0-1.el7 kf5-frameworkintegration-5.24.0-1.el7 kf5-kactivities-5.24.0-1.el7 kf5-kactivities-stats-5.24.0-1.el7 kf5-kapidox-5.24.0-1.el7 kf5-karchive-5.24.0-1.el7 kf5-kauth-5.24.0-1.el7 kf5-kbookmarks-5.24.0-1.el7 kf5-kcmutils-5.24.0-1.el7 kf5-kcodecs-5.24.0-1.el7 kf5-kcompletion-5.24.0-1.el7 kf5-kconfig-5.24.0-1.el7 kf5-kconfigwidgets-5.24.0-1.el7 kf5-kcoreaddons-5.24.0-1.el7 kf5-kcrash-5.24.0-1.el7 kf5-kdbusaddons-5.24.0-1.el7 kf5-kdeclarative-5.24.0-1.el7 kf5-kded-5.24.0-1.el7 kf5-kdelibs4support-5.24.0-1.el7 kf5-kdesignerplugin-5.24.0-1.el7 kf5-kdesu-5.24.0-1.el7 kf5-kdewebkit-5.24.0-1.el7 kf5-kdnssd-5.24.0-1.el7 kf5-kdoctools-5.24.0-1.el7 kf5-kemoticons-5.24.0-1.el7 kf5-kfilemetadata-5.24.0-1.el7 kf5-kglobalaccel-5.24.0-1.el7 kf5-kguiaddons-5.24.0-1.el7 kf5-khtml -5.24.0-1.el7 kf5-ki18n-5.24.0-1.el7 kf5-kiconthemes-5.24.0-1.el7 kf5-kidletime-5.24.0-1.el7 kf5-kimageformats-5.24.0-1.el7 kf5-kinit-5.24.0-1.el7 kf5-kio-5.24.0-1.el7 kf5-kitemmodels-5.24.0-1.el7 kf5-kitemviews-5.24.0-1.el7 kf5-kjobwidgets-5.24.0-1.el7 kf5-kjs-5.24.0-1.el7 kf5-kjsembed-5.24.0-1.el7 kf5-kmediaplayer-5.24.0-1.el7 kf5-knewstuff-5.24.0-1.el7 kf5-knotifications-5.24.0-1.el7 kf5-knotifyconfig-5.24.0-1.el7 kf5-kpackage-5.24.0-1.el7 kf5-kparts-5.24.0-1.el7 kf5-kpeople-5.24.0-1.el7 kf5-kplotting-5.24.0-1.el7 kf5-kpty-5.24.0-1.el7 kf5-kross-5.24.0-1.el7 kf5-krunner-5.24.0-1.el7 kf5-kservice-5.24.0-1.el7 kf5-ktexteditor-5.24.0-1.el7 kf5-ktextwidgets-5.24.0-1.el7 kf5-kunitconversion-5.24.0-1.el7 kf5-kwallet-5.24.0-1.el7 kf5-kwidgetsaddons-5.24.0-1.el7 kf5-kwindowsystem-5.24.0-1.el7 kf5-kxmlgui-5.24.0-1.el7 kf5-kxmlrpcclient-5.24.0-1.el7 kf5-modemmanager-qt-5.24.0-1.el7 kf5-networkmanager-qt-5.24.0-1.el7 kf5-plasma-5.24.0-1.el7 kf5-solid-5.24.0-1.el7 kf5-sonnet-5.24.0-1.el7 kf5 -threadweaver-5.24.0-1.el7 10 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-3a667cc289 php-guzzlehttp-guzzle-5.3.1-1.el7 10 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-fbf24e04bd drupal7-views-3.14-1.el7 6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-76bb0cb040 php-doctrine-common-2.5.3-1.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-20572dde69 dropbear-2016.74-1.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-d6a70b113f collectd-5.5.2-1.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-42ecf5c111 v8-3.14.5.10-25.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-ac6030a9e9 cryptopp-5.6.2-10.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-dbaaa35f43 lighttpd-1.4.40-4.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
mozilla-noscript-2.9.0.12-1.el7 opentracker-0-0.12.20160728cvs.el7 python-characteristic-14.3.0-5.el7 python-service-identity-14.0.0-5.el7 python-twisted-16.2.0-2.el7 python3-pyudev-0.21.0-1.el7
Details about builds:
================================================================================ mozilla-noscript-2.9.0.12-1.el7 (FEDORA-EPEL-2016-e8355dcace) JavaScript white list extension for Mozilla Firefox -------------------------------------------------------------------------------- Update Information:
* Updated DNT implementation to match the most recent spec about navigator.doNotTrack values (thanks Francois Merier) * [XSS] Better compatibility with Unionbank's website (thanks Brent for reporting) * Fixed bug 1278735 (JavaScript disabled in private windows) * Fixed JSON viewer not working * about:feed in the mandatory whitelist to fix bug 1272139 * [XSS] Disable JavaScript on FTP-served pages when a potential DOM XSS threat is detected (thanks Emanuel Bronshtein @e3amn2l for reporting) * Fixed DOS through script- triggered ClickToPlay confirmation dialogs in a loop (thanks Emanuel Bronshtein @e3amn2l for reporting) * Fixed placeholder links might be potentially used as XSS vectors if stars were properly aligned (thanks Emanuel Bronshtein @e3amn2l for reporting) * [Surrogate] Updated google-analytics.com replacement (thanks noscriptsplox) * [XSS] Fixed regression (thanks Masato Kinugawa for report) * [XSS] Fixed infrastructure issue preventing one filter from being automatically synchronized with Mozilla's source code as designed (thanks .mario and Maxim Rupp for reporting) * [XSS] Added filtering for a potential CSRF vector (thanks Masato Kinugawa for reporting) * Fixed placeholder activation in Gecko 45 and above * [XSS] Compatibility exception for the Printfriendly add-on * Removed msn.com from the default whitelist, since it seems to be unable to support HTTPS consistently * Fixed incompatibility with Firefox below version 38 * Tentative fix for an issue with explicit ports in HTTPS upgraded URLs * [HTTPS] Removed legacy redirection methods when redirectTo() is available in HTTP channels, fixing YouTube embedding problem * Replaced newChannel() with newChannel2() on Gecko 48 * [HTTPS] Limit httpsDefWhitelist effect to document loads * [XSS] Reduced eval aliasing checks false positives -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1360761 - mozilla-noscript-2.9.0.12 is available https://bugzilla.redhat.com/show_bug.cgi?id=1360761 --------------------------------------------------------------------------------
================================================================================ opentracker-0-0.12.20160728cvs.el7 (FEDORA-EPEL-2016-a3b43432dc) BitTorrent Tracker -------------------------------------------------------------------------------- Update Information:
Update to 20160728 snapshot --------------------------------------------------------------------------------
================================================================================ python-characteristic-14.3.0-5.el7 (FEDORA-EPEL-2016-25d4dc32e8) Python library that eases the chores of implementing attributes -------------------------------------------------------------------------------- Update Information:
Bring python-twisted to epel7 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1361593 - Build python-twisted for epel7 https://bugzilla.redhat.com/show_bug.cgi?id=1361593 --------------------------------------------------------------------------------
================================================================================ python-service-identity-14.0.0-5.el7 (FEDORA-EPEL-2016-25d4dc32e8) Service identity verification for pyOpenSSL -------------------------------------------------------------------------------- Update Information:
Bring python-twisted to epel7 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1361593 - Build python-twisted for epel7 https://bugzilla.redhat.com/show_bug.cgi?id=1361593 --------------------------------------------------------------------------------
================================================================================ python-twisted-16.2.0-2.el7 (FEDORA-EPEL-2016-25d4dc32e8) Twisted is a networking engine written in Python -------------------------------------------------------------------------------- Update Information:
Bring python-twisted to epel7 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1361593 - Build python-twisted for epel7 https://bugzilla.redhat.com/show_bug.cgi?id=1361593 --------------------------------------------------------------------------------
================================================================================ python3-pyudev-0.21.0-1.el7 (FEDORA-EPEL-2016-0d2770c0a1) A libudev binding -------------------------------------------------------------------------------- Update Information:
See changelog. A few bug fixes, one significant deprecation. --------------------------------------------------------------------------------
epel-devel@lists.fedoraproject.org