The following Fedora EPEL 7 Security updates need testing:
Age URL
949
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-1087
dokuwiki-0-0.24.20140929c.el7
711
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-dac7ed832f
mcollective-2.8.4-1.el7
293
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-04bc9dd81d
libbsd-0.8.3-1.el7
191
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-d241156dfe
mod_cluster-1.3.3-10.el7
188
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-7ecb12e378
python-XStatic-jquery-ui-1.12.0.1-1.el7
23
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-e27758bd23
libmspack-0.6-0.1.alpha.el7
20
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-52b8147c68
openvpn-auth-ldap-2.0.3-15.el7
14
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-afdcf119f4
freexl-1.0.4-1.el7
11
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-4826761f5d
openvpn-2.4.4-1.el7
11
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-abe6f98ebf
tor-0.2.9.12-1.el7
11
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-0f92580f68
yadifa-2.2.6-1.el7
7
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-17b77b3268
botan-1.10.17-1.el7
7
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-3c06a7eecf
nagios-4.3.4-3.el7
5
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-9e6a789af9
check-mk-1.2.8p26-1.el7
0
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-853d71e01b
tnef-1.4.15-1.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
arc-gui-clients-0.4.6-13.el7
cinnamon-screensaver-3.4.3-1.el7
fedmsg-1.0.1-5.el7
golang-github-SAP-go-hdb-0.9.1-1.el7
golang-github-armon-go-proxyproto-0-0.1.20170621git48572f1.el7
golang-github-boombuler-barcode-0-0.1.20170922git3cfea5a.el7
golang-github-cockroachdb-cockroach-go-0-0.1.20170809gitc806b48.el7
golang-github-mitchellh-go-testing-interface-0-0.1.20171004gita61a995.el7
golang-github-patrickmn-go-cache-2.0.0-1.el7
golang-github-ryanuber-go-glob-0.1-1.el7
hercules-3.13-1.el7
pdc-updater-0.6.3-1.el7
python-django-haystack-2.4.1-1.el7
python-keyring-5.0-3.el7
rpl-1.5.7-3.el7
tnef-1.4.15-1.el7
vtun-3.0.4-5.el7
Details about builds:
================================================================================
arc-gui-clients-0.4.6-13.el7 (FEDORA-EPEL-2017-964b40fb2d)
ARC Graphical Clients
--------------------------------------------------------------------------------
Update Information:
Minor bugfix.
--------------------------------------------------------------------------------
================================================================================
cinnamon-screensaver-3.4.3-1.el7 (FEDORA-EPEL-2017-3f44186174)
Cinnamon Screensaver
--------------------------------------------------------------------------------
Update Information:
Update to 3.4.3 release
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1501269 - lock screen locks only 1 monitor !
https://bugzilla.redhat.com/show_bug.cgi?id=1501269
[ 2 ] Bug #1488790 - Session unlocked after resuming from hibernate, private data
visible, login screen missing
https://bugzilla.redhat.com/show_bug.cgi?id=1488790
[ 3 ] Bug #1483523 - [abrt] cinnamon-screensaver:
manager.py:210:on_despawn_stage_complete:AttributeError: 'NoneType' object has no
attribute 'destroy_stage'
https://bugzilla.redhat.com/show_bug.cgi?id=1483523
[ 4 ] Bug #1471468 - [abrt] cinnamon-screensaver: on_client_setup_complete():
logindClient.py:61:on_client_setup_complete:TypeError: Argument 3 does not allow None as a
value
https://bugzilla.redhat.com/show_bug.cgi?id=1471468
--------------------------------------------------------------------------------
================================================================================
fedmsg-1.0.1-5.el7 (FEDORA-EPEL-2017-57b6bb1261)
Tools for Fedora Infrastructure real-time messaging
--------------------------------------------------------------------------------
Update Information:
* Refactor subpackages so that python2-fedmsg contains everything * Update to
the latest upstream release * Since 1.0.1-4: Drop Python dependency on
cryptography, m2crypto is still used on el7
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1480026 - fedmsg-1.0.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1480026
[ 2 ] Bug #1365612 - Missing dependencies for python3-fedmsg-core
https://bugzilla.redhat.com/show_bug.cgi?id=1365612
--------------------------------------------------------------------------------
================================================================================
golang-github-SAP-go-hdb-0.9.1-1.el7 (FEDORA-EPEL-2017-9f6f487ad9)
SAP HANA Database Client for Go (Golang)
--------------------------------------------------------------------------------
Update Information:
First package for Fedora
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1499486 - Review Request: golang-github-SAP-go-hdb - SAP HANA Database Client
for Go (Golang)
https://bugzilla.redhat.com/show_bug.cgi?id=1499486
--------------------------------------------------------------------------------
================================================================================
golang-github-armon-go-proxyproto-0-0.1.20170621git48572f1.el7
(FEDORA-EPEL-2017-53dcb1936a)
Golang package to handle HAProxy Proxy Protocol
--------------------------------------------------------------------------------
Update Information:
First package for Fedora
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1499488 - Review Request: golang-github-armon-go-proxyproto - Golang package
to handle HAProxy Proxy Protocol
https://bugzilla.redhat.com/show_bug.cgi?id=1499488
--------------------------------------------------------------------------------
================================================================================
golang-github-boombuler-barcode-0-0.1.20170922git3cfea5a.el7
(FEDORA-EPEL-2017-bbdb4048d7)
A barcode creation lib for Go (Golang)
--------------------------------------------------------------------------------
Update Information:
First package for Fedora
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1499502 - Review Request: golang-github-boombuler-barcode - A barcode
creation lib for Go (Golang)
https://bugzilla.redhat.com/show_bug.cgi?id=1499502
--------------------------------------------------------------------------------
================================================================================
golang-github-cockroachdb-cockroach-go-0-0.1.20170809gitc806b48.el7
(FEDORA-EPEL-2017-a2d4596741)
CockroachDB helpers for Go (Golang)
--------------------------------------------------------------------------------
Update Information:
First package for Fedora
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1499491 - Review Request: golang-github-cockroachdb-cockroach-go -
CockroachDB helpers for Go (Golang)
https://bugzilla.redhat.com/show_bug.cgi?id=1499491
--------------------------------------------------------------------------------
================================================================================
golang-github-mitchellh-go-testing-interface-0-0.1.20171004gita61a995.el7
(FEDORA-EPEL-2017-a81c40ba47)
Go (Golang) library to expose *testing.T as an interface
--------------------------------------------------------------------------------
Update Information:
First package for Fedora
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1499495 - Review Request: golang-github-mitchellh-go-testing-interface - Go
(Golang) library to expose *testing.T as an interface
https://bugzilla.redhat.com/show_bug.cgi?id=1499495
--------------------------------------------------------------------------------
================================================================================
golang-github-patrickmn-go-cache-2.0.0-1.el7 (FEDORA-EPEL-2017-a5039dfc63)
An in-memory key:value store/cache library for Go (Golang)
--------------------------------------------------------------------------------
Update Information:
First package for Fedora
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1499496 - Review Request: golang-github-patrickmn-go-cache - An in-memory
key:value store/cache library for Go (Golang)
https://bugzilla.redhat.com/show_bug.cgi?id=1499496
--------------------------------------------------------------------------------
================================================================================
golang-github-ryanuber-go-glob-0.1-1.el7 (FEDORA-EPEL-2017-3b4e08d48b)
Basic string globs in Go (Golang)
--------------------------------------------------------------------------------
Update Information:
First package for Fedora
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1499504 - Review Request: golang-github-ryanuber-go-glob - Basic string globs
in Go (Golang)
https://bugzilla.redhat.com/show_bug.cgi?id=1499504
--------------------------------------------------------------------------------
================================================================================
hercules-3.13-1.el7 (FEDORA-EPEL-2017-c7253538e8)
Hercules S/370, ESA/390, and z/Architecture emulator
--------------------------------------------------------------------------------
Update Information:
- updated to 3.13 -
http://www.hercules-390.eu/hercnew.html
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1497378 - hercules-3.13 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1497378
--------------------------------------------------------------------------------
================================================================================
pdc-updater-0.6.3-1.el7 (FEDORA-EPEL-2017-0bd9a85510)
Update the product definition center in response to fedmsg
--------------------------------------------------------------------------------
Update Information:
See note on the [infra
list](https://lists.fedoraproject.org/archives/list/infra
structure(a)lists.fedoraproject.org/thread/PTZWLTZWKJEWZ5A6JXYAHYNYIURGIITK/).
--------------------------------------------------------------------------------
================================================================================
python-django-haystack-2.4.1-1.el7 (FEDORA-EPEL-2017-40864203ec)
Pluggable search for Django.
--------------------------------------------------------------------------------
Update Information:
Update to the 2.4.1 release
--------------------------------------------------------------------------------
================================================================================
python-keyring-5.0-3.el7 (FEDORA-EPEL-2017-56c4d62597)
Store and access your passwords safely
--------------------------------------------------------------------------------
Update Information:
Fix warning when using the python-keyring CLI about GnomeKeyring being used
without a version.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1498477 - PyGIWarning: GnomeKeyring was imported without specifying a version
first.
https://bugzilla.redhat.com/show_bug.cgi?id=1498477
--------------------------------------------------------------------------------
================================================================================
rpl-1.5.7-3.el7 (FEDORA-EPEL-2017-376ab9c25b)
Intelligent recursive search/replace utility
--------------------------------------------------------------------------------
Update Information:
Initial build for EL7
--------------------------------------------------------------------------------
================================================================================
tnef-1.4.15-1.el7 (FEDORA-EPEL-2017-853d71e01b)
Extract files from email attachments like WINMAIL.DAT
--------------------------------------------------------------------------------
Update Information:
Update to 1.4.15. Fixes CVE-2017-8911 ---- Release 1.4.14 includes security
bug fixes introduced in 1.4.13 and a further bug fix.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1427435 - CVE-2017-6307 CVE-2017-6308 CVE-2017-6309 CVE-2017-6310 tnef:
Multiple vulnerabilities fixed in 1.4.13 [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1427435
[ 2 ] Bug #1451259 - CVE-2017-8911 tnef: Integer underflow in unicode_to_utf8
[epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1451259
[ 3 ] Bug #1451258 - CVE-2017-8911 tnef: Integer underflow in unicode_to_utf8
[fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1451258
--------------------------------------------------------------------------------
================================================================================
vtun-3.0.4-5.el7 (FEDORA-EPEL-2017-fd12483a2d)
Virtual tunnel over TCP/IP networks
--------------------------------------------------------------------------------
Update Information:
remove segfaulting openssl-1.1 patch; use compat-openssl10 instead
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1424526 - vtun: FTBFS in rawhide
https://bugzilla.redhat.com/show_bug.cgi?id=1424526
[ 2 ] Bug #1462458 - Add vtun to EPEL 7?
https://bugzilla.redhat.com/show_bug.cgi?id=1462458
[ 3 ] Bug #1487003 - vtun - segfault vtun 304-2 ( error 4 in
libcrypto.so.1.0.1e[7fa38561c000+1c0000])
https://bugzilla.redhat.com/show_bug.cgi?id=1487003
--------------------------------------------------------------------------------