The following Fedora EPEL 7 Security updates need testing:
Age URL
558
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-3c9292b62d
condor-8.6.11-1.el7
300
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-c499781e80
python-gnupg-0.4.4-1.el7
297
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-bc0182548b
bubblewrap-0.3.3-2.el7
13
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-bf56589e5c
mbedtls-2.7.13-1.el7
13
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-bee5eeedf0
cacti-1.2.9-1.el7 cacti-spine-1.2.9-1.el7
12
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-88a247cda8
python3-virtualenv-15.1.0-5.el7
7
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-fb7ac4aee2
hiredis-0.12.1-2.el7
7
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-fa8a2e97c6
python-waitress-1.4.3-1.el7
5
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-99abadf4df
python-psutil-5.6.7-1.el7
5
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-b1046cc65d
python-colander-1.7.0-1.el7
3
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-5f252e8e10
kea-1.6.0-4.el7
2
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-ea579d7782
proftpd-1.3.5e-9.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
clamav-unofficial-sigs-7.0.1-5.el7
mate-themes-3.22.21-1.el7
php-EasyRdf-0.9.1-1.el7
php-mtdowling-jmespath-php-2.5.0-1.el7
php-simplesamlphp-saml2-2.3.9-1.el7
php-webmozart-assert-1.7.0-1.el7
python-pyspf-2.0.14-10.el7
Details about builds:
================================================================================
clamav-unofficial-sigs-7.0.1-5.el7 (FEDORA-EPEL-2020-a7ebf4f262)
Scripts to download unofficial clamav signatures
--------------------------------------------------------------------------------
Update Information:
Mark cron script as configuration file. ---- Set cron script as configuration
file. ---- Make cron script as config(noreplace) (bz#1786860)
--------------------------------------------------------------------------------
ChangeLog:
* Sun Feb 23 2020 J��n ONDREJ (SAL) <ondrejj(at)salstar.sk> - 7.0.1-5
- Remove delay from cron script, doesn't work as expected.
* Wed Feb 19 2020 J��n ONDREJ (SAL) <ondrejj(at)salstar.sk> - 7.0.1-4
- Backslash percent character in cron script
* Thu Feb 13 2020 J��n ONDREJ (SAL) <ondrejj(at)salstar.sk> - 7.0.1-3
- Make cron script as config(noreplace) (bz#1786860)
- Implement random delay before running update script from cron
* Tue Jan 28 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 7.0.1-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1786860 - Installs both cron job and systemd timer
https://bugzilla.redhat.com/show_bug.cgi?id=1786860
--------------------------------------------------------------------------------
================================================================================
mate-themes-3.22.21-1.el7 (FEDORA-EPEL-2020-50d390825c)
MATE Desktop themes
--------------------------------------------------------------------------------
Update Information:
- update to 3.22.21 release
--------------------------------------------------------------------------------
ChangeLog:
* Sat Feb 22 2020 Wolfgang Ulbrich <fedora(a)raveit.de> - 3.22.21-1
- update to 3.22.21
--------------------------------------------------------------------------------
================================================================================
php-EasyRdf-0.9.1-1.el7 (FEDORA-EPEL-2020-20f434c7ed)
A PHP library designed to make it easy to consume and produce RDF
--------------------------------------------------------------------------------
Update Information:
## EasyRdf 0.9.1 ### Bug Fixes * Timeout is applied to response-times, not
only connection-times (see #202)
--------------------------------------------------------------------------------
ChangeLog:
* Sat Feb 22 2020 Shawn Iwinski <shawn.iwinski(a)gmail.com> - 0.9.1-1
- Update to 0.9.1
- Switch source to GitHub as download from
www.easyrdf.org is corrupt
- Fix FTBFS (RHBZ #1799864)
* Thu Jan 30 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.9.0-13
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
* Fri Jul 26 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.9.0-12
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
* Sat Feb 2 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.9.0-11
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.9.0-10
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Fri Feb 9 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.9.0-9
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
* Thu Nov 2 2017 Remi Collet <remi(a)remirepo.net> - 0.9.0-8
- add upstream patch for PHP 7.1
- add upstream patch for PHP 7.2
* Thu Jul 27 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.9.0-7
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
* Wed Feb 22 2017 Shawn Iwinski <shawn.iwinski(a)gmail.com> - 0.9.0-6
- Fix FTBS in rawhide (RHBZ #1424061)
- Skip tests known to fail since PHP 7.1 (see
https://github.com/njh/easyrdf/issues/276)
- Add SCL tests if available
- Use php-composer(fedora/autoloader)
- Move optional dependencies from description to weak dependencies (Suggests)
* Sat Feb 11 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.9.0-5
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild
* Sun Oct 9 2016 Shawn Iwinski <shawn.iwinski(a)gmail.com> - 0.9.0-4
- No Redland support for Fedora 25+ (RHBZ #1350621)
* Sun Oct 9 2016 Shawn Iwinski <shawn.iwinski(a)gmail.com> - 0.9.0-3
- No Redland support for Fedora 26+ (RHBZ #1350621)
* Thu Feb 4 2016 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.9.0-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
php-mtdowling-jmespath-php-2.5.0-1.el7 (FEDORA-EPEL-2020-f156e788d0)
Declaratively specify how to extract elements from a JSON document
--------------------------------------------------------------------------------
Update Information:
## 2.5.0 - 2019-12-30 * Full support for PHP 7.0-7.4. * Fixed autoloading when
run from within vendor folder. * Full multibyte (UTF-8) string support.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Feb 12 2020 Shawn Iwinski <shawn.iwinski(a)gmail.com> - 2.5.0-1
- Update to 2.5.0 (RHBZ #1787856)
* Thu Jan 30 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.4.0-8
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
* Fri Jul 26 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.4.0-7
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
* Sat Feb 2 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.4.0-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.4.0-5
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Fri Feb 9 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.4.0-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
* Thu Jul 27 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.4.0-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
* Sat Feb 11 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.4.0-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1787856 - php-mtdowling-jmespath-php-2.5.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1787856
--------------------------------------------------------------------------------
================================================================================
php-simplesamlphp-saml2-2.3.9-1.el7 (FEDORA-EPEL-2020-7477949a42)
SAML2 PHP library from SimpleSAMLphp
--------------------------------------------------------------------------------
Update Information:
Version bump only. No changes. NOTE: This is *NOT* a security release as the
["fixing a critical security issue (SSPSA 201911-01)" for this pkg
version](https://github.com/simplesamlphp/saml2/releases/tag/v2.3.9) was just
bumping the minimum dependency version of `php-robrichards-xmlseclibs` to 2.1.1
(which is where the actual security release is). See
https://github.com/simplesamlphp/saml2/compare/v2.3.8...v2.3.9 .
--------------------------------------------------------------------------------
ChangeLog:
* Sat Feb 22 2020 Shawn Iwinski <shawn(a)iwin.ski> - 2.3.9-1
- Update to 2.3.9
- Fix FTBFS (RHBZ #1799879)
- Disable tests by default
* Thu Jan 30 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.3.8-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
* Fri Jul 26 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.3.8-5
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
* Sat Feb 2 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.3.8-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.3.8-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Mon Mar 12 2018 Shawn Iwinski <shawn(a)iwin.ski> - 2.3.8-2
- Update range dependencies' conditional to include RHEL 8+
--------------------------------------------------------------------------------
================================================================================
php-webmozart-assert-1.7.0-1.el7 (FEDORA-EPEL-2020-9d6d970f88)
Assertions to validate method input/output with nice error messages
--------------------------------------------------------------------------------
Update Information:
## 1.7.0 (2020-02-14) ### Added * added `Assert::notFalse()` * added
`Assert::isAOf()` * added `Assert::isAnyOf()` * added `Assert::isNotA()` ##
1.6.0 (2019-11-24) ### Added * added `Assert::validArrayKey()` * added
`Assert::isNonEmptyList()` * added `Assert::isNonEmptyMap()` * added `@throws
InvalidArgumentException` annotations to all methods that throw. * added
`@psalm-assert` for the list type to the `isList` assertion. ### Fixed *
`ResourceBundle` & `SimpleXMLElement` now pass the `isCountable` assertions.
They are countable, without implementing the `Countable` interface. * The doc
block of `range` now has the proper variables. * An empty array will now pass
`isList` and `isMap`. As it is a valid form of both. If a non empty variant is
needed, use `isNonEmptyList` or `isNonEmptyMap`. ### Changed * Removed some
`@psalm-assert` annotations, that were 'side effect' assertions See: *
[#144](https://github.com/webmozart/assert/pull/144) *
[#145](https://github.com/webmozart/assert/issues/145) *
[#146](https://github.com/webmozart/assert/pull/146) *
[#150](https://github.com/webmozart/assert/pull/150) * If you use psalm, the
minimum version needed is `3.6.0`. Which is enforced through a composer
conflict. If you don't use psalm, then this has no impact. ## 1.5.0
(2019-08-24) ### Added * added `Assert::uniqueValues()` * added
`Assert::unicodeLetters()` * added: `Assert::email()` * added support for
[
Psalm](https://github.com/vimeo/psalm), by adding `@psalm-assert` annotations
where appropriate. ### Fixed * `Assert::endsWith()` would not give the correct
result when dealing with multibyte suffix. * `Assert::length(), minLength,
maxLength, lengthBetween` would not give the correct result when dealing with
multibyte characters. **NOTE**: These 2 changes may break your assertions if
you relied on the fact that multibyte characters didn't behave correctly. ###
Changed * The names of some variables have been updated to better reflect what
they are. * All function calls are now in their FQN form, slightly increasing
performance. * Tests are now properly ran against HHVM-3.30 and PHP nightly.
### Deprecation * deprecated `Assert::isTraversable()` in favor of
`Assert::isIterable()` * This was already done in 1.3.0, but it was only
done through a silenced `trigger_error`. It is now annotated as well.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Feb 23 2020 Shawn Iwinski <shawn(a)iwin.ski> - 1.7.0-1
- Update to 1.7.0 (RHBZ #1746998)
- Disable bootstrap so tests run by default
- Conditionally use PHPUnit 7
* Thu Jan 30 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.4.0-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
* Fri Jul 26 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.4.0-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1746998 - php-webmozart-assert-1.7.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1746998
--------------------------------------------------------------------------------
================================================================================
python-pyspf-2.0.14-10.el7 (FEDORA-EPEL-2020-08c57e33f8)
Python module and programs for SPF (Sender Policy Framework)
--------------------------------------------------------------------------------
Update Information:
Relax and replace LF with space in SPF records (bug #1573072, pb at bieringer
dot de). Add back python 2 specific patches. ---- Provide both Python 2 and
Python 3 builds of this package. Update to 2.0.14. Please test thoroughly,
breakage is expected.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Feb 23 2020 Bojan Smojver <bojan(a)rexursive.com> - 2.0.14-10
- add python-dns dependency with python 2
* Fri Feb 21 2020 Bojan Smojver <bojan(a)rexursive.com> - 2.0.14-9
- add back patch for some python 2 specific problems
* Fri Feb 21 2020 Bojan Smojver <bojan(a)rexursive.com> - 2.0.14-7
- relax and replace LF with space (bug #1573072, pb at bieringer dot de)
* Tue Feb 18 2020 Bojan Smojver <bojan(a)rexursive.com> - 2.0.14-6
- add patch to remove lifetime argument to dns.resolver.query()
* Mon Feb 17 2020 Bojan Smojver <bojan(a)rexursive.com> - 2.0.14-5
- build default (python2) last
* Mon Feb 17 2020 Bojan Smojver <bojan(a)rexursive.com> - 2.0.14-4
- update to 2.0.14
- build python3 version, while trying to keep the rest as is
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1409470 - Please backport python2/3 combined package to epel7
https://bugzilla.redhat.com/show_bug.cgi?id=1409470
[ 2 ] Bug #1573072 - policyd-spf crashes on buggy SPF record entry instead being more
relaxed
https://bugzilla.redhat.com/show_bug.cgi?id=1573072
--------------------------------------------------------------------------------