The following Fedora EPEL 7 Security updates need testing: Age URL 24 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3621/php-Smarty-3.1... 20 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3745/tnftp-20141031... 12 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3886/python-request... 11 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3794/polarssl-1.3.9... 9 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3989/cross-binutils... 9 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3995/oath-toolkit-2... 8 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-4045/libvncserver-0... 3 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-4113/kwebkitpart-1.... 3 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-4100/erlang-R16B-03... 2 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-4152/lsyncd-2.1.5-6... 2 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-4154/nodejs-0.10.33... 1 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-4174/python-eyed3-0... 1 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-4170/clamav-0.98.5-... 0 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-4208/drupal7-7.34-1... 0 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-4197/wordpress-4.0....
The following builds have been pushed to Fedora EPEL 7 updates-testing
OpenLP-2.0.3-1.el7 drupal7-7.34-1.el7 edg-mkgridmap-4.0.0-8.el7 epel-release-7-4 glog-0.3.3-8.el7 gr-rds-0-0.4.20141117gitff1ca15.el7 grass-6.4.4-6.el7 html2text-1.3.2a-14.el7 kile-2.1.3-6.el7 mate-themes-1.9.2-1.el7 mate-themes-extras-3.8.1-1.el7 packagedb-cli-2.6-1.el7 perl-Data-Munge-0.091-1.el7 perl-File-ConfigDir-0.014-1.el7 perl-Gtk3-WebKit-0.06-3.el7 perl-Net-SMTPS-0.04-1.el7 python-copr-1.54-1.el7 python-cryptography-vectors-0.6.1-1.el7 python-fedmsg-meta-fedora-infrastructure-0.3.6-1.el7 python-migrate-0.9.2-2.el7 qpid-dispatch-0.2-9.el7 qpid-proton-0.8-1.el7 rsibreak-0.11-11.el7 signpost-core-1.2.1.2-7.el7 supybot-fedmsg-0.0.7-4.el7 svgsalamander-0.1.29-1.el7 wordpress-4.0.1-1.el7 xfce4-systemload-plugin-1.1.2-1.el7
Details about builds:
================================================================================ OpenLP-2.0.3-1.el7 (FEDORA-EPEL-2014-4235) Open source Church presentation and lyrics projection application -------------------------------------------------------------------------------- Update Information:
new build in EPEL7 --------------------------------------------------------------------------------
================================================================================ drupal7-7.34-1.el7 (FEDORA-EPEL-2014-4208) An open-source content-management platform -------------------------------------------------------------------------------- Update Information:
https://www.drupal.org/SA-CORE-2014-006 - Update to upstream 7.33 maintenance release with numerous bug fixes - Update to upstream 7.33 maintenance release with numerous bug fixes - Update to upstream 7.33 maintenance release with numerous bug fixes - Update to upstream 7.33 maintenance release with numerous bug fixes -------------------------------------------------------------------------------- ChangeLog:
* Thu Nov 20 2014 Jon Ciesla limburgher@gmail.com - 7.34-1 - 7.34, DRUPAL-SA-CORE-2014-006. * Tue Nov 11 2014 Peter Borsa peter.borsa@gmail.com - 7.33-1 - Update to upstream 7.33 maintenance release with numerous bug fixes -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1166101 - CVE-2012-6662 drupal7: jquery-ui: XSS vulnerability in default content in Tooltip widget [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1166101 [ 2 ] Bug #1166249 - CVE-2014-9015 drupal7: drupal: session hijacking vulnerability (SA-CORE-2014-006) [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1166249 [ 3 ] Bug #1166250 - CVE-2014-9015 drupal7: drupal: session hijacking vulnerability (SA-CORE-2014-006) [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=1166250 --------------------------------------------------------------------------------
================================================================================ edg-mkgridmap-4.0.0-8.el7 (FEDORA-EPEL-2014-4213) A tool to build the grid map-file from VO servers -------------------------------------------------------------------------------- Update Information:
Added missing dependency on "perl(LWP::Protocol::https)" -------------------------------------------------------------------------------- ChangeLog:
* Fri Nov 21 2014 Alejandro Alvarez Ayllon aalvarez@cern.ch - 4.0.0-8 - Added Requires perl(LWP::Protocol::https) * Sat Jun 7 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 4.0.0-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Sat Aug 3 2013 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 4.0.0-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Wed Jul 17 2013 Petr Pisar ppisar@redhat.com - 4.0.0-5 - Perl 5.18 rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1165991 - edg-mkgridmap missing dependency https://bugzilla.redhat.com/show_bug.cgi?id=1165991 --------------------------------------------------------------------------------
================================================================================ epel-release-7-4 (FEDORA-EPEL-2014-4220) Extra Packages for Enterprise Linux repository configuration -------------------------------------------------------------------------------- Update Information:
This build includes some improvements including: * added epel.macros file (to define %{epel} rpm macro) * added systemd 90-epel.preset -------------------------------------------------------------------------------- ChangeLog:
* Fri Nov 21 2014 Rex Dieter rdieter@fedoraproject.org 7-4 - add systemd 90-epel.preset * Fri Nov 21 2014 Rex Dieter rdieter@fedoraproject.org 7-3 - implement %epel macro --------------------------------------------------------------------------------
================================================================================ glog-0.3.3-8.el7 (FEDORA-EPEL-2014-4198) A C++ application logging library -------------------------------------------------------------------------------- Update Information:
Added glog to EPEL7. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #474193 - Review Request: glog - A C++ application logging library https://bugzilla.redhat.com/show_bug.cgi?id=474193 --------------------------------------------------------------------------------
================================================================================ gr-rds-0-0.4.20141117gitff1ca15.el7 (FEDORA-EPEL-2014-4206) GNU Radio FM RDS Receiver -------------------------------------------------------------------------------- Update Information:
new package --------------------------------------------------------------------------------
================================================================================ grass-6.4.4-6.el7 (FEDORA-EPEL-2014-4218) GRASS - Geographic Resources Analysis Support System -------------------------------------------------------------------------------- Update Information:
Adding grass to EPEL --------------------------------------------------------------------------------
================================================================================ html2text-1.3.2a-14.el7 (FEDORA-EPEL-2014-4193) HTML-to-text converter -------------------------------------------------------------------------------- Update Information:
Newpackage for epel7 --------------------------------------------------------------------------------
================================================================================ kile-2.1.3-6.el7 (FEDORA-EPEL-2014-4216) (La)TeX source editor and TeX shell -------------------------------------------------------------------------------- Update Information:
Initial kile build for epel7, enjoy. --------------------------------------------------------------------------------
================================================================================ mate-themes-1.9.2-1.el7 (FEDORA-EPEL-2014-4091) MATE Desktop themes -------------------------------------------------------------------------------- Update Information:
mate-themes - update to 1.9.2 release - re-work of contrasthigh icon theme - drop low contrast themes - ContrastHighInverse: add gtk3 part - a lot of improvements for all other themes
mate-themes-extras - update to 3.8.1-1 release - Blue-Submarine: re-write of GTK2 theme - Green-Submarine: re-write of GTK2 theme - Smoothly-Black GTK3: latest changes from upstream from 2014-10-02 - Smoothly GTK3: latest changes from upstream from 2014-10-02 - much improvements for GTK2/3, see git log - drop cupertino themes, they don't work witk with GTK3-3.8 -------------------------------------------------------------------------------- ChangeLog:
* Thu Nov 20 2014 Wolfgang Ulbrich chat-to-me@raveit.de - 1.9.2-1 - update to 1.9.2 release * Mon Nov 17 2014 Wolfgang Ulbrich chat-to-me@raveit.de - 1.9.2-0.2.git20141117.9b7d8c3 - update to latest git snapshot from 2014-11-17 - fix menus in ContrastHigh GTK3 - disable fog icon theme, faience-icon-theme is in epel7 now * Sun Nov 16 2014 Wolfgang Ulbrich chat-to-me@raveit.de - 1.9.2-0.1.git20141115.f88336e - update to latest git snapshot from 2014-11-15 - build fog icon theme, needed for mate-themes-extras - re-work of contrasthigh icon theme - drop low contrast themes - ContrastHighInverse: add gtk3 part - a lot of improvements for all other themes --------------------------------------------------------------------------------
================================================================================ mate-themes-extras-3.8.1-1.el7 (FEDORA-EPEL-2014-4091) Extra gtk-2/3 themes for gtk based desktops -------------------------------------------------------------------------------- Update Information:
mate-themes - update to 1.9.2 release - re-work of contrasthigh icon theme - drop low contrast themes - ContrastHighInverse: add gtk3 part - a lot of improvements for all other themes
mate-themes-extras - update to 3.8.1-1 release - Blue-Submarine: re-write of GTK2 theme - Green-Submarine: re-write of GTK2 theme - Smoothly-Black GTK3: latest changes from upstream from 2014-10-02 - Smoothly GTK3: latest changes from upstream from 2014-10-02 - much improvements for GTK2/3, see git log - drop cupertino themes, they don't work witk with GTK3-3.8 -------------------------------------------------------------------------------- ChangeLog:
* Mon Nov 17 2014 Wolfgang Ulbrich chat-to-me@raveit.de - 3.8.1-1 - update to 3.8.1-1 release - Blue-Submarine: re-write of GTK2 theme - Green-Submarine: re-write of GTK2 theme - Smoothly-Black GTK3: latest changes from upstream from 2014-10-02 - Smoothly GTK3: latest changes from upstream from 2014-10-02 - much improvements for GTK2/3, see git log - drop cupertino themes, they don't work witk with GTK3-3.8 --------------------------------------------------------------------------------
================================================================================ packagedb-cli-2.6-1.el7 (FEDORA-EPEL-2014-4188) A CLI for pkgdb -------------------------------------------------------------------------------- Update Information:
* Update to packagedb-cli 2.6 * New structure: use the traditional python module structure instead of two python files * Do one API call for `orphan --retire` * Prevent user from retiring packages that have no dead.package file * Add support for obsoleting ACL requests (Stanislav Ochotnicky) * Enable restricting orphan to a specific user (while specifying more branches) * Enable restricting give to a specific user (while specifying more branches) * Let the unorphan action call the unorphan API endpoint * When listing packages, encode the output as UTF-8 before printing -------------------------------------------------------------------------------- ChangeLog:
* Fri Nov 21 2014 Pierre-Yves Chibon pingou@pingoured.fr - 2.6-1 - Update to 2.6 - New structure: use the traditional python module structure instead of two python files - Do one API call for `orphan --retire` - Prevent user from retiring packages that have no dead.package file - Add support for obsoleting ACL requests (Stanislav Ochotnicky) - Enable restricting orphan to a specific user (while specifying more branches) - Enable restricting give to a specific user (while specifying more branches) - Let the unorphan action call the unorphan API endpoint - When listing packages, encode the output as UTF-8 before printing --------------------------------------------------------------------------------
================================================================================ perl-Data-Munge-0.091-1.el7 (FEDORA-EPEL-2014-4230) Utility functions for working with perl data structures and code references -------------------------------------------------------------------------------- Update Information:
Work around regex bug in perls < 5.18 that causes spurious test failures. -------------------------------------------------------------------------------- ChangeLog:
* Sat Nov 22 2014 David Dick ddick@cpan.org - 0.091-1 - Work around regex bug in perls < 5.18 that causes spurious test failures. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1166382 - perl-Data-Munge-0.091 is available https://bugzilla.redhat.com/show_bug.cgi?id=1166382 --------------------------------------------------------------------------------
================================================================================ perl-File-ConfigDir-0.014-1.el7 (FEDORA-EPEL-2014-4196) Get directories of configuration files -------------------------------------------------------------------------------- Update Information:
Fix typo in pod, update README -------------------------------------------------------------------------------- ChangeLog:
* Sat Nov 22 2014 David Dick ddick@cpan.org - 0.014-1 - Fix typo in pod, update README * Fri Aug 29 2014 Jitka Plesnikova jplesnik@redhat.com - 0.013-2 - Perl 5.20 rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1163231 - perl-File-ConfigDir-0.014 is available https://bugzilla.redhat.com/show_bug.cgi?id=1163231 --------------------------------------------------------------------------------
================================================================================ perl-Gtk3-WebKit-0.06-3.el7 (FEDORA-EPEL-2014-4229) WebKit bindings for Perl -------------------------------------------------------------------------------- Update Information:
Perl 5.20 rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1071204 - Review Request: perl-Gtk3-WebKit - WebKit bindings for Perl https://bugzilla.redhat.com/show_bug.cgi?id=1071204 --------------------------------------------------------------------------------
================================================================================ perl-Net-SMTPS-0.04-1.el7 (FEDORA-EPEL-2014-4217) SSL/STARTTLS support for Net::SMTP -------------------------------------------------------------------------------- Update Information:
Update to Authen::SASL version requirements -------------------------------------------------------------------------------- ChangeLog:
* Sat Nov 22 2014 David Dick ddick@cpan.org - 0.04-1 - Update to Authen::SASL version requirements * Thu Aug 28 2014 Jitka Plesnikova jplesnik@redhat.com - 0.03-3 - Perl 5.20 rebuild * Sat Jun 7 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 0.03-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1159516 - perl-Net-SMTPS-0.04 is available https://bugzilla.redhat.com/show_bug.cgi?id=1159516 --------------------------------------------------------------------------------
================================================================================ python-copr-1.54-1.el7 (FEDORA-EPEL-2014-4223) Python interface for Copr -------------------------------------------------------------------------------- Update Information:
update python-copr to 1.54 -------------------------------------------------------------------------------- ChangeLog:
* Thu Nov 20 2014 Valentin Gologuzov vgologuz@redhat.com 1.54-1 - fixed poor decision abou CoprClient constructor, now it accepts kwargs arguments instead of config dict * Mon Nov 3 2014 Valentin Gologuzov vgologuz@redhat.com 1.53-1 - [python-copr] syntax bugfix * Mon Nov 3 2014 Valentin Gologuzov vgologuz@redhat.com 1.52-1 - [python-copr] removed log config from client * Tue Oct 7 2014 Valentin Gologuzov vgologuz@redhat.com 1.51-1 - [python-copr, cli] test coverage - [python-copr, cli] updating copr-cli to use python-copr - [python-copr] minor fixes, added usage examples to docs * Mon Sep 8 2014 Valentin Gologuzov vgologuz@redhat.com 1.50-1 - [python-copr] fix: we need to support python 2.6 due to epel-6 * Fri Sep 5 2014 Valentin Gologuzov vgologuz@redhat.com 1.49-1 - [python-copr] - bugfix in cancel_build - more docsrtings - using sphinx documentation for rpm build - added instruction to build documentation - re-implemented Response handling - started transition to sphinx documentation - added optional argument `username` to most client methods - removed method `get_build_status` --------------------------------------------------------------------------------
================================================================================ python-cryptography-vectors-0.6.1-1.el7 (FEDORA-EPEL-2014-4224) Test vectors for the cryptography package -------------------------------------------------------------------------------- Update Information:
New package in EPEL7 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1147149 - Review Request: python-cryptography-vectors - Test vectors for the cryptography package https://bugzilla.redhat.com/show_bug.cgi?id=1147149 --------------------------------------------------------------------------------
================================================================================ python-fedmsg-meta-fedora-infrastructure-0.3.6-1.el7 (FEDORA-EPEL-2014-4232) Metadata providers for Fedora Infrastructure's fedmsg deployment -------------------------------------------------------------------------------- Update Information:
New pkgdb conglomerator, new 'hotness' processor. Some bugfixes to fas and mailman messages. -------------------------------------------------------------------------------- ChangeLog:
* Fri Nov 21 2014 Ralph Bean rbean@redhat.com - 0.3.6-1 - Latest upstream with some bugfixes. - Disable network test with patch. --------------------------------------------------------------------------------
================================================================================ python-migrate-0.9.2-2.el7 (FEDORA-EPEL-2014-4212) Schema migration tools for SQLAlchemy -------------------------------------------------------------------------------- Update Information:
- To support the new sqlalchemy 0.9.x (rhbz 1148045) -------------------------------------------------------------------------------- ChangeLog:
* Wed Nov 19 2014 Pádraig Brady pbrady@redhat.com - 0.9.2-2 - build: remove cap on testtools for the moment * Thu Sep 18 2014 Pádraig Brady pbrady@redhat.com - 0.9.2-1 - Latest upstream * Fri Jun 13 2014 Pádraig Brady pbrady@redhat.com - 0.9.1-1 - Latest upstream * Sat Jun 7 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 0.9-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Sat Mar 8 2014 Pádraig Brady pbrady@redhat.com - 0.9-1 - Latest upstream * Tue Mar 4 2014 Pádraig Brady pbrady@redhat.com - 0.8.5.1 - Latest upstream --------------------------------------------------------------------------------
================================================================================ qpid-dispatch-0.2-9.el7 (FEDORA-EPEL-2014-4236) Dispatch router for Qpid -------------------------------------------------------------------------------- Update Information:
Fixed a merge issue that resulted in two patches not being applied. DISPATCH-75 - Removed reference to qdstat.conf from qdstat manpage. -------------------------------------------------------------------------------- ChangeLog:
* Thu Nov 20 2014 Darryl L. Pierce dpierce@redhat.com - 0.2-9 - Fixed a merge issue that resulted in two patches not being applied. - Resolves: BZ#1165691 * Wed Nov 19 2014 Darryl L. Pierce dpierce@redhat.com - 0.2-8 - DISPATCH-75 - Removed reference to qdstat.conf from qdstat manpage. - Include systemd service file for EPEL7 packages. - Brought systemd support up to current Fedora packaging guidelines. - Resolves: BZ#1165691 - Resolves: BZ#1165681 * Sun Aug 17 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 0.2-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1165691 - Man page for qdstat.conf is missing https://bugzilla.redhat.com/show_bug.cgi?id=1165691 [ 2 ] Bug #1165681 - RPMs do not provide a systemd service unit file https://bugzilla.redhat.com/show_bug.cgi?id=1165681 --------------------------------------------------------------------------------
================================================================================ qpid-proton-0.8-1.el7 (FEDORA-EPEL-2014-4207) A high performance, lightweight messaging library -------------------------------------------------------------------------------- Update Information:
Rebased on Proton 0.8. -------------------------------------------------------------------------------- ChangeLog:
* Tue Nov 18 2014 Darryl L. Pierce dpierce@redhat.com - 0.8-1 - Rebased on Proton 0.8. * Sun Aug 17 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 0.7-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ rsibreak-0.11-11.el7 (FEDORA-EPEL-2014-4204) A small utility which bothers you at certain intervals -------------------------------------------------------------------------------- Update Information:
RSIBreak is a small utility which bothers you at certain intervals. The interval and duration of two different timers can be configured. You can use the breaks to stretch out or do the dishes. The aim of this utility is to let you know when it is time to have a break from your computer. This can help people to prevent Repetive Strain Injury.
--------------------------------------------------------------------------------
================================================================================ signpost-core-1.2.1.2-7.el7 (FEDORA-EPEL-2014-4202) A simple, light-weight, and modular OAuth client library for the Java platform -------------------------------------------------------------------------------- Update Information:
Initialise signpost-core on epel7 --------------------------------------------------------------------------------
================================================================================ supybot-fedmsg-0.0.7-4.el7 (FEDORA-EPEL-2014-4210) Plugin for supybot that enables meetbot with fedmsg output. -------------------------------------------------------------------------------- Update Information:
Modernize python macros. Fixes RHBZ#1165916. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1165916 - wrong directory structure https://bugzilla.redhat.com/show_bug.cgi?id=1165916 --------------------------------------------------------------------------------
================================================================================ svgsalamander-0.1.29-1.el7 (FEDORA-EPEL-2014-4200) An SVG engine for Java -------------------------------------------------------------------------------- Update Information:
Update to release 0.1.29 --------------------------------------------------------------------------------
================================================================================ wordpress-4.0.1-1.el7 (FEDORA-EPEL-2014-4197) Blog tool and publishing platform -------------------------------------------------------------------------------- Update Information:
WordPress 4.0.1 Security Release
See: https://wordpress.org/news/2014/11/wordpress-4-0-1/ -------------------------------------------------------------------------------- ChangeLog:
* Fri Nov 21 2014 Remi Collet remi@fedoraproject.org - 4.0.1-1 - WordPress 4.0.1 Security Release - use system php-getid3 when available #1145574 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1166468 - wordpress: security flaws fixed in the 4.0.1 release https://bugzilla.redhat.com/show_bug.cgi?id=1166468 --------------------------------------------------------------------------------
================================================================================ xfce4-systemload-plugin-1.1.2-1.el7 (FEDORA-EPEL-2014-4194) Systemload monitor for the Xfce panel -------------------------------------------------------------------------------- Update Information:
Update to 1.1.2. Fixes bugs #1165421 and #1166890 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1165421 - Bug fixes & improvements up to date https://bugzilla.redhat.com/show_bug.cgi?id=1165421 [ 2 ] Bug #1166890 - broken tooltip for uptime https://bugzilla.redhat.com/show_bug.cgi?id=1166890 --------------------------------------------------------------------------------
epel-devel@lists.fedoraproject.org