The following Fedora EPEL 9 Security updates need testing:
Age URL
5
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-ae31777788
awstats-7.8-9.el9
The following builds have been pushed to Fedora EPEL 9 updates-testing
apt-cacher-ng-3.7.4-2.el9
chromium-109.0.5414.74-1.el9
jello-1.5.5-1.el9
perl-File-KeePass-2.03-30.el9
perl-Sys-Statistics-Linux-0.66-30.el9
tor-0.4.7.13-1.el9
Details about builds:
================================================================================
apt-cacher-ng-3.7.4-2.el9 (FEDORA-EPEL-2023-2c493cf7a8)
Caching proxy for package files from Debian
--------------------------------------------------------------------------------
Update Information:
fixes old bugs present in the EPEL7 upload
--------------------------------------------------------------------------------
ChangeLog:
* Sun Jan 15 2023 Jitka Plesnikova <jplesnik(a)redhat.com> - 3.7.4-2
- Drop perl(:MODULE_COMPAT_XXX) dependency
(
https://fedoraproject.org/wiki/Changes/Perl_replace_MODULE_COMPAT_by_gene...)
* Fri Dec 23 2022 Alexandre Detiste <alexandre.detiste(a)gmail.com> - 3.7.4-1
- New upstream release
- Workaround some remapping bug
https://salsa.debian.org/blade/apt-cacher-ng/-/issues/13
- Re-create /run/apt-cacher-ng on boot. (Bugs #1734712, #1738884, #1500085)
- Depends on "xz" for cron job
- Fix 404 error on
http://localhost:3142/acng-doc/html/index.html
[Jonathan Wright]
- use a versionned libsupacng.so
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1500085 - apt-cacher-ng: Privilege escalation via PID file manipulation
[epel-7]
https://bugzilla.redhat.com/show_bug.cgi?id=1500085
[ 2 ] Bug #1734712 - service fail to start because systemd unit file issue
https://bugzilla.redhat.com/show_bug.cgi?id=1734712
[ 3 ] Bug #1738884 - Apt-cacher-ng is not creating runtimedir so, it fails to start
https://bugzilla.redhat.com/show_bug.cgi?id=1738884
--------------------------------------------------------------------------------
================================================================================
chromium-109.0.5414.74-1.el9 (FEDORA-EPEL-2023-457efc1576)
A WebKit (Blink) powered web browser that Google doesn't want you to use
--------------------------------------------------------------------------------
Update Information:
Update to 109.0.5414.74. Fixes the following security issues: CVE-2023-0128,
CVE-2023-0129, CVE-2023-0130, CVE-2023-0131, CVE-2023-0132, CVE-2023-0133,
CVE-2023-0134, CVE-2023-0135, CVE-2023-0136, CVE-2023-0137, CVE-2023-0138,
CVE-2023-0139, CVE-2023-0140,CVE-2023-0141
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jan 11 2023 Than Ngo <than(a)redhat.com> - 109.0.5414.74-1
- update to 109.0.5414.74
* Tue Jan 10 2023 Than Ngo <than(a)redhat.com> - 108.0.5359.124-5
- enable qt backend for el >= 9 and fedora >= 35
- drop i686
- conditional BR on java-1.8.0-openjdk-headless
* Sun Jan 8 2023 Than Ngo <than(a)redhat.com> - 108.0.5359.124-4
- vaapi support for wayland
--------------------------------------------------------------------------------
================================================================================
jello-1.5.5-1.el9 (FEDORA-EPEL-2023-0c2f57f790)
Query JSON at the command line with Python syntax
--------------------------------------------------------------------------------
Update Information:
**20230114 v1.5.5** - Fix schema output to ensure invalid variable names are
enclosed in bracket notation - Fix to allow blank lines when slurping JSON Lines
objects
--------------------------------------------------------------------------------
ChangeLog:
* Sun Jan 15 2023 Benjamin A. Beasley <code(a)musicinmybrain.net> - 1.5.5-1
- Update to 1.5.5 (close RHBZ#2160991)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2160991 - jello-1.5.5 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2160991
--------------------------------------------------------------------------------
================================================================================
perl-File-KeePass-2.03-30.el9 (FEDORA-EPEL-2023-3b5431e033)
Interface to KeePass V1 and V2 database files
--------------------------------------------------------------------------------
Update Information:
This package provides the Perl module File::KeePass, which gives access to
KeePass version 1 (kdb) and version 2 (kdbx) databases.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Jul 22 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.03-30
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
* Wed Jun 1 2022 Jitka Plesnikova <jplesnik(a)redhat.com> - 2.03-29
- Perl 5.36 rebuild
* Fri Jan 21 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.03-28
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
* Thu Jul 22 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.03-27
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
* Fri May 21 2021 Jitka Plesnikova <jplesnik(a)redhat.com> - 2.03-26
- Perl 5.34 rebuild
* Wed Jan 27 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.03-25
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
* Tue Dec 8 2020 Charles R. Anderson <cra(a)alum.wpi.edu> - 2.03-24
- BR make
* Tue Jul 28 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.03-23
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2158290 - Please branch and build perl-File-KeePass for EPEL 9
https://bugzilla.redhat.com/show_bug.cgi?id=2158290
--------------------------------------------------------------------------------
================================================================================
perl-Sys-Statistics-Linux-0.66-30.el9 (FEDORA-EPEL-2023-2a8c8f5286)
Front-end module to collect system statistics
--------------------------------------------------------------------------------
Update Information:
This package contains the Perl module Sys::Statistics::Linux, a front-end module
which gathers different linux system information like processor workload, memory
usage, network and disk statistics and a lot more.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Jan 15 2023 Emmanuel Seyman <emmanuel(a)seyman.fr> - 0.66-30
- Update patch for linux kernel 5.5+
* Fri Jul 22 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.66-29
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
* Tue May 31 2022 Jitka Plesnikova <jplesnik(a)redhat.com> - 0.66-28
- Perl 5.36 rebuild
* Fri Jan 21 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.66-27
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
* Thu Jul 22 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.66-26
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
* Fri May 21 2021 Jitka Plesnikova <jplesnik(a)redhat.com> - 0.66-25
- Perl 5.34 rebuild
* Wed Jan 27 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.66-24
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2160110 - perl-Sys-Statistics-Linux missing in EPEL-9
https://bugzilla.redhat.com/show_bug.cgi?id=2160110
--------------------------------------------------------------------------------
================================================================================
tor-0.4.7.13-1.el9 (FEDORA-EPEL-2023-7b5849f3a6)
Anonymizing overlay network for TCP
--------------------------------------------------------------------------------
Update Information:
update to latest upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Sun Jan 15 2023 Marcel H��rry <mh+fedora(a)scrit.ch> - 0.4.7.13-1
- update to latest upstream release
--------------------------------------------------------------------------------