Fedora EPEL 7 Update: python-pycxx-7.1.0-1.el7
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2019-56ca034c68
2019-02-09 01:43:13.408149
--------------------------------------------------------------------------------
Name : python-pycxx
Product : Fedora EPEL 7
Version : 7.1.0
Release : 1.el7
URL : http://CXX.sourceforge.net/
Summary : Write Python extensions in C++
Description :
PyCXX is a set of classes to help create extensions of Python in the
C++ language. The first part encapsulates the Python C API taking care
of exceptions and ref counting. The second part supports the building
of Python extension modules in C++.
--------------------------------------------------------------------------------
Update Information:
Update to 7.1.0.
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update python-pycxx' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
5 years, 2 months
[SECURITY] Fedora EPEL 7 Update: moodle-3.1.16-1.el7
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2019-5d3da674fb
2019-02-09 01:43:13.408082
--------------------------------------------------------------------------------
Name : moodle
Product : Fedora EPEL 7
Version : 3.1.16
Release : 1.el7
URL : http://moodle.org/
Summary : A Course Management System
Description :
Moodle is a course management system (CMS) - a free, Open Source software
package designed using sound pedagogical principles, to help educators create
effective online learning communities.
--------------------------------------------------------------------------------
Update Information:
Multiple CVE fixes.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1668074 - CVE-2019-3810 moodle: User full name is not escaped in the un-linked userpix page (MSA-19-0003) [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1668074
[ 2 ] Bug #1668068 - CVE-2019-3809 moodle: Blind SSRF Risk in /badges/mybackpack.php (MSA-19-0002) [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1668068
[ 3 ] Bug #1668066 - CVE-2019-3808 moodle: Manage groups capability is missing XSS risk flag (MSA-19-0001) [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1668066
[ 4 ] Bug #1668065 - CVE-2019-3808 moodle: Manage groups capability is missing XSS risk flag (MSA-19-0001) [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1668065
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update moodle' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
5 years, 2 months
Fedora EPEL 6 Update: geoipupdate-3.1.1-2.el6
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2019-9aaf10bf2e
2019-02-07 23:23:21.679082
--------------------------------------------------------------------------------
Name : geoipupdate
Product : Fedora EPEL 6
Version : 3.1.1
Release : 2.el6
URL : http://dev.maxmind.com/geoip/geoipupdate/
Summary : Update GeoIP2 and GeoIP Legacy binary databases from MaxMind
Description :
The GeoIP Update program performs automatic updates of GeoIP2 and GeoIP
Legacy binary databases.
--------------------------------------------------------------------------------
Update Information:
This update drops support for the free legacy GeoIP databases, which are no
longer being distributed by MaxMind. The geoipupdate-cron6 package is now
obsolete (and not built) as the files it attempts to download are no longer
available. The default configuration is now to download the free GeoIP2
databases, which are supported by libmaxminddb.
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update geoipupdate' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
5 years, 2 months
Fedora EPEL 6 Update: gsoap-2.7.16-7.el6
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2019-43c33ec765
2019-02-07 23:23:21.678977
--------------------------------------------------------------------------------
Name : gsoap
Product : Fedora EPEL 6
Version : 2.7.16
Release : 7.el6
URL : http://gsoap2.sourceforge.net/
Summary : Generator Tools for Coding SOAP/XML Web Services in C and C++
Description :
The gSOAP Web services development toolkit offers an XML to C/C++
language binding to ease the development of SOAP/XML Web services in C
and C/C++.
--------------------------------------------------------------------------------
Update Information:
This update addresses an advisory published by upstream.
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update gsoap' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
5 years, 2 months
[SECURITY] Fedora EPEL 7 Update: python-vine-1.2.0-1.el7
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2019-dd9e038712
2019-02-06 00:58:33.235892
--------------------------------------------------------------------------------
Name : python-vine
Product : Fedora EPEL 7
Version : 1.2.0
Release : 1.el7
URL : http://github.com/celery/vine
Summary : Promises, promises, promises
Description :
Promises, promises, promises
--------------------------------------------------------------------------------
Update Information:
Rebase to Pagure 5.2 to move to a maintained Pagure version and fix
CVE-2017-1002151, as well as many other issues. Upstream changes of note with
the rebase to 5.2: + The UI has been completely redesigned + Theming has
been redesigned, and new themes are included as subpackages + Many new API
endpoints have been added + Reworked how git hooks work to rely on a single
file for efficiency + Expanded functionality included in the `pagure-admin`
command + Support for mirroring in git repositories from outside sources +
Support for merging a PR when the fork was deleted + Support for generating
archives from commits or tags + Support for rebasing pull-requests Consult
the official Pagure documentation on upgrading to Pagure 5 from earlier
versions. As part of this update, celery 4.2.1, kombu 4.2.2, billiard 3.5.0.5,
vine 1.2.0, amqp 2.4.0, and redis-py 2.10.6 are now in EPEL7 to support Pagure.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1474269 - CVE-2017-1002151 pagure: Private repositories accessible through ssh
https://bugzilla.redhat.com/show_bug.cgi?id=1474269
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update python-vine' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
5 years, 2 months
[SECURITY] Fedora EPEL 7 Update: python-redis-2.10.6-1.el7
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2019-dd9e038712
2019-02-06 00:58:33.235892
--------------------------------------------------------------------------------
Name : python-redis
Product : Fedora EPEL 7
Version : 2.10.6
Release : 1.el7
URL : https://github.com/andymccurdy/redis-py
Summary : Python 2 interface to the Redis key-value store
Description :
This is a Python 2 interface to the Redis key-value store.
--------------------------------------------------------------------------------
Update Information:
Rebase to Pagure 5.2 to move to a maintained Pagure version and fix
CVE-2017-1002151, as well as many other issues. Upstream changes of note with
the rebase to 5.2: + The UI has been completely redesigned + Theming has
been redesigned, and new themes are included as subpackages + Many new API
endpoints have been added + Reworked how git hooks work to rely on a single
file for efficiency + Expanded functionality included in the `pagure-admin`
command + Support for mirroring in git repositories from outside sources +
Support for merging a PR when the fork was deleted + Support for generating
archives from commits or tags + Support for rebasing pull-requests Consult
the official Pagure documentation on upgrading to Pagure 5 from earlier
versions. As part of this update, celery 4.2.1, kombu 4.2.2, billiard 3.5.0.5,
vine 1.2.0, amqp 2.4.0, and redis-py 2.10.6 are now in EPEL7 to support Pagure.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1474269 - CVE-2017-1002151 pagure: Private repositories accessible through ssh
https://bugzilla.redhat.com/show_bug.cgi?id=1474269
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update python-redis' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
5 years, 2 months
[SECURITY] Fedora EPEL 7 Update: python-kombu-4.2.2-1.el7
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2019-dd9e038712
2019-02-06 00:58:33.235892
--------------------------------------------------------------------------------
Name : python-kombu
Product : Fedora EPEL 7
Version : 4.2.2
Release : 1.el7
URL : http://kombu.readthedocs.org/
Summary : An AMQP Messaging Framework for Python
Description :
AMQP is the Advanced Message Queuing Protocol, an open standard protocol
for message orientation, queuing, routing, reliability and security.
One of the most popular implementations of AMQP is RabbitMQ.
The aim of Kombu is to make messaging in Python as easy as possible by
providing an idiomatic high-level interface for the AMQP protocol, and
also provide proven and tested solutions to common messaging problems.
--------------------------------------------------------------------------------
Update Information:
Rebase to Pagure 5.2 to move to a maintained Pagure version and fix
CVE-2017-1002151, as well as many other issues. Upstream changes of note with
the rebase to 5.2: + The UI has been completely redesigned + Theming has
been redesigned, and new themes are included as subpackages + Many new API
endpoints have been added + Reworked how git hooks work to rely on a single
file for efficiency + Expanded functionality included in the `pagure-admin`
command + Support for mirroring in git repositories from outside sources +
Support for merging a PR when the fork was deleted + Support for generating
archives from commits or tags + Support for rebasing pull-requests Consult
the official Pagure documentation on upgrading to Pagure 5 from earlier
versions. As part of this update, celery 4.2.1, kombu 4.2.2, billiard 3.5.0.5,
vine 1.2.0, amqp 2.4.0, and redis-py 2.10.6 are now in EPEL7 to support Pagure.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1474269 - CVE-2017-1002151 pagure: Private repositories accessible through ssh
https://bugzilla.redhat.com/show_bug.cgi?id=1474269
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update python-kombu' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
5 years, 2 months
[SECURITY] Fedora EPEL 7 Update: python-billiard-3.5.0.5-1.el7
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2019-dd9e038712
2019-02-06 00:58:33.235892
--------------------------------------------------------------------------------
Name : python-billiard
Product : Fedora EPEL 7
Version : 3.5.0.5
Release : 1.el7
URL : https://github.com/celery/billiard
Summary : Multiprocessing Pool Extensions
Description :
This package contains extensions to the multiprocessing Pool.
--------------------------------------------------------------------------------
Update Information:
Rebase to Pagure 5.2 to move to a maintained Pagure version and fix
CVE-2017-1002151, as well as many other issues. Upstream changes of note with
the rebase to 5.2: + The UI has been completely redesigned + Theming has
been redesigned, and new themes are included as subpackages + Many new API
endpoints have been added + Reworked how git hooks work to rely on a single
file for efficiency + Expanded functionality included in the `pagure-admin`
command + Support for mirroring in git repositories from outside sources +
Support for merging a PR when the fork was deleted + Support for generating
archives from commits or tags + Support for rebasing pull-requests Consult
the official Pagure documentation on upgrading to Pagure 5 from earlier
versions. As part of this update, celery 4.2.1, kombu 4.2.2, billiard 3.5.0.5,
vine 1.2.0, amqp 2.4.0, and redis-py 2.10.6 are now in EPEL7 to support Pagure.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1474269 - CVE-2017-1002151 pagure: Private repositories accessible through ssh
https://bugzilla.redhat.com/show_bug.cgi?id=1474269
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update python-billiard' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
5 years, 2 months
[SECURITY] Fedora EPEL 7 Update: python-celery-4.2.1-3.el7
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2019-dd9e038712
2019-02-06 00:58:33.235892
--------------------------------------------------------------------------------
Name : python-celery
Product : Fedora EPEL 7
Version : 4.2.1
Release : 3.el7
URL : http://celeryproject.org
Summary : Distributed Task Queue
Description :
An open source asynchronous task queue/job queue based on
distributed message passing. It is focused on real-time
operation, but supports scheduling as well.
The execution units, called tasks, are executed concurrently
on one or more worker nodes using multiprocessing, Eventlet
or gevent. Tasks can execute asynchronously (in the background)
or synchronously (wait until ready).
Celery is used in production systems to process millions of
tasks a day.
Celery is written in Python, but the protocol can be implemented
in any language. It can also operate with other languages using
web hooks.
The recommended message broker is RabbitMQ, but limited support
for Redis, Beanstalk, MongoDB, CouchDB and databases
(using SQLAlchemy or the Django ORM) is also available.
--------------------------------------------------------------------------------
Update Information:
Rebase to Pagure 5.2 to move to a maintained Pagure version and fix
CVE-2017-1002151, as well as many other issues. Upstream changes of note with
the rebase to 5.2: + The UI has been completely redesigned + Theming has
been redesigned, and new themes are included as subpackages + Many new API
endpoints have been added + Reworked how git hooks work to rely on a single
file for efficiency + Expanded functionality included in the `pagure-admin`
command + Support for mirroring in git repositories from outside sources +
Support for merging a PR when the fork was deleted + Support for generating
archives from commits or tags + Support for rebasing pull-requests Consult
the official Pagure documentation on upgrading to Pagure 5 from earlier
versions. As part of this update, celery 4.2.1, kombu 4.2.2, billiard 3.5.0.5,
vine 1.2.0, amqp 2.4.0, and redis-py 2.10.6 are now in EPEL7 to support Pagure.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1474269 - CVE-2017-1002151 pagure: Private repositories accessible through ssh
https://bugzilla.redhat.com/show_bug.cgi?id=1474269
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update python-celery' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
5 years, 2 months
[SECURITY] Fedora EPEL 7 Update: python-amqp-2.4.0-1.el7
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2019-dd9e038712
2019-02-06 00:58:33.235892
--------------------------------------------------------------------------------
Name : python-amqp
Product : Fedora EPEL 7
Version : 2.4.0
Release : 1.el7
URL : http://pypi.python.org/pypi/amqp
Summary : Low-level AMQP client for Python (fork of amqplib)
Description :
Low-level AMQP client for Python
This is a fork of amqplib, maintained by the Celery project.
This library should be API compatible with librabbitmq.
--------------------------------------------------------------------------------
Update Information:
Rebase to Pagure 5.2 to move to a maintained Pagure version and fix
CVE-2017-1002151, as well as many other issues. Upstream changes of note with
the rebase to 5.2: + The UI has been completely redesigned + Theming has
been redesigned, and new themes are included as subpackages + Many new API
endpoints have been added + Reworked how git hooks work to rely on a single
file for efficiency + Expanded functionality included in the `pagure-admin`
command + Support for mirroring in git repositories from outside sources +
Support for merging a PR when the fork was deleted + Support for generating
archives from commits or tags + Support for rebasing pull-requests Consult
the official Pagure documentation on upgrading to Pagure 5 from earlier
versions. As part of this update, celery 4.2.1, kombu 4.2.2, billiard 3.5.0.5,
vine 1.2.0, amqp 2.4.0, and redis-py 2.10.6 are now in EPEL7 to support Pagure.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1474269 - CVE-2017-1002151 pagure: Private repositories accessible through ssh
https://bugzilla.redhat.com/show_bug.cgi?id=1474269
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update python-amqp' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
5 years, 2 months