[SECURITY] Fedora EPEL 8 Update: glances-3.3.0.1-1.el8
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2022-0b4d1769c1
2022-10-28 10:41:38.136799
--------------------------------------------------------------------------------
Name : glances
Product : Fedora EPEL 8
Version : 3.3.0.1
Release : 1.el8
URL : https://nicolargo.github.io/glances/
Summary : A cross-platform curses-based monitoring tool
Description :
Glances is a cross-platform monitoring tool which aims to present a large
amount of monitoring information through a curses or Web based interface.
The information dynamically adapts depending on the size of the user interface
It can also work in client/server mode. Remote monitoring could be done via
terminal, Web interface or API (XML-RPC and RESTful). Stats can also be
exported to files or external time/value databases.
Glances is written in Python and uses libraries to grab information from your
system. It is based on an open architecture where developers can add new
plugins or exports modules.
--------------------------------------------------------------------------------
Update Information:
Update to 3.3.0.1 (RHBZ #2135228) and CVE-2022-25844 (RHBZ #2082542)
--------------------------------------------------------------------------------
ChangeLog:
* Thu Oct 20 2022 Ali Erdinc Koroglu <aekoroglu(a)fedoraproject.org> - 3.3.0.1-1
- Update to 3.3.0.1 (RHBZ #2135228) and CVE-2022-25844 (RHBZ #2082542)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2082542 - CVE-2022-25844 glances: angular: Regular Expression Denial of Service (ReDoS) in angular [epel-8]
https://bugzilla.redhat.com/show_bug.cgi?id=2082542
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update glances' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
4 months, 4 weeks
Fedora EPEL 8 Update: mongo-c-driver-1.23.1-1.el8
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2022-5a12a5d7c1
2022-10-28 10:41:38.136783
--------------------------------------------------------------------------------
Name : mongo-c-driver
Product : Fedora EPEL 8
Version : 1.23.1
Release : 1.el8
URL : https://github.com/mongodb/mongo-c-driver
Summary : Client library written in C for MongoDB
Description :
mongo-c-driver is a client library written in C for MongoDB.
--------------------------------------------------------------------------------
Update Information:
**libbson 1.23.1** * No changes since 1.23.0 ---- **libmongoc 1.23.1** Bug
fixes: * Fix connectivity to Atlas Data Lake * Fix crash when dropping a
malformed Queryable Encryption collection.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Oct 20 2022 Remi Collet <remi(a)remirepo.net> - 1.23.1-1
- update to 1.23.1
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update mongo-c-driver' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
4 months, 4 weeks
[SECURITY] Fedora EPEL 8 Update: exim-4.96-3.el8
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2022-984ee8bb5b
2022-10-28 10:41:38.136773
--------------------------------------------------------------------------------
Name : exim
Product : Fedora EPEL 8
Version : 4.96
Release : 3.el8
URL : https://www.exim.org/
Summary : The exim mail transfer agent
Description :
Exim is a message transfer agent (MTA) developed at the University of
Cambridge for use on Unix systems connected to the Internet. It is
freely available under the terms of the GNU General Public Licence. In
style it is similar to Smail 3, but its facilities are more
general. There is a great deal of flexibility in the way mail can be
routed, and there are extensive facilities for checking incoming
mail. Exim can be installed in place of sendmail, although the
configuration of exim is quite different to that of sendmail.
--------------------------------------------------------------------------------
Update Information:
Fixed use after free in regex handler
--------------------------------------------------------------------------------
ChangeLog:
* Wed Oct 19 2022 Jaroslav ��karvada <jskarvad(a)redhat.com> - 4.96-3
- Fixed use after free in regex handler
Resolves: CVE-2022-3559
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2135611 - CVE-2022-3559 exim: use after free in processing of the component Regex Handler
https://bugzilla.redhat.com/show_bug.cgi?id=2135611
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update exim' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
4 months, 4 weeks
Fedora EPEL 8 Update: tio-2.2-1.el8
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2022-d6dab4a117
2022-10-28 10:41:38.136763
--------------------------------------------------------------------------------
Name : tio
Product : Fedora EPEL 8
Version : 2.2
Release : 1.el8
URL : https://tio.github.io/
Summary : Simple TTY terminal I/O application
Description :
Tio is a simple TTY terminal application which features a straightforward
commandline interface to easily connect to TTY devices for basic input/output.
--------------------------------------------------------------------------------
Update Information:
# tio v2.2 * Add shell completion of sub-configuration names Does not
work with sub configuration names that contains one or more white spaces. *
Beautify help * Fix error message * Simplify configfile implementation
--------------------------------------------------------------------------------
ChangeLog:
* Wed Oct 19 2022 Robert Scheck <robert(a)fedoraproject.org> 2.2-1
- Upgrade to 2.2 (#2135930)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2135930 - tio-2.2 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2135930
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update tio' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
4 months, 4 weeks
[SECURITY] Fedora EPEL 8 Update: ipython-7.16.3-1.el8
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2022-48a9da6be8
2022-10-28 10:41:38.136750
--------------------------------------------------------------------------------
Name : ipython
Product : Fedora EPEL 8
Version : 7.16.3
Release : 1.el8
URL : http://ipython.org/
Summary : An enhanced interactive Python shell
Description :
IPython provides a replacement for the interactive Python interpreter with
extra functionality.
Main features:
* Comprehensive object introspection.
* Input history, persistent across sessions.
* Caching of output results during a session with automatically generated
references.
* Readline based name completion.
* Extensible system of 'magic' commands for controlling the environment and
performing many tasks related either to IPython or the operating system.
* Configuration system with easy switching between different setups (simpler
than changing $PYTHONSTARTUP environment variables every time).
* Session logging and reloading.
* Extensible syntax processing for special purpose situations.
* Access to the system shell with user-extensible alias system.
* Easily embeddable in other Python programs.
* Integrated access to the pdb debugger and the Python profiler.
--------------------------------------------------------------------------------
Update Information:
- Update to 7.16.3. - Mitigates CVE-2022-21699 - Resolves: rhbz#2047815 -
Relates: rhbz#2047813
--------------------------------------------------------------------------------
ChangeLog:
* Sun Oct 16 2022 Maxwell G <gotmax(a)e.email> - 7.16.3-1
- Update to 7.16.3.
- Mitigates CVE-2022-21699
- Resolves: rhbz#2047815
- Relates: rhbz#2047813
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2047815 - CVE-2022-21699 ipython: arbitrary code execution by cross user temporary files mismanagment [epel-8]
https://bugzilla.redhat.com/show_bug.cgi?id=2047815
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update ipython' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
4 months, 4 weeks
Fedora EPEL 8 Update: xsecurelock-1.8.0-1.el8
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2022-b57582e892
2022-10-28 10:41:38.136684
--------------------------------------------------------------------------------
Name : xsecurelock
Product : Fedora EPEL 8
Version : 1.8.0
Release : 1.el8
URL : https://github.com/google/xsecurelock
Summary : X11 screen lock utility with security in mind
Description :
XSecureLock is an X11 screen lock utility designed with the primary goal of
security.
--------------------------------------------------------------------------------
Update Information:
Latest upstream release.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Oct 19 2022 Sam P <survient(a)fedoraproject.org> - 1.8.0-1
- Latest upstream release.
* Sat Jul 23 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.7.0-8
- Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
* Tue Jul 12 2022 Sam P <survient(a)fedoraproject.org> - 1.7.0-7
- Added path to xscreensaver binary to build saver_xscreensaver
* Sat Jan 22 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.7.0-6
- Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
* Fri Jul 23 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.7.0-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
* Thu Jan 28 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.7.0-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update xsecurelock' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
4 months, 4 weeks
Fedora EPEL 9 Update: oscillatord-3.4.1-2.el9
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2022-511b3ba94a
2022-10-28 10:39:48.361781
--------------------------------------------------------------------------------
Name : oscillatord
Product : Fedora EPEL 9
Version : 3.4.1
Release : 2.el9
URL : https://github.com/Orolia2s/oscillatord
Summary : Daemon for disciplining an oscillator
Description :
The oscillatord daemon takes input from a PHC clock, reporting once per second,
the phase error between an oscillator and a reference GNSS receiver. For an
example of such a device, please see the ptp_ocp kernel driver.
The phase error read is then used as an input to the disciplining-minipod
library which will compute a setpoint, used by oscillatord to control an
oscillator and discipline it to the 1PPS from a GNSS receiver. Oscillatord also
sets PHC'stime at start up, using Output from a GNSS receiver.
To communicate with GNSS receiver's serial it uses ubloxcfg
--------------------------------------------------------------------------------
Update Information:
Updating oscillatord to 3.4.1
--------------------------------------------------------------------------------
ChangeLog:
* Wed Oct 26 2022 Oleg Obleukhov <leoleovich(a)fedoraproject.org> 3.4.1-1
- Update to 3.4.1
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update oscillatord' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
4 months, 4 weeks
Fedora EPEL 9 Update: disciplining-minipod-3.4.1-2.el9
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2022-511b3ba94a
2022-10-28 10:39:48.361781
--------------------------------------------------------------------------------
Name : disciplining-minipod
Product : Fedora EPEL 9
Version : 3.4.1
Release : 2.el9
URL : https://github.com/Orolia2s/disciplining-minipod
Summary : Disciplining algorithm for Atomic Reference Time Card
Description :
Library providing C disciplining algorithm used with oscillatord to discipling
oscillators using the minipod algorithm developed by Matthias Lorentz.
--------------------------------------------------------------------------------
Update Information:
Updating oscillatord to 3.4.1
--------------------------------------------------------------------------------
ChangeLog:
* Wed Oct 26 2022 Oleg Obleukhov <leoleovich(a)fedoraproject.org> 3.4.1-1
- Update to 3.4.1
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update disciplining-minipod' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
4 months, 4 weeks
Fedora EPEL 9 Update: fedora-license-data-1.6-1.el9
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2022-11c4d1b622
2022-10-28 10:39:48.361772
--------------------------------------------------------------------------------
Name : fedora-license-data
Product : Fedora EPEL 9
Version : 1.6
Release : 1.el9
URL : https://gitlab.com/fedora/legal/fedora-license-data
Summary : Fedora Linux license data
Description :
This project contains information about licenses used in the Fedora
Linux project. Licenses are categorized by their approval or
non-approval and may include additional notes. The data files provide
mappings between the SDPX license expressions and the older Fedora
license abbreviations.
The project also intends to publish the combined license information
in a number of data file formats and provide a package in Fedora for
other projects to reference, such as package building tools and
package checking tools.
The Fedora Legal team is responsible for this project.
--------------------------------------------------------------------------------
Update Information:
new package
--------------------------------------------------------------------------------
ChangeLog:
* Thu Oct 13 2022 Miroslav Such�� <msuchy(a)redhat.com> 1.6-1
- Add MS-LPL as not-allowed
- Add ISO-8879 to not-allowed with big usage exception
- Delete redundant license info from README.md
- Add LicenseRef-Glyphicons as not-allowed
- Add Spencer-99
- Add LicenseRef-UPX as not-allowed
- Add LicenseRef-STREAM as not-allowed
- Simplify overcomplicated condition to evaluate if a license is approved
- Handle licenses with only SPDX identifier in mkjson.py
* Mon Oct 3 2022 msuchy <msuchy(a)redhat.com> - 1.5-1
- 1.5 release
* Mon Sep 19 2022 msuchy <msuchy(a)redhat.com> - 1.4-1
- 1.4 release
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update fedora-license-data' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
4 months, 4 weeks
Fedora EPEL 9 Update: log4c-1.2.4-25.el9
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2022-c14b138be5
2022-10-28 10:39:48.361762
--------------------------------------------------------------------------------
Name : log4c
Product : Fedora EPEL 9
Version : 1.2.4
Release : 25.el9
URL : http://log4c.sourceforge.net/
Summary : Library for logging application messages
Description :
Log4c is a C language library for flexible logging to files, syslog and other
destinations. It is modeled after the Log for Java library (log4j),
staying as close to their API as is reasonable.
--------------------------------------------------------------------------------
Update Information:
First EPEL9 release.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jul 21 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.2.4-25
- Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
* Thu Jan 20 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.2.4-24
- Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
* Thu Jul 22 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.2.4-23
- Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
* Tue Jan 26 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.2.4-22
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
* Tue Jul 28 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.2.4-21
- Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2125827 - request adding log4c to epel 9
https://bugzilla.redhat.com/show_bug.cgi?id=2125827
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update log4c' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
4 months, 4 weeks