--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2013-3182
2013-02-28 06:20:37
--------------------------------------------------------------------------------
Name : mock
Product : Fedora 18
Version : 1.1.29
Release : 1.fc18
URL : http://fedoraproject.org/wiki/Projects/Mock
Summary : Builds packages inside chroots
Description :
Mock takes an SRPM and builds it in a chroot
--------------------------------------------------------------------------------
Update Information:
main fix is to remove CLONE_NEWPID until we figure out correct usage for mock. This fixes memory hog issues on rawhide kernel
--------------------------------------------------------------------------------
ChangeLog:
* Fri Feb 22 2013 Clark Williams <williams(a)redhat.com> - 1.1.29-1
- move CLONE_NEWUTS to extended unshare options [BZ# 890695]
- make epel-5-* config files safe to eval [BZ# 903686]
- remove CLONE_NEWPID (for now) from unshare(2) call [BZ# 894623]
- initialize package_state_opts so that package_state plugin will work
- change default tests environment to be -i386
- From Tim Woods <timw.fedora(a)gmail.com>
- Fix mockchain repo id calculation [BZ# 880849]
- From Tzafrir Cohen <tzafrir.cohen(a)xorcom.com>
- Fix most bashism in test scripts
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #890695 - Mock fails with "ERROR: Namespace unshare failed."
https://bugzilla.redhat.com/show_bug.cgi?id=890695
[ 2 ] Bug #903686 - mockchain complains about macros entry in epel-5-* configs
https://bugzilla.redhat.com/show_bug.cgi?id=903686
[ 3 ] Bug #894623 - OSError: [Errno 12] Cannot allocate memory / mock broken after latest rawhide upgrade
https://bugzilla.redhat.com/show_bug.cgi?id=894623
[ 4 ] Bug #880849 - mockchain addrepo creates bad repo id
https://bugzilla.redhat.com/show_bug.cgi?id=880849
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update mock' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2013-2992
2013-02-24 07:42:32
--------------------------------------------------------------------------------
Name : seamonkey
Product : Fedora 18
Version : 2.16
Release : 1.fc18
URL : http://www.mozilla.org/projects/seamonkey/
Summary : Web browser, e-mail, news, IRC client, HTML editor
Description :
SeaMonkey is an all-in-one Internet application suite. It includes
a browser, mail/news client, IRC client, JavaScript debugger, and
a tool to inspect the DOM for web pages. It is derived from the
application formerly known as Mozilla Application Suite.
--------------------------------------------------------------------------------
Update Information:
Update to 2.16
Fix CVE-2013-0765, CVE-2013-{0772-0784}
--------------------------------------------------------------------------------
ChangeLog:
* Fri Feb 22 2013 Dmitry Butskoy <Dmitry(a)Butskoy.name> 2.16-1
- update to 2.16
- fix build langpacks
* Tue Feb 5 2013 Dmitry Butskoy <Dmitry(a)Butskoy.name> 2.15.2-1
- update to 2.15.2
* Tue Jan 22 2013 Dmitry Butskoy <Dmitry(a)Butskoy.name> 2.15.1-1
- update to 2.15.1
* Fri Jan 11 2013 Dmitry Butskoy <Dmitry(a)Butskoy.name> 2.15-1
- update to 2.15
- don't try to change global user settings for default browser/mail etc.
- add fix for #304121 (derived from Xulrunner)
* Mon Dec 3 2012 Dmitry Butskoy <Dmitry(a)Butskoy.name> 2.14.1-1
- update to 2.14.1
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #914551 - seamonkey-2.16 is available
https://bugzilla.redhat.com/show_bug.cgi?id=914551
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update seamonkey' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2013-2955
2013-02-24 07:40:25
--------------------------------------------------------------------------------
Name : nginx
Product : Fedora 17
Version : 1.0.15
Release : 9.fc17
URL : http://nginx.org/
Summary : A high performance web server and reverse proxy server
Description :
Nginx is a web server and a reverse proxy server for HTTP, SMTP, POP3 and
IMAP protocols, with a strong focus on high concurrency, performance and low
memory usage.
--------------------------------------------------------------------------------
Update Information:
Make sure nginx directories are not world readable
--------------------------------------------------------------------------------
ChangeLog:
* Fri Feb 22 2013 Jamie Nguyen <jamielinux(a)fedoraproject.org> - 1:1.0.15-9
- make sure nginx directories are not world readable (#913734, #913735)
* Wed Dec 19 2012 Jamie Nguyen <jamielinux(a)fedoraproject.org> - 1:1.0.15-8
- use correct file ownership when rotating log files
* Tue Dec 18 2012 Jamie Nguyen <jamielinux(a)fedoraproject.org> - 1:1.0.15-7
- send correct kill signal and use correct file permissions when rotating
log files (#888225)
- send correct kill signal in nginx-upgrade
* Sun Oct 28 2012 Jamie Nguyen <jamielinux(a)fedoraproject.org> - 1:1.0.15-6
- incorrect bug number in changelog
* Sun Oct 28 2012 Jamie Nguyen <jamielinux(a)fedoraproject.org> - 1:1.0.15-5
- add nginx man page (#870738)
- add nginx-upgrade man page and remove README.fedora
- link to official documentation instead of the community wiki (#870733)
- do not run systemctl try-restart after package upgrade to allow the
administrator to run nginx-upgrade and avoid downtime
- default.conf: add "default_server" to the "listen" directive (#842738)
* Wed May 16 2012 Jamie Nguyen <jamielinux(a)fedoraproject.org> - 1:1.0.15-4
- add nginx-upgrade to replace functionality from the nginx initscript
that was lost after migration to systemd
- add README.fedora to describe usage of nginx-upgrade
- nginx.logrotate: use built-in systemd kill command in postrotate script
- nginx.service: start after syslog.target and network.target
- nginx.service: remove unnecessary references to config file location
- nginx.service: use /bin/kill instead of "/usr/sbin/nginx -s" following
advice from nginx-devel
- nginx.service: use private /tmp
* Mon May 14 2012 Jamie Nguyen <jamielinux(a)fedoraproject.org> - 1:1.0.15-3
- fix incorrect postrotate script in nginx.logrotate
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #913734 - CVE-2013-0337 nginx: world-readable log files
https://bugzilla.redhat.com/show_bug.cgi?id=913734
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update nginx' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2013-2953
2013-02-24 07:40:20
--------------------------------------------------------------------------------
Name : php-pecl-mongo
Product : Fedora 18
Version : 1.3.4
Release : 1.fc18
URL : http://pecl.php.net/package/mongo
Summary : PHP MongoDB database driver
Description :
This package provides an interface for communicating with the MongoDB database
in PHP.
--------------------------------------------------------------------------------
Update Information:
upstream 1.3.4
--------------------------------------------------------------------------------
ChangeLog:
* Sat Feb 23 2013 Christof Damian <christof(a)damian.net> - 1.3.4-1
- upstream 1.3.4
* Thu Feb 14 2013 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> - 1.3.2-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild
* Sun Jan 13 2013 Christof Damian <christof(a)damian.net> - 1.3.2-1
- upstream 1.3.2
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #896477 - php-pecl-mongo-1.3.4 is available
https://bugzilla.redhat.com/show_bug.cgi?id=896477
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update php-pecl-mongo' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2013-3002
2013-02-24 07:43:08
--------------------------------------------------------------------------------
Name : perl-Math-Clipper
Product : Fedora 17
Version : 1.15
Release : 1.fc17
URL : http://search.cpan.org/dist/Math-Clipper/
Summary : Perl wrapper around Clipper library
Description :
Perl module Math::Clipper is a wrapper around a Clipper library
that implements polygon clipping.
--------------------------------------------------------------------------------
Update Information:
Polygon clipping in 2D
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #887913 - Review Request: perl-Math-Clipper - Polygon clipping in 2D
https://bugzilla.redhat.com/show_bug.cgi?id=887913
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update perl-Math-Clipper' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2013-2990
2013-02-24 07:42:27
--------------------------------------------------------------------------------
Name : mate-window-manager
Product : Fedora 17
Version : 1.5.4
Release : 1.fc17
URL : http://mate-desktop.org
Summary : MATE Desktop window manager
Description :
MATE Desktop window manager
--------------------------------------------------------------------------------
Update Information:
mate-window-manager-1.5.4-1.fc17
--------------------------------------------------------------------------------
ChangeLog:
* Fri Feb 22 2013 Dan Mashal <dan.mashal(a)fedoraproject.org> - 1.5.4-1
- Update to latest upstream release
* Mon Feb 18 2013 Dan Mashal <dan.mashal(a)fedoraproject.org> - 1.5.3-4
- Add latest upstream commits
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #914911 - [abrt] mate-window-manager-1.5.3-3.fc18: meta_ui_get_default_window_icon: Process /usr/bin/marco was killed by signal 6 (SIGABRT)
https://bugzilla.redhat.com/show_bug.cgi?id=914911
[ 2 ] Bug #915008 - [abrt] mate-window-manager-1.5.3-3.fc18: g_thread_new: Process /usr/bin/marco was killed by signal 5 (SIGTRAP)
https://bugzilla.redhat.com/show_bug.cgi?id=915008
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update mate-window-manager' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2013-2967
2013-02-24 07:41:02
--------------------------------------------------------------------------------
Name : libmatewnck
Product : Fedora 17
Version : 1.5.1
Release : 1.fc17
URL : http://www.mate-desktop.org
Summary : MATE Desktop Window Navigator Construction Kit libraries
Description :
Window navigator construction Kit for MATE Desktop
--------------------------------------------------------------------------------
Update Information:
latest upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Fri Feb 8 2013 Dan Mashal <dan.mashal(a)fedoraproject.org> - 1.5.1-1
- Update to latest upstream release
- Update configure flags
- Redo BRs to old style
- Add V=1 to make flags
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update libmatewnck' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2013-2889
2013-02-24 07:36:28
--------------------------------------------------------------------------------
Name : task
Product : Fedora 18
Version : 2.1.2
Release : 2.fc18
URL : http://taskwarrior.org
Summary : A command-line to do list manager
Description :
Task is a command-line to do list manager. It has
support for GTD functionality and includes the
following features: tags, colorful tabular output,
reports and graphs, lots of manipulation commands,
low-level API, abbreviations for all commands and
options, multi-user file locking, recurring tasks.
--------------------------------------------------------------------------------
Update Information:
• Changes since 2.0.0: http://taskwarrior.org/projects/taskwarrior/wiki/Changeloghttp://taskwarrior.org/projects/taskwarrior/wiki/Prior_versions
--------------------------------------------------------------------------------
ChangeLog:
* Thu Feb 21 2013 Luke Macken <lmacken(a)redhat.com> - 2.1.2-2
- Build against libuuid instead of using their internal
implementation (#799664)
* Thu Feb 21 2013 Luke Macken <lmacken(a)redhat.com> - 2.1.2-1
- Update to task 2.1.2
* Fri Feb 15 2013 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> - 2.0.0-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #799664 - Build with system libuuid
https://bugzilla.redhat.com/show_bug.cgi?id=799664
[ 2 ] Bug #846403 - Upgrade Taskwarrior to 2.1
https://bugzilla.redhat.com/show_bug.cgi?id=846403
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update task' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2013-2950
2013-02-24 07:40:11
--------------------------------------------------------------------------------
Name : moksha
Product : Fedora 18
Version : 1.0.0
Release : 6.fc18
URL : https://fedorahosted.org/moksha
Summary : A platform for creating real-time web applications
Description :
Moksha is a platform for creating real-time collaborative web applications. It
provides a set of Python and JavaScript API's that make it simple to create
rich applications that can acquire, manipulate, and visualize data from
external services. It is a unified framework build using the best available
open source technologies such as TurboGears2, jQuery, AMQP, and Orbited.
--------------------------------------------------------------------------------
Update Information:
Add a systemd unit file
--------------------------------------------------------------------------------
ChangeLog:
* Wed Feb 20 2013 Jóhann B. Guðmundsson <johannbg(a)fedoraproject.org> - 1.0.0-6
- Inital systemd support
* Thu Feb 14 2013 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> - 1.0.0-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild
* Tue Jan 8 2013 Luke Macken <lmacken(a)redhat.com> - 1.0.0-4
- Fix our apache config for 2.4 (#871430)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #913249 - Provide native systemd unit file for moksha
https://bugzilla.redhat.com/show_bug.cgi?id=913249
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update moksha' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2013-2916
2013-02-24 07:38:04
--------------------------------------------------------------------------------
Name : openstack-keystone
Product : Fedora 18
Version : 2012.2.3
Release : 3.fc18
URL : http://keystone.openstack.org/
Summary : OpenStack Identity Service
Description :
Keystone is a Python implementation of the OpenStack
(http://www.openstack.org) identity service API.
This package contains the Keystone daemon.
--------------------------------------------------------------------------------
Update Information:
security updates: - ensure user and tenant are enabled CVE-2013-0282 - disable XML entity parsing CVE-2013-1664, CVE-2013-1665
--------------------------------------------------------------------------------
ChangeLog:
* Sat Feb 23 2013 Alan Pevec <apevec(a)redhat.com> 2012.2.3-3
- ensure user and tenant are enabled CVE-2013-0282
- disable XML entity parsing CVE-2013-1664, CVE-2013-1665
* Fri Feb 8 2013 Alan Pevec <apevec(a)redhat.com> 2012.2.3-2
- limit parameters and tokens size CVE-2013-0247
* Sat Feb 2 2013 Alan Pevec <apevec(a)redhat.com> 2012.2.3-1
- updated to stable folsom release 2012.2.3
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #910928 - CVE-2013-0282 OpenStack Keystone: EC2-style authentication accepts disabled user/tenants
https://bugzilla.redhat.com/show_bug.cgi?id=910928
[ 2 ] Bug #910221 - CVE-2013-1664 CVE-2013-1665 OpenStack keystone: XML entity parsing
https://bugzilla.redhat.com/show_bug.cgi?id=910221
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update openstack-keystone' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------