https://bugzilla.redhat.com/show_bug.cgi?id=2151502
Bug ID: 2151502
Summary: perl-Marpa-XS: Build in C89 mode
Product: Fedora
Version: rawhide
Status: ASSIGNED
Component: perl-Marpa-XS
Assignee: fweimer(a)redhat.com
Reporter: fweimer(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: jplesnik(a)redhat.com, lkundrak(a)v3.sk,
perl-devel(a)lists.fedoraproject.org
Blocks: 2137516 (PortingToModernCExemptions)
Target Milestone: ---
Classification: Fedora
The sources are written in CWEB. The header file generated from the CWEB input
is incomplete, and the XS module uses implicit function declarations. I
spot-checked and these functions return int, so this hopefully is okay.
Given that this Perl module does not seem to see active development, it doesn't
look like it's worth porting it to C99. Setting the compiler to CC="gcc
-std=gnu89" is properly honored, so implementing the exception is easy.
Referenced Bugs:
https://bugzilla.redhat.com/show_bug.cgi?id=2137516
[Bug 2137516] Porting Fedora to modern C: exemptions
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2151502
https://bugzilla.redhat.com/show_bug.cgi?id=2183554
Bug ID: 2183554
Summary: perl-Math-BigInt-1.999838 is available
Product: Fedora
Version: rawhide
Status: NEW
Component: perl-Math-BigInt
Keywords: FutureFeature, Triaged
Assignee: jplesnik(a)redhat.com
Reporter: upstream-release-monitoring(a)fedoraproject.org
QA Contact: extras-qa(a)fedoraproject.org
CC: jplesnik(a)redhat.com, mspacek(a)redhat.com,
perl-devel(a)lists.fedoraproject.org, ppisar(a)redhat.com
Target Milestone: ---
Classification: Fedora
Releases retrieved: 1.999838
Upstream release that is considered latest: 1.999838
Current version/release in rawhide: 1.9998.37-3.fc38
URL: http://search.cpan.org/dist/Math-BigInt/
Please consult the package updates policy before you issue an update to a
stable branch: https://docs.fedoraproject.org/en-US/fesco/Updates_Policy/
More information about the service that created this bug can be found at:
https://docs.fedoraproject.org/en-US/package-maintainers/Upstream_Release_M…
Please keep in mind that with any upstream change, there may also be packaging
changes that need to be made. Specifically, please remember that it is your
responsibility to review the new version to ensure that the licensing is still
correct and that no non-free or legally problematic items have been added
upstream.
Based on the information from Anitya:
https://release-monitoring.org/project/7954/
To change the monitoring settings for the project, please visit:
https://src.fedoraproject.org/rpms/perl-Math-BigInt
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2183554
https://bugzilla.redhat.com/show_bug.cgi?id=1835360
Bug ID: 1835360
Summary: perl-Email-MIME: rubygem-mail: Out of memory issue
through nested MIME parts [epel-all]
Product: Fedora EPEL
Version: epel7
Status: NEW
Component: perl-Email-MIME
Keywords: Security, SecurityTracking
Severity: medium
Priority: medium
Assignee: tcallawa(a)redhat.com
Reporter: psampaio(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: jose.p.oliveira.oss(a)gmail.com, paul(a)city-fan.org,
perl-devel(a)lists.fedoraproject.org,
rob.myers(a)gtri.gatech.edu, tcallawa(a)redhat.com,
xavier(a)bachelot.org
Target Milestone: ---
Classification: Fedora
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fedora EPEL. While
only one tracking bug has been filed, please correct all affected versions
at the same time. If you need to fix the versions independent of each
other, you may clone this bug as appropriate.
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2164148
Bug ID: 2164148
Summary: CVE-2023-24038 perl-HTML-StripScripts: Handler for
style attribute is vulnerable to ReDoS [fedora-all]
Product: Fedora
Version: 37
Status: NEW
Component: perl-HTML-StripScripts
Keywords: Security, SecurityTracking
Severity: medium
Priority: medium
Assignee: xavier(a)bachelot.org
Reporter: gsuckevi(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: perl-devel(a)lists.fedoraproject.org,
xavier(a)bachelot.org
Target Milestone: ---
Classification: Fedora
More information about this security flaw is available in the following bug:
http://bugzilla.redhat.com/show_bug.cgi?id=2164147
Disclaimer: Community trackers are created by Red Hat Product Security team on
a best effort basis. Package maintainers are required to ascertain if the flaw
indeed affects their package, before starting the update process.
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2164148
https://bugzilla.redhat.com/show_bug.cgi?id=2164149
Bug ID: 2164149
Summary: CVE-2023-24038 perl-HTML-StripScripts: Handler for
style attribute is vulnerable to ReDoS [epel-all]
Product: Fedora EPEL
Version: epel8
Status: NEW
Component: perl-HTML-StripScripts
Keywords: Security, SecurityTracking
Severity: medium
Priority: medium
Assignee: xavier(a)bachelot.org
Reporter: gsuckevi(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: perl-devel(a)lists.fedoraproject.org,
xavier(a)bachelot.org
Target Milestone: ---
Classification: Fedora
More information about this security flaw is available in the following bug:
http://bugzilla.redhat.com/show_bug.cgi?id=2164147
Disclaimer: Community trackers are created by Red Hat Product Security team on
a best effort basis. Package maintainers are required to ascertain if the flaw
indeed affects their package, before starting the update process.
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2164149
https://bugzilla.redhat.com/show_bug.cgi?id=1937653
Bug ID: 1937653
Summary: Upgrade perl-HTTP-OAI to 4.11
Product: Fedora
Version: rawhide
Status: NEW
Component: perl-HTTP-OAI
Assignee: vanoudt(a)gmail.com
Reporter: jplesnik(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: perl-devel(a)lists.fedoraproject.org, vanoudt(a)gmail.com
Target Milestone: ---
Classification: Fedora
Latest Fedora delivers 4.10 version. Upstream released 4.11. When you have free
time, please upgrade it.
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2177932
Bug ID: 2177932
Summary: perl-Net-DNS-1.37 is available
Product: Fedora
Version: rawhide
Status: NEW
Component: perl-Net-DNS
Keywords: FutureFeature, Triaged
Assignee: paul.wouters(a)aiven.io
Reporter: upstream-release-monitoring(a)fedoraproject.org
QA Contact: extras-qa(a)fedoraproject.org
CC: kasal(a)ucw.cz, mspacek(a)redhat.com,
paul.wouters(a)aiven.io,
perl-devel(a)lists.fedoraproject.org,
rstrode(a)redhat.com, sandmann(a)redhat.com
Target Milestone: ---
Classification: Fedora
Releases retrieved: 1.37
Upstream release that is considered latest: 1.37
Current version/release in rawhide: 1.36-2.fc38
URL: http://search.cpan.org/dist/Net-DNS/
Please consult the package updates policy before you issue an update to a
stable branch: https://docs.fedoraproject.org/en-US/fesco/Updates_Policy/
More information about the service that created this bug can be found at:
https://docs.fedoraproject.org/en-US/package-maintainers/Upstream_Release_M…
Please keep in mind that with any upstream change, there may also be packaging
changes that need to be made. Specifically, please remember that it is your
responsibility to review the new version to ensure that the licensing is still
correct and that no non-free or legally problematic items have been added
upstream.
Based on the information from Anitya:
https://release-monitoring.org/project/3147/
To change the monitoring settings for the project, please visit:
https://src.fedoraproject.org/rpms/perl-Net-DNS
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2177932
https://bugzilla.redhat.com/show_bug.cgi?id=2173868
Bug ID: 2173868
Summary: Upgrade perl-OLE-Storage_Lite to 0.22
Product: Fedora
Version: rawhide
URL: https://metacpan.org/release/OLE-Storage_Lite
Status: NEW
Component: perl-OLE-Storage_Lite
Assignee: spotrh(a)gmail.com
Reporter: jplesnik(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: perl-devel(a)lists.fedoraproject.org, spotrh(a)gmail.com
Target Milestone: ---
Classification: Fedora
Latest Fedora delivers 0.20 version. Upstream released 0.22. When you have free
time, please upgrade it.
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2173868
https://bugzilla.redhat.com/show_bug.cgi?id=2154400
Bug ID: 2154400
Summary: Upgrade perl-Geo-Inverse to 0.07
Product: Fedora
Version: rawhide
URL: https://metacpan.org/release/Geo-Inverse
Status: NEW
Component: perl-Geo-Inverse
Assignee: spotrh(a)gmail.com
Reporter: jplesnik(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: jose.p.oliveira.oss(a)gmail.com,
perl-devel(a)lists.fedoraproject.org, spotrh(a)gmail.com
Target Milestone: ---
Classification: Fedora
Latest Fedora delivers 0.05 version. Upstream released 0.07. When you have free
time, please upgrade it.
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2154400
https://bugzilla.redhat.com/show_bug.cgi?id=2154399
Bug ID: 2154399
Summary: Upgrade perl-Geo-Forward to 0.16
Product: Fedora
Version: rawhide
URL: https://metacpan.org/release/Geo-Forward
Status: NEW
Component: perl-Geo-Forward
Assignee: spotrh(a)gmail.com
Reporter: jplesnik(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: jose.p.oliveira.oss(a)gmail.com,
perl-devel(a)lists.fedoraproject.org, spotrh(a)gmail.com
Target Milestone: ---
Classification: Fedora
Latest Fedora delivers 0.14 version. Upstream released 0.16. When you have free
time, please upgrade it.
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2154399