The following Fedora 37 Security updates need testing:
Age URL
7
https://bodhi.fedoraproject.org/updates/FEDORA-2022-3b4c68d85d
golang-1.19.4-1.fc37
6
https://bodhi.fedoraproject.org/updates/FEDORA-2022-e139408490
mod_auth_openidc-2.4.12.2-1.fc37
3
https://bodhi.fedoraproject.org/updates/FEDORA-2022-88772d0a2d
libtar-1.2.20-26.fc37
1
https://bodhi.fedoraproject.org/updates/FEDORA-2022-7e327a20be
containerd-1.6.14-2.fc37 golang-github-containerd-cgroups-1.0.4-3.fc37
moby-engine-20.10.21-1.fc37
1
https://bodhi.fedoraproject.org/updates/FEDORA-2022-62b61a8542
trafficserver-9.1.4-1.fc37
1
https://bodhi.fedoraproject.org/updates/FEDORA-2022-fbf6a320fe
python3.6-3.6.15-15.fc37
1
https://bodhi.fedoraproject.org/updates/FEDORA-2022-d7ee33d4ad curl-7.85.0-5.fc37
1
https://bodhi.fedoraproject.org/updates/FEDORA-2022-90162a1d88
kernel-6.0.15-300.fc37
The following Fedora 37 Critical Path updates have yet to be approved:
Age URL
50
https://bodhi.fedoraproject.org/updates/FEDORA-2022-700705c81b
unbound-1.17.0-1.fc37
39
https://bodhi.fedoraproject.org/updates/FEDORA-2022-a1bfac29ac
python-rpmautospec-0.3.1-1.fc37
28
https://bodhi.fedoraproject.org/updates/FEDORA-2022-26a1391176
annobin-10.93-1.fc37
13
https://bodhi.fedoraproject.org/updates/FEDORA-2022-a799145f70 lua-5.4.4-7.fc37
13
https://bodhi.fedoraproject.org/updates/FEDORA-2022-28dc37634d
dnsmasq-2.88-1.fc37
12
https://bodhi.fedoraproject.org/updates/FEDORA-2022-7129e598e3 pungi-4.3.7-1.fc37
10
https://bodhi.fedoraproject.org/updates/FEDORA-2022-bf8feea173 lorax-37.10-1.fc37
9
https://bodhi.fedoraproject.org/updates/FEDORA-2022-f35fa714a0
wireplumber-0.4.13-1.fc37
7
https://bodhi.fedoraproject.org/updates/FEDORA-2022-d1073ce971
libshout-2.4.6-1.fc37
4
https://bodhi.fedoraproject.org/updates/FEDORA-2022-2bc7296765 clevis-18-14.fc37
4
https://bodhi.fedoraproject.org/updates/FEDORA-2022-16b288b12d git-2.39.0-1.fc37
3
https://bodhi.fedoraproject.org/updates/FEDORA-2022-bb36bea121 xen-4.16.3-1.fc37
3
https://bodhi.fedoraproject.org/updates/FEDORA-2022-f44938861b
xorg-x11-server-Xwayland-22.1.7-1.fc37
3
https://bodhi.fedoraproject.org/updates/FEDORA-2022-106a8e01bc
tpm2-tss-3.2.1-1.fc37
1
https://bodhi.fedoraproject.org/updates/FEDORA-2022-90162a1d88
kernel-6.0.15-300.fc37
1
https://bodhi.fedoraproject.org/updates/FEDORA-2022-d7ee33d4ad curl-7.85.0-5.fc37
1
https://bodhi.fedoraproject.org/updates/FEDORA-2022-7f86ea7f00
edk2-20221117gitfff6d81270b5-8.fc37
1
https://bodhi.fedoraproject.org/updates/FEDORA-2022-c4efd0aa07
libksba-1.6.3-1.fc37
1
https://bodhi.fedoraproject.org/updates/FEDORA-2022-fc84e3e4d5
selinux-policy-37.17-1.fc37
1
https://bodhi.fedoraproject.org/updates/FEDORA-2022-b5cd15651f
xdg-user-dirs-0.18-1.fc37 xdg-user-dirs-gtk-0.11-1.fc37
1
https://bodhi.fedoraproject.org/updates/FEDORA-2022-984c47cd82
libgusb-0.4.3-1.fc37
1
https://bodhi.fedoraproject.org/updates/FEDORA-2022-13651af329 ethtool-6.1-1.fc37
The following builds have been pushed to Fedora 37 updates-testing
apptainer-1.1.4-2.fc37
colordiff-1.0.21-1.fc37
composer-2.5.1-1.fc37
conan-2.0.0-0.5.beta7.fc37
cross-gcc-12.2.1-1.fc37
darktable-4.2.0-1.fc37
dosbox-staging-0.80.0-1.fc37
last-resort-fonts-15.000-1.fc37
lollypop-1.4.37-1.fc37
perl-CPAN-Perl-Releases-5.20221220-1.fc37
perl-Module-CoreList-5.20221220-1.fc37
php-laminas-view-2.25.2-1.fc37
python-colcon-defaults-0.2.7-1.fc37
python-colcon-notification-0.2.15-1.fc37
python-glad2-2.0.2-1.fc37
python-pylero-0.0.5-1.fc37
python-sphinx-sitemap-2.3.0-1.fc37
rpki-client-8.2-2.fc37
rubygem-power_assert-2.0.3-200.fc37
rust-devicemapper-0.32.3-1.fc37
samba-4.17.4-2.fc37
thunderbird-102.6.0-2.fc37
trustedqsl-2.6.5-2.fc37
Details about builds:
================================================================================
apptainer-1.1.4-2.fc37 (FEDORA-2022-9fa7b1c600)
Application and environment virtualization formerly known as Singularity
--------------------------------------------------------------------------------
Update Information:
Move Obsoletes: singularity to apptainer-suid, remove Provides: singularity, and
add Provides/Conflicts sif-runtime
--------------------------------------------------------------------------------
ChangeLog:
* Wed Dec 14 2022 Carl George <carl(a)george.computer> - 1.1.4-2
- Add pivot provides/conflict of sif-runtime
- Reduce singularity obsoletes upper bound
- Remove singularity provides due to incompatibilities introduced in apptainer
- Add the word singularity to the summary so it shows up in dnf search results
- Move obsoletes to suid subpackage
--------------------------------------------------------------------------------
================================================================================
colordiff-1.0.21-1.fc37 (FEDORA-2022-592b67ecf5)
Color terminal highlighter for diff files
--------------------------------------------------------------------------------
Update Information:
Update to new version 1.0.21. Improved documentation for command-line options.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 22 2022 Richard Fearn <richardfearn(a)gmail.com> - 1.0.21-1
- Update to 1.0.21 (#2155860)
--------------------------------------------------------------------------------
================================================================================
composer-2.5.1-1.fc37 (FEDORA-2022-0418a022fc)
Dependency Manager for PHP
--------------------------------------------------------------------------------
Update Information:
**Version 2.5.1** - 2022-12-22 * Fixed ClassLoader regression which made it
fail if serialized (e.g. within PHPUnit process isolation) (#11237) * Fixed preg
type error in svn version guessing (#11231) ---- **Version 2.5.0** -
2022-12-20 * BC Warning: To prevent abuse of our includeFile() function it is
now gone, it was not part of the official API but may still cause issues if some
code incorrectly relied on it (#11015) * Improved version guessing of
`require` command to use the dependency resolution result instead of using the
latest available version (except if you run with --no-update) (#11160) *
Improved version selection in `archive` command (#11230) * Added
autocompletion of config option names in the `config` command (#11130) * Added
support for writing [custom commands as Command
classes](https://getcomposer.org/doc/articles/scripts.md#writing-custom-
commands) (#11151) * Added hard failure when installing from a lock file which
does not satisfy the composer.json requirements (#11195) * Added warning when
the outdated command rejects a new package due to unmet platform requirements
(#11113) * Added support for `bump` command to bump `>=x` to `>=installed-
version` (#11179) * Added `--download-only` flag to `install` command to only
download and prime the cache with the package archives (#11041) * Added
autoconfiguration of `github-domains`/`gitlab-domains` when GitHub/GitLab
credentials are configured for a custom domain (#11062) * Added hard failure
(throw) if COMPOSER_AUTH is present and malformed JSON (#11085) * Added
interactive prompt to `run-script` and `exec` commands if run without any
argument (#11157) * Added interactive prompt where to store credentials when a
project-local auth.json exists (#11188) * Fixed full disk warning to be shown
when less than 100MiB is available (#11190) * Fixed cache keys to allow `_` to
avoid conflicts between package names like `a-b` and `a_b` (#11229) * Fixed
docker compatibility by making paths more portable even if the project is
installed at `/` (#11169)
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 22 2022 Remi Collet <remi(a)remirepo.net> - 2.5.1-1
- update to 2.5.1
* Tue Dec 20 2022 Remi Collet <remi(a)remirepo.net> - 2.5.0-1
- update to 2.5.0
--------------------------------------------------------------------------------
================================================================================
conan-2.0.0-0.5.beta7.fc37 (FEDORA-2022-680d513454)
Open-source C/C++ package manager
--------------------------------------------------------------------------------
Update Information:
Updated to version 2.0.0-beta7.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 22 2022 Vitaly Zaitsev <vitaly(a)easycoding.org> - 2.0.0-0.5.beta7
- Updated to version 2.0.0-beta7.
--------------------------------------------------------------------------------
================================================================================
cross-gcc-12.2.1-1.fc37 (FEDORA-2022-54eb61c5c0)
Cross C compiler
--------------------------------------------------------------------------------
Update Information:
Update to 12.2.1 GA release
--------------------------------------------------------------------------------
ChangeLog:
* Tue Aug 30 2022 Dan Hor��k <dan[at]danny.cz> - 12.2.1-1
- Update to 12.2.1 GA release
- Add Requires for plugin development (rhbz#2121894)
--------------------------------------------------------------------------------
================================================================================
darktable-4.2.0-1.fc37 (FEDORA-2022-af1c58e9c7)
Utility to organize and develop raw images
--------------------------------------------------------------------------------
Update Information:
4.2.0 release
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 22 2022 Germano Massullo <germano.massullo(a)gmail.com> - 4.2.0-1
- 4.2.0 release
- adjusted dependencies
--------------------------------------------------------------------------------
================================================================================
dosbox-staging-0.80.0-1.fc37 (FEDORA-2022-27b2c6bdb9)
DOS/x86 emulator focusing on ease of use
--------------------------------------------------------------------------------
Update Information:
Update to 0.80.0 (rhbz#2155399)
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 22 2022 Otto Liljalaakso <otto.liljalaakso(a)iki.fi> 0.80.0-1
- Update to 0.80.0 (rhbz#2155399)
* Thu Nov 10 2022 Otto Liljalaakso <otto.liljalaakso(a)iki.fi> 0.79.1-4
- Avoid wide globs in %files
* Mon Oct 24 2022 Otto Liljalaakso <otto.liljalaakso(a)iki.fi> 0.79.1-3
- Exclude i686 architecture
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2155399 - dosbox-staging-0.80.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2155399
--------------------------------------------------------------------------------
================================================================================
last-resort-fonts-15.000-1.fc37 (FEDORA-2022-ab52687b97)
Special-purpose font that includes a collection of Unicode characters
--------------------------------------------------------------------------------
Update Information:
Initial packaging
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 20 2022 Parag Nemade <pnemade AT redhat DOT com> - 15.000-1
- Initial packaging
--------------------------------------------------------------------------------
================================================================================
lollypop-1.4.37-1.fc37 (FEDORA-2022-162819d128)
Music player for GNOME
--------------------------------------------------------------------------------
Update Information:
Update to 1.4.37-1
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 22 2022 Martin Gansser <martinkg(a)fedoraproject.org> - 1.4.37-1
- Update to 1.4.37
- Add RR yt-dlp
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2155778 - lollypop-1.4.37 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2155778
--------------------------------------------------------------------------------
================================================================================
perl-CPAN-Perl-Releases-5.20221220-1.fc37 (FEDORA-2022-441c08c2e6)
Mapping Perl releases on CPAN to the location of the tarballs
--------------------------------------------------------------------------------
Update Information:
Updated for v5.37.7
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 22 2022 Jitka Plesnikova <jplesnik(a)redhat.com> - 5.20221220-1
- 5.20221220 bump
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2155345 - perl-CPAN-Perl-Releases-5.20221220 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2155345
--------------------------------------------------------------------------------
================================================================================
perl-Module-CoreList-5.20221220-1.fc37 (FEDORA-2022-d837237b50)
What modules are shipped with versions of perl
--------------------------------------------------------------------------------
Update Information:
Updated for v5.37.7
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 22 2022 Jitka Plesnikova <jplesnik(a)redhat.com> - 1:5.20221220-1
- 5.20221220 bump
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2155351 - perl-Module-CoreList-5.20221220 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2155351
--------------------------------------------------------------------------------
================================================================================
php-laminas-view-2.25.2-1.fc37 (FEDORA-2022-616b6c2f5f)
Laminas Framework View component
--------------------------------------------------------------------------------
Update Information:
**Version 2.25.2** Bug,Documentation * 190: Updates workflow file for docs
build to use DEPLOY_TOKEN instead of wrong DOCS_TOKEN thanks to
@froschdesign ---- **Version 2.25.1** Documentation,Enhancement * 188:
Adds missing description for IDE auto-completion in view scripts thanks to
@froschdesign
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 22 2022 Remi Collet <remi(a)remirepo.net> - 2.25.2-1
- update to 2.25.2
* Wed Dec 21 2022 Remi Collet <remi(a)remirepo.net> - 2.25.1-1
- update to 2.25.1 (no change)
--------------------------------------------------------------------------------
================================================================================
python-colcon-defaults-0.2.7-1.fc37 (FEDORA-2022-7a9845a467)
Extension for colcon to read defaults from a config file
--------------------------------------------------------------------------------
Update Information:
Update to the latest `colcon-defaults` release.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Dec 21 2022 Scott K Logan <logans(a)cottsay.net> - 0.2.7-1
- Update to 0.2.7 (rhbz#2155374)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2155374 - python-colcon-defaults-0.2.7 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2155374
--------------------------------------------------------------------------------
================================================================================
python-colcon-notification-0.2.15-1.fc37 (FEDORA-2022-2b4474c8ed)
Extension for colcon to provide status notifications
--------------------------------------------------------------------------------
Update Information:
Update to the latest `colcon-notification` release.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Dec 21 2022 Scott K Logan <logans(a)cottsay.net> - 0.2.15-1
- Update to 0.2.15 (rhbz#2155375)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2155375 - python-colcon-notification-0.2.15 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2155375
--------------------------------------------------------------------------------
================================================================================
python-glad2-2.0.2-1.fc37 (FEDORA-2022-42703bab66)
Multi-Language GL/GLES/EGL/GLX/WGL Loader-Generator
--------------------------------------------------------------------------------
Update Information:
Initial import of v2 of glad
--------------------------------------------------------------------------------
ChangeLog:
* Wed Dec 21 2022 Elliott Sales de Andrade <quantum.analyst(a)gmail.com> 2.0.2-1
- import #2154631
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2154631 - Review Request: python-glad2 - Multi-Language GL/GLES/EGL/GLX/WGL
Loader-Generator
https://bugzilla.redhat.com/show_bug.cgi?id=2154631
--------------------------------------------------------------------------------
================================================================================
python-pylero-0.0.5-1.fc37 (FEDORA-2022-0bbf028608)
Python SDK for Polarion
--------------------------------------------------------------------------------
Update Information:
python-pylero-0.0.5-1
--------------------------------------------------------------------------------
ChangeLog:
* Wed Dec 21 2022 Wayne Sun <gsun(a)redhat.com> 0.0.5-1
- Update to 0.0.5
--------------------------------------------------------------------------------
================================================================================
python-sphinx-sitemap-2.3.0-1.fc37 (FEDORA-2022-9dd1771615)
Sitemap generator for Sphinx
--------------------------------------------------------------------------------
Update Information:
Changes in version 2.3.0: * Clean up how package versions are handled * Install
pre-commit with isort, black, and flake8
[#35](https://github.com/jdillard/sphinx-sitemap/pull/35) * Improve the wording
of the README to help with issues upgrading to Sphinx 5
[#36](https://github.com/jdillard/sphinx-sitemap/pull/36) * Follow correct
format for multilingual sitemaps [#38](https://github.com/jdillard/sphinx-
sitemap/pull/38) * Update the build process
[#39](https://github.com/jdillard/sphinx-sitemap/pull/39) * Add testing
infrastructure [#41](https://github.com/jdillard/sphinx-sitemap/pull/41)
[#42](https://github.com/jdillard/sphinx-sitemap/pull/42) * Use logging for all
logging messages [#40](https://github.com/jdillard/sphinx-sitemap/pull/40)
--------------------------------------------------------------------------------
ChangeLog:
* Wed Dec 21 2022 Jerry James <loganjerry(a)gmail.com> - 2.3.0-1
- Version 2.3.0
- Test with pytest
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2155688 - python-sphinx-sitemap-2.3.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2155688
--------------------------------------------------------------------------------
================================================================================
rpki-client-8.2-2.fc37 (FEDORA-2022-3db4702f04)
OpenBSD RPKI validator to support BGP Origin Validation
--------------------------------------------------------------------------------
Update Information:
- Added upstream patch for `AF_INET6` support in `inet_net_pton()`
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 22 2022 Robert Scheck <robert(a)fedoraproject.org> 8.2-2
- Added upstream patch for AF_INET6 support in inet_net_pton()
--------------------------------------------------------------------------------
================================================================================
rubygem-power_assert-2.0.3-200.fc37 (FEDORA-2022-3552640a26)
Power Assert for Ruby
--------------------------------------------------------------------------------
Update Information:
New version 2.0.3 is released.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 22 2022 Mamoru TASAKA <mtasaka(a)fedoraproject.org> - 2.0.3-200
- 2.0.3
--------------------------------------------------------------------------------
================================================================================
rust-devicemapper-0.32.3-1.fc37 (FEDORA-2022-c1ec9ab0e4)
Library for using Linux device mapper
--------------------------------------------------------------------------------
Update Information:
Update to version 0.32.3
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
================================================================================
samba-4.17.4-2.fc37 (FEDORA-2022-e63f49c01d)
Server and Client software to interoperate with Windows machines
--------------------------------------------------------------------------------
Update Information:
Always add epoch to samba_depver to fix osci.brew-build.rpmdeplint.functional
---- Create a samba-dcerpc sub-package
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 22 2022 Pavel Filipensk�� <pfilipen(a)redhat.com> - 4.17.4-2
- Always add epoch to samba_depver to fix osci.brew-build.rpmdeplint.functional
- Create package dc-libs also for 'non-dc build'
* Tue Dec 20 2022 Pavel Filipensk�� <pfilipen(a)redhat.com> - 4.17.4-1
- Fix '--without dc' build: delete libauth4-samba4.so
* Mon Dec 19 2022 Pavel Filipensk�� <pfilipen(a)redhat.com> - 4.17.4-1
- Create a samba-dcerpc sub-package
- Fix package installation without samba and samba-dc package
--------------------------------------------------------------------------------
================================================================================
thunderbird-102.6.0-2.fc37 (FEDORA-2022-7edcc46973)
Mozilla Thunderbird mail/newsgroup client
--------------------------------------------------------------------------------
Update Information:
- Backport mozbz#1804877 - use xdg_activation protocol and try to focus external
Wayland application opened by thunderbird.
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
================================================================================
trustedqsl-2.6.5-2.fc37 (FEDORA-2022-0e5f0205b8)
Tool for digitally signing Amateur Radio QSO records
--------------------------------------------------------------------------------
Update Information:
Rebuild for updated wxGTK.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 22 2022 Richard Shaw <hobbes1069(a)gmail.com> - 2.6.5-2
- Rebuild for updated wxGTK.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2154622 - TrustedQSL Exits Immediately with Dependency Error
https://bugzilla.redhat.com/show_bug.cgi?id=2154622
--------------------------------------------------------------------------------