The following Fedora 37 Security updates need testing:
Age URL
8
https://bodhi.fedoraproject.org/updates/FEDORA-2022-3b4c68d85d
golang-1.19.4-1.fc37
5
https://bodhi.fedoraproject.org/updates/FEDORA-2022-88772d0a2d
libtar-1.2.20-26.fc37
3
https://bodhi.fedoraproject.org/updates/FEDORA-2022-7e327a20be
containerd-1.6.14-2.fc37 golang-github-containerd-cgroups-1.0.4-3.fc37
moby-engine-20.10.21-1.fc37
3
https://bodhi.fedoraproject.org/updates/FEDORA-2022-62b61a8542
trafficserver-9.1.4-1.fc37
3
https://bodhi.fedoraproject.org/updates/FEDORA-2022-fbf6a320fe
python3.6-3.6.15-15.fc37
3
https://bodhi.fedoraproject.org/updates/FEDORA-2022-d7ee33d4ad curl-7.85.0-5.fc37
0
https://bodhi.fedoraproject.org/updates/FEDORA-2022-fc361cc7b6
OpenImageIO-2.4.6.1-1.fc37
0
https://bodhi.fedoraproject.org/updates/FEDORA-2022-7d2f942be2
w3m-0.5.3-58.git20220429.fc37
The following Fedora 37 Critical Path updates have yet to be approved:
Age URL
52
https://bodhi.fedoraproject.org/updates/FEDORA-2022-700705c81b
unbound-1.17.0-1.fc37
41
https://bodhi.fedoraproject.org/updates/FEDORA-2022-a1bfac29ac
python-rpmautospec-0.3.1-1.fc37
30
https://bodhi.fedoraproject.org/updates/FEDORA-2022-26a1391176
annobin-10.93-1.fc37
15
https://bodhi.fedoraproject.org/updates/FEDORA-2022-28dc37634d
dnsmasq-2.88-1.fc37
12
https://bodhi.fedoraproject.org/updates/FEDORA-2022-bf8feea173 lorax-37.10-1.fc37
8
https://bodhi.fedoraproject.org/updates/FEDORA-2022-d1073ce971
libshout-2.4.6-1.fc37
6
https://bodhi.fedoraproject.org/updates/FEDORA-2022-16b288b12d git-2.39.0-1.fc37
5
https://bodhi.fedoraproject.org/updates/FEDORA-2022-bb36bea121 xen-4.16.3-1.fc37
5
https://bodhi.fedoraproject.org/updates/FEDORA-2022-f44938861b
xorg-x11-server-Xwayland-22.1.7-1.fc37
5
https://bodhi.fedoraproject.org/updates/FEDORA-2022-106a8e01bc
tpm2-tss-3.2.1-1.fc37
5
https://bodhi.fedoraproject.org/updates/FEDORA-2022-2bc7296765 clevis-18-14.fc37
3
https://bodhi.fedoraproject.org/updates/FEDORA-2022-d7ee33d4ad curl-7.85.0-5.fc37
3
https://bodhi.fedoraproject.org/updates/FEDORA-2022-7f86ea7f00
edk2-20221117gitfff6d81270b5-8.fc37
3
https://bodhi.fedoraproject.org/updates/FEDORA-2022-c4efd0aa07
libksba-1.6.3-1.fc37
3
https://bodhi.fedoraproject.org/updates/FEDORA-2022-fc84e3e4d5
selinux-policy-37.17-1.fc37
3
https://bodhi.fedoraproject.org/updates/FEDORA-2022-b5cd15651f
xdg-user-dirs-0.18-1.fc37 xdg-user-dirs-gtk-0.11-1.fc37
3
https://bodhi.fedoraproject.org/updates/FEDORA-2022-984c47cd82
libgusb-0.4.3-1.fc37
3
https://bodhi.fedoraproject.org/updates/FEDORA-2022-13651af329 ethtool-6.1-1.fc37
1
https://bodhi.fedoraproject.org/updates/FEDORA-2022-e63f49c01d
samba-4.17.4-2.fc37
1
https://bodhi.fedoraproject.org/updates/FEDORA-2022-7edcc46973
thunderbird-102.6.0-2.fc37
0
https://bodhi.fedoraproject.org/updates/FEDORA-2022-edda4c3b97
libpwquality-1.4.5-1.fc37
0
https://bodhi.fedoraproject.org/updates/FEDORA-2022-70605fc15f
btrfs-progs-6.1-1.fc37
The following builds have been pushed to Fedora 37 updates-testing
crosswords-puzzle-sets-keesing-3.0-1.fc37
crosswords-puzzle-sets-xword-dl-0.3.0~20220905git5b233eb-1.fc37
gojq-0.12.11-1.fc37
golang-github-spf13-cobra-1.6.1-1.fc37
libretls-3.7.0-1.fc37
netcat-1.219-2.fc37
ocp-0.2.101-1.fc37
python-mysqlclient-2.1.1-2.fc37
python-xword-dl-2022.12.14-1.fc37
rpki-client-8.2-3.fc37
vdr-epg2vdr-1.2.9-1.fc37
webkitgtk-2.38.3-2.fc37
Details about builds:
================================================================================
crosswords-puzzle-sets-keesing-3.0-1.fc37 (FEDORA-2022-957bc931f4)
Dutch puzzle sets from
web.keesing.com for GNOME Crosswords
--------------------------------------------------------------------------------
Update Information:
Initial import; Fixes: RHBZ#2138054
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 24 2022 Davide Cavalca <dcavalca(a)fedoraproject.org> 3.0-1
- Initial import; Fixes: RHBZ#2138054
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2138054 - Review Request: crosswords-puzzle-sets-keesing - Dutch puzzle sets
from
web.keesing.com for GNOME Crosswords
https://bugzilla.redhat.com/show_bug.cgi?id=2138054
--------------------------------------------------------------------------------
================================================================================
crosswords-puzzle-sets-xword-dl-0.3.0~20220905git5b233eb-1.fc37 (FEDORA-2022-b2f57b8d54)
Puzzle Sets from assorted newspapers for GNOME Crosswords
--------------------------------------------------------------------------------
Update Information:
Initial crosswords-puzzle-sets-xword-dl package
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 24 2022 Davide Cavalca <dcavalca(a)fedoraproject.org>
0.3.0~20220905git5b233eb-1
- Initial import; Fixes: RHBZ#2155776
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2155775 - Review Request: python-xword-dl - Download tool for online
crossword puzzles
https://bugzilla.redhat.com/show_bug.cgi?id=2155775
[ 2 ] Bug #2155776 - Review Request: crosswords-puzzle-sets-xword-dl - Puzzle Sets from
assorted newspapers for GNOME Crosswords
https://bugzilla.redhat.com/show_bug.cgi?id=2155776
--------------------------------------------------------------------------------
================================================================================
gojq-0.12.11-1.fc37 (FEDORA-2022-da485b1b2a)
Pure Go implementation of jq
--------------------------------------------------------------------------------
Update Information:
Update to 0.12.11
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 24 2022 Mikel Olasagasti Uranga <mikel(a)olasagasti.info> 0.12.11-1
- Update to 0.12.11 - Closes rhbz#2156134
--------------------------------------------------------------------------------
================================================================================
golang-github-spf13-cobra-1.6.1-1.fc37 (FEDORA-2022-661c2ac6d6)
A Commander for modern Go CLI interactions
--------------------------------------------------------------------------------
Update Information:
Update to 1.6.1
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 24 2022 Mikel Olasagasti Uranga <mikel(a)olasagasti.info> 1.6.1-1
- Update to 1.6.1 - Closes rhbz#2133898
--------------------------------------------------------------------------------
================================================================================
libretls-3.7.0-1.fc37 (FEDORA-2022-f6e640dd82)
Port of libtls from LibreSSL to OpenSSL
--------------------------------------------------------------------------------
Update Information:
- Upgrade to 3.7.0 (#2156116)
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 24 2022 Robert Scheck <robert(a)fedoraproject.org> 3.7.0-1
- Upgrade to 3.7.0 (#2156116)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2156116 - libretls-3.7.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2156116
--------------------------------------------------------------------------------
================================================================================
netcat-1.219-2.fc37 (FEDORA-2022-f6e640dd82)
OpenBSD netcat to read and write data across connections using TCP or UDP
--------------------------------------------------------------------------------
Update Information:
- Upgrade to 3.7.0 (#2156116)
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 24 2022 Robert Scheck <robert(a)fedoraproject.org> 1.219-2
- Rebuilt for libretls 3.7.0
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2156116 - libretls-3.7.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2156116
--------------------------------------------------------------------------------
================================================================================
ocp-0.2.101-1.fc37 (FEDORA-2022-7be3c0c4fb)
Open Cubic Player for MOD/S3M/XM/IT/MIDI music files
--------------------------------------------------------------------------------
Update Information:
update to 0.2.101
--------------------------------------------------------------------------------
ChangeLog:
* Fri Dec 23 2022 Charles R. Anderson <cra(a)alum.wpi.edu> - 0.2.101-1
- update to 0.2.101
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2156109 - ocp-0.2.101 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2156109
--------------------------------------------------------------------------------
================================================================================
python-mysqlclient-2.1.1-2.fc37 (FEDORA-2022-713080ea38)
MySQL/mariaDB database connector for Python
--------------------------------------------------------------------------------
Update Information:
Obsolete and Provide `python-mysql` to fix conflicts between them and allow
upgrades. Update to 2.1.1, fixing a few bugs.
--------------------------------------------------------------------------------
ChangeLog:
* Mon Dec 19 2022 Elliott Sales de Andrade <quantum.analyst(a)gmail.com> - 2.1.1-2
- Provide and Obsolete python3-mysql
* Mon Sep 26 2022 Fabian Affolter <mail(a)fabian-affolter.ch> - 2.1.1-1
- Update to latest upstream release 2.1.1 (closes rhbz#2100010)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2153769 - file /usr/lib64/python3.11/site-packages/MySQLdb/__init__.py from
install of python3-mysqlclient-2.1.0-3.fc37.x86_64 conflicts with file from package
python3-mysql-1.4.6-11.fc37.x86_64
https://bugzilla.redhat.com/show_bug.cgi?id=2153769
--------------------------------------------------------------------------------
================================================================================
python-xword-dl-2022.12.14-1.fc37 (FEDORA-2022-b2f57b8d54)
Download tool for online crossword puzzles
--------------------------------------------------------------------------------
Update Information:
Initial crosswords-puzzle-sets-xword-dl package
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 24 2022 Davide Cavalca <dcavalca(a)fedoraproject.org> 2022.12.14-1
- Initial import; Fixes: RHBZ#2155775
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2155775 - Review Request: python-xword-dl - Download tool for online
crossword puzzles
https://bugzilla.redhat.com/show_bug.cgi?id=2155775
[ 2 ] Bug #2155776 - Review Request: crosswords-puzzle-sets-xword-dl - Puzzle Sets from
assorted newspapers for GNOME Crosswords
https://bugzilla.redhat.com/show_bug.cgi?id=2155776
--------------------------------------------------------------------------------
================================================================================
rpki-client-8.2-3.fc37 (FEDORA-2022-f6e640dd82)
OpenBSD RPKI validator to support BGP Origin Validation
--------------------------------------------------------------------------------
Update Information:
- Upgrade to 3.7.0 (#2156116)
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 24 2022 Robert Scheck <robert(a)fedoraproject.org> 8.2-3
- Rebuilt for libretls 3.7.0
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2156116 - libretls-3.7.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2156116
--------------------------------------------------------------------------------
================================================================================
vdr-epg2vdr-1.2.9-1.fc37 (FEDORA-2022-798863d396)
A plugin to retrieve EPG data from a mysql database into VDR
--------------------------------------------------------------------------------
Update Information:
- Update to 1.2.9 - Add vps.epg2vdr.patch
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 24 2022 Martin Gansser <martinkg(a)fedoraproject.org> - 1.2.9-1
- Update to 1.2.9
- Add vps.epg2vdr.patch
* Wed Dec 14 2022 Martin Gansser <martinkg(a)fedoraproject.org> - 1.2.8-4
- Rebuilt for new VDR API version
* Thu Dec 1 2022 Martin Gansser <martinkg(a)fedoraproject.org> - 1.2.8-3
- Rebuilt for new VDR API version
* Sun Sep 25 2022 Rich Mattes <richmattes(a)gmail.com> - 1.2.8-2
- Rebuild for tinyxml2-9.0.0
--------------------------------------------------------------------------------
================================================================================
webkitgtk-2.38.3-2.fc37 (FEDORA-2022-6bc49e9e54)
GTK web content engine library
--------------------------------------------------------------------------------
Update Information:
Update to 2.38.3: * Fix runtime critical warnings from media player. * Fix
network process crash when fetching website data on ephemeral session. * Fix
the build with Ruby 3.2. * Fix several crashes and rendering issues. *
Security fixes: CVE-2022-42852, CVE-2022-42856, CVE-2022-42867, CVE-2022-46692,
CVE-2022-46698, CVE-2022-46699, CVE-2022-46700
--------------------------------------------------------------------------------
ChangeLog:
* Fri Dec 23 2022 Michael Catanzaro <mcatanzaro(a)redhat.com> 2.38.3-2
- Revert "Fix javascriptcore5 Requires in webkitgtk6.0"
* Thu Dec 22 2022 Michael Catanzaro <mcatanzaro(a)redhat.com> 2.38.3-1
- Update to 2.38.3
* Thu Dec 22 2022 Michael Catanzaro <mcatanzaro(a)redhat.com> 2.38.2-7
- Sabotage debuginfo on s390x
* Thu Dec 22 2022 David King <amigadave(a)amigadave.com> 2.38.2-6
- Fix javascriptcore5 Requires in webkitgtk6.0
* Thu Dec 22 2022 Michael Catanzaro <mcatanzaro(a)redhat.com> 2.38.2-5
- Update comment regarding debuginfo size
* Thu Dec 22 2022 Michael Catanzaro <mcatanzaro(a)redhat.com> 2.38.2-4
- Request 32 GB per vCPU when processing debuginfo
* Thu Dec 22 2022 Michael Catanzaro <mcatanzaro(a)redhat.com> 2.38.2-3
- Experimentally tweak debuginfo generation settings some more
* Thu Dec 22 2022 Michael Catanzaro <mcatanzaro(a)redhat.com> 2.38.2-2
- Adjust %limit_build to request 3 GB of RAM per CPU
--------------------------------------------------------------------------------