The following Fedora 38 Security updates need testing:
Age URL
4
https://bodhi.fedoraproject.org/updates/FEDORA-2023-e4e3393396
redis-7.0.11-1.fc38
3
https://bodhi.fedoraproject.org/updates/FEDORA-2023-8cf8786a16
php-laminas-diactoros2-2.25.2-1.fc38
3
https://bodhi.fedoraproject.org/updates/FEDORA-2023-a53ab7c969
python-django-4.0.10-1.fc38
2
https://bodhi.fedoraproject.org/updates/FEDORA-2023-4e094d5297
libsignal-protocol-c-2.3.3-9.fc38
2
https://bodhi.fedoraproject.org/updates/FEDORA-2023-b0811dc6e4
php-nyholm-psr7-1.7.0-1.fc38
2
https://bodhi.fedoraproject.org/updates/FEDORA-2023-035d5910b9
rust-askama-0.11.1-4.fc38 rust-askama_shared-0.12.2-4.fc38 rust-comrak-0.18.0-1.fc38
1
https://bodhi.fedoraproject.org/updates/FEDORA-2023-9e7774da21
kernel-6.2.12-300.fc38
The following Fedora 38 Critical Path updates have yet to be approved:
Age URL
16
https://bodhi.fedoraproject.org/updates/FEDORA-2023-308ef1c754 dnf-4.15.0-1.fc38
12
https://bodhi.fedoraproject.org/updates/FEDORA-2023-3c75dd4ee9
binutils-2.39-11.fc38
9
https://bodhi.fedoraproject.org/updates/FEDORA-2023-ea9222b0f7
perl-Archive-Tar-3.02-1.fc38
4
https://bodhi.fedoraproject.org/updates/FEDORA-2023-bfdcc30eac
libmediainfo-23.03-2.fc38 libzen-0.4.41-1.fc38
3
https://bodhi.fedoraproject.org/updates/FEDORA-2023-2b01ac135e
mariadb-connector-c-3.3.4-2.fc38
3
https://bodhi.fedoraproject.org/updates/FEDORA-2023-298da50f4b
samba-4.18.2-0.fc38
3
https://bodhi.fedoraproject.org/updates/FEDORA-2023-bc7e3718bc cockpit-290-1.fc38
3
https://bodhi.fedoraproject.org/updates/FEDORA-2023-c2bf8d1b50
fedora-appstream-metadata-20230419-1.fc38
3
https://bodhi.fedoraproject.org/updates/FEDORA-2023-36b95f852a clang-16.0.1-1.fc38
clazy-1.11-7.fc38 compiler-rt-16.0.1-1.fc38 flang-16.0.1-1.fc38 libclc-16.0.1-1.fc38
libcxx-16.0.1-1.fc38 libomp-16.0.1-1.fc38 lld-16.0.1-1.fc38 lldb-16.0.1-1.fc38
llvm-16.0.1-1.fc38 llvm-bolt-16.0.1-1.fc38 llvm-libunwind-16.0.1-1.fc38
llvm-test-suite-16.0.1-1.fc38 mlir-16.0.1-1.fc38 python-lit-16.0.1-1.fc38
spirv-llvm-translator-16.0.0-2.fc38
2
https://bodhi.fedoraproject.org/updates/FEDORA-2023-d3dec8c473
setools-4.4.2-1.fc38
1
https://bodhi.fedoraproject.org/updates/FEDORA-2023-9e7774da21
kernel-6.2.12-300.fc38
1
https://bodhi.fedoraproject.org/updates/FEDORA-2023-1701c02e46
xdg-desktop-portal-gnome-44.1-1.fc38
1
https://bodhi.fedoraproject.org/updates/FEDORA-2023-eec1379708 curl-7.87.0-8.fc38
1
https://bodhi.fedoraproject.org/updates/FEDORA-2023-8c3e2fc625
evolution-3.48.1-1.fc38 evolution-data-server-3.48.1-1.fc38 evolution-ews-3.48.1-1.fc38
1
https://bodhi.fedoraproject.org/updates/FEDORA-2023-c708343d0d
gnome-software-44.1-1.fc38
1
https://bodhi.fedoraproject.org/updates/FEDORA-2023-bba11259a9
libqalculate-4.6.1-1.fc38 qalculate-gtk-4.6.1-1.fc38 qalculate-qt-4.6.1-1.fc38
1
https://bodhi.fedoraproject.org/updates/FEDORA-2023-8cd08d20a0
Thunar-4.18.4-3.fc38 thunar-archive-plugin-0.5.1-1.fc38 tumbler-4.18.1-1.fc38
xfconf-4.18.1-1.fc38
0
https://bodhi.fedoraproject.org/updates/FEDORA-2023-860fce48bb
libtirpc-1.3.3-1.rc1.fc38
The following builds have been pushed to Fedora 38 updates-testing
bird-2.13-1.fc38
chromium-112.0.5615.165-1.fc38
dunst-1.9.2-1.fc38
g3kb-switch-1.2-1.fc38
ghc9.4-9.4.5-19.fc38
nginx-mod-modsecurity-1.0.3-3.fc38
nmstate-2.2.10-1.fc38
perl-HTML-Restrict-3.0.2-1.fc38
python-ducc0-0.30.0-1.fc38
python-fastapi-0.95.1-2.fc38
python-graph-tool-2.54-1.fc38
sakura-3.8.7-1.fc38
yacreader-9.12.0-1.fc38
Details about builds:
================================================================================
bird-2.13-1.fc38 (FEDORA-2023-fb87a239b3)
BIRD Internet Routing Daemon
--------------------------------------------------------------------------------
Update Information:
# BIRD 2.13 (2023-04-23) - Babel: IPv4 via IPv6 extension (RFC 9229) -
Babel: Improve authentication on lossy networks - BGP: New `allow bgp_med`
option - BSD: Support for IPv4 routes with IPv6 nexthop on FreeBSD -
Important bugfixes
--------------------------------------------------------------------------------
ChangeLog:
* Sun Apr 23 2023 Robert Scheck <robert(a)fedoraproject.org> - 2.13-1
- Upgrade to 2.13 (#2188938)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2188938 - bird-2.13 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2188938
--------------------------------------------------------------------------------
================================================================================
chromium-112.0.5615.165-1.fc38 (FEDORA-2023-911c060ded)
A WebKit (Blink) powered web browser that Google doesn't want you to use
--------------------------------------------------------------------------------
Update Information:
update to 112.0.5615.165. Fixes the following security issues: CVE-2023-2004
CVE-2023-2133 CVE-2023-2134 CVE-2023-2135 CVE-2023-2136 CVE-2023-2137
CVE-2023-2033 CVE-2023-2136
--------------------------------------------------------------------------------
ChangeLog:
* Thu Apr 20 2023 Than Ngo <than(a)redhat.com> - 112.0.5615.165-1
- update to 112.0.5615.165
--------------------------------------------------------------------------------
================================================================================
dunst-1.9.2-1.fc38 (FEDORA-2023-ad49e14671)
Lightweight and customizable notification-daemon
--------------------------------------------------------------------------------
Update Information:
Update to 1.9.2
--------------------------------------------------------------------------------
ChangeLog:
* Sun Apr 23 2023 Aleksei Bavshin <alebastr(a)fedoraproject.org> - 1.9.2-1
- Update to 1.9.2
--------------------------------------------------------------------------------
================================================================================
g3kb-switch-1.2-1.fc38 (FEDORA-2023-55750e4f66)
CLI keyboard layout switcher for GNOME Shell
--------------------------------------------------------------------------------
Update Information:
Updated to version 1.2. ---- Initial package release.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Apr 23 2023 Pavel Solovev <daron439(a)gmail.com> - 1.2-1
- version 1.2 (rhbz#2188905)
* Wed Apr 19 2023 Pavel Solovev <daron439(a)gmail.com> - 1.1-1
- Initial import (rhbz#2187934).
--------------------------------------------------------------------------------
================================================================================
ghc9.4-9.4.5-19.fc38 (FEDORA-2023-b952009df9)
Glasgow Haskell Compiler
--------------------------------------------------------------------------------
Update Information:
-
https://www.haskell.org/ghc/blog/20230418-ghc-9.4.5-released.html -
https://downloads.haskell.org/~ghc/9.4.5/docs/users_guide/9.4.5-notes.html -
version bumps for base, bytestring, containers, parsec, text
--------------------------------------------------------------------------------
ChangeLog:
* Thu Apr 20 2023 Jens Petersen <petersen(a)redhat.com> - 9.4.5-19
-
https://www.haskell.org/ghc/blog/20230418-ghc-9.4.5-released.html
-
https://downloads.haskell.org/~ghc/9.4.5/docs/users_guide/9.4.5-notes.html
- version bumps for base, bytestring, containers, parsec, text
--------------------------------------------------------------------------------
================================================================================
nginx-mod-modsecurity-1.0.3-3.fc38 (FEDORA-2023-a6f7759b5d)
ModSecurity v3 nginx connector
--------------------------------------------------------------------------------
Update Information:
Rebuild for nginx-1.24.0
--------------------------------------------------------------------------------
ChangeLog:
* Sun Apr 23 2023 Mikel Olasagasti Uranga <mikel(a)olasagasti.info> - 1.0.3-3
- Rebuild for nginx 1.24.0
--------------------------------------------------------------------------------
================================================================================
nmstate-2.2.10-1.fc38 (FEDORA-2023-44bd2f6122)
Declarative network manager API
--------------------------------------------------------------------------------
Update Information:
Upgrade to nmstate 2.2.10
--------------------------------------------------------------------------------
ChangeLog:
* Sun Apr 23 2023 Gris Ge <fge(a)redhat.com> - 2.2.10-1
- Upgrade to 2.2.10
--------------------------------------------------------------------------------
================================================================================
perl-HTML-Restrict-3.0.2-1.fc38 (FEDORA-2023-abe171a194)
Perl module to strip unwanted HTML tags and attributes
--------------------------------------------------------------------------------
Update Information:
# HTML::Restrict 3.0.2 - Add `create_newlines` to replace `BR` and `P` by 1,
resp. 2 newlines
--------------------------------------------------------------------------------
ChangeLog:
* Sun Apr 23 2023 Robert Scheck <robert(a)fedoraproject.org> 3.0.2-1
- Upgrade to 3.0.2 (#2188952)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2188952 - perl-HTML-Restrict-3.0.2 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2188952
--------------------------------------------------------------------------------
================================================================================
python-ducc0-0.30.0-1.fc38 (FEDORA-2023-8dada20763)
Programming tools for numerical computation
--------------------------------------------------------------------------------
Update Information:
Update to 0.30.0
--------------------------------------------------------------------------------
ChangeLog:
* Sun Apr 23 2023 Mattia Verga <mattia.verga(a)proton.me> - 0.30.0-1
- Update to 0.30.0 (fedora#2188272)
--------------------------------------------------------------------------------
================================================================================
python-fastapi-0.95.1-2.fc38 (FEDORA-2023-cc3d8d92cd)
FastAPI framework
--------------------------------------------------------------------------------
Update Information:
Stop patching out the python-orjson dependency
--------------------------------------------------------------------------------
ChangeLog:
* Sun Apr 23 2023 Benjamin A. Beasley <code(a)musicinmybrain.net> - 0.95.1-2
- Stop patching out the python-orjson dependency
--------------------------------------------------------------------------------
================================================================================
python-graph-tool-2.54-1.fc38 (FEDORA-2023-f4abeaa83f)
Efficient network analysis tool written in Python
--------------------------------------------------------------------------------
Update Information:
Update to 2.54 (close RHBZ#2188413)
--------------------------------------------------------------------------------
ChangeLog:
* Sat Apr 22 2023 Benjamin A. Beasley <code(a)musicinmybrain.net> - 2.54-1
- Update to 2.54 (close RHBZ#2188413)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2188413 - python-graph-tool-2.54 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2188413
--------------------------------------------------------------------------------
================================================================================
sakura-3.8.7-1.fc38 (FEDORA-2023-a4ba3bdbb0)
Terminal emulator based on GTK and VTE
--------------------------------------------------------------------------------
Update Information:
- update sakura to 3.8.7 fixes rhbz#2188959
--------------------------------------------------------------------------------
ChangeLog:
* Sun Apr 23 2023 Filipe Rosset <rosset.filipe(a)gmail.com> - 3.8.7-1
- update sakura to 3.8.7 fixes rhbz#2188959
--------------------------------------------------------------------------------
================================================================================
yacreader-9.12.0-1.fc38 (FEDORA-2023-960d8cdc05)
Cross platform comic reader and library manager
--------------------------------------------------------------------------------
Update Information:
Update to latest version
--------------------------------------------------------------------------------
ChangeLog:
* Sun Apr 23 2023 Artem Polishchuk <ego.cordatus(a)gmail.com> - 9.12.0-1
- chore: Update to 9.12.0
--------------------------------------------------------------------------------