The following Fedora 28 Security updates need testing:
Age URL
66
https://bodhi.fedoraproject.org/updates/FEDORA-2018-d510cfd7eb
jgraphx-3.6.0.0-6.fc28
38
https://bodhi.fedoraproject.org/updates/FEDORA-2018-c75a37ae9b
blktrace-1.2.0-6.fc28
26
https://bodhi.fedoraproject.org/updates/FEDORA-2018-202c536f70
gifsicle-1.91-1.fc28
20
https://bodhi.fedoraproject.org/updates/FEDORA-2018-52ee188215
cobbler-2.8.3-2.fc28
16
https://bodhi.fedoraproject.org/updates/FEDORA-2018-d7aeaa74da
nodejs-brace-expansion-1.1.11-1.fc28
14
https://bodhi.fedoraproject.org/updates/FEDORA-2018-bc073fdc1a
nodejs-atob-2.1.1-1.fc28
9
https://bodhi.fedoraproject.org/updates/FEDORA-2018-57a9f93beb
sox-14.4.2.0-22.fc28
7
https://bodhi.fedoraproject.org/updates/FEDORA-2018-4e088b6d7c
perl-Archive-Tar-2.28-1.fc28
7
https://bodhi.fedoraproject.org/updates/FEDORA-2018-9dd3f7c013
unrtf-0.21.9-8.fc28
7
https://bodhi.fedoraproject.org/updates/FEDORA-2018-5f30937bed nikto-2.1.6-1.fc28
7
https://bodhi.fedoraproject.org/updates/FEDORA-2018-049dee041d
mupdf-1.13.0-8.fc28
6
https://bodhi.fedoraproject.org/updates/FEDORA-2018-3dc16842e2 gnupg2-2.2.8-1.fc28
libgpg-error-1.31-1.fc28
5
https://bodhi.fedoraproject.org/updates/FEDORA-2018-cc86e5bc77
mingw-libtiff-4.0.9-1.fc28
5
https://bodhi.fedoraproject.org/updates/FEDORA-2018-aed26fc705 ppp-2.4.7-22.fc28
5
https://bodhi.fedoraproject.org/updates/FEDORA-2018-7c2e288c5f
timidity++-2.14.0-16.fc28
4
https://bodhi.fedoraproject.org/updates/FEDORA-2018-a5940771ff
cri-o-1.10.2-1.git1ffcbb6.fc28
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-31f5fe58f7
redis-4.0.10-1.fc28
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-6e759af8fb
matrix-synapse-0.31.2-1.fc28 python-prometheus_client-0.2.0-1.fc28
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-6d87dc56e0
libgxps-0.3.0-5.fc28
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-866bd0e3c2
dcraw-9.28.0-1.fc28
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-f972c1b36e
python-XStatic-jquery-ui-1.12.0.1-2.fc28
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-a4bb79ea75
thunderbird-enigmail-2.0.7-1.fc28
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-3f61c5cf7c
rubygem-sinatra-2.0.0-4.fc28
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-a89844963c pass-1.7.2-1.fc28
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-0e72ef852a
libjpeg-turbo-1.5.3-5.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-2513b888a4
mariadb-10.2.15-2.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-f59d961d7b
nodejs-8.11.3-1.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-5bd16d6143
podofo-0.9.5-9.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-578fa05659
mingw-podofo-0.9.5-6.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-d3cb6f113c xen-4.10.1-4.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-a4e13742b4
gnupg-1.4.23-1.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-1a6e6196b9
ansible-2.5.5-2.fc28
The following Fedora 28 Critical Path updates have yet to be approved:
Age URL
16
https://bodhi.fedoraproject.org/updates/FEDORA-2018-80b606cb29
seabios-1.11.1-1.fc28
14
https://bodhi.fedoraproject.org/updates/FEDORA-2018-94ac0eace1
iproute-4.16.0-1.fc28
12
https://bodhi.fedoraproject.org/updates/FEDORA-2018-e9e11463bd brltty-5.6-19.fc28
10
https://bodhi.fedoraproject.org/updates/FEDORA-2018-38d2c74097 nss-3.37.3-1.1.fc28
nss-softokn-3.37.3-1.1.fc28 nss-util-3.37.3-1.0.fc28
6
https://bodhi.fedoraproject.org/updates/FEDORA-2018-3dc16842e2 gnupg2-2.2.8-1.fc28
libgpg-error-1.31-1.fc28
5
https://bodhi.fedoraproject.org/updates/FEDORA-2018-aed26fc705 ppp-2.4.7-22.fc28
5
https://bodhi.fedoraproject.org/updates/FEDORA-2018-4b709ebc5e lorax-28.15-1.fc28
5
https://bodhi.fedoraproject.org/updates/FEDORA-2018-940ac53cb8 sssd-1.16.2-1.fc28
4
https://bodhi.fedoraproject.org/updates/FEDORA-2018-6a92e4f47a
glusterfs-4.1.0-1.fc28
4
https://bodhi.fedoraproject.org/updates/FEDORA-2018-2013948e52
osinfo-db-20180612-1.fc28
3
https://bodhi.fedoraproject.org/updates/FEDORA-2018-9d3adb3c1f
libgweather-3.28.2-1.fc28
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-0e72ef852a
libjpeg-turbo-1.5.3-5.fc28
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-972fa3841b git-2.17.1-3.fc28
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-8683c6de9b
totem-pl-parser-3.26.1-1.fc28
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-0075e05ecb
perl-Time-Local-1.280-1.fc28
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-6d87dc56e0
libgxps-0.3.0-5.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-9cf7798bfb
ethtool-4.17-1.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-25028bbbc8
NetworkManager-1.10.10-1.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-a4e13742b4
gnupg-1.4.23-1.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-d3cb6f113c xen-4.10.1-4.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-e990e2860d
flatpak-0.11.8.3-1.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-62c6d427d4 krb5-1.16.1-7.fc28
The following builds have been pushed to Fedora 28 updates-testing
R-spelling-1.1-1.fc28
copyq-3.5.0-1.fc28
eclipse-eclemma-3.0.1-1.fc28
kernel-4.16.16-300.fc28
libglvnd-1.0.1-0.7.git5baa1e5.fc28
libmacaroons-0.3.0-1.fc28
mate-polkit-1.20.1-1.fc28
mate-power-manager-1.20.2-1.fc28
mate-screensaver-1.20.1-1.fc28
mesa-18.0.5-1.fc28
pyelftools-0.24-1.fc28
sfxr-1.2.1-7.fc28
Details about builds:
================================================================================
R-spelling-1.1-1.fc28 (FEDORA-2018-2a85e54824)
Tools for Spell Checking in R
--------------------------------------------------------------------------------
Update Information:
Initial package of spelling for R
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1591970 - Review Request: R-spelling - Tools for Spell Checking in R
https://bugzilla.redhat.com/show_bug.cgi?id=1591970
--------------------------------------------------------------------------------
================================================================================
copyq-3.5.0-1.fc28 (FEDORA-2018-721f1086cf)
Advanced clipboard manager
--------------------------------------------------------------------------------
Update Information:
Upstream release rhbz#1592132
--------------------------------------------------------------------------------
ChangeLog:
* Sun Jun 17 2018 Gerald Cox <gbcox(a)fedoraproject.org> - 3.5.0-1
- Upstream release rhbz#1592132
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1592132 - CopyQ - Upstream release v3.5.0
https://bugzilla.redhat.com/show_bug.cgi?id=1592132
--------------------------------------------------------------------------------
================================================================================
eclipse-eclemma-3.0.1-1.fc28 (FEDORA-2018-45b4616848)
Java code coverage tool plugin for Eclipse
--------------------------------------------------------------------------------
Update Information:
Updates to latest upstream version. See upstream release notes:
https://www.eclemma.org/changes.html
--------------------------------------------------------------------------------
ChangeLog:
* Sun Jun 17 2018 Mat Booth <mat.booth(a)redhat.com> - 3.0.1-1
- Update to latest release
--------------------------------------------------------------------------------
================================================================================
kernel-4.16.16-300.fc28 (FEDORA-2018-bb7aab12cb)
The Linux kernel
--------------------------------------------------------------------------------
Update Information:
The v4.16.16 update contains important fixes across the tree.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Jun 17 2018 Jeremy Cline <jcline(a)redhat.com> - 4.16.16-300
- Linux v4.16.16
* Tue Jun 12 2018 Jeremy Cline <jeremy(a)jcline.org>
- Fix a crash in ath10k when bandwidth changes (rhbz 1577106)
- Fix kexec_file_load pefile signature verification (rhbz 1470995)
* Tue Jun 12 2018 Justin M. Forbes <jforbes(a)fedoraproject.org>
- Fix CVE-2018-12232 (rhbz 1590215 1590216)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1577106 - [abrt] rcu_exp_wait_wake: WARNING: CPU: 0 PID: 10705 at
net/mac80211/util.c:1863 ieee80211_reconfig+0x7d/0x12b0 [mac80211]
https://bugzilla.redhat.com/show_bug.cgi?id=1577106
[ 2 ] Bug #1470995 - Can't start Kdump with SecureBoot enabled
https://bugzilla.redhat.com/show_bug.cgi?id=1470995
[ 3 ] Bug #1590216 - CVE-2018-12232 kernel: NULL pointer dereference if close and
fchownat system calls share a socket file descriptor [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1590216
--------------------------------------------------------------------------------
================================================================================
libglvnd-1.0.1-0.7.git5baa1e5.fc28 (FEDORA-2018-bdfc438d3a)
The GL Vendor-Neutral Dispatch library
--------------------------------------------------------------------------------
Update Information:
Mesa 18.0.5, Updated libglvnd (should fix mesa-libglapi/mesa-libGL upgrade
issues)
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jun 14 2018 Adam Jackson <ajax(a)redhat.com> - 1.0.1-0.7.git5baa1e5
- Add another fallback GLX library name
* Thu Apr 26 2018 Adam Jackson <ajax(a)redhat.com> - 1.0.1-0.6.git5baa1e5
- Enable %check for all but ppc64 and s390x, which has known but low-impact
failures
- Simplify %release
--------------------------------------------------------------------------------
================================================================================
libmacaroons-0.3.0-1.fc28 (FEDORA-2018-9e2640da1e)
C library supporting generation and use of macaroons
--------------------------------------------------------------------------------
Update Information:
Initial version of libmacaroons packaged for EPEL7 and FC28. Please verify that
the Python bindings are working by walking through some of the examples at the
upstream homepage:
https://github.com/rescrv/libmacaroons
--------------------------------------------------------------------------------
================================================================================
mate-polkit-1.20.1-1.fc28 (FEDORA-2018-d607ed325d)
Integrates polkit authentication for MATE desktop
--------------------------------------------------------------------------------
Update Information:
- update to new upstream releases
--------------------------------------------------------------------------------
ChangeLog:
* Sat Jun 16 2018 Wolfgang Ulbrich <chat-to-me(a)raveit.de> - 1.20.1-1
- update to 1.20.1 release
--------------------------------------------------------------------------------
================================================================================
mate-power-manager-1.20.2-1.fc28 (FEDORA-2018-d607ed325d)
MATE power management service
--------------------------------------------------------------------------------
Update Information:
- update to new upstream releases
--------------------------------------------------------------------------------
ChangeLog:
* Sat Jun 16 2018 Wolfgang Ulbrich <fedora(a)raveit.de> - 1.20.2-1
- update to 1.20.2
--------------------------------------------------------------------------------
================================================================================
mate-screensaver-1.20.1-1.fc28 (FEDORA-2018-d607ed325d)
MATE Screensaver
--------------------------------------------------------------------------------
Update Information:
- update to new upstream releases
--------------------------------------------------------------------------------
ChangeLog:
* Sat Jun 16 2018 Wolfgang Ulbrich <chat-to-me(a)raveit.de> - 1.20.1-1
- update to 1.20.1 release
--------------------------------------------------------------------------------
================================================================================
mesa-18.0.5-1.fc28 (FEDORA-2018-bdfc438d3a)
Mesa graphics libraries
--------------------------------------------------------------------------------
Update Information:
Mesa 18.0.5, Updated libglvnd (should fix mesa-libglapi/mesa-libGL upgrade
issues)
--------------------------------------------------------------------------------
ChangeLog:
* Fri Jun 15 2018 Adam Jackson <ajax(a)redhat.com> - 18.0.5-1
- Mesa 18.0.5
* Thu Jun 14 2018 Adam Jackson <ajax(a)redhat.com> - 18.0.3-2
- Change the name of the fallback GLX library
* Sat May 12 2018 Peter Robinson <pbrobinson(a)fedoraproject.org> 18.0.3-1
- Mesa 18.0.3
--------------------------------------------------------------------------------
================================================================================
pyelftools-0.24-1.fc28 (FEDORA-2018-8bafaa1f0d)
Pure-Python library for parsing and analyzing ELF files
--------------------------------------------------------------------------------
Update Information:
Update to latest upstream release pyelftools 0.24.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Jun 17 2018 Terje Rosten <terje.rosten(a)ntnu.no> - 0.24-1
- 0.24
- some clean up
- remove naked provide for Fedora 29 and later
- switch to Python 3 for pyreadelf for Fedora 29 and later
* Wed Feb 21 2018 Iryna Shcherbina <ishcherb(a)redhat.com> -
0.22-0.16.git20130619.a1d9681
- Update Python 2 dependency declarations to new packaging standards
(See
https://fedoraproject.org/wiki/FinalizingFedoraSwitchtoPython3)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1592052 - pyelftools is out-of-date and this prevents running pwntools
https://bugzilla.redhat.com/show_bug.cgi?id=1592052
[ 2 ] Bug #1409471 - pyelftools 0.24 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1409471
--------------------------------------------------------------------------------
================================================================================
sfxr-1.2.1-7.fc28 (FEDORA-2018-48cbcd0ff9)
Sound effect generator
--------------------------------------------------------------------------------
Update Information:
- Fix crash on startup
--------------------------------------------------------------------------------
ChangeLog:
* Sat Jun 16 2018 Hans de Goede <hdegoede(a)redhat.com> - 1.2.1-7
- Fix crash on F28+ (rhbz#1591923)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1591923 - sfxr crashes immediately upon start
https://bugzilla.redhat.com/show_bug.cgi?id=1591923
--------------------------------------------------------------------------------