The following Fedora 28 Security updates need testing:
Age URL
393
https://bodhi.fedoraproject.org/updates/FEDORA-2018-d510cfd7eb
jgraphx-3.6.0.0-6.fc28
342
https://bodhi.fedoraproject.org/updates/FEDORA-2018-d7aeaa74da
nodejs-brace-expansion-1.1.11-1.fc28
341
https://bodhi.fedoraproject.org/updates/FEDORA-2018-bc073fdc1a
nodejs-atob-2.1.1-1.fc28
217
https://bodhi.fedoraproject.org/updates/FEDORA-2018-cc4b7af297
xerces-c27-2.7.0-28.fc28
169
https://bodhi.fedoraproject.org/updates/FEDORA-2018-aa3752ac3c
nginx-1.14.1-1.fc28
149
https://bodhi.fedoraproject.org/updates/FEDORA-2018-cc86ef9e22 squid-4.4-1.fc28
76
https://bodhi.fedoraproject.org/updates/FEDORA-2019-86412405d5
bind-9.11.5-4.P4.fc28
63
https://bodhi.fedoraproject.org/updates/FEDORA-2019-63029a7692
libu2f-host-1.1.8-1.fc28
43
https://bodhi.fedoraproject.org/updates/FEDORA-2019-ba19e79e9a
thunderbird-60.6.1-1.fc28
41
https://bodhi.fedoraproject.org/updates/FEDORA-2019-0927602e59
chromium-73.0.3683.86-2.fc28
14
https://bodhi.fedoraproject.org/updates/FEDORA-2019-ca4ee3510d
java-11-openjdk-11.0.3.7-1.fc28
12
https://bodhi.fedoraproject.org/updates/FEDORA-2019-e2d5de3342 libqb-1.0.5-1.fc28
9
https://bodhi.fedoraproject.org/updates/FEDORA-2019-9dfd44e1e9
python-gnupg-0.4.4-1.fc28
8
https://bodhi.fedoraproject.org/updates/FEDORA-2019-bab3944fee php-7.2.18-1.fc28
7
https://bodhi.fedoraproject.org/updates/FEDORA-2019-04e7d39ad3
community-mysql-5.7.26-1.fc28
6
https://bodhi.fedoraproject.org/updates/FEDORA-2019-a4ed7400f4
httpd-2.4.39-1.1.fc28
2
https://bodhi.fedoraproject.org/updates/FEDORA-2019-9448fa46f3
php-pecl-imagick-3.4.4-1.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2019-4d93cf2b34
php-typo3-phar-stream-wrapper-3.1.1-1.fc28
The following Fedora 28 Critical Path updates have yet to be approved:
Age URL
149
https://bodhi.fedoraproject.org/updates/FEDORA-2018-9f541b469b
nfs-utils-2.3.3-1.rc2.fc28
112
https://bodhi.fedoraproject.org/updates/FEDORA-2019-78153d357c
totem-pl-parser-3.26.2-1.fc28
104
https://bodhi.fedoraproject.org/updates/FEDORA-2019-bb30467485
ostree-2019.1-2.fc28 rpm-ostree-2019.1-1.fc28
96
https://bodhi.fedoraproject.org/updates/FEDORA-2019-cb4a3023ef
iproute-4.20.0-1.fc28
79
https://bodhi.fedoraproject.org/updates/FEDORA-2019-6c4e362bd0 dhcp-4.3.6-22.fc28
dnsperf-2.2.1-1.fc28 bind-dyndb-ldap-11.1-13.fc28 bind-9.11.5-2.P1.fc28
58
https://bodhi.fedoraproject.org/updates/FEDORA-2019-cb98bf5ace
fedfind-4.2.2-1.fc28 python-productmd-1.20-1.fc28
50
https://bodhi.fedoraproject.org/updates/FEDORA-2019-e60ecc03b4
python-productmd-1.21-1.fc28
43
https://bodhi.fedoraproject.org/updates/FEDORA-2019-ba19e79e9a
thunderbird-60.6.1-1.fc28
35
https://bodhi.fedoraproject.org/updates/FEDORA-2019-ba19af6a58
libldb-1.4.0-5.fc28.1.3.8 samba-4.8.10-0.fc28
21
https://bodhi.fedoraproject.org/updates/FEDORA-2019-bc14eac80e
libblockdev-2.18-2.fc28
15
https://bodhi.fedoraproject.org/updates/FEDORA-2019-9244c8b209
pungi-4.1.36-1.fc28
12
https://bodhi.fedoraproject.org/updates/FEDORA-2019-e2d5de3342 libqb-1.0.5-1.fc28
10
https://bodhi.fedoraproject.org/updates/FEDORA-2019-b3ab59df83 ethtool-5.0-1.fc28
9
https://bodhi.fedoraproject.org/updates/FEDORA-2019-c82d274716 dhcp-4.3.6-23.fc28
7
https://bodhi.fedoraproject.org/updates/FEDORA-2019-3ab1dba357
hwdata-0.323-1.fc28
6
https://bodhi.fedoraproject.org/updates/FEDORA-2019-44ac6082f0 fuse-2.9.9-7.fc28
4
https://bodhi.fedoraproject.org/updates/FEDORA-2019-472a7c38e8
osinfo-db-20190504-1.fc28
2
https://bodhi.fedoraproject.org/updates/FEDORA-2019-0c6a2c61f0 pcre2-10.33-2.fc28
The following builds have been pushed to Fedora 28 updates-testing
R-future-1.13.0-1.fc28
R-processx-3.3.1-1.fc28
ansible-freeipa-0.1.1-1.fc28
beakerlib-1.18-4.fc28
cjdns-20.3-2.fc28
firefox-66.0.5-1.fc28
fotoxx-19.11-1.fc28
freeradius-3.0.19-3.fc28
irclog2html-2.17.2-1.fc28
microcode_ctl-2.1-28.fc28
mosquitto-1.6.1-1.fc28
python-json2table-1.1.5-3.fc28
utop-2.1.0-2.fc28
Details about builds:
================================================================================
R-future-1.13.0-1.fc28 (FEDORA-2019-70c9cc6226)
Unified Parallel and Distributed Processing in R for Everyone
--------------------------------------------------------------------------------
Update Information:
Update to latest version
--------------------------------------------------------------------------------
ChangeLog:
* Wed May 8 2019 Elliott Sales de Andrade <quantum.analyst(a)gmail.com> - 1.13.0-1
- Update to latest version
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1708020 - R-future-1.13.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1708020
--------------------------------------------------------------------------------
================================================================================
R-processx-3.3.1-1.fc28 (FEDORA-2019-bc45de00e4)
Execute and Control System Processes
--------------------------------------------------------------------------------
Update Information:
Update to latest version
--------------------------------------------------------------------------------
ChangeLog:
* Wed May 8 2019 Elliott Sales de Andrade <quantum.analyst(a)gmail.com> - 3.3.1-1
- Update to latest version
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1707780 - R-processx-3.3.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1707780
--------------------------------------------------------------------------------
================================================================================
ansible-freeipa-0.1.1-1.fc28 (FEDORA-2019-f6993ebb52)
Roles and playbooks to deploy FreeIPA servers, replicas and clients
--------------------------------------------------------------------------------
Update Information:
New ansible-freeipa package providing roles and playbooks to deploy FreeIPA
servers, replicas and clients
--------------------------------------------------------------------------------
================================================================================
beakerlib-1.18-4.fc28 (FEDORA-2019-67ffa5cc35)
A shell-level integration testing library
--------------------------------------------------------------------------------
Update Information:
- show getopt parsing error (good for debugging) - do not use -T option to
submit command
--------------------------------------------------------------------------------
ChangeLog:
* Thu May 9 2019 Dalibor Pospisil <dapospis(a)redhat.com> - 1.18-4
- show getopt parsing error (good for debugging)
- do not use -T option to submit command
--------------------------------------------------------------------------------
================================================================================
cjdns-20.3-2.fc28 (FEDORA-2019-a3dac9b492)
The privacy-friendly network without borders
--------------------------------------------------------------------------------
Update Information:
Bring fedora 28 and 29 up to date with 30.
--------------------------------------------------------------------------------
ChangeLog:
* Wed May 8 2019 Stuart Gathman <stuart(a)gathman.org> - 20.3-2
- Increase timeout for fuzz tests to allow slower arches to succeed
* Wed May 8 2019 Stuart Gathman <stuart(a)gathman.org> - 20.3-1
- New upstream version 20.3
* Fri May 3 2019 Stuart Gathman <stuart(a)gathman.org> - 20.2-7
- Option to use system libuv
- Fix scope of Pipe_PATH String_CONST in config.
* Thu Jan 31 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 20.2-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1705914 - cjdns-20.3 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1705914
--------------------------------------------------------------------------------
================================================================================
firefox-66.0.5-1.fc28 (FEDORA-2019-34f798420a)
Mozilla Firefox Web browser
--------------------------------------------------------------------------------
Update Information:
- New upstream version (66.0.5) - Release notes -
https://www.mozilla.org/en-
US/firefox/66.0.5/releasenotes/
--------------------------------------------------------------------------------
ChangeLog:
* Wed May 8 2019 Martin Stransky <stransky(a)redhat.com> - 66.0.5-1
- Updated to 66.0.5
--------------------------------------------------------------------------------
================================================================================
fotoxx-19.11-1.fc28 (FEDORA-2019-c41943085e)
Photo editor
--------------------------------------------------------------------------------
Update Information:
19.11
--------------------------------------------------------------------------------
ChangeLog:
* Thu May 9 2019 Gwyn Ciesla <gwync(a)protonmail.com> - 19.11-1
- 19.11
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1708199 - fotoxx-19.11 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1708199
--------------------------------------------------------------------------------
================================================================================
freeradius-3.0.19-3.fc28 (FEDORA-2019-9b58ccab2c)
High-performance and highly configurable free RADIUS server
--------------------------------------------------------------------------------
Update Information:
This fixes several issues with the systemd certificate generation and
logrotation.
--------------------------------------------------------------------------------
ChangeLog:
* Wed May 8 2019 Alexander Scheel <ascheel(a)redhat.com> - 3.0.19-3
- Update boostrap to change ownership of all certificates to root:radiusd
* Wed May 8 2019 Alexander Scheel <ascheel(a)redhat.com> - 3.0.19-2
- Updated crypto-policies patch
- Updated /etc/raddb/certs/bootstrap to only create certificates if missing: bz#1705165
bz#1672284
- Updated logrotate definitions to run as radiusd:radiusd: bz#1705343
- Drop python2 package on Fedora 31+
- Add database dependencies: bz#1658697
- Don't generate certificate during build
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1672284 - FreeRADIUS should not generate certificates at package
installation
https://bugzilla.redhat.com/show_bug.cgi?id=1672284
[ 2 ] Bug #1658697 - freeradius server (radiusd) does not start at boot time
https://bugzilla.redhat.com/show_bug.cgi?id=1658697
[ 3 ] Bug #1705343 - freeradius: privilege escalation due to insecure logrotate
configuration [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1705343
[ 4 ] Bug #1705165 - Freeradius bootstrap script overwrites certs
https://bugzilla.redhat.com/show_bug.cgi?id=1705165
--------------------------------------------------------------------------------
================================================================================
irclog2html-2.17.2-1.fc28 (FEDORA-2019-d4c0f05e97)
A script to convert IRC logs to HTML and other formats
--------------------------------------------------------------------------------
Update Information:
Update to latest upstream release 2.17.2
--------------------------------------------------------------------------------
ChangeLog:
* Thu May 9 2019 Fabian Affolter <mail(a)fabian-affolter.ch> - 2.17.2-1
- Update to latest upstream release 2.17.2
* Fri Feb 1 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.17.1-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
microcode_ctl-2.1-28.fc28 (FEDORA-2019-6629549322)
Tool to transform and deploy CPU microcode update for x86
--------------------------------------------------------------------------------
Update Information:
Update to upstream 2.1-20. 20190312
--------------------------------------------------------------------------------
ChangeLog:
* Thu May 9 2019 Anton Arapov <aarapov(a)redhat.com> 2:2.1-28
- Update to upstream 2.1-20. 20190312
* Fri Feb 1 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 2:2.1-27
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
mosquitto-1.6.1-1.fc28 (FEDORA-2019-8128140144)
An Open Source MQTT v3.1/v3.1.1 Broker
--------------------------------------------------------------------------------
Update Information:
1.6.1 release
--------------------------------------------------------------------------------
ChangeLog:
* Sat Apr 27 2019 Peter Robinson <pbrobinson(a)fedoraproject.org> 1.6.1-1
- 1.6.1 release
* Thu Apr 18 2019 Peter Robinson <pbrobinson(a)fedoraproject.org> 1.6.0-1
- Major new 1.6.0 release
- Support for MQTT 5
--------------------------------------------------------------------------------
================================================================================
python-json2table-1.1.5-3.fc28 (FEDORA-2019-3bbdd61621)
Python module to convert JSON to an HTML table
--------------------------------------------------------------------------------
Update Information:
Fix typos (rhbz#1708273)
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1708273 - Typos in package summary
https://bugzilla.redhat.com/show_bug.cgi?id=1708273
--------------------------------------------------------------------------------
================================================================================
utop-2.1.0-2.fc28 (FEDORA-2019-99d7ce29ba)
Improved toplevel for OCaml
--------------------------------------------------------------------------------
Update Information:
Update build steps to dune
--------------------------------------------------------------------------------
ChangeLog:
* Thu May 9 2019 Sergey Avseyev <sergey.avseyev(a)gmail.com> - 2.1.0-2
- Update build scripts
--------------------------------------------------------------------------------