The following Fedora 34 Security updates need testing:
Age URL
18
https://bodhi.fedoraproject.org/updates/FEDORA-2021-6bd024d2a7
podman-3.4.4-1.fc34
12
https://bodhi.fedoraproject.org/updates/FEDORA-2021-69e96c8f68
xorg-x11-server-Xwayland-21.1.4-1.fc34
10
https://bodhi.fedoraproject.org/updates/FEDORA-2021-664a6554a1
xorg-x11-server-1.20.14-1.fc34
6
https://bodhi.fedoraproject.org/updates/FEDORA-2021-6fdc5ea304
golang-1.16.12-1.fc34
5
https://bodhi.fedoraproject.org/updates/FEDORA-2021-084f819da6
libgda-5.2.10-4.fc34
5
https://bodhi.fedoraproject.org/updates/FEDORA-2021-411e9aef77
chromium-96.0.4664.110-2.fc34
4
https://bodhi.fedoraproject.org/updates/FEDORA-2021-0eb3ea2051
libopenmpt-0.5.15-1.fc34
The following Fedora 34 Critical Path updates have yet to be approved:
Age URL
265
https://bodhi.fedoraproject.org/updates/FEDORA-2021-1300e131b6 ddpt-0.96-4.fc34
ledmon-0.95-4.fc34 libgpod-0.8.3-38.fc34 libzfcphbaapi-2.2.0-12.fc34 lsvpd-1.7.11-6.fc34
sg3_utils-1.46-1.fc34 udisks-1.0.5-18.fc34
25
https://bodhi.fedoraproject.org/updates/FEDORA-2021-c8f226c8be
annobin-9.79-3.fc34
12
https://bodhi.fedoraproject.org/updates/FEDORA-2021-69e96c8f68
xorg-x11-server-Xwayland-21.1.4-1.fc34
12
https://bodhi.fedoraproject.org/updates/FEDORA-2021-b9db3d5d5b
gnome-control-center-40.7-1.fc34
12
https://bodhi.fedoraproject.org/updates/FEDORA-2021-32419016af
pango-1.48.10-2.fc34
12
https://bodhi.fedoraproject.org/updates/FEDORA-2021-5086d5dc1a lorax-34.14-1.fc34
11
https://bodhi.fedoraproject.org/updates/FEDORA-2021-d74a092c8d
osinfo-db-20211216-1.fc34
11
https://bodhi.fedoraproject.org/updates/FEDORA-2021-2e5d7b96a5
samba-4.14.11-0.fc34
10
https://bodhi.fedoraproject.org/updates/FEDORA-2021-7847fb3f18
libxcrypt-4.4.27-1.fc34
10
https://bodhi.fedoraproject.org/updates/FEDORA-2021-664a6554a1
xorg-x11-server-1.20.14-1.fc34
10
https://bodhi.fedoraproject.org/updates/FEDORA-2021-f7b4bdb709
alsa-lib-1.2.6.1-3.fc34 alsa-plugins-1.2.6-1.fc34 alsa-utils-1.2.6-1.fc34
python-alsa-1.2.6-1.fc34
8
https://bodhi.fedoraproject.org/updates/FEDORA-2021-1cac46d416
linux-firmware-20211216-127.fc34
8
https://bodhi.fedoraproject.org/updates/FEDORA-2021-2b0f395e22 ndctl-72-1.fc34
3
https://bodhi.fedoraproject.org/updates/FEDORA-2021-fb500603c0
libguestfs-1.46.2-1.fc34
The following builds have been pushed to Fedora 34 updates-testing
CGAL-5.2.4-1.fc34
ansible-freeipa-1.5.3-1.fc34
bottles-2021.12.28-1.fc34
bpytop-1.0.68-1.fc34
c4fs-0.0.1-2.20211227git1abba00.fc34
flat-remix-theme-0.0.20211223-1.fc34
libmicrohttpd-0.9.75-2.fc34
libofx-0.9.15-1.fc34
log4j-2.17.1-1.fc34
materia-kde-20211226-1.fc34
moolticute-0.53.2-1.fc34
pan-0.149-1.fc34
pcm-202112-1.fc34
python-colorcet-3.0.0-1.20211228git39af94a.fc34
python-probeinterface-0.2.6-1.fc34
python-pynamodb-5.1.0-1.fc34
quaternion-0.0.95.1-1.fc34
rubygem-rmagick-4.2.4-1.fc34
rust-rkyv-0.7.28-1.fc34
rust-rkyv_derive-0.7.28-1.fc34
semver-0.3.0-1.fc34
vdr-live-3.1.4-0.1.20211228git0fbd9b3.fc34
zswap-cli-0.7.0-1.fc34
Details about builds:
================================================================================
CGAL-5.2.4-1.fc34 (FEDORA-2021-4f35631976)
Computational Geometry Algorithms Library
--------------------------------------------------------------------------------
Update Information:
New upstream release: CGAL-5.2.4. CGAL-5.2.4 is a bug-fix release. See on
Github [the list of bugs that were solved] since [CGAL-5.2.3]. [the list of
bugs that were solved]:
https://github.com/CGAL/cgal/issues?q=label%3AMerged_in_
5.2.4+-label%3AMerged_in_5.2.3 [CGAL-5.2.3]:
https://github.com/CGAL/cgal/releases/tag/v5.2.3
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 Laurent Rineau <laurent.rineau(a)cgal.org> - 5.2.4-1
- New upstream release
$
--------------------------------------------------------------------------------
================================================================================
ansible-freeipa-1.5.3-1.fc34 (FEDORA-2021-6a847abb01)
Roles and playbooks to deploy FreeIPA servers, replicas and clients
--------------------------------------------------------------------------------
Update Information:
- Update to version 1.5.3
https://github.com/freeipa/ansible-
freeipa/releases/tag/v1.5.3 - Update to version 1.5.2
https://github.com/freeipa/ansible-freeipa/releases/tag/v1.5.2 - Update to
version 1.5.1
https://github.com/freeipa/ansible-freeipa/releases/tag/v1.5.1
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 Thomas Woerner <twoerner(a)redhat.com> - 1.5.3-1
- Update to version 1.5.3
https://github.com/freeipa/ansible-freeipa/releases/tag/v1.5.3
- Update to version 1.5.2
https://github.com/freeipa/ansible-freeipa/releases/tag/v1.5.2
- Update to version 1.5.1
https://github.com/freeipa/ansible-freeipa/releases/tag/v1.5.1
--------------------------------------------------------------------------------
================================================================================
bottles-2021.12.28-1.fc34 (FEDORA-2021-db626a3d57)
Easily manage Wine prefix in a new way
--------------------------------------------------------------------------------
Update Information:
Update to latest version
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 Artem Polishchuk <ego.cordatus(a)gmail.com> - 2021.12.28-1
- chore(update): 2021.12.28
--------------------------------------------------------------------------------
================================================================================
bpytop-1.0.68-1.fc34 (FEDORA-2021-77d6834bab)
Linux/OSX/FreeBSD resource monitor
--------------------------------------------------------------------------------
Update Information:
Update to latest version
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 Artem Polishchuk <ego.cordatus(a)gmail.com> - 1.0.68-1
- chore(update): 1.0.68
* Wed Jul 21 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.0.67-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
c4fs-0.0.1-2.20211227git1abba00.fc34 (FEDORA-2021-1e0a6694d1)
C++ file system utilities
--------------------------------------------------------------------------------
Update Information:
Initial package
--------------------------------------------------------------------------------
ChangeLog:
* Mon Dec 27 2021 Benjamin A. Beasley <code(a)musicinmybrain.net> 0.0.1-2
- Update to 1abba00
* Mon Dec 27 2021 Benjamin A. Beasley <code(a)musicinmybrain.net> 0.0.1-1
- Initial package (close RHBZ#2025359)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2025359 - Review Request: c4fs - C++ file system utilities
https://bugzilla.redhat.com/show_bug.cgi?id=2025359
--------------------------------------------------------------------------------
================================================================================
flat-remix-theme-0.0.20211223-1.fc34 (FEDORA-2021-604e0d2313)
Pretty simple theme inspired on material design
--------------------------------------------------------------------------------
Update Information:
Update to latest version
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 Artem Polishchuk <ego.cordatus(a)gmail.com> - 0.0.20211223-1
- chore(update): 20211223
- build: Add flat-remix-gtk4-theme subpackage
* Wed Jul 21 2021 Fedora Release Engineering <releng(a)fedoraproject.org> -
0.0.20201129-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
libmicrohttpd-0.9.75-2.fc34 (FEDORA-2021-d1348ab51d)
Lightweight library for embedding a webserver in applications
--------------------------------------------------------------------------------
Update Information:
- Cleanup spec file ---- Update to 0.9.75-1 ---- Update to 0.9.74-1
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 Martin Gansser <martinkg(a)fedoraproject.org> - 1:0.9.75-2
- Cleanup specfile
* Mon Dec 27 2021 Martin Gansser <martinkg(a)fedoraproject.org> - 1:0.9.75-1
- Update to 1:0.9.75
* Mon Dec 20 2021 Martin Gansser <martinkg(a)fedoraproject.org> - 1:0.9.74-1
- Update to 1:0.9.74
* Thu Jul 22 2021 Fedora Release Engineering <releng(a)fedoraproject.org> -
1:0.9.73-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2034025 - libmicrohttpd-0.9.74 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2034025
[ 2 ] Bug #2035673 - libmicrohttpd-0.9.75 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2035673
--------------------------------------------------------------------------------
================================================================================
libofx-0.9.15-1.fc34 (FEDORA-2021-286e29c489)
A library for supporting Open Financial Exchange (OFX)
--------------------------------------------------------------------------------
Update Information:
Latest updates.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 Gwyn Ciesla <gwync(a)protonmail.com> - 0.9.15-1
- 0.9.15
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1742636 - gwenhywfar-5.8.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1742636
[ 2 ] Bug #2002076 - please update aqbanking in the repo
https://bugzilla.redhat.com/show_bug.cgi?id=2002076
--------------------------------------------------------------------------------
================================================================================
log4j-2.17.1-1.fc34 (FEDORA-2021-1bd9151bab)
Java logging package
--------------------------------------------------------------------------------
Update Information:
Update log4j to 2.17.1 for CVE-2021-44832 RCE via JDBC Appender (when attacker
controls config)
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 Paul Wouters <paul.wouters(a)aiven.io> - 2.17.1-1
- Update log4j to 2.17.1 for CVE-2021-44832 RCE via JDBC Appender (when attacker controls
config)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2035949 - log4j-2.17.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2035949
--------------------------------------------------------------------------------
================================================================================
materia-kde-20211226-1.fc34 (FEDORA-2021-1ddaf989a3)
Port of the popular GTK theme Materia for the Plasma 5 desktop
--------------------------------------------------------------------------------
Update Information:
Update to 20211226 Close: rhbz#2035710
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 Robert-Andr�� Mauchin <zebob.m(a)gmail.com> 20211226-1
- Update to 20211226 Close: rhbz#2035710
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2035710 - materia-kde-20211226 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2035710
--------------------------------------------------------------------------------
================================================================================
moolticute-0.53.2-1.fc34 (FEDORA-2021-070cd0646b)
Companion GUI application for Mooltipass password manager devices
--------------------------------------------------------------------------------
Update Information:
Upstream release 0.53.2
--------------------------------------------------------------------------------
ChangeLog:
* Mon Dec 6 2021 Arthur Bols <arthur(a)bols.dev> - 0.53.2-1
- Upstream release 0.53.2
* Fri Dec 3 2021 Arthur Bols <arthur(a)bols.dev> - 0.53.0-1
- Upstream release 0.53.0
--------------------------------------------------------------------------------
================================================================================
pan-0.149-1.fc34 (FEDORA-2021-6cb9cef40d)
A Usenet newsreader for GNOME/GTK+
--------------------------------------------------------------------------------
Update Information:
Update to version 0.149
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 Petr Kovar <pkovar(a)redhat.com> - 1:0.149-1
- Update to version 0.149
--------------------------------------------------------------------------------
================================================================================
pcm-202112-1.fc34 (FEDORA-2021-7059bb62ef)
Processor Counter Monitor
--------------------------------------------------------------------------------
Update Information:
Update to version 202112
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
================================================================================
python-colorcet-3.0.0-1.20211228git39af94a.fc34 (FEDORA-2021-9b7b5bfdc2)
Collection of perceptually uniform colormaps
--------------------------------------------------------------------------------
Update Information:
Initial package
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 Benjamin A. Beasley <code(a)musicinmybrain.net> 3.0.0-1
- Initial package (close RHBZ#2022153)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2022153 - Review Request: python-colorcet - Collection of perceptually
uniform colormaps
https://bugzilla.redhat.com/show_bug.cgi?id=2022153
--------------------------------------------------------------------------------
================================================================================
python-probeinterface-0.2.6-1.fc34 (FEDORA-2021-f13606ff79)
Handles probe layout, geometry, and wiring to device
--------------------------------------------------------------------------------
Update Information:
Initial package
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 Benjamin A. Beasley <code(a)musicinmybrain.net> 0.2.6-1
- Initial package (close RHBZ#2012917)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2012917 - Review Request: python-probeinterface - Handles probe layout,
geometry, and wiring to device
https://bugzilla.redhat.com/show_bug.cgi?id=2012917
--------------------------------------------------------------------------------
================================================================================
python-pynamodb-5.1.0-1.fc34 (FEDORA-2021-d9ce4bffad)
A pythonic interface to Amazon���s DynamoDB
--------------------------------------------------------------------------------
Update Information:
Initial package
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 Benjamin A. Beasley <code(a)musicinmybrain.net> 5.1.0-1
- Initial package (close RHBZ#2033924)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2033924 - Review Request: python-pynamodb - A Pythonic interface for
Amazon���s DynamoDB
https://bugzilla.redhat.com/show_bug.cgi?id=2033924
--------------------------------------------------------------------------------
================================================================================
quaternion-0.0.95.1-1.fc34 (FEDORA-2021-e1572c9b84)
A Qt5-based IM client for Matrix
--------------------------------------------------------------------------------
Update Information:
Update to version 0.0.95.1. Fixes security issue:
https://github.com/quotient-
im/Quaternion/issues/789
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 Brendan Early <mymindstorm(a)evermiss.net> - 0.0.95.1-1
- Update to 0.0.95.1
- Setup rpmautospec
* Sun Aug 15 2021 Brendan Early <mymindstorm(a)evermiss.net> - 0.0.95-0.7
- Update to 0.0.95 RC2
* Fri Jul 23 2021 Fedora Release Engineering <releng(a)fedoraproject.org> -
0.0.95-0.6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2012157 - quaternion-0.0.95.1-flatpak is available
https://bugzilla.redhat.com/show_bug.cgi?id=2012157
--------------------------------------------------------------------------------
================================================================================
rubygem-rmagick-4.2.4-1.fc34 (FEDORA-2021-f025816e38)
Ruby binding to ImageMagick
--------------------------------------------------------------------------------
Update Information:
4.2.4 is released.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 Mamoru TASAKA <mtasaka(a)fedoraproject.org> - 4.2.4-1
- 4.2.4
* Sat Dec 4 2021 Mamoru TASAKA <mtasaka(a)fedoraproject.org> - 4.2.3-5.1
- Rebuild for tag issue
--------------------------------------------------------------------------------
================================================================================
rust-rkyv-0.7.28-1.fc34 (FEDORA-2021-100ddd3729)
Zero-copy deserialization framework for Rust
--------------------------------------------------------------------------------
Update Information:
update rkyv to version 0.7.28
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 R��mi Lauzier <remilauzier(a)protonmail.com> 0.7.28-1
- Update to version 0.7.28; Fixes RHBZ#2033937
--------------------------------------------------------------------------------
================================================================================
rust-rkyv_derive-0.7.28-1.fc34 (FEDORA-2021-100ddd3729)
Derive macro for rkyv
--------------------------------------------------------------------------------
Update Information:
update rkyv to version 0.7.28
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 R��mi Lauzier <remilauzier(a)protonmail.com> 0.7.28-1
- Update to version 0.7.28; Fixes RHBZ#2033938
--------------------------------------------------------------------------------
================================================================================
semver-0.3.0-1.fc34 (FEDORA-2021-95f3fb79c2)
Semantic Versioning for modern C++
--------------------------------------------------------------------------------
Update Information:
* Fixed building with GCC versions lower than 8. * Fixed a typo threhsold ->
threshold. Fixed ability to control `accept_threshold_percent` ZSwap option. *
Added checks to forbid operations with `accept_threshold_percent` ZSwap option
on Linux kernel < 5.6.0. * Systemd integration is now fully optional and can be
disabled on CMake configuration step. * Restored fmtlib submodule for
distributions without packaged version. * Added a new semver submodule.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Dec 22 2021 Vitaly Zaitsev <vitaly(a)easycoding.org> - 0.3.0-1
- Initial SPEC release.
--------------------------------------------------------------------------------
================================================================================
vdr-live-3.1.4-0.1.20211228git0fbd9b3.fc34 (FEDORA-2021-0289344011)
An interactive web interface with HTML5 live stream support for VDR
--------------------------------------------------------------------------------
Update Information:
Update to 3.1.4-0.1.20211228git0fbd9b3
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 28 2021 Martin Gansser <martinkg(a)fedoraproject.org> -
3.1.4-0.1.20211228git0fbd9b3
- Replace obsolete pcre by pcre2
- Update to 3.1.4-0.1.20211228git0fbd9b3
--------------------------------------------------------------------------------
================================================================================
zswap-cli-0.7.0-1.fc34 (FEDORA-2021-95f3fb79c2)
Command-line tool to control zswap options
--------------------------------------------------------------------------------
Update Information:
* Fixed building with GCC versions lower than 8. * Fixed a typo threhsold ->
threshold. Fixed ability to control `accept_threshold_percent` ZSwap option. *
Added checks to forbid operations with `accept_threshold_percent` ZSwap option
on Linux kernel < 5.6.0. * Systemd integration is now fully optional and can be
disabled on CMake configuration step. * Restored fmtlib submodule for
distributions without packaged version. * Added a new semver submodule.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Dec 22 2021 Vitaly Zaitsev <vitaly(a)easycoding.org> - 0.7.0-1
- Updated to versiom 0.7.0.
--------------------------------------------------------------------------------