The following Fedora 25 Security updates need testing:
Age URL
91
https://bodhi.fedoraproject.org/updates/FEDORA-2016-d79ba708cb exim-4.87.1-1.fc25
12
https://bodhi.fedoraproject.org/updates/FEDORA-2017-06f4b88ceb
php-onelogin-php-saml-2.10.5-1.fc25
6
https://bodhi.fedoraproject.org/updates/FEDORA-2017-d219f0e5fc sscg-2.0.4-1.fc25
6
https://bodhi.fedoraproject.org/updates/FEDORA-2017-42ebcac2b5 erlang-19.3-2.fc25
5
https://bodhi.fedoraproject.org/updates/FEDORA-2017-0196511d58
moodle-3.1.5-1.fc25
4
https://bodhi.fedoraproject.org/updates/FEDORA-2017-71e69a691b pcs-0.9.156-2.fc25
4
https://bodhi.fedoraproject.org/updates/FEDORA-2017-5e945de883
tcpreplay-4.2.1-1.fc25
3
https://bodhi.fedoraproject.org/updates/FEDORA-2017-99ad80f109
python-sleekxmpp-1.3.2-1.fc25
The following Fedora 25 Critical Path updates have yet to be approved:
Age URL
7
https://bodhi.fedoraproject.org/updates/FEDORA-2017-7c824da25f nss-3.29.3-1.0.fc25
nss-softokn-3.29.3-1.0.fc25 nss-util-3.29.3-1.0.fc25
0
https://bodhi.fedoraproject.org/updates/FEDORA-2017-d86df312cf audit-2.7.4-1.fc25
0
https://bodhi.fedoraproject.org/updates/FEDORA-2017-56a13427a3 gdbm-1.13-1.fc25
0
https://bodhi.fedoraproject.org/updates/FEDORA-2017-d7a94714ff gvfs-1.30.4-1.fc25
0
https://bodhi.fedoraproject.org/updates/FEDORA-2017-ea86a8123b
pungi-4.1.14-1.fc25
0
https://bodhi.fedoraproject.org/updates/FEDORA-2017-87e7316310
kernel-4.10.6-200.fc25
0
https://bodhi.fedoraproject.org/updates/FEDORA-2017-2e2f9d36e4
firefox-52.0-7.fc25
The following builds have been pushed to Fedora 25 updates-testing
9wm-1.3.7-1.fc25
LuxRender-1.6-13.fc25
asn1c-0.9.28-1.fc25
audit-2.7.4-1.fc25
cacti-1.1.1-1.fc25
caja-1.16.4-1.fc25
cloud-init-0.7.9-4.fc25
dnfdragora-1.0.0-6.git20170325.b8545aa.fc25
emacs-common-ess-16.10-3.fc25
embree-2.15.0-2.fc25
enki-17.03.0-2.fc25
firefox-52.0-7.fc25
gdbm-1.13-1.fc25
gnome-shell-extension-freon-23-3.fc25
gvfs-1.30.4-1.fc25
ispc-1.9.1-11.fc25
kernel-4.10.6-200.fc25
libreoffice-5.2.6.2-5.fc25
libyui-mga-gtk-1.0.2-0.7.git22f2cf6.20131215.fc25
libyui-mga-ncurses-1.0.2-0.6.git026f2e6.20131215.fc25
libyui-mga-qt-1.0.3-0.6.gitb508e88.20140119.fc25
licensecheck-3.0.29-2.fc25
memkind-1.5.0-1.fc25
mozilla-https-everywhere-5.2.13-1.fc25
munin-2.0.33-1.fc25
os-prober-1.74-1.fc25
php-getid3-1.9.14-1.fc25
pkgconf-1.3.3-1.fc25
pungi-4.1.14-1.fc25
scim-tables-0.5.14-1.fc25
texstudio-2.12.4-1.fc25
trace-cmd-2.6-2.1.fc25
tzdata-2017b-1.fc25
Details about builds:
================================================================================
9wm-1.3.7-1.fc25 (FEDORA-2017-66f2753116)
Emulation of the Plan 9 window manager 8 1/2
--------------------------------------------------------------------------------
Update Information:
Update to latest stable (1.3.7)
--------------------------------------------------------------------------------
================================================================================
LuxRender-1.6-13.fc25 (FEDORA-2017-8c46b4799f)
Lux Renderer, an unbiased rendering system
--------------------------------------------------------------------------------
Update Information:
embree is updated to 2.15. ispc is rebuilt against new llvm. LuxRender is
rebuilt against new embree.
--------------------------------------------------------------------------------
================================================================================
asn1c-0.9.28-1.fc25 (FEDORA-2017-6b22572dc9)
An ASN.1 Compiler
--------------------------------------------------------------------------------
Update Information:
New upstream release
--------------------------------------------------------------------------------
================================================================================
audit-2.7.4-1.fc25 (FEDORA-2017-d86df312cf)
User space tools for 2.6 kernel auditing
--------------------------------------------------------------------------------
Update Information:
This release rounds out the auparse_nomalize support. There are now python
bindings for the normalizer API. Ausearch/report now has a "boot" option to ask
for events since boot. And the syscall table was updated for the 4.11 kernel.
--------------------------------------------------------------------------------
================================================================================
cacti-1.1.1-1.fc25 (FEDORA-2017-88d44bc924)
An rrd based graphing tool
--------------------------------------------------------------------------------
Update Information:
- Update to 1.1.1 Release notes:
http://www.cacti.net/release_notes_1_1_1.php
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1436665 - cacti-1.1.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1436665
--------------------------------------------------------------------------------
================================================================================
caja-1.16.4-1.fc25 (FEDORA-2017-d0ad957d98)
File manager for MATE
--------------------------------------------------------------------------------
Update Information:
- update to 1.16.4
--------------------------------------------------------------------------------
================================================================================
cloud-init-0.7.9-4.fc25 (FEDORA-2017-b8b79a540c)
Cloud instance init scripts
--------------------------------------------------------------------------------
Update Information:
This update fixes an issue with network configuration on DigitalOcean.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1389530 - sysconfig.py fails to configure network
https://bugzilla.redhat.com/show_bug.cgi?id=1389530
--------------------------------------------------------------------------------
================================================================================
dnfdragora-1.0.0-6.git20170325.b8545aa.fc25 (FEDORA-2017-c82968b68c)
DNF package-manager based on libYui abstraction
--------------------------------------------------------------------------------
Update Information:
### Dnfdragora * Updated to snapshot fixing several translations * Updated to
snapshot fixing an issue with the ncurses interface * Add gui-subpkg ###
Libyui-mga-* * Add Provides: %{libsuffix}-mga-{gui|tui}
--------------------------------------------------------------------------------
================================================================================
emacs-common-ess-16.10-3.fc25 (FEDORA-2017-b6ccc4a0c6)
Emacs Speaks Statistics add-on package for Emacs
--------------------------------------------------------------------------------
Update Information:
Changes and New Features in 16.10: * ESS[R]: Syntax highlighting is now more
consistent. Backquoted names are not fontified as strings (since they
really are identifiers). Furthermore they are now correctly recognised
when they are function definitions or function calls. * ESS[R]:
Backquoted names and '%op%' operators are recognised as sexp. This is
useful for code navigation, e.g. with 'C-M-f' and 'C-M-b'. *
ESS[R]:
Integration of outline mode with roxygen examples fields. You can use
outline mode's code folding commands to fold the examples field. This is
especially nice to use with well documented packages with long examples
set. Set 'ess-roxy-fold-examples' to non-nil to automatically fold the
examples field when you open a buffer. * ESS[R]: New experimental feature:
syntax highlighting in roxygen examples fields. This is turned off by
default. Set 'ess-roxy-fontify-examples' to non-nil to try it out. *
ESS[R]: New package development command 'ess-r-devtools-ask' bound to
'C-c
C-w C-a'. It asks with completion for any devtools command that takes
'pkg' as argument. * ESS[R]: New command 'C-c C-e C-r' to reload the
inferior
process. Currently only implemented for R. The R method runs
'inferior-ess-r-reload-hook' on reloading. * ESS[R]:
'ess-r-package-mode' is
now activated in non-file buffers as well. Bug fixes in 16.10: *
ESS[R]: Fix broken (un)flagging for debugging inside packages * ESS[R]: Fixes
(and improvements) in Package development * ESS[R]: Completion no longer
produces '...=' inside 'list( )'. * ESS[R]: Better debugging and
tracing in
packages. * ESS[R]: Better detection of symbols at point. * ESS[R]: No
more spurious warnings on deletion of temporary files. * ESS[julia]: help and
completion work (better) * ESS[julia]: available via 'ess-remote'
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1387842 - emacs-common-ess-16.10 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1387842
[ 2 ] Bug #1435576 - Missing ess-julia.jl leads to backtrace
https://bugzilla.redhat.com/show_bug.cgi?id=1435576
--------------------------------------------------------------------------------
================================================================================
embree-2.15.0-2.fc25 (FEDORA-2017-8c46b4799f)
Collection of high-performance ray tracing kernels developed at Intel
--------------------------------------------------------------------------------
Update Information:
embree is updated to 2.15. ispc is rebuilt against new llvm. LuxRender is
rebuilt against new embree.
--------------------------------------------------------------------------------
================================================================================
enki-17.03.0-2.fc25 (FEDORA-2017-f474c71e19)
Text editor for programmers
--------------------------------------------------------------------------------
Update Information:
version 17.03.0 - - main window: Quit action - fixes for PyQt 5.7.1 - Propose
the current filename in the SaveAs dialogue - mark optional features as weak
dependencies
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1436456 - enki-17.03.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1436456
--------------------------------------------------------------------------------
================================================================================
firefox-52.0-7.fc25 (FEDORA-2017-2e2f9d36e4)
Mozilla Firefox Web browser
--------------------------------------------------------------------------------
Update Information:
- fixed Bug 1435964
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1435964 - [Regression] with the dark theme, URLs are barely readable any
more
https://bugzilla.redhat.com/show_bug.cgi?id=1435964
--------------------------------------------------------------------------------
================================================================================
gdbm-1.13-1.fc25 (FEDORA-2017-56a13427a3)
A GNU set of database routines which use extensible hashing
--------------------------------------------------------------------------------
Update Information:
Update to latest gdbm 1.13 release.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1431389 - gdbm-1.13 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1431389
--------------------------------------------------------------------------------
================================================================================
gnome-shell-extension-freon-23-3.fc25 (FEDORA-2017-021e8661c5)
GNOME Shell extension to display system temperature, voltage, and fan speed
--------------------------------------------------------------------------------
Update Information:
Explicitly compile glib-schemas for EPEL 7. Add extra warning about hardware
risks associated with lm_sensors to package description. ---- Revised package
description. Add EPEL 7 branch, since this extension supports versions of GNOME
Shell as old as 3.12.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1396790 - Review Request: gnome-shell-extension-freon - GNOME Shell extension
to display system temperature, voltage, and fan speed
https://bugzilla.redhat.com/show_bug.cgi?id=1396790
--------------------------------------------------------------------------------
================================================================================
gvfs-1.30.4-1.fc25 (FEDORA-2017-d7a94714ff)
Backends for the gio framework in GLib
--------------------------------------------------------------------------------
Update Information:
Update to 1.30.4
--------------------------------------------------------------------------------
================================================================================
ispc-1.9.1-11.fc25 (FEDORA-2017-8c46b4799f)
C-based SPMD programming language compiler
--------------------------------------------------------------------------------
Update Information:
embree is updated to 2.15. ispc is rebuilt against new llvm. LuxRender is
rebuilt against new embree.
--------------------------------------------------------------------------------
================================================================================
kernel-4.10.6-200.fc25 (FEDORA-2017-87e7316310)
The Linux kernel
--------------------------------------------------------------------------------
Update Information:
The 4.10.6 stable kernel update contains a number of important fixes across the
tree.
--------------------------------------------------------------------------------
================================================================================
libreoffice-5.2.6.2-5.fc25 (FEDORA-2017-36bc8a20e4)
Free Software Productivity Suite
--------------------------------------------------------------------------------
Update Information:
* fix misplaced input method window under gtk3 * workaround inability to change
gtk3 window icon under wayland and use a single generic libreoffice icon
throughout
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1334915 - Libreoffice Missing icons on dock and Alt+tab on Wayland
https://bugzilla.redhat.com/show_bug.cgi?id=1334915
[ 2 ] Bug #1426050 - [abrt] kf5-kinit:
QNetworkConfigurationManagerPrivate::pollEngines(): kdeinit5 killed by SIGSEGV
https://bugzilla.redhat.com/show_bug.cgi?id=1426050
--------------------------------------------------------------------------------
================================================================================
libyui-mga-gtk-1.0.2-0.7.git22f2cf6.20131215.fc25 (FEDORA-2017-c82968b68c)
Libyui-Gtk extensions for Mageia tools
--------------------------------------------------------------------------------
Update Information:
### Dnfdragora * Updated to snapshot fixing several translations * Updated to
snapshot fixing an issue with the ncurses interface * Add gui-subpkg ###
Libyui-mga-* * Add Provides: %{libsuffix}-mga-{gui|tui}
--------------------------------------------------------------------------------
================================================================================
libyui-mga-ncurses-1.0.2-0.6.git026f2e6.20131215.fc25 (FEDORA-2017-c82968b68c)
Libyui-Ncurses extensions for Mageia tools
--------------------------------------------------------------------------------
Update Information:
### Dnfdragora * Updated to snapshot fixing several translations * Updated to
snapshot fixing an issue with the ncurses interface * Add gui-subpkg ###
Libyui-mga-* * Add Provides: %{libsuffix}-mga-{gui|tui}
--------------------------------------------------------------------------------
================================================================================
libyui-mga-qt-1.0.3-0.6.gitb508e88.20140119.fc25 (FEDORA-2017-c82968b68c)
Libyui-Qt extensions for Mageia tools
--------------------------------------------------------------------------------
Update Information:
### Dnfdragora * Updated to snapshot fixing several translations * Updated to
snapshot fixing an issue with the ncurses interface * Add gui-subpkg ###
Libyui-mga-* * Add Provides: %{libsuffix}-mga-{gui|tui}
--------------------------------------------------------------------------------
================================================================================
licensecheck-3.0.29-2.fc25 (FEDORA-2017-b5dae5e863)
Simple license checker for source files
--------------------------------------------------------------------------------
Update Information:
Update to 3.0.29, see
http://cpansearch.perl.org/src/JONASS/App-
Licensecheck-v3.0.29/Changes for details.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1435912 - Uninitialized variable in licensecheck
https://bugzilla.redhat.com/show_bug.cgi?id=1435912
--------------------------------------------------------------------------------
================================================================================
memkind-1.5.0-1.fc25 (FEDORA-2017-8141ea0dee)
User Extensible Heap Manager
--------------------------------------------------------------------------------
Update Information:
Update memkind source file to 1.5.0 upstream
--------------------------------------------------------------------------------
================================================================================
mozilla-https-everywhere-5.2.13-1.fc25 (FEDORA-2017-0511e982c4)
HTTPS/HSTS enforcement extension for Mozilla Firefox and SeaMonkey
--------------------------------------------------------------------------------
Update Information:
Ruleset fixes
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1433546 - mozilla-https-everywhere-5.2.13 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1433546
--------------------------------------------------------------------------------
================================================================================
munin-2.0.33-1.fc25 (FEDORA-2017-eba6ae265c)
Network-wide graphing framework (grapher/gatherer)
--------------------------------------------------------------------------------
Update Information:
Upstream released 2.0.33
--------------------------------------------------------------------------------
================================================================================
os-prober-1.74-1.fc25 (FEDORA-2017-780dee12d5)
Probes disks on the system for installed operating systems
--------------------------------------------------------------------------------
Update Information:
Update to latest upstream version with some enhancements
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1415349 - os-prober-1.74 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1415349
--------------------------------------------------------------------------------
================================================================================
php-getid3-1.9.14-1.fc25 (FEDORA-2017-5d3218d2a7)
The PHP media file parser
--------------------------------------------------------------------------------
Update Information:
**Version 1.9.14**: [2017-03-27] James Heinrich * Add experimental support for
E-AC3 * bugfix (G:105): RIFF.WAVE.iXML multiple TIMESTAMP_SAMPLE_RATE * bugfix
(G:95): improperly initialized error/warning keys * bugfix (G:94): ID3v2 write
support for TXXX * bugfix (G:93): all errors or warnings should pass through
class method
--------------------------------------------------------------------------------
================================================================================
pkgconf-1.3.3-1.fc25 (FEDORA-2017-787e6173a1)
Package compiler and linker metadata toolkit
--------------------------------------------------------------------------------
Update Information:
Update to 1.3.3, making behavior changes in 1.3.2 optional ---- -
**Features**: - implement `--short-errors` - **Bug fixes**: - only
consider a single package at a time with `--print-requires`, `--print-requires-
private`, `--print-provides`, `--modversion`, `--print-variable` and `--print-
variables` - rewrite handling of `--modversion`, `--print-variables` and
`--variable` to not require the dependency resolver - Enhancements: -
synchronized latest
freedesktop.org changes to pkg.m4 - improve error
reporting with legacy `--atleast-version` and similar flags
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1436463 - pkgconf-1.3.3 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1436463
--------------------------------------------------------------------------------
================================================================================
pungi-4.1.14-1.fc25 (FEDORA-2017-ea86a8123b)
Distribution compose tool
--------------------------------------------------------------------------------
Update Information:
New upstream release: * Empty directories are no longer created for variants
that have no RPMs. * There is an experimental backend for solving package
dependencies using DNF instead of YUM. This is a preview for testing and quite
likely not ready for production deployment. * Modular composes can now be
created. * Task IDs are printed for all tasks no matter whether they failed or
not. * Better error reporting: all unsigned packages are reported (as opposed
to only the first one).
--------------------------------------------------------------------------------
================================================================================
scim-tables-0.5.14-1.fc25 (FEDORA-2017-c4e661d9e9)
SCIM Generic Table IMEngine
--------------------------------------------------------------------------------
Update Information:
Clean the spec as per current packaging guidelines
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1419389 - scim-tables-russian lacks the common way of typing dots and commas
https://bugzilla.redhat.com/show_bug.cgi?id=1419389
--------------------------------------------------------------------------------
================================================================================
texstudio-2.12.4-1.fc25 (FEDORA-2017-55d32fc7be)
A feature-rich editor for LaTeX documents
--------------------------------------------------------------------------------
Update Information:
- update to 2.12.4 -
http://texstudio.sourceforge.net/manual/current/CHANGELOG.txt
--------------------------------------------------------------------------------
================================================================================
trace-cmd-2.6-2.1.fc25 (FEDORA-2017-af4d515a6b)
A user interface to Ftrace
--------------------------------------------------------------------------------
Update Information:
Fix bz1389219 segmentation fault in trace-cmd snapshot
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1389219 - Segmentation fault (core dumped) if trace-cmd snapshot after
trace-cmd start -p wakeup
https://bugzilla.redhat.com/show_bug.cgi?id=1389219
--------------------------------------------------------------------------------
================================================================================
tzdata-2017b-1.fc25 (FEDORA-2017-24b0b27b9f)
Timezone data
--------------------------------------------------------------------------------
Update Information:
Resolves: #1434206 - Rebase to tzdata-2017b - Haiti began observing
DST on March 12, 2017.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1434206 - tzdata-2017b is available
https://bugzilla.redhat.com/show_bug.cgi?id=1434206
--------------------------------------------------------------------------------