The following Fedora 23 Security updates need testing:
Age URL
128
https://bodhi.fedoraproject.org/updates/FEDORA-2015-16240 nagios-4.0.8-1.fc23
85
https://bodhi.fedoraproject.org/updates/FEDORA-2015-81ded368fe
miniupnpc-1.9-6.fc23
58
https://bodhi.fedoraproject.org/updates/FEDORA-2015-27392b3324
jbig2dec-0.12-2.fc23
49
https://bodhi.fedoraproject.org/updates/FEDORA-2015-abf9659276
php-PHPMailer-5.2.14-1.fc23
9
https://bodhi.fedoraproject.org/updates/FEDORA-2015-dd52a54fa1
python-pymongo-3.0.3-1.fc23
9
https://bodhi.fedoraproject.org/updates/FEDORA-2015-06a7c972e8
thttpd-2.25b-37.fc23
5
https://bodhi.fedoraproject.org/updates/FEDORA-2016-4556904561
gsi-openssh-7.1p2-1.fc23
4
https://bodhi.fedoraproject.org/updates/FEDORA-2016-1c10ab3c35
moodle-2.9.4-1.fc23
4
https://bodhi.fedoraproject.org/updates/FEDORA-2016-8bb1932088
ntp-4.2.6p5-36.fc23
2
https://bodhi.fedoraproject.org/updates/FEDORA-2016-29995fbd42
privoxy-3.0.23-3.fc23
2
https://bodhi.fedoraproject.org/updates/FEDORA-2016-2256c80a94
openstack-swift-2.3.0-3.fc23
0
https://bodhi.fedoraproject.org/updates/FEDORA-2016-b62d19661f
imlib2-1.4.7-1.fc23
0
https://bodhi.fedoraproject.org/updates/FEDORA-2016-fe5b9da308
openstack-heat-2015.1.2-2.fc23
0
https://bodhi.fedoraproject.org/updates/FEDORA-2016-2f25d12c51
kernel-4.3.4-300.fc23
0
https://bodhi.fedoraproject.org/updates/FEDORA-2016-25ab518a58
nodejs-is-my-json-valid-2.12.4-1.fc23
The following Fedora 23 Critical Path updates have yet to be approved:
Age URL
0
https://bodhi.fedoraproject.org/updates/FEDORA-2016-0bf04ca869
libgdata-0.17.4-2.fc23
0
https://bodhi.fedoraproject.org/updates/FEDORA-2016-53d37416fe
nautilus-3.18.5-1.fc23
0
https://bodhi.fedoraproject.org/updates/FEDORA-2016-47ac27532d
openssh-7.1p2-2.fc23
0
https://bodhi.fedoraproject.org/updates/FEDORA-2016-2f25d12c51
kernel-4.3.4-300.fc23
0
https://bodhi.fedoraproject.org/updates/FEDORA-2016-b62d19661f
imlib2-1.4.7-1.fc23
0
https://bodhi.fedoraproject.org/updates/FEDORA-2016-3d6ff41417
systemd-222-13.fc23
The following builds have been pushed to Fedora 23 updates-testing
arpwatch-2.1a15-35.fc23
dnf-1.1.6-1.fc23
dnf-plugins-core-0.1.16-1.fc23
easytag-2.4.1-1.fc23
eclipse-egit-4.2.0-1.fc23
eclipse-egit-github-4.2.0-1.fc23
eclipse-jgit-4.2.0-2.fc23
libgdata-0.17.4-2.fc23
mod_mono-3.12-4.fc23
nautilus-3.18.5-1.fc23
nodejs-is-my-json-valid-2.12.4-1.fc23
openssh-7.1p2-2.fc23
perl-Calendar-Simple-1.21-16.fc23
perl-File-Flat-1.04-20.fc23
php-JsonSchema-1.6.1-1.fc23
python-iso8601-0.1.11-1.fc23
python-pytest-sourceorder-0.5-1.fc23
python-webob-1.4.2-1.fc23
rubygem-gettext-3.2.1-1.fc23
slapi-nis-0.55-1.fc23
wkhtmltopdf-0.12.3-1.fc23
Details about builds:
================================================================================
arpwatch-2.1a15-35.fc23 (FEDORA-2016-1f85f891c4)
Network monitoring tools for tracking IP addresses on a network
--------------------------------------------------------------------------------
Update Information:
fix arpwatch buffer overflow (#1301880)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1301880 - arpwatch buffer overflow
https://bugzilla.redhat.com/show_bug.cgi?id=1301880
--------------------------------------------------------------------------------
================================================================================
dnf-1.1.6-1.fc23 (FEDORA-2016-80cbf309b4)
Package manager forked from Yum, using libsolv as a dependency resolver
--------------------------------------------------------------------------------
Update Information:
Regular DNF bugfix release.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1292475 - RFE: dnf repoquery options "--queryformat" and
"--latest-limit" should be usable together
https://bugzilla.redhat.com/show_bug.cgi?id=1292475
[ 2 ] Bug #1297511 - noroot configure causes a traceback when plugins are loaded without
a cli
https://bugzilla.redhat.com/show_bug.cgi?id=1297511
[ 3 ] Bug #1239274 - dnf history does not show command line
https://bugzilla.redhat.com/show_bug.cgi?id=1239274
[ 4 ] Bug #1275878 - [abrt] dnf: rpmsack.py:288:_delete:AttributeError: Cannot delete
attribute installed_by on <dnf.yum.rpmsack.RPMDBAdditionalDataPackage object at
0x7f10c32f15d0>
https://bugzilla.redhat.com/show_bug.cgi?id=1275878
[ 5 ] Bug #1226322 - dnf clean all does not clean package metadata for local repos
https://bugzilla.redhat.com/show_bug.cgi?id=1226322
[ 6 ] Bug #1294355 - German translation incomplete on delta RPMS
https://bugzilla.redhat.com/show_bug.cgi?id=1294355
[ 7 ] Bug #1289166 - dnf makecache triggers a python exception
https://bugzilla.redhat.com/show_bug.cgi?id=1289166
[ 8 ] Bug #1294241 - file /var/lib/dnf/* is not owned by any package
https://bugzilla.redhat.com/show_bug.cgi?id=1294241
[ 9 ] Bug #1277360 - doc: update specifying the packages in commands
https://bugzilla.redhat.com/show_bug.cgi?id=1277360
[ 10 ] Bug #1287221 - dnf stutters when writing in /var/log/dnf.rpm.log
https://bugzilla.redhat.com/show_bug.cgi?id=1287221
[ 11 ] Bug #1256587 - The proxy option in dnf.conf doesn't support socks5
https://bugzilla.redhat.com/show_bug.cgi?id=1256587
[ 12 ] Bug #1291895 - DNF history failure if no history
https://bugzilla.redhat.com/show_bug.cgi?id=1291895
--------------------------------------------------------------------------------
================================================================================
dnf-plugins-core-0.1.16-1.fc23 (FEDORA-2016-80cbf309b4)
Core Plugins for DNF
--------------------------------------------------------------------------------
Update Information:
Regular DNF bugfix release.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1292475 - RFE: dnf repoquery options "--queryformat" and
"--latest-limit" should be usable together
https://bugzilla.redhat.com/show_bug.cgi?id=1292475
[ 2 ] Bug #1297511 - noroot configure causes a traceback when plugins are loaded without
a cli
https://bugzilla.redhat.com/show_bug.cgi?id=1297511
[ 3 ] Bug #1239274 - dnf history does not show command line
https://bugzilla.redhat.com/show_bug.cgi?id=1239274
[ 4 ] Bug #1275878 - [abrt] dnf: rpmsack.py:288:_delete:AttributeError: Cannot delete
attribute installed_by on <dnf.yum.rpmsack.RPMDBAdditionalDataPackage object at
0x7f10c32f15d0>
https://bugzilla.redhat.com/show_bug.cgi?id=1275878
[ 5 ] Bug #1226322 - dnf clean all does not clean package metadata for local repos
https://bugzilla.redhat.com/show_bug.cgi?id=1226322
[ 6 ] Bug #1294355 - German translation incomplete on delta RPMS
https://bugzilla.redhat.com/show_bug.cgi?id=1294355
[ 7 ] Bug #1289166 - dnf makecache triggers a python exception
https://bugzilla.redhat.com/show_bug.cgi?id=1289166
[ 8 ] Bug #1294241 - file /var/lib/dnf/* is not owned by any package
https://bugzilla.redhat.com/show_bug.cgi?id=1294241
[ 9 ] Bug #1277360 - doc: update specifying the packages in commands
https://bugzilla.redhat.com/show_bug.cgi?id=1277360
[ 10 ] Bug #1287221 - dnf stutters when writing in /var/log/dnf.rpm.log
https://bugzilla.redhat.com/show_bug.cgi?id=1287221
[ 11 ] Bug #1256587 - The proxy option in dnf.conf doesn't support socks5
https://bugzilla.redhat.com/show_bug.cgi?id=1256587
[ 12 ] Bug #1291895 - DNF history failure if no history
https://bugzilla.redhat.com/show_bug.cgi?id=1291895
--------------------------------------------------------------------------------
================================================================================
easytag-2.4.1-1.fc23 (FEDORA-2016-ece19b7b62)
Tag editor for MP3, Ogg, FLAC and other music files
--------------------------------------------------------------------------------
Update Information:
Update to 2.4.1 * James Cowgill���s Opus parsing crash fix * James Cowgill���s
playlist writing crash fix * Handle FLAC files with an invalid sample rate * Fix
generated playlist order * Consistently use the GLib filename encoding *
Extensive refactoring of locale and encoding handling * Improve fallback legacy
locale detection * Dennis Bj��rklund���s CDDB fill fields fix * Fix CDDB search
fields and categories settings handling * Use the correct encoding when writing
ID3v2.4 tags * Fix a linking error on Mac OS X * Improve illegal character
logic, especially for trailing characters * Remove several outdated and
unnecessary Windows compatibility wrappers * Mario Bl��ttermann���s German help
translation update * Marcus Gissl��n���s Swedish help translation * Josef
Andersson���s Swedish translation update * ���������������� �����������������s Serbian
translation
update * Jordi Mas��� Catalan translation update * Seong-ho Cho���s Korean
translation update * Daniel Mustieles��� Spanish translation updates * Marek
��ernock�����s Czech translation update * ��ka Sikrom���s Norwegian bokm��l translation
update * Piotr Dr��g���s Polish translation update
--------------------------------------------------------------------------------
================================================================================
eclipse-egit-4.2.0-1.fc23 (FEDORA-2016-8db67ba98c)
Eclipse Git Integration
--------------------------------------------------------------------------------
Update Information:
Update to 4.2
--------------------------------------------------------------------------------
================================================================================
eclipse-egit-github-4.2.0-1.fc23 (FEDORA-2016-8db67ba98c)
Eclipse EGit Mylyn GitHub Connector
--------------------------------------------------------------------------------
Update Information:
Update to 4.2
--------------------------------------------------------------------------------
================================================================================
eclipse-jgit-4.2.0-2.fc23 (FEDORA-2016-8db67ba98c)
Eclipse JGit
--------------------------------------------------------------------------------
Update Information:
Update to 4.2
--------------------------------------------------------------------------------
================================================================================
libgdata-0.17.4-2.fc23 (FEDORA-2016-0bf04ca869)
Library for the GData protocol
--------------------------------------------------------------------------------
Update Information:
# Major changes: * Download stream data corruption fixes and fixes to content
length calculation * Fix regression that broke opening PDF files from Drive *
Fix metadata-only uploads in Google Drive * Fix searching by title in Google
Drive # API changes: * Remove a couple of incorrect GIR annotations # Updated
translations: * cs (Marek ��ernock��) * da (Ask Hjorth Larsen) * de (Wolfgang
St��ggl) * es (Daniel Mustieles) * eu (I��aki Larra��aga Murgoitio) * hu (Bal��zs
Mesk��) * lt (Aurimas ��ernius) * lv (R��dolfs Mazurs) * pl (Piotr Dr��g) * pt
(Pedro Albuquerque) * pt_BR (Enrico Nicoletto) * ru (Stas Solovey) * sk
(Du��an Kazik) * sr (���������� ������������, ���������� ��������������) * tr (Muhammet
Kara)
--------------------------------------------------------------------------------
================================================================================
mod_mono-3.12-4.fc23 (FEDORA-2016-eaa8b09f28)
A module to deploy an
ASP.NET application on Apache with Mono
--------------------------------------------------------------------------------
Update Information:
Use /run/ insted /var/run/
--------------------------------------------------------------------------------
================================================================================
nautilus-3.18.5-1.fc23 (FEDORA-2016-53d37416fe)
File manager for GNOME
--------------------------------------------------------------------------------
Update Information:
Update to 3.18.5
--------------------------------------------------------------------------------
================================================================================
nodejs-is-my-json-valid-2.12.4-1.fc23 (FEDORA-2016-25ab518a58)
A JSONSchema validator that uses code generation to be extremely fast
--------------------------------------------------------------------------------
Update Information:
Security fix for Regular expression DoS using utc-millisec format
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1299498 - nodejs-is-my-json-valid: Regular expression DoS using utc-millisec
format
https://bugzilla.redhat.com/show_bug.cgi?id=1299498
--------------------------------------------------------------------------------
================================================================================
openssh-7.1p2-2.fc23 (FEDORA-2016-47ac27532d)
An open source implementation of SSH protocol versions 1 and 2
--------------------------------------------------------------------------------
Update Information:
This update provides recent version of pam_ssh_agent_auth and fix for
CVE-2016-1908.
--------------------------------------------------------------------------------
================================================================================
perl-Calendar-Simple-1.21-16.fc23 (FEDORA-2016-81fab6601f)
Perl extension to create simple calendars
--------------------------------------------------------------------------------
Update Information:
- Modernize spec. - Actvate testsuite
--------------------------------------------------------------------------------
================================================================================
perl-File-Flat-1.04-20.fc23 (FEDORA-2016-5fa58a259b)
Implements a flat filesystem
--------------------------------------------------------------------------------
Update Information:
--------------------------------------------------------------------------------
================================================================================
php-JsonSchema-1.6.1-1.fc23 (FEDORA-2016-a8b88a45cd)
PHP implementation of JSON schema
--------------------------------------------------------------------------------
Update Information:
**Version 1.6.1** * 213 Fix exclusive min/max strictness * 217 fixup dev-master
alias * 218 feat(composer): require PHP 5.3.29 (PHP 5.3.x EOL version) minimum *
221 feat(Factory): add setConstraintClass * 222 feat(travis): pivot to
container-based infrastructure
--------------------------------------------------------------------------------
================================================================================
python-iso8601-0.1.11-1.fc23 (FEDORA-2016-599012ba9d)
Simple module to parse ISO 8601 dates
--------------------------------------------------------------------------------
Update Information:
Upstream 0.1.11 Fully backwards compatible
--------------------------------------------------------------------------------
================================================================================
python-pytest-sourceorder-0.5-1.fc23 (FEDORA-2016-4300416f8a)
Test-ordering plugin for pytest
--------------------------------------------------------------------------------
Update Information:
Add support for parametrized tests under Python 3
--------------------------------------------------------------------------------
================================================================================
python-webob-1.4.2-1.fc23 (FEDORA-2016-ef1e43fdb8)
WSGI request and response object
--------------------------------------------------------------------------------
Update Information:
Upstream 1.4.2
--------------------------------------------------------------------------------
================================================================================
rubygem-gettext-3.2.1-1.fc23 (FEDORA-2016-59307c8e63)
RubyGem of Localization Library and Tools for Ruby
--------------------------------------------------------------------------------
Update Information:
New version 3.2.1 is released.
--------------------------------------------------------------------------------
================================================================================
slapi-nis-0.55-1.fc23 (FEDORA-2016-a4cf27a143)
NIS Server and Schema Compatibility plugins for Directory Server
--------------------------------------------------------------------------------
Update Information:
New upstream release
--------------------------------------------------------------------------------
================================================================================
wkhtmltopdf-0.12.3-1.fc23 (FEDORA-2016-48d453f7da)
Simple shell utility to convert html to pdf
--------------------------------------------------------------------------------
Update Information:
New version 0.12.3 is released.
--------------------------------------------------------------------------------