The following Fedora 19 Security updates need testing:
Age URL
429
https://admin.fedoraproject.org/updates/FEDORA-2013-19963/openstack-glanc...
87
https://admin.fedoraproject.org/updates/FEDORA-2014-12057/krb5-1.11.3-29....
63
https://admin.fedoraproject.org/updates/FEDORA-2014-13551/wpa_supplicant-...
54
https://admin.fedoraproject.org/updates/FEDORA-2014-14237/claws-mail-plug...
47
https://admin.fedoraproject.org/updates/FEDORA-2014-14738/gnutls-3.1.20-6...
44
https://admin.fedoraproject.org/updates/FEDORA-2014-12407/sddm-0.10.0-2.fc19
40
https://admin.fedoraproject.org/updates/FEDORA-2014-15248/kde-runtime-4.1...
39
https://admin.fedoraproject.org/updates/FEDORA-2014-15378/rubygem-actionp...
38
https://admin.fedoraproject.org/updates/FEDORA-2014-15466/rubygem-sprocke...
33
https://admin.fedoraproject.org/updates/FEDORA-2014-15740/facter-1.6.18-8...
27
https://admin.fedoraproject.org/updates/FEDORA-2014-15999/libreoffice-4.1...
27
https://admin.fedoraproject.org/updates/FEDORA-2014-16045/util-linux-2.23...
22
https://admin.fedoraproject.org/updates/FEDORA-2014-16485/pam-1.1.6-13.fc19
22
https://admin.fedoraproject.org/updates/FEDORA-2014-16479/python3-3.3.2-1...
17
https://admin.fedoraproject.org/updates/FEDORA-2014-16576/bind-9.9.3-16.P...
17
https://admin.fedoraproject.org/updates/FEDORA-2014-16690/curl-7.29.0-27....
16
https://admin.fedoraproject.org/updates/FEDORA-2014-16896/tcpdump-4.4.0-5...
16
https://admin.fedoraproject.org/updates/FEDORA-2014-16874/asterisk-11.14....
16
https://admin.fedoraproject.org/updates/FEDORA-2014-16728/xorg-x11-server...
16
https://admin.fedoraproject.org/updates/FEDORA-2014-16865/docker-io-1.4.0...
12
https://admin.fedoraproject.org/updates/FEDORA-2014-17053/openjpeg-1.5.1-...
12
https://admin.fedoraproject.org/updates/FEDORA-2014-17081/denyhosts-2.6-2...
11
https://admin.fedoraproject.org/updates/FEDORA-2014-16826/nss-3.17.3-2.fc...
11
https://admin.fedoraproject.org/updates/FEDORA-2014-17110/mariadb-5.5.40-...
11
https://admin.fedoraproject.org/updates/FEDORA-2014-17210/ettercap-0.8.1-...
9
https://admin.fedoraproject.org/updates/FEDORA-2014-17277/mailx-12.5-9.fc19
9
https://admin.fedoraproject.org/updates/FEDORA-2014-16465/jasper-1.900.1-...
9
https://admin.fedoraproject.org/updates/FEDORA-2014-17354/libssh-0.6.4-1....
9
https://admin.fedoraproject.org/updates/FEDORA-2014-17244/kernel-3.14.27-...
9
https://admin.fedoraproject.org/updates/FEDORA-2014-17284/ca-certificates...
8
https://admin.fedoraproject.org/updates/FEDORA-2014-17395/ntp-4.2.6p5-13....
5
https://admin.fedoraproject.org/updates/FEDORA-2014-17508/glpi-0.83.9.1-5...
4
https://admin.fedoraproject.org/updates/FEDORA-2014-17555/mapserver-6.2.2...
2
https://admin.fedoraproject.org/updates/FEDORA-2014-17626/mingw-pcre-8.33...
2
https://admin.fedoraproject.org/updates/FEDORA-2014-17640/dokuwiki-0-0.23...
The following Fedora 19 Critical Path updates have yet to be approved:
Age URL
377
https://admin.fedoraproject.org/updates/FEDORA-2013-22326/fedora-bookmark...
303
https://admin.fedoraproject.org/updates/FEDORA-2014-3245/testdisk-6.14-2....
12
https://admin.fedoraproject.org/updates/FEDORA-2014-17053/openjpeg-1.5.1-...
11
https://admin.fedoraproject.org/updates/FEDORA-2014-16826/nss-3.17.3-2.fc...
9
https://admin.fedoraproject.org/updates/FEDORA-2014-17244/kernel-3.14.27-...
9
https://admin.fedoraproject.org/updates/FEDORA-2014-17284/ca-certificates...
9
https://admin.fedoraproject.org/updates/FEDORA-2014-16465/jasper-1.900.1-...
8
https://admin.fedoraproject.org/updates/FEDORA-2014-17395/ntp-4.2.6p5-13....
The following builds have been pushed to Fedora 19 updates-testing
drupal7-addressfield-1.0-0.3.rc1.fc19
lis-1.5.43-1.fc19
owncloud-7.0.4-2.fc19
php-doctrine-dbal-2.4.2-6.fc19
php-doctrine-inflector-1.0.1-2.fc19
php-google-apiclient-1.0.6-0.3.beta.fc19
rubygem-htmlentities-4.3.3-1.fc19
Details about builds:
================================================================================
drupal7-addressfield-1.0-0.3.rc1.fc19 (FEDORA-2014-17655)
Manage a flexible address field, implementing the xNAL standard
--------------------------------------------------------------------------------
Update Information:
## 7.x-1.0-rc1\r\n\r\nThis release over 50 commits made since beta5, with major
improvements backported from our commerceguys/addressing [1] library (the base of the
future addressfield D8 version [2]).\r\n\r\n* Created the concept of an address format
[3]. An address format is an array which contains the per-country list of used fields,
list of required fields, and the field labels. Imported address formats for 200 countries,
derived from Google’s dataset.\r\n* Moved administrative areas out of address.inc, into
their own include file (addressfield.administrative_areas.inc [4]), added an alter
hook.\r\n* Added administrative areas for 20 countries: Argentina, Chile, China, Colombia,
Egypt, Hong Kong, India, Indonesia, Ireland, Jamaica, Japan, Malaysia, Mexico, Peru,
Russia, South Korea, Spain, Turkey, United Arab Emirates, Venezuela.\r\n* The field can
now be optional [5].\r\n* Added plugins for hiding the street address and/or the postal
code.\r\n\r\nChanges since 7.x-1.0-beta5:\r\n\r\n* Issue #2159251: Clear country specific
fields when changing the country\r\n* Issue #1662680 by fago: Stop duplicating form state
values in $form_state['addressfield']\r\n* Issue Rename the
addressfield-example.inc handler to make room for other example handlers.\r\n* Issue
#2262841 by DomoSapiens: W3C validation errors\r\n* Issue #2181001 by PJnes, xurizaemon,
greatmatter: WSOD: Call to undefined function addressfield_token_info_alter\r\n* Issue Fix
regression introduced by #968112 that caused the addressfield on the field edit form to
have required fields.\r\n* Issue #2302281 by Dave Reid: Plugins to hide street address or
postal code fields\r\n* Issue #2391989: Notice: Undefined variable: instance\r\n* Issue
#2283483 by vasike: Missing statuses messages for addressfield ajax callback commands\r\n*
Issue #968112 by Zoltán Balogh, ergophobe, mlncn, duckzland, David Stosik, guedressel,
fgm, rolfmeijer, mrmikedewolf, jantoine, davisben: Allow addressfield to be optional\r\n*
Issue Remove the empty first option for predefined administrative areas, rely on Drupal
for this behavior.\r\n* Issue Add the correct administrative area label for Ukraine.\r\n*
Issue #2151903 by johnv: Make sub_premise whole\r\n* Issue #2319093 by mistermoper:
Missing sub administrative area views handler\r\n* Issue #1665788 by adubovskoy, andypost,
VVS, bojanz, sin, Daniel A. Beilinson: Add administrative areas for Russian regions\r\n*
Issue #1345198 by frost, pjcdawkins, mrfelton, roblav, rich.3po: Add irish counties, fix
locality label\r\n* Issue #1713698 by bojanz, aidanlis, ergophobe, er_d0s: Correct address
labels for Australia\r\n* Issue Fix indentation in addressfield.address_formats.inc, add
alter hooks for address formats and administrative areas.\r\n* Issue Further address
format improvements.\r\n* Issue Rebuild the list of countries that put the postal code
after the locality, remove unneeded Brazil specific code.\r\n* Issue Move the dependent
locality (suburb) field to its own row by default, customize formats for China,
Philippines, Thailand.\r\n* Issue #2389517 by bojanz, skyredwang: Add administrative areas
for China\r\n* Issue #2270913: Help text not shown.\r\n* Issue #2325411 by DuaelFr: Order
plugins by weight instead of name\r\n* Issue #2390035: Introduce the concept of an address
format, import (some of) Google's dataset\r\n* Issue Add administrative areas for
Turkey and South Korea.\r\n* Issue Add administrative areas for United Arab Emirates,
Argentina, Chile, Hong Kong, Jamaica, Venezuela.\r\n* Issue #2156061 by KalyaniK: Add
missing indian state Telangana, separate territories.\r\n* Issue #1304140 by bojanz,
Remon: Egypt administrative divisions\r\n* Issue Move predefined administrative areas to
their own include file.\r\n* Issue #1707192 by Yaazkal: Add Columbian administrative areas
(departments)\r\n* Issue Add the dependent_locality (suburb/neighbourhood) field to 9
additional countries.\r\n* Issue #2387967: Remove New Zealand regions\r\n* Issue #2129829
by ItangSanjana: Indonesia addresses\r\n* Issue Update the list of countries that use
administrative areas in addresses, based on Google's dataset.\r\n* Issue Update postal
code metadata (which countries have them, where they're required) from Google's
dataset.\r\n* Issue Revert "Issue #1669620 by malberts, RStrydom: South Africa
doesn't have states"\r\n* Issue #1819494: Remove Albania from the list of
countries without postal codes.\r\n* Issue #1669620 by malberts, RStrydom: South Africa
doesn't have states\r\n* Issue #1472628: Add Mexican States\r\n* Issue Move the list
of Malaysian states.\r\n* Issue #1950448 by marvil07: Support Peruvian addresses\r\n*
Issue #1297580 by jonloh: State dropdown list for Malaysia\r\n* Issue Remove duplicate
Spanish subdivision.\r\n* Issue #1107484 by pineray, attiks, shi99: Support for Japanese
addresses\r\n* Issue #2202945 by lorenx: Correct 3 italian province names\r\n* Issue
#2304349 by eneko1907: Well known administrative areas for Spain -ES-\r\n* Issue #2134625
by RajeevK: Add indian states.\r\n* Issue #1997572 by plach, xurizaemon: Undefined index
in _addressfield_render_address() line 223\r\n* Issue #2189637 by xmacinfo: District of
Columbia state have a case issue\r\n* Issue #2300431 by zengenuity: Lebanon Has Optional
Postal Codes\r\n* Issue #2318763 by bc: Expose the data column to views\r\n* Issue
#2185001 by nedjo: Country Malawi should not have a postal code\r\n\r\n[1]
https://github.com/commerceguys/addressing\r\n[2]
https://drupalcommerce.org/blog/16864/commerce-2x-stories-addressing\r\n[3]
http://cgit.drupalcode.org/addressfield/tree/addressfield.address_formats...
http://cgit.drupalcode.org/addressfield/tree/addressfield.administrative_...
https://www.drupal.org/node/968112#comment-9425741
--------------------------------------------------------------------------------
ChangeLog:
* Mon Dec 22 2014 Shawn Iwinski <shawn.iwinski(a)gmail.com> - 1.0-0.3.rc1
- Updated to 1.0-rc1 (BZ #1175145)
- Removed RPM README b/c it only explained common Drupal workflow
- %license usage
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1175145 - drupal7-addressfield-1.0-rc1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1175145
--------------------------------------------------------------------------------
================================================================================
lis-1.5.43-1.fc19 (FEDORA-2014-17650)
A library for solving linear equations and eigenvalue problems
--------------------------------------------------------------------------------
Update Information:
Update to 1.5.43
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 27 2014 Florian Lehner <dev(a)der-flo.net> - 1.5.43-1
- Update to 1.5.43
* Tue Dec 23 2014 Florian Lehner <dev(a)der-flo.net> - 1.5.41-1
- Update to 1.5.41
- Drop privileges is fixed upstream
* Mon Dec 22 2014 Florian Lehner <dev(a)der-flo.net> - 1.5.40-1
- Update to 1.5.40
* Sun Dec 14 2014 Florian Lehner <dev(a)der-flo.net> - 1.5.37-1
- Update to 1.5.37
- Update Patch after renaming configure.in to configure.ac
--------------------------------------------------------------------------------
================================================================================
owncloud-7.0.4-2.fc19 (FEDORA-2014-17672)
Private file sync and share server
--------------------------------------------------------------------------------
Update Information:
This update provides the latest major ownCloud release, 7.0.4, for Fedora 19. This is a
major update from the previous package, 6.0.6. As mentioned in previous update notes, I
planned all along to eventually bump F19 to 7.x before EOL.\r\n\r\nUpgrading from 4.5
directly to 7.x is not recommended. If you have an F19 ownCloud install still stuck on 4.5
- you did not apply the previous updates to 5.x and 6.x - I suggest you upgrade through
those versions before applying this update. I am maintaining repos containing 5.x and 6.x
packages at
https://www.happyassassin.net/temp/oc5_repo/oc5.repo and
https://www.happyassassin.net/temp/oc6_repo/oc6.repo .\r\n\r\nWhen installing fresh or as
an upgrade from 6.x, this update should work smoothly - on upgrade from 6.x you must
access the site once to trigger the OC upgrade process. However, we strongly recommend you
back up your ownCloud data, configuration files and database before applying the upgrade
as a standard precaution.\r\n\r\nA small update to php-doctrine-dbal (which simply
backports an additional fix from upstream) and a moderate update to php-google-apiclient
come as part of this update. ownCloud is the sole consumer of php-google-apiclient in the
Fedora repositories. Previous ownCloud packages bundled an older copy of the Google API
client library; since 7.0.4-2 ownCloud is patched (as a backport from upstream 8.x) to
work with the newer 1.x series of the client library, and to use Fedora's systemwide
copy.\r\n\r\nFurther information on ownCloud changes can be found at
http://owncloud.org/changelog/ , and on php-google-apiclient changes at
https://github.com/google/google-api-php-client/releases .
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 20 2014 Adam Williamson <awilliam(a)redhat.com> - 7.0.4-2
- backport upstream support for google PHP lib 1.x and unbundle it
* Tue Dec 9 2014 Adam Williamson <awilliam(a)redhat.com> - 7.0.4-1
- new release 7.0.4
* Tue Nov 25 2014 Adam Williamson <awilliam(a)redhat.com> - 7.0.3-3
- fix dropbox autoload patch (thanks Tomas Dolezal) #1168082
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1004131 - WebDAV does not work with some passwords
https://bugzilla.redhat.com/show_bug.cgi?id=1004131
--------------------------------------------------------------------------------
================================================================================
php-doctrine-dbal-2.4.2-6.fc19 (FEDORA-2014-17672)
Doctrine Database Abstraction Layer (DBAL)
--------------------------------------------------------------------------------
Update Information:
This update provides the latest major ownCloud release, 7.0.4, for Fedora 19. This is a
major update from the previous package, 6.0.6. As mentioned in previous update notes, I
planned all along to eventually bump F19 to 7.x before EOL.\r\n\r\nUpgrading from 4.5
directly to 7.x is not recommended. If you have an F19 ownCloud install still stuck on 4.5
- you did not apply the previous updates to 5.x and 6.x - I suggest you upgrade through
those versions before applying this update. I am maintaining repos containing 5.x and 6.x
packages at
https://www.happyassassin.net/temp/oc5_repo/oc5.repo and
https://www.happyassassin.net/temp/oc6_repo/oc6.repo .\r\n\r\nWhen installing fresh or as
an upgrade from 6.x, this update should work smoothly - on upgrade from 6.x you must
access the site once to trigger the OC upgrade process. However, we strongly recommend you
back up your ownCloud data, configuration files and database before applying the upgrade
as a standard precaution.\r\n\r\nA small update to php-doctrine-dbal (which simply
backports an additional fix from upstream) and a moderate update to php-google-apiclient
come as part of this update. ownCloud is the sole consumer of php-google-apiclient in the
Fedora repositories. Previous ownCloud packages bundled an older copy of the Google API
client library; since 7.0.4-2 ownCloud is patched (as a backport from upstream 8.x) to
work with the newer 1.x series of the client library, and to use Fedora's systemwide
copy.\r\n\r\nFurther information on ownCloud changes can be found at
http://owncloud.org/changelog/ , and on php-google-apiclient changes at
https://github.com/google/google-api-php-client/releases .
--------------------------------------------------------------------------------
ChangeLog:
* Tue Jul 29 2014 Adam Williamson <awilliam(a)redhat.com> - 2.4.2-6
- really apply the patch
* Tue Jul 29 2014 Adam Williamson <awilliam(a)redhat.com> - 2.4.2-5
- backport another OwnCloud-related pgsql fix from upstream master
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1004131 - WebDAV does not work with some passwords
https://bugzilla.redhat.com/show_bug.cgi?id=1004131
--------------------------------------------------------------------------------
================================================================================
php-doctrine-inflector-1.0.1-2.fc19 (FEDORA-2014-17700)
Common string manipulations with regard to casing and singular/plural rules
--------------------------------------------------------------------------------
Update Information:
## v1.0.1\r\n\r\n* Pull Request #1: Corrected keyword spelling\r\n* Pull Request #2:
Documentation fixes\r\n* Pull Request #3: Added the branch alias for master\r\n* Pull
Request #4: Fixed typo\r\n* Pull Request #5: exclude word 'staff' from inflectable
ones\r\n* Pull Request #6: add LICENSE file\r\n* Pull Request #7: HHVM is not allowed to
fail anymore. Inflector should work as expected\r\n* Pull Request #10: Added the local
phpunit config to the ignore list\r\n* Pull Request #12: Adding 'human' to the
irregular array\r\n* Pull Request #14: Add testing on PHP 5.6 on Travis
--------------------------------------------------------------------------------
ChangeLog:
* Sun Dec 28 2014 Shawn Iwinski <shawn.iwinski(a)gmail.com> - 1.0.1-2
- %license usage
* Sun Dec 28 2014 Shawn Iwinski <shawn.iwinski(a)gmail.com> - 1.0.1-1
- Updated to 1.0.1 (BZ #1176943)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1176943 - php-doctrine-inflector-1.0.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1176943
--------------------------------------------------------------------------------
================================================================================
php-google-apiclient-1.0.6-0.3.beta.fc19 (FEDORA-2014-17672)
Client library for Google APIs
--------------------------------------------------------------------------------
Update Information:
This update provides the latest major ownCloud release, 7.0.4, for Fedora 19. This is a
major update from the previous package, 6.0.6. As mentioned in previous update notes, I
planned all along to eventually bump F19 to 7.x before EOL.\r\n\r\nUpgrading from 4.5
directly to 7.x is not recommended. If you have an F19 ownCloud install still stuck on 4.5
- you did not apply the previous updates to 5.x and 6.x - I suggest you upgrade through
those versions before applying this update. I am maintaining repos containing 5.x and 6.x
packages at
https://www.happyassassin.net/temp/oc5_repo/oc5.repo and
https://www.happyassassin.net/temp/oc6_repo/oc6.repo .\r\n\r\nWhen installing fresh or as
an upgrade from 6.x, this update should work smoothly - on upgrade from 6.x you must
access the site once to trigger the OC upgrade process. However, we strongly recommend you
back up your ownCloud data, configuration files and database before applying the upgrade
as a standard precaution.\r\n\r\nA small update to php-doctrine-dbal (which simply
backports an additional fix from upstream) and a moderate update to php-google-apiclient
come as part of this update. ownCloud is the sole consumer of php-google-apiclient in the
Fedora repositories. Previous ownCloud packages bundled an older copy of the Google API
client library; since 7.0.4-2 ownCloud is patched (as a backport from upstream 8.x) to
work with the newer 1.x series of the client library, and to use Fedora's systemwide
copy.\r\n\r\nFurther information on ownCloud changes can be found at
http://owncloud.org/changelog/ , and on php-google-apiclient changes at
https://github.com/google/google-api-php-client/releases .
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 20 2014 Adam Williamson <awilliam(a)redhat.com> - 1.0.6-0.3.beta
- use new ASL 2.0 directory
- add Packagist/Composer provide
* Fri Nov 7 2014 Adam Williamson <awilliam(a)redhat.com> - 1.0.6-0.2.beta
- apply CA trust store path substitution to Curl as well as Stream
* Fri Nov 7 2014 Adam Williamson <awilliam(a)redhat.com> - 1.0.6-0.1.beta
- new upstream release 1.0.6-beta
* Sat Jun 7 2014 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
1.0.3-0.3.beta
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1004131 - WebDAV does not work with some passwords
https://bugzilla.redhat.com/show_bug.cgi?id=1004131
--------------------------------------------------------------------------------
================================================================================
rubygem-htmlentities-4.3.3-1.fc19 (FEDORA-2014-17678)
A module for encoding and decoding (X)HTML entities
--------------------------------------------------------------------------------
Update Information:
New version 4.3.3 is released.
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 27 2014 Mamoru TASAKA <mtasaka(a)fedoraproject.org> - 4.3.3-1
- 4.3.3
* Mon Jun 9 2014 Mamoru TASAKA <mtasaka(a)fedoraproject.org> - 4.3.2-2
- Rebuild
* Fri Jun 6 2014 Mamoru TASAKA <mtasaka(a)fedoraproject.org> - 4.3.2-1
- Update to 4.3.2
--------------------------------------------------------------------------------