The following Fedora 17 Security updates need testing: Age URL 10 https://admin.fedoraproject.org/updates/FEDORA-2012-12377/keepalived-1.2.5-2... 56 https://admin.fedoraproject.org/updates/FEDORA-2012-10269/revelation-0.4.14-... 1 https://admin.fedoraproject.org/updates/FEDORA-2012-12958/seamonkey-2.12-1.f... 1 https://admin.fedoraproject.org/updates/FEDORA-2012-12973/trousers-0.3.9-1.f... 10 https://admin.fedoraproject.org/updates/FEDORA-2012-12352/GraphicsMagick-1.3... 1 https://admin.fedoraproject.org/updates/FEDORA-2012-12985/pcp-3.6.6-1.fc17 54 https://admin.fedoraproject.org/updates/FEDORA-2012-10391/bcfg2-1.2.3-1.fc17 9 https://admin.fedoraproject.org/updates/FEDORA-2012-12483/tor-0.2.2.38-1700.... 9 https://admin.fedoraproject.org/updates/FEDORA-2012-12487/jabberd-2.2.14-4.f... 9 https://admin.fedoraproject.org/updates/FEDORA-2012-12523/libvirt-0.9.11.5-3... 0 https://admin.fedoraproject.org/updates/FEDORA-2012-13075/openstack-keystone... 7 https://admin.fedoraproject.org/updates/FEDORA-2012-12598/dnsmasq-2.63-1.fc1... 26 https://admin.fedoraproject.org/updates/FEDORA-2012-11485/dokuwiki-0-0.12.20... 11 https://admin.fedoraproject.org/updates/FEDORA-2012-12284/munin-2.0.5-2.fc17 10 https://admin.fedoraproject.org/updates/FEDORA-2012-12368/gnome-keyring-3.4....
The following Fedora 17 Critical Path updates have yet to be approved: Age URL 0 https://admin.fedoraproject.org/updates/FEDORA-2012-13085/xorg-x11-drv-synap... 0 https://admin.fedoraproject.org/updates/FEDORA-2012-13078/libvdpau-0.4.1-9.f... 0 https://admin.fedoraproject.org/updates/FEDORA-2012-13029/webkitgtk3-1.8.3-1... 0 https://admin.fedoraproject.org/updates/FEDORA-2012-13037/wpa_supplicant-1.0... 0 https://admin.fedoraproject.org/updates/FEDORA-2012-13031/kernel-3.5.3-1.fc1... 1 https://admin.fedoraproject.org/updates/FEDORA-2012-12981/kde-settings-4.8-1... 1 https://admin.fedoraproject.org/updates/FEDORA-2012-12976/colord-0.1.23-1.fc... The following builds have been pushed to Fedora 17 updates-testing
389-ds-base-1.2.11.12-1.fc17 SuperLU-4.3-3.fc17 bdii-5.2.13-1.fc17 directfb-1.5.3-8.fc17 eclipse-gcov-1.0.0-2.fc17 gentlyweb-utils-1.5-2.fc17 ginfo-0.2.3-1.fc17 jacorb-2.3.1-3.20120215git.fc17 jboss-jts-4.16.2-8.fc17 jboss-rmi-1.0-api-1.0.4-5.fc17 kasumi-2.5-9.fc17 libguestfs-1.18.7-1.fc17 libvdpau-0.4.1-9.fc17 moksha-0.8.8-4.fc17 openstack-keystone-2012.1.2-2.fc17 python-vcstools-0.1.21-1.20120828hg0fba0588.fc17 python-warlock-0.4.0-2.fc17 vfrnav-20120831-1.fc17 xine-ui-0.99.7-2.fc17 xorg-x11-drv-synaptics-1.6.2-2.fc17
Details about builds:
================================================================================ 389-ds-base-1.2.11.12-1.fc17 (FEDORA-2012-13088) 389 Directory Server (base) -------------------------------------------------------------------------------- Update Information:
support posix winsync - fix server to server ssl client auth - many valgrind and coverity fixes -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 30 2012 Rich Megginson rmeggins@redhat.com - 1.2.11.12-1 - 8e5087a Coverity defects - 13089: Dereference after null check ldbm_back_delete - Trac Ticket #437 - variable dn should not be used in ldbm_back_delete - ba1f5b2 fix coverity resource leak in windows_plugin_add - e3e81db Simplify program flow: change while loops to for - a0d5dc0 Fix logic errors: del_mod should be latched (might not be last mod), and avoid skipping add-mods (int value 0) - 0808f7e Simplify program flow: make adduids/moduids/deluids action blocks all similar - 77eb760 Simplify program flow: eliminate unnecessary continue - c9e9db7 Memory leaks: unmatched slapi_attr_get_valueset and slapi_value_new - a4ca0cc Change "return"s in modGroupMembership to "break"s to avoid leaking - d49035c Factorize into new isPosixGroup function - 3b61c03 coverity - posix winsync mem leaks, null check, deadcode, null ref, use after free - 33ce2a9 fix mem leaks with parent dn log message, setting winsync windows domain - Ticket #440 - periodic dirsync timed event causes server to loop repeatedly - Ticket #355 - winsync should not delete entry that appears to be out of scope - Ticket 436 - nsds5ReplicaEnabled can be set with any invalid values. - 487932d coverity - mbo dead code - winsync leaks, deadcode, null check, test code - 2734a71 CLEANALLRUV coverity fixes - Ticket #426 - support posix schema for user and group sync - Ticket #430 - server to server ssl client auth broken with latest openldap --------------------------------------------------------------------------------
================================================================================ SuperLU-4.3-3.fc17 (FEDORA-2012-13081) Subroutines to solve sparse linear systems -------------------------------------------------------------------------------- Update Information:
First release. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #784175 - Review Request: SuperLU - Subroutines to solve sparse linear systems https://bugzilla.redhat.com/show_bug.cgi?id=784175 --------------------------------------------------------------------------------
================================================================================ bdii-5.2.13-1.fc17 (FEDORA-2012-13091) The Berkeley Database Information Index (BDII) -------------------------------------------------------------------------------- Update Information:
New upstream release Reapply accidentally dropped patches. Reapply accidentally dropped patches. Reapply accidentally dropped patches. -------------------------------------------------------------------------------- ChangeLog:
* Wed Aug 15 2012 Laurence Field Laurence.Field@cern.ch - 5.2.13-1 - Included Fedora patches upstream. * Fri Jul 20 2012 Maria Alandes maria.alandes.pradillo@cern.ch - 5.2.12-1 - Fixed BDII_IPV6_SUPPORT after testing * Wed Jul 18 2012 Maria Alandes maria.alandes.pradillo@cern.ch - 5.2.11-1 - BUG 95122: Created SLAPD_DB_DIR directoy with correct ownership if it doesn't exist - BUG 95839: Added BDII_IPV6_SUPPORT -------------------------------------------------------------------------------- References:
[ 1 ] Bug #843594 - init script failes https://bugzilla.redhat.com/show_bug.cgi?id=843594 --------------------------------------------------------------------------------
================================================================================ directfb-1.5.3-8.fc17 (FEDORA-2012-13094) Graphics abstraction library for the Linux Framebuffer Device -------------------------------------------------------------------------------- Update Information:
undefined symbol: XUnlockDisplay -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 30 2012 Nicolas Chauvet kwizart@gmail.com - 1.5.3-8 - Fix vdpau plugin - rhbz#852740 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #852740 - libdirectfb_vdpau.so: undefined symbol: XUnlockDisplay https://bugzilla.redhat.com/show_bug.cgi?id=852740 --------------------------------------------------------------------------------
================================================================================ eclipse-gcov-1.0.0-2.fc17 (FEDORA-2012-13089) GCov Integration (Incubation) -------------------------------------------------------------------------------- Update Information:
Make GCNO file format parsing compatible with gcc >= 4.7.0 Update to Linux Tool 1.0.0 Juno release. -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 30 2012 Roland Grunberg rgrunber@redhat.com 1.0.0-2 - Fix gcov GCNO data format with gcc 4.7. * Fri Jul 6 2012 Jeff Johnston jjohnstn@redhat.com 1.0.0-1 - Update to Linux Tools 1.0.0 release (Juno). --------------------------------------------------------------------------------
================================================================================ gentlyweb-utils-1.5-2.fc17 (FEDORA-2012-13095) Java utility library used by JoSQL for I/O -------------------------------------------------------------------------------- Update Information:
Initial import. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #822831 - Review Request: gentlyweb-utils - Java utility library used by JoSQL for I/O https://bugzilla.redhat.com/show_bug.cgi?id=822831 --------------------------------------------------------------------------------
================================================================================ ginfo-0.2.3-1.fc17 (FEDORA-2012-13077) A versatile tool for discovering Grid services -------------------------------------------------------------------------------- Update Information:
New upstream release -------------------------------------------------------------------------------- ChangeLog:
--------------------------------------------------------------------------------
================================================================================ jacorb-2.3.1-3.20120215git.fc17 (FEDORA-2012-13076) The Java implementation of the OMG's CORBA standard -------------------------------------------------------------------------------- Update Information:
Initial packaging -------------------------------------------------------------------------------- References:
[ 1 ] Bug #852851 - Review Request: jacorb - The Java implementation of the OMG's CORBA standard https://bugzilla.redhat.com/show_bug.cgi?id=852851 --------------------------------------------------------------------------------
================================================================================ jboss-jts-4.16.2-8.fc17 (FEDORA-2012-13096) Distributed Transaction Manager -------------------------------------------------------------------------------- Update Information:
Added jbossjts to the build -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 30 2012 Marek Goldmann mgoldman@redhat.com - 4.16.2-8 - Added jbossjts to the build * Thu Jul 19 2012 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 4.16.2-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ jboss-rmi-1.0-api-1.0.4-5.fc17 (FEDORA-2012-13082) Java Remote Method Invocation 1.0 API -------------------------------------------------------------------------------- Update Information:
- Added implementation to the build - Added maven-dependency-plugin BR -------------------------------------------------------------------------------- ChangeLog:
--------------------------------------------------------------------------------
================================================================================ kasumi-2.5-9.fc17 (FEDORA-2012-13090) An anthy dictionary management tool -------------------------------------------------------------------------------- Update Information:
Fix missing description in manpage for some options -------------------------------------------------------------------------------- ChangeLog:
* Fri Aug 31 2012 Akira TAGOH tagoh@redhat.com 2.5-9 - Fix the missing descriptions for some options in --help (#853099) * Thu Jul 19 2012 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 2.5-8 - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #853099 - kasumi - Inconsistency between man page and help https://bugzilla.redhat.com/show_bug.cgi?id=853099 --------------------------------------------------------------------------------
================================================================================ libguestfs-1.18.7-1.fc17 (FEDORA-2012-13083) Access and modify virtual machine disk images -------------------------------------------------------------------------------- Update Information:
New stable branch version 1.18.7. -------------------------------------------------------------------------------- ChangeLog:
* Fri Aug 31 2012 Richard W.M. Jones rjones@redhat.com - 1:1.18.7-1 - New upstream stable version 1.18.7. --------------------------------------------------------------------------------
================================================================================ libvdpau-0.4.1-9.fc17 (FEDORA-2012-13078) Wrapper library for the Video Decode and Presentation API -------------------------------------------------------------------------------- Update Information:
Add a workaround for adobe flash-plugin -------------------------------------------------------------------------------- ChangeLog:
* Sun Aug 19 2012 Julian Sikorski belegdol@fedoraproject.org - 0.4.1-9 - Added flash workarounds * Thu Jul 19 2012 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 0.4.1-8 - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ moksha-0.8.8-4.fc17 (FEDORA-2012-13092) A platform for creating real-time web applications -------------------------------------------------------------------------------- Update Information:
Require python-bunch -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 30 2012 Ralph Bean rbean@redhat.com - 0.8.8-4 - Add python-bunch in the requires list. --------------------------------------------------------------------------------
================================================================================ openstack-keystone-2012.1.2-2.fc17 (FEDORA-2012-13075) OpenStack Identity Service -------------------------------------------------------------------------------- Update Information:
Require authz to update user's tenant (CVE-2012-3542) -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 30 2012 Alan Pevec apevec@redhat.com 2012.1.2-2 - Require authz to update user's tenant (CVE-2012-3542) * Mon Aug 13 2012 Alan Pevec apevec@redhat.com 2012.1.2-1 - updated to stable essex release 2012.1.2 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #853244 - CVE-2012-3542 OpenStack Keystone: Lack of authorization for adding users to tenants [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=853244 --------------------------------------------------------------------------------
================================================================================ python-vcstools-0.1.21-1.20120828hg0fba0588.fc17 (FEDORA-2012-13080) Version Control System tools for Python -------------------------------------------------------------------------------- Update Information:
Update to release 0.1.21 -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 28 2012 Rich Mattes richmattes@gmail.com - 0.1.21-1.20120828hg0fba0588 - Update to release 0.1.21 --------------------------------------------------------------------------------
================================================================================ python-warlock-0.4.0-2.fc17 (FEDORA-2012-13097) Python object model built on top of JSON schema -------------------------------------------------------------------------------- Update Information:
New Python package to build self-validating python objects using JSON schemas. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #850750 - Review Request: python-warlock - Python object model built on top of JSON schema https://bugzilla.redhat.com/show_bug.cgi?id=850750 --------------------------------------------------------------------------------
================================================================================ vfrnav-20120831-1.fc17 (FEDORA-2012-13072) VFR/IFR Navigation -------------------------------------------------------------------------------- Update Information:
update to 20120831 fix build without pilot-link -------------------------------------------------------------------------------- ChangeLog:
* Fri Aug 31 2012 Thomas Sailer t.sailer@alumni.ethz.ch - 20120831-1 - update to 20120831 * Thu Aug 23 2012 Dan Horák <dan[at]danny.cz> - 20120815-2 - add explicit BR: readline-devel so we don't depend on pilot-link-devel to bring it in --------------------------------------------------------------------------------
================================================================================ xine-ui-0.99.7-2.fc17 (FEDORA-2012-13071) A skinned xlib-based gui for xine-lib -------------------------------------------------------------------------------- Update Information:
0.99.7 bugfix release -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 30 2012 Michael J Gruber mjg@fedoraproject.org 0.99.7-2 - add libjpeg-turbo-devel BR - utf8 fix (xine-ui is partly utf8 only) * Thu Aug 30 2012 Michael J Gruber mjg@fedoraproject.org 0.99.7-1 - xine-ui-0.99.7 - dump patch10, patch11, patch12 (upstreamed) - dump patch0 (obsolete before) - fix source entry in spec * Sun Jul 22 2012 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 0.99.6-31 - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ xorg-x11-drv-synaptics-1.6.2-2.fc17 (FEDORA-2012-13085) Xorg X11 Synaptics touchpad input driver -------------------------------------------------------------------------------- Update Information:
Fix memory corruption on resume, triggered by fingers still on the touchpad when the device is disabled. This may lead to spurious crashes after one or many suspend/resume cycles. -------------------------------------------------------------------------------- ChangeLog:
* Fri Aug 31 2012 Peter Hutterer peter.hutterer@redhat.com 1.6.2-2 - Fix memory corruption on resume. Triggered if fingers are still on the touchpad when the device is disabled. --------------------------------------------------------------------------------