The following Fedora 27 Security updates need testing:
Age URL
243
https://bodhi.fedoraproject.org/updates/FEDORA-2018-1ec1cd6db3 bro-2.5.3-1.fc27
175
https://bodhi.fedoraproject.org/updates/FEDORA-2018-8dc6395408
dpdk-17.08.2-1.fc27
138
https://bodhi.fedoraproject.org/updates/FEDORA-2018-3b33f65b01
nodejs-brace-expansion-1.1.11-1.fc27
130
https://bodhi.fedoraproject.org/updates/FEDORA-2018-a748acc219
unrtf-0.21.9-8.fc27
106
https://bodhi.fedoraproject.org/updates/FEDORA-2018-f6ccdeb750
mailman-2.1.21-9.fc27
106
https://bodhi.fedoraproject.org/updates/FEDORA-2018-bc864bb9e1
openslp-2.0.0-15.fc27
64
https://bodhi.fedoraproject.org/updates/FEDORA-2018-21ffebf41c
tomcat-8.0.53-1.fc27
64
https://bodhi.fedoraproject.org/updates/FEDORA-2018-e8533a3ef1
unixODBC-2.3.7-1.fc27
13
https://bodhi.fedoraproject.org/updates/FEDORA-2018-fc2ba807a6
xerces-c27-2.7.0-28.fc27
10
https://bodhi.fedoraproject.org/updates/FEDORA-2018-d5139c4fd6 git-2.14.5-1.fc27
9
https://bodhi.fedoraproject.org/updates/FEDORA-2018-3e010c6501
chromium-69.0.3497.100-1.fc27
7
https://bodhi.fedoraproject.org/updates/FEDORA-2018-7c235a496f
thunderbird-60.2.1-2.fc27
7
https://bodhi.fedoraproject.org/updates/FEDORA-2018-bb9d24c82d
mod_http2-1.11.1-1.fc27
6
https://bodhi.fedoraproject.org/updates/FEDORA-2018-d547a126e7 patch-2.7.6-5.fc27
6
https://bodhi.fedoraproject.org/updates/FEDORA-2018-25c6d1b417
hesiod-3.2.1-14.fc27
3
https://bodhi.fedoraproject.org/updates/FEDORA-2018-a115b0b80e
mosquitto-1.5.3-1.fc27
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-de6d032aae
lighttpd-1.4.51-1.fc27
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-28ea2290ad
python33-3.3.7-3.fc27
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-a2c1453607
python35-3.5.6-3.fc27
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-14526cbebe
python26-2.6.9-17.fc27
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-b6de5fc905
python2-2.7.15-4.fc27
The following Fedora 27 Critical Path updates have yet to be approved:
Age URL
159
https://bodhi.fedoraproject.org/updates/FEDORA-2018-25d5c86330 libidn-1.34-2.fc27
mcabber-1.1.0-1.fc27.1 pidgin-2.13.0-1.fc27.1 python-slixmpp-1.3.0-5.fc27.1
119
https://bodhi.fedoraproject.org/updates/FEDORA-2018-200dba6b93
upower-0.99.8-1.fc27
83
https://bodhi.fedoraproject.org/updates/FEDORA-2018-05a68ea22e
geoclue2-2.4.11-1.fc27
64
https://bodhi.fedoraproject.org/updates/FEDORA-2018-20c3deae24
iproute-4.17.0-1.fc27
39
https://bodhi.fedoraproject.org/updates/FEDORA-2018-227775ff3a ceph-12.2.8-1.fc27
12
https://bodhi.fedoraproject.org/updates/FEDORA-2018-0073a0659f
python-productmd-1.17-1.fc27
10
https://bodhi.fedoraproject.org/updates/FEDORA-2018-d5139c4fd6 git-2.14.5-1.fc27
7
https://bodhi.fedoraproject.org/updates/FEDORA-2018-7c235a496f
thunderbird-60.2.1-2.fc27
6
https://bodhi.fedoraproject.org/updates/FEDORA-2018-d547a126e7 patch-2.7.6-5.fc27
5
https://bodhi.fedoraproject.org/updates/FEDORA-2018-3ab8b6a632
appstream-data-27-14.fc27
5
https://bodhi.fedoraproject.org/updates/FEDORA-2018-5a93cc4270
gnome-software-3.28.2-4.fc27
3
https://bodhi.fedoraproject.org/updates/FEDORA-2018-5303fe7f1d
glusterfs-3.12.15-1.fc27
3
https://bodhi.fedoraproject.org/updates/FEDORA-2018-ec18e09edf
flatpak-1.0.4-1.fc27
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-f4bb184a00
kernel-headers-4.18.14-100.fc27 kernel-4.18.14-100.fc27
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-b6de5fc905
python2-2.7.15-4.fc27
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-1fe8124a15
linux-firmware-20181008-88.gitc6b6265d.fc27
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-e1a19af16e
pungi-4.1.29-3.fc27
The following builds have been pushed to Fedora 27 updates-testing
CImg-2.4.0-1.fc27
appcenter-3.0-2.fc27
duplicity-0.7.18.2-1.fc27
elementary-calculator-1.5.1-1.fc27
elementary-capnet-assist-2.2.2-1.fc27
git-lfs-2.4.2-2.fc27
gmic-2.4.0-1.fc27
golang-github-syncthing-notify-0-0.4.20181011git116c45b.fc27
golang-github-xtaci-kcp-go-4.3.1-2.fc27
intel-cmt-cat-2.1.0-1.fc27
libssh-0.7.6-1.fc27
natural-earth-map-data-4.1.0-1.fc27
php-tcpdf-6.2.26-1.fc27
qtwaifu2x-0-0.1.20181013git0907ef8.fc27
qutebrowser-1.5.1-1.fc27
radare2-3.0.0-1.fc27
sos-collector-1.5-3.fc27
waifu2x-converter-cpp-5.2-1.fc27
wine-3.18-1.fc27
yamllint-1.12.1-1.fc27
Details about builds:
================================================================================
CImg-2.4.0-1.fc27 (FEDORA-2018-91d33d8ce8)
C++ Template Image Processing Toolkit
--------------------------------------------------------------------------------
Update Information:
Update to 2.4.0 release
--------------------------------------------------------------------------------
ChangeLog:
* Tue Oct 16 2018 Daniel P. Berrang�� <berrange(a)redhat.com> - 1:2.4.0-1
- Update to 2.4.0 release
--------------------------------------------------------------------------------
================================================================================
appcenter-3.0-2.fc27 (FEDORA-2018-1bdc7420e2)
Software Center from elementary
--------------------------------------------------------------------------------
Update Information:
Update to version 3.0. This release adds a gnome-shell search provider. The
payment system and curated applications are now disabled on fedora explicitly.
The blacklist file was updates to current version from elementaryOS. This build
also adds the missing autostart entry in packaging.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Oct 16 2018 Fabio Valentini <decathorpe(a)gmail.com> - 3.0-2
- Add missing autostart entry symlink for the daemon.
* Tue Oct 16 2018 Fabio Valentini <decathorpe(a)gmail.com> - 3.0-1
- Update to version 3.0.
- Add gnome-shell search provider sub-package.
- Explicitly disable payment system and curated applications.
- Update blacklist file to current version from elementaryOS.
--------------------------------------------------------------------------------
================================================================================
duplicity-0.7.18.2-1.fc27 (FEDORA-2018-04d52197ea)
Encrypted bandwidth-efficient backup using rsync algorithm
--------------------------------------------------------------------------------
Update Information:
0.7.18.2 ---- Unicode patch.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Oct 17 2018 Gwyn Ciesla <limburgher(a)gmail.com> - 0.7.18.2-1
- 0.7.18.2.
* Tue Oct 16 2018 Gwyn Ciesla <limburgher(a)gmail.com> - 0.7.18.1-2
- Patch for unicode issue.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1639070 - Backup fails with : UnicodeDecodeError: 'ascii' codec
can't decode byte 0xe2 in position 21: ordinal not in range(128)
https://bugzilla.redhat.com/show_bug.cgi?id=1639070
--------------------------------------------------------------------------------
================================================================================
elementary-calculator-1.5.1-1.fc27 (FEDORA-2018-98b9ed9cfd)
Calculator app designed for elementary
--------------------------------------------------------------------------------
Update Information:
Update to version 1.5.1. Release notes:
https://github.com/elementary/calculator/releases/tag/1.5.1
--------------------------------------------------------------------------------
ChangeLog:
* Tue Oct 16 2018 Fabio Valentini <decathorpe(a)gmail.com> - 1.5.1-1
- Update to version 1.5.1.
--------------------------------------------------------------------------------
================================================================================
elementary-capnet-assist-2.2.2-1.fc27 (FEDORA-2018-03ad6d93c1)
Captive Portal Assistant for elementary
--------------------------------------------------------------------------------
Update Information:
Update to version 2.2.2. Release notes:
https://github.com/elementary/capnet-
assist/releases/tag/2.2.2
--------------------------------------------------------------------------------
ChangeLog:
* Wed Oct 17 2018 Fabio Valentini <decathorpe(a)gmail.com> - 2.2.2-1
- Update to version 2.2.2.
--------------------------------------------------------------------------------
================================================================================
git-lfs-2.4.2-2.fc27 (FEDORA-2018-3046c3dfa1)
Git extension for versioning large files
--------------------------------------------------------------------------------
Update Information:
- Redirect scriptlet output to /dev/null
--------------------------------------------------------------------------------
ChangeLog:
* Wed Oct 17 2018 Carl George <carl(a)george.computer> - 2.4.2-2
- Redirect scriptlet output to /dev/null
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1591122 - git-lfs reports errors during installation
https://bugzilla.redhat.com/show_bug.cgi?id=1591122
--------------------------------------------------------------------------------
================================================================================
gmic-2.4.0-1.fc27 (FEDORA-2018-91d33d8ce8)
GREYC's Magic for Image Computing
--------------------------------------------------------------------------------
Update Information:
Update to 2.4.0 release
--------------------------------------------------------------------------------
ChangeLog:
* Tue Oct 16 2018 Daniel P. Berrang�� <berrange(a)redhat.com> - 2.4.0-1
- Update to 2.4.0 release
--------------------------------------------------------------------------------
================================================================================
golang-github-syncthing-notify-0-0.4.20181011git116c45b.fc27 (FEDORA-2018-57b5aa5ebb)
File system event notification library on steroids
--------------------------------------------------------------------------------
Update Information:
Bump to commit 116c45b.
--------------------------------------------------------------------------------
ChangeLog:
* Mon Oct 15 2018 Fabio Valentini <decathorpe(a)gmail.com> - 0-0.4.20181011git116c45b
- Bump to commit 116c45b.
* Wed Aug 29 2018 Fabio Valentini <decathorpe(a)gmail.com> - 0-0.3.20180829gitb76b458
- Bump to commit b76b458.
--------------------------------------------------------------------------------
================================================================================
golang-github-xtaci-kcp-go-4.3.1-2.fc27 (FEDORA-2018-33e3cc17be)
Production-Grade Reliable-UDP Library for golang
--------------------------------------------------------------------------------
Update Information:
Update to version 4.3.1.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Oct 17 2018 Fabio Valentini <decathorpe(a)gmail.com> - 4.3.1-2
- Use standard GitHub SourceURL again for consistency between releases.
* Mon Oct 8 2018 Fabio Valentini <decathorpe(a)gmail.com> - 4.3.1-1
- Update to version 4.3.1.
--------------------------------------------------------------------------------
================================================================================
intel-cmt-cat-2.1.0-1.fc27 (FEDORA-2018-3d99058f13)
Provides command line interface to CMT, MBM, CAT, CDP and MBA technologies
--------------------------------------------------------------------------------
Update Information:
Library: - Reversed RMID allocation rdtset Utility: - Added support for
MSR based MBA software controller Examples: - Added MBA example
application - Added L2CAT example application membw: - Added tool for
generation of memory bandwidth General: - Bug fixes
--------------------------------------------------------------------------------
ChangeLog:
* Tue Oct 16 2018 Marcel cornu <marcel.d.cornu(a)intel.com>, Michal Aleksinski
<michalx.aleksinski(a)intel.com> 2.1.0-1
- New release 2.1.0
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.0.0-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
libssh-0.7.6-1.fc27 (FEDORA-2018-bca1c1ab49)
A library implementing the SSH protocol
--------------------------------------------------------------------------------
Update Information:
Update to version 0.7.6 to address CVE-2018-10933
--------------------------------------------------------------------------------
ChangeLog:
* Tue Oct 16 2018 Andreas Schneider <asn(a)redhat.com> - 0.7.6-1
- Update to version 0.7.6
https://www.libssh.org/2018/10/16/libssh-0-8-4-and-0-7-6-security-and-bug...
- Fixes CVE-2018-10933
--------------------------------------------------------------------------------
================================================================================
natural-earth-map-data-4.1.0-1.fc27 (FEDORA-2018-9c62546018)
Free vector and raster map data at 1:10m, 1:50m, and 1:110m scales
--------------------------------------------------------------------------------
Update Information:
Update to latest version
--------------------------------------------------------------------------------
ChangeLog:
* Tue Oct 16 2018 Elliott Sales de Andrade <quantum.analyst(a)gmail.com> - 4.1.0-1
- Update to latest version
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 4.0.0-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
php-tcpdf-6.2.26-1.fc27 (FEDORA-2018-55fdec63e4)
PHP class for generating PDF documents and barcodes
--------------------------------------------------------------------------------
Update Information:
**Version 6.2.26** * Fix unsupported operand types error when codepoints arrays
are merge
--------------------------------------------------------------------------------
ChangeLog:
* Wed Oct 17 2018 Remi Collet <remi(a)remirepo.net> - 6.2.26-1
- update to 6.2.26
--------------------------------------------------------------------------------
================================================================================
qtwaifu2x-0-0.1.20181013git0907ef8.fc27 (FEDORA-2018-8b80c5a919)
Frontend for waifu2x-converter-cpp
--------------------------------------------------------------------------------
Update Information:
Initial release
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1638959 - Review Request: qtwaifu2x - Frontend for waifu2x-converter-cpp
https://bugzilla.redhat.com/show_bug.cgi?id=1638959
--------------------------------------------------------------------------------
================================================================================
qutebrowser-1.5.1-1.fc27 (FEDORA-2018-fbdf285745)
A keyboard-driven, vim-like browser based on PyQt5 and QtWebEngine
--------------------------------------------------------------------------------
Update Information:
Fix flickering when opening/closing tabs when more than 10 tabs are open, fix
crash when closing tab after doing search, as well as a few minor bug fixes.
---- The major change is the support of PDFJS with the qtwebengine backend, but
pdfjs is not yet properly packaged in Fedora (See RHBZ#1635783).
--------------------------------------------------------------------------------
ChangeLog:
* Thu Oct 11 2018 Timoth��e Floure <fnux(a)fedoraproject.org> - 1.5.1-1
- Rebase to 1.5.1
* Wed Oct 3 2018 Timoth��e Floure <fnux(a)fedoraproject.org> - 1.5.0-1
- Rebase to 1.5.0
--------------------------------------------------------------------------------
================================================================================
radare2-3.0.0-1.fc27 (FEDORA-2018-cdebc106b8)
The reverse engineering framework
--------------------------------------------------------------------------------
Update Information:
rebase to upstream version 3.0.0
--------------------------------------------------------------------------------
ChangeLog:
* Tue Oct 16 2018 Riccardo Schirone <rschirone91(a)gmail.com> 3.0.0-1
- rebase to upstream version 3.0.0
- fixes for r_sys_breakpoint on ppc64 and s390x architectures
--------------------------------------------------------------------------------
================================================================================
sos-collector-1.5-3.fc27 (FEDORA-2018-f2f8571abd)
Capture sosreports from multiple nodes simultaneously
--------------------------------------------------------------------------------
Update Information:
Update to new 1.5 release. Resolves CVE-2018-14650
--------------------------------------------------------------------------------
ChangeLog:
* Tue Oct 16 2018 Jake Hunsaker <jhunsake(a)redhat.com> - 1.5-3
- Pull in fixes for non-root local execution and bytes conversion
* Thu Oct 11 2018 Jake Hunsaker <jhunsake(a)redhat.com> - 1.5-1
- New upstream release
- Resolves CVE-2018-14650
* Sat Jul 14 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.4-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1633659 - CVE-2018-14650 sos-collector: incorrect permissions set on newly
created files [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1633659
--------------------------------------------------------------------------------
================================================================================
waifu2x-converter-cpp-5.2-1.fc27 (FEDORA-2018-643a112a6e)
Image Super-Resolution for Anime-style art using OpenCL and OpenCV
--------------------------------------------------------------------------------
Update Information:
Initial release
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1638958 - Review Request: waifu2x-converter-cpp - Image Super-Resolution for
Anime-style art using OpenCL and OpenCV
https://bugzilla.redhat.com/show_bug.cgi?id=1638958
--------------------------------------------------------------------------------
================================================================================
wine-3.18-1.fc27 (FEDORA-2018-2e7ec8f585)
A compatibility layer for windows applications
--------------------------------------------------------------------------------
Update Information:
- Subpixel font rendering with FreeType >= 2.8.1. - Support for OAEP algorithm
in RSA encryption. - Array marshalling fixes in DCOM. - Improved DPI scaling
in the Wine console. - Various bug fixes.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Oct 17 2018 Michael Cronenworth <mike(a)cchtml.com> 3.18-1
- version update
--------------------------------------------------------------------------------
================================================================================
yamllint-1.12.1-1.fc27 (FEDORA-2018-72c1ba8cdb)
A linter for YAML files
--------------------------------------------------------------------------------
Update Information:
Update to latest upstream version
--------------------------------------------------------------------------------
ChangeLog:
* Wed Oct 17 2018 Adrien Verg�� <adrienverge(a)gmail.com> - 1.12.1-1
- Update to latest upstream version
--------------------------------------------------------------------------------