[EPEL-devel] Fedora EPEL 6 updates-testing report

updates at fedoraproject.org updates at fedoraproject.org
Sun Oct 19 04:02:35 UTC 2014


The following Fedora EPEL 6 Security updates need testing:
 Age  URL
 910  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-5620/bugzilla-3.4.14-2.el6
 242  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0590/oath-toolkit-2.0.2-4.el6
 129  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1616/puppet-2.7.26-1.el6
  25  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-2719/nodejs-0.10.32-1.el6,v8-3.14.5.10-14.el6
  24  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-2811/nodejs-qs-0.6.6-3.el6
  24  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-2821/nodejs-send-0.3.0-4.el6
  16  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3064/mediawiki119-1.19.20-1.el6
   9  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3202/python-oauth2-1.5.211-8.el6
   9  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-2850/nginx-1.0.15-8.el6
   8  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3264/getmail-4.46.0-2.el6
   8  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3279/php-ZendFramework-1.12.9-1.el6
   7  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3286/facter-1.6.18-5.el6
   5  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3297/catdoc-0.94.2-10.el6
   1  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3427/rubygem-httpclient-2.4.0-2.el6
   1  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3421/drupal7-7.32-1.el6
   0  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3434/pylint-1.3.1-1.el6,python-astroid-1.2.1-2.el6,python-logilab-common-0.62.1-2.el6


The following builds have been pushed to Fedora EPEL 6 updates-testing

    drupal7-context-3.3-2.el6
    drupal7-date_ical-3.3-1.el6
    drupal7-features-2.2-2.el6
    drupal7-feeds-2.0-0.10.alpha8.el6
    drupal7-job_scheduler-2.0-0.7.alpha3.el6
    flamerobin-0.9.2-1.el6
    grib_api-1.12.3-4.el6
    munin-2.0.23-1.el6
    perl-Crypt-PBKDF2-0.142390-1.el6
    perl-Excel-Writer-XLSX-0.79-1.el6
    php-horde-Horde-Core-2.15.0-1.el6
    pidgin-sipe-1.18.4-1.el6
    pylint-1.3.1-1.el6
    python-astroid-1.2.1-2.el6
    python-logilab-common-0.62.1-2.el6
    qt5-qtbase-5.3.2-3.el6

Details about builds:


================================================================================
 drupal7-context-3.3-2.el6 (FEDORA-EPEL-2014-3472)
 Allows contextual conditions and reactions management
--------------------------------------------------------------------------------
Update Information:

## [7.x-3.3](https://www.drupal.org/node/2347919)

Changes since 7.x-3.2:

* Issue "#2185613: Add a "Template suggestions" reaction" by colan: Add a "Template suggestions" reaction.
* Issue "#2187889: htmlspecialchars() expects parameter 1 to be string, array given in check_plain() (line 1571 of bootstrap.inc)" by colan: Use empty string as default value if there isn't one.
* Update to add necessary permission for context ui tests
* Issue "#835090: Context Reaction: Set menu trail" by Karsa, Deciphered, nedjo, fearlsgroove, Dane Powell, Angry Dan, mgifford, Jibus, Bußmeyer, tomb, c4rl | rjacobs: Set context reaction menu trail.
* Issue "#1922840: Context doesn't render regions in the same order as Core" by eric.chenchao | iamEAP: Render regions in the same order as Core.
* Issue "#1018834: Default context condition that applies when no other non-sitewide context is active" by fearlsgroove, ttkaminski | Rob_Feature: Add a no-context condition, except for the default site-wide one.
--------------------------------------------------------------------------------
ChangeLog:

* Sat Oct 18 2014 Shawn Iwinski <shawn.iwinski at gmail.com> - 3.3-2
- Don't exclude *.txt in module directory
* Sat Oct 18 2014 Shawn Iwinski <shawn.iwinski at gmail.com> - 3.3-1
- Updated to 3.3 (BZ #1148310)
- Removed RPM README b/c it only explained common Drupal workflow
- %license usage
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 3.2-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1148310 - drupal7-context-3.3 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1148310
--------------------------------------------------------------------------------


================================================================================
 drupal7-date_ical-3.3-1.el6 (FEDORA-EPEL-2014-3486)
 Enables import/export of iCal feeds
--------------------------------------------------------------------------------
Update Information:

## [date_ical 7.x-3.3](https://www.drupal.org/node/2352411)

### NEW FEATURES:

* Issue #2325649: Added hook_date_ical_mapping_sources_alter, allowing modules to create custom mapping sources.
* Issue #2342933: Added option to silence Indefinite COUNT replacement warning.

### BUGFIXES:

* Issue #2288563: FeedsParser-defined mapping sources no longer raise warnings.
* Issue #2289981: Changed the way exported fields get converted to plaintext.
--------------------------------------------------------------------------------
ChangeLog:

* Sat Oct 18 2014 Shawn Iwinski <shawn.iwinski at gmail.com> - 3.3-1
- Updated to 3.3 (BZ #1150457)
- Removed RPM README b/c it only explained common Drupal workflow
- %license usage
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1150457 - drupal7-date_ical-3.3 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1150457
--------------------------------------------------------------------------------


================================================================================
 drupal7-features-2.2-2.el6 (FEDORA-EPEL-2014-3462)
 Provides feature management for Drupal
--------------------------------------------------------------------------------
Update Information:

RPM-only update. Spec cleanup.
--------------------------------------------------------------------------------
ChangeLog:

* Sat Oct 18 2014 Shawn Iwinski <shawn.iwinski at gmail.com> - 2.2-2
- Spec cleanup
--------------------------------------------------------------------------------


================================================================================
 drupal7-feeds-2.0-0.10.alpha8.el6 (FEDORA-EPEL-2014-3462)
 Aggregates RSS/Atom/RDF feeds, imports CSV files and more
--------------------------------------------------------------------------------
Update Information:

RPM-only update. Spec cleanup.
--------------------------------------------------------------------------------
ChangeLog:

* Sat Oct 18 2014 Shawn Iwinski <shawn.iwinski at gmail.com> - 2.0-0.10.alpha8
- Spec cleanup
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 2.0-0.9.alpha8
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Sat Aug  3 2013 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 2.0-0.8.alpha8
- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
* Sun May 19 2013 Jared Smith <jsmith at fedoraproject.org> - 2.0-0.7.alpha8
- Fix versioning to be newer than alpha7 release
* Tue Apr 23 2013 Jared Smith <jsmith at fedoraproject.org> - 2.0-0.1.alpha8
- Update to upstream alpha8 bug fix release
- Upstream changelog for the bug fixes in this release is at http://drupal.org/node/1977140
* Wed Feb 13 2013 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 2.0-0.7.alpha7
- Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild
--------------------------------------------------------------------------------


================================================================================
 drupal7-job_scheduler-2.0-0.7.alpha3.el6 (FEDORA-EPEL-2014-3462)
 Simple API for scheduling tasks
--------------------------------------------------------------------------------
Update Information:

RPM-only update. Spec cleanup.
--------------------------------------------------------------------------------
ChangeLog:

* Sat Oct 18 2014 Shawn Iwinski <shawn.iwinski at gmail.com> - 2.0-0.7.alpha3
- Spec cleanup
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 2.0-0.6.alpha3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Sat Aug  3 2013 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 2.0-0.5.alpha3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
* Wed Feb 13 2013 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 2.0-0.4.alpha3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild
* Wed Jul 18 2012 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 2.0-0.3.alpha3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
--------------------------------------------------------------------------------


================================================================================
 flamerobin-0.9.2-1.el6 (FEDORA-EPEL-2014-3467)
 Graphical client for Firebird
--------------------------------------------------------------------------------
Update Information:

Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild
--------------------------------------------------------------------------------


================================================================================
 grib_api-1.12.3-4.el6 (FEDORA-EPEL-2014-3459)
 WMO FM-92 GRIB (v1,v2) interface accessible from C and FORTRAN programs
--------------------------------------------------------------------------------
Update Information:

- Add png support (bug #1154192)
- Fix python install location (bug #1098516)

--------------------------------------------------------------------------------
ChangeLog:

* Fri Oct 17 2014 Orion Poplawski <orion at cora.nwra.com> - 1.12.3-4
- Add png support (bug #1154192)
* Thu Aug  7 2014 Orion Poplawski <orion at cora.nwra.com> - 1.12.3-2
- Fix python install location (bug #1098516)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1154192 - Request for recompile grib_api with PNG support
        https://bugzilla.redhat.com/show_bug.cgi?id=1154192
--------------------------------------------------------------------------------


================================================================================
 munin-2.0.23-1.el6 (FEDORA-EPEL-2014-3468)
 Network-wide graphing framework (grapher/gatherer)
--------------------------------------------------------------------------------
Update Information:

Upstream released 2.0.23
--------------------------------------------------------------------------------
ChangeLog:

* Sat Oct 18 2014 "D. Johnson" <fenris02 at fedoraproject.org> - 2.0.23-1
- Upstream released 2.0.23
* Fri Oct 17 2014 "D. Johnson" <fenris02 at fedoraproject.org> - 2.0.22-1
- Upstream released 2.0.22
* Tue Oct  7 2014 "D. Johnson" <fenris02 at fedoraproject.org> - 2.0.21-8
- BZ# 1149948 - munin-async pid file in /var/run rather than /var/run/munin
* Mon Sep 15 2014 Petr Pisar <ppisar at redhat.com> - 2.0.21-6
- Build against perl 5.20
* Sun Sep 14 2014 "D. Johnson" <fenris02 at fedoraproject.org> - 2.0.21-6
- Add amavis plugin config defaults
* Sun Sep  7 2014 "D. Johnson" <fenris02 at fedoraproject.org> - 2.0.21-5
- BZ# 1114857 - munin-2.0.21-2.fc21 FTBFS: No Package found for java-1.7.0-devel
- re-merge earlier commit for epel7
* Fri Aug 29 2014 Jitka Plesnikova <jplesnik at redhat.com> - 2.0.21-4
- Perl 5.20 rebuild
* Fri Aug  1 2014 "D. Johnson" <fenris02 at fedoraproject.org> - 2.0.21-3
- Default to a localhost name to prevent munin-node from complaining
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 2.0.21-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Mon Apr 28 2014 Lubomir Rintel <lkundrak at v3.sk> - 2.0.21-1.1
- mx4j is not a build time dependency
- RHEL 7 Actually uses systemd too
- No Net::CIDR in el7
- No Cache::Memcached in el7
- Carp::Always is not actually required
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1114857 - munin-2.0.21-2.fc21 FTBFS: No Package found for java-1.7.0-devel
        https://bugzilla.redhat.com/show_bug.cgi?id=1114857
  [ 2 ] Bug #1149948 - munin-async pid file in /var/run rather than /var/run/munin
        https://bugzilla.redhat.com/show_bug.cgi?id=1149948
--------------------------------------------------------------------------------


================================================================================
 perl-Crypt-PBKDF2-0.142390-1.el6 (FEDORA-EPEL-2014-3475)
 PBKDF2 password hashing algorithm
--------------------------------------------------------------------------------
Update Information:

Added option for password length limit, add HMACSHA3 hasher
--------------------------------------------------------------------------------
ChangeLog:

* Sat Oct 18 2014 David Dick <ddick at cpan.org> - 0.142390-1
- Added option for password length limit, add HMACSHA3 hasher
* Mon Sep  1 2014 Jitka Plesnikova <jplesnik at redhat.com> - 0.140890-3
- Perl 5.20 rebuild
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 0.140890-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1134270 - perl-Crypt-PBKDF2-0.142390 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1134270
--------------------------------------------------------------------------------


================================================================================
 perl-Excel-Writer-XLSX-0.79-1.el6 (FEDORA-EPEL-2014-3474)
 Create a new file in the Excel 2007+ XLSX format
--------------------------------------------------------------------------------
Update Information:

Update to 0.79
--------------------------------------------------------------------------------
ChangeLog:

* Sat Oct 18 2014 David Dick <ddick at cpan.org> - 0.79-1
- Update to 0.79
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1153976 - perl-Excel-Writer-XLSX-0.79 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1153976
--------------------------------------------------------------------------------


================================================================================
 php-horde-Horde-Core-2.15.0-1.el6 (FEDORA-EPEL-2014-3479)
 Horde Core Framework libraries
--------------------------------------------------------------------------------
Update Information:

Horde_Core 2.15.0
* [mjr] Fix fatal error viewing certain MIME parts due to incorrect method name in the MimeViewer factory.
* [mjr] Add support for moving calendar items on EAS clients.

--------------------------------------------------------------------------------
ChangeLog:

* Sun Oct 12 2014 Remi Collet <remi at fedoraproject.org> - 2.15.0-1
- Update to 2.15.0
--------------------------------------------------------------------------------


================================================================================
 pidgin-sipe-1.18.4-1.el6 (FEDORA-EPEL-2014-3473)
 Pidgin protocol plugin to connect to MS Office Communicator
--------------------------------------------------------------------------------
Update Information:

New upstream release:
* adds support for EWS Autodiscover redirection
* fixes false "not delivered" errors in conference
* fixes incorrect HTML escaping for URLs
* fixes endless loop with failed HTTP Basic authentication
* fixes EWS autodiscover for some Office 365 users
* fixes missing "Copy to" in buddy menu
* fixes crash when PersistentChat sends BYE
* fixes joining of conference for some users
* fixes conference call ending in error message
* fixes EWS autodiscover for some Office 365 users
* UCS now honors email URL set by user
* fixes assert triggered by EWS autodiscover in older libxml2 versions
* fixes crash triggered by EWS autodiscover when glib2 < 2.30.0
* fixes ADFS failure when user and login name differ
* fixes a longstanding issue that the Pidgin user status sometimes didn't switch back to "Available" after the end of a meeting
* fixes some memory leaks
--------------------------------------------------------------------------------
ChangeLog:

* Sat Oct 18 2014 Stefan Becker <chemobejk at gmail.com> - 1.18.4-1
- update to 1.18.4:
    - fixes ADFS failure when user and login name differ
    - fixes a longstanding issue that the Pidgin user status sometimes
      didn't switch back to "Available" after the end of a meeting
    - fixes some memory leaks
* Sat Aug 16 2014 Stefan Becker <chemobejk at gmail.com> - 1.18.3-1
- update to 1.18.3:
    - fixes audio/video call if host has IPv6 address (bz #1124510)
    - fixes assert triggered by EWS autodiscover in older libxml2 versions
    - fixes crash triggered by EWS autodiscover when glib2 < 2.30.0
* Sat Jun  7 2014 Stefan Becker <chemobejk at gmail.com> - 1.18.2-1
- update to 1.18.2:
    - fixes crash when PersistentChat sends BYE
    - fixes joining of conference for some users
    - fixes conference call ending in error message
    - fixes EWS autodiscover for some Office 365 users
    - UCS now honors email URL set by user
* Sat Apr 12 2014 Stefan Becker <chemobejk at gmail.com> - 1.18.1-1
- update to 1.18.1:
    - fixes false "not delivered" errors in conference
    - fixes incorrect HTML escaping for URLs
    - fixes endless loop with failed HTTP Basic authentication
    - fixes EWS autodiscover for some Office 365 users
    - fixes missing "Copy to" in buddy menu
* Sat Jan 11 2014 Stefan Becker <chemobejk at gmail.com> - 1.18.0-1
- update to 1.18.0:
    - added support for EWS Autodiscover redirection
--------------------------------------------------------------------------------


================================================================================
 pylint-1.3.1-1.el6 (FEDORA-EPEL-2014-3434)
 Analyzes Python code looking for bugs and signs of poor quality
--------------------------------------------------------------------------------
Update Information:

Rebase to current upstream pylint v1.3.1
Fixes CVE-2014-1838 and CVE-2014-1839
Fix GLib detection (#1141440)
--------------------------------------------------------------------------------
ChangeLog:

* Thu Oct 16 2014 Brian C. Lane <bcl at redhat.com> 1.3.1-1
- Upstream v1.3.1
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1060304 - CVE-2014-1838 CVE-2014-1839 python-logilab-common: multiple temporary file vulnerabilities
        https://bugzilla.redhat.com/show_bug.cgi?id=1060304
--------------------------------------------------------------------------------


================================================================================
 python-astroid-1.2.1-2.el6 (FEDORA-EPEL-2014-3434)
 Python Abstract Syntax Tree New Generation
--------------------------------------------------------------------------------
Update Information:

Rebase to current upstream pylint v1.3.1
Fixes CVE-2014-1838 and CVE-2014-1839
Fix GLib detection (#1141440)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1060304 - CVE-2014-1838 CVE-2014-1839 python-logilab-common: multiple temporary file vulnerabilities
        https://bugzilla.redhat.com/show_bug.cgi?id=1060304
--------------------------------------------------------------------------------


================================================================================
 python-logilab-common-0.62.1-2.el6 (FEDORA-EPEL-2014-3434)
 Common libraries for Logilab projects
--------------------------------------------------------------------------------
Update Information:

Rebase to current upstream pylint v1.3.1
Fixes CVE-2014-1838 and CVE-2014-1839
Fix GLib detection (#1141440)
--------------------------------------------------------------------------------
ChangeLog:

* Thu Oct 16 2014 Brian C. Lane <bcl at redhat.com> 0.62.1-2
- Add python-unittest2 to BuildRequires so %check
unset DISPLAY
 will pass
* Thu Oct 16 2014 Brian C. Lane <bcl at redhat.com> 0.62.1-1
- Rebase on upstream v0.62.1
- Add python-unittest2 requirement for python2.6
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1060304 - CVE-2014-1838 CVE-2014-1839 python-logilab-common: multiple temporary file vulnerabilities
        https://bugzilla.redhat.com/show_bug.cgi?id=1060304
--------------------------------------------------------------------------------


================================================================================
 qt5-qtbase-5.3.2-3.el6 (FEDORA-EPEL-2014-3484)
 Qt5 - QtBase components
--------------------------------------------------------------------------------
Update Information:

Rebuild for rhel6's newer libxcb-icccm
--------------------------------------------------------------------------------
ChangeLog:

* Mon Oct 13 2014 Jan Grulich <jgrulich at redhat.com> 5.3.2-3
- QFileDialog: implement getOpenFileUrl and friends for real
* Thu Oct  9 2014 Rex Dieter <rdieter at fedoraproject.org> 5.3.2-2
- use linux-g++ platform unconditionally
* Thu Oct  9 2014 Kevin Kofler <Kevin at tigcc.ticalc.org> 5.3.2-1.1
- F20: require libxkbcommon >= 0.4.1, only patch for the old libxcb
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1153048 - yum update problem between xcb-util qt5-qtbase-gui
        https://bugzilla.redhat.com/show_bug.cgi?id=1153048
--------------------------------------------------------------------------------



More information about the epel-devel mailing list