Fedora 12 updates-testing report

updates at fedoraproject.org updates at fedoraproject.org
Sat Aug 21 04:35:00 UTC 2010


The following builds have been pushed to Fedora 12 updates-testing

    clustermon-0.18.1-1.fc12
    dovecot-1.2.13-2.fc12
    elementary-icon-theme-2.4-6.fc12
    git-1.7.2.2-1.fc12
    gyp-0.1-0.4.840svn.fc12
    kdevplatform-1.0.1-1.fc12
    klavaro-1.6.0-1.fc12
    libHX-3.6-1.fc12
    luci-0.22.4-1.0.b9faf868074git.fc12
    lvm2-2.02.72-4.fc12
    mr-0.49-1.fc12
    mspdebug-0.10-2.fc12
    nss-3.12.6-12.fc12
    pam_mount-2.5-1.fc12
    rakudo-0.0.2010.07_2.6.0-2.fc12
    rekonq-0.5.0-2.fc12
    ricci-0.18.1-1.fc12
    roundup-1.4.15-1.fc12
    rubygem-state_machine-0.9.4-2.fc12
    selinux-policy-3.6.32-121.fc12
    sems-1.2.1-6.fc12

Details about builds:


================================================================================
 clustermon-0.18.1-1.fc12 (FEDORA-2010-13253)
 Monitoring and management of Red Hat Cluster Suite
--------------------------------------------------------------------------------
Update Information:

This update addresses several major issues and makes the packages working again.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 19 2010 Chris Feist <cfeist at redhat.com> - 0.18.1
- Update to latest sources for rawhide
* Thu Jan 14 2010 Ryan McCabe <rmccabe at redhat.com> - 0.17.0-1
- Make the modclusterd init script exit with status 2 when invalid
  arguments are provided
--------------------------------------------------------------------------------


================================================================================
 dovecot-1.2.13-2.fc12 (FEDORA-2010-13242)
 Secure imap and pop3 server
--------------------------------------------------------------------------------
Update Information:

- imap: Don't crash with QRESYNC SELECT specifying sequences larger than
mailbox's message count
--------------------------------------------------------------------------------
ChangeLog:

* Fri Aug 20 2010 Michal Hlavinka <mhlavink at redhat.com> - 1:1.2.13-2
- imap: Don't crash with QRESYNC SELECT specifying sequences larger 
  than mailbox's message count (#625207)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #625207 - dovecot aborts on qresync select
        https://bugzilla.redhat.com/show_bug.cgi?id=625207
--------------------------------------------------------------------------------


================================================================================
 elementary-icon-theme-2.4-6.fc12 (FEDORA-2010-13246)
 Icons from the Elementary Project
--------------------------------------------------------------------------------
Update Information:

give some karma for this new icon theme for the elementary project test it out
--------------------------------------------------------------------------------


================================================================================
 git-1.7.2.2-1.fc12 (FEDORA-2010-13270)
 Fast Version Control System
--------------------------------------------------------------------------------
Update Information:

Update to the 1.7.2.2 maintenance release which contains various bugfixes.
--------------------------------------------------------------------------------
ChangeLog:

* Fri Aug 20 2010 Adam Tkac <atkac redhat com> - 1.7.2.2-1
- update to 1.7.2.2
--------------------------------------------------------------------------------


================================================================================
 gyp-0.1-0.4.840svn.fc12 (FEDORA-2010-13247)
 Generate Your Projects
--------------------------------------------------------------------------------
ChangeLog:

* Fri Aug 20 2010 Akira TAGOH <tagoh at redhat.com> - 0.1-0.4.840svn
- Rebase to r840.
- generate Makefile with RPM_OPT_FLAGS in CCFLAGS.
--------------------------------------------------------------------------------


================================================================================
 kdevplatform-1.0.1-1.fc12 (FEDORA-2010-13241)
 Libraries for use by KDE development tools
--------------------------------------------------------------------------------
Update Information:

An update to the latest upstream bugfix release of KDevPlatform:
http://milianw.de/blog/kdevelop-401-released
--------------------------------------------------------------------------------
ChangeLog:

* Wed Aug 11 2010 Kevin Kofler <Kevin at tigcc.ticalc.org> - 1.0.1-1
- update to 1.0.1
- remove Source1, upstream doesn't ship a .md5sum anymore
--------------------------------------------------------------------------------


================================================================================
 klavaro-1.6.0-1.fc12 (FEDORA-2010-13244)
 Typing tutor
--------------------------------------------------------------------------------
Update Information:

* Fri Aug 20 2010 Fabian Affolter <fabian at bernewireless.net> - 1.6.0-1  -
Updated to new upstream version 1.6.0
--------------------------------------------------------------------------------
ChangeLog:

* Fri Aug 20 2010 Fabian Affolter <fabian at bernewireless.net> - 1.6.0-1
- Updated to new upstream version 1.6.0
--------------------------------------------------------------------------------


================================================================================
 libHX-3.6-1.fc12 (FEDORA-2010-13155)
 General-purpose library for typical low-level operations
--------------------------------------------------------------------------------
Update Information:

Update to libHX 3.6 fixing a buffer overflow in HX_split():    * http://libhx.gi
t.sourceforge.net/git/gitweb.cgi?p=libhx/libhx;a=commitdiff;h=904a46f90d
pam_mount v2.5 (August 10 2010)  ===============================  Changes:  -
mount.crypt: fix incorrect processing of binary files in keyfile passthrough  -
call mount.crypt by means of mount -t crypt (selinux), same for umount  -
reorder the default path to search in /usr/local first, then /usr, /  - config:
add missing fd0ssh command to restore volumes using ssh  - ofl is now run as a
separate process (selinux policy simplification)    libHX v3.6 (August 16 2010)
===========================  Fixed:  - bitmap: set/clear/test had no effect due
to wrong type selection  - bitmap: avoid left-shift larger than type on 64-bit
- string: fixed buffer overflow in HX_split when too few fields were present in
the input    libHX 3.5 (August 01 2010)  ==========================  Fixed:  -
format2: failure to skip escaped char in "%(echo foo\ bar)" was corrected  -
proc: properly check for HXPROC_STDx--HXPROC_STDx_NULL overlap  - strquote: do
not cause allocation with invalid format numbers  Enhancements:  - format2: add
the %(exec) function  - format2: add the %(shell) function  - format2: security
feature for %(exec) and %(shell)  - format2: add the %(snl) function  - string:
HX_strquote gained HXQUOTE_LDAPFLT (LDAP search filter) support  - string:
HX_strquote gained HXQUOTE_LDAPRDN (LDAP relative DN) support  Changes:  -
format1: removed older formatter in favor of format2  - format2: add check for
empty key  - format2: function-specific delimiters  - format2: do nest-counting
even with normal parentheses  - format2: check for zero-argument function calls
- hashmap: do not needlessy change TID when no reshape was done  - string:
HX_basename (the fast variant) now recognizes the root directory  - string:
HX_basename now returns the trailing component with slashes instead of
everything after the last slash (which may have been nothing)
--------------------------------------------------------------------------------
ChangeLog:

* Mon Aug 16 2010 Till Maas <opensource at till.name> - 3.6-1
- really update to latest release
* Mon Aug 16 2010 Till Maas <opensource at till.name> - 3.5-1
- Update to latest release
- remove devel %files %{_includedir} globbing
- Update soname
* Sat Aug  7 2010 Till Maas <opensource at till.name> - 3.4-2
- Use less globbing in %files to detect changes
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #615714 - Remove 1-byte "doc" file pam_mount.txt?
        https://bugzilla.redhat.com/show_bug.cgi?id=615714
  [ 2 ] Bug #622743 - pam_mount-2.5 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=622743
  [ 3 ] Bug #580585 - SELinux is preventing /bin/login "sys_ptrace" access (pam_mount problem)
        https://bugzilla.redhat.com/show_bug.cgi?id=580585
  [ 4 ] Bug #620583 - SELinux is preventing /usr/sbin/sshd "execute" access on /sbin/mount.crypt (pam_mount)
        https://bugzilla.redhat.com/show_bug.cgi?id=620583
  [ 5 ] Bug #625867 - libHX: buffer overrun in HX_split() [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=625867
--------------------------------------------------------------------------------


================================================================================
 luci-0.22.4-1.0.b9faf868074git.fc12 (FEDORA-2010-13253)
 Web-based high availability administration application
--------------------------------------------------------------------------------
Update Information:

This update addresses several major issues and makes the packages working again.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 19 2010 Fabio M. Di Nitto <fdinitto at redhat.com> - 0.22.4-1.0.b9faf868074git
- New upstream release (0.22.4)
- Steal fixes from upstream git up to b9faf868074git
  Fix bz622562 (add support for unfencing)
  Fix bz624819 (add compatibility with TG2.1)
- Update spec file to support alphatag
* Tue Aug  3 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.2-13
- Remove extra debugging logging from the fix for bz619220
- Fix bz614130 (implement tomcat6 resource agent)
- Fix bz618578 (ip resource should have netmask field)
* Tue Aug  3 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.2-12
- Fix bz615926 (luci does not handle qdisk / cman config correctly)
- Fix bz619220 (Luci does extra queries which slows down page load)
- Fix bz619652 (luci sometimes prints a traceback when deleting multiple nodes at the same time)
- Fix bz619641 (luci init script prints a python traceback when status is queried by a non-root user)
* Thu Jul 29 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.2-11
- Fix bz614433 (cannot configure ipport for fence agents)
- Fix bz617575 (Unclear options when configuring a cluster)
- Fix bz617591 (Some fields when adding an IP address are unclear)
- Fix bz617602 (Fields in "Fence Daemon Properties" have no units)
- Fix bz618577 (wrong message displayed when adding ip resource)
- Fix bz619220 (Luci does extra queries which slows down page load)
* Mon Jul 26 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.2-10
- Additional fixes for bz600027 (Fix cluster service creation/configuration UX issues)
- Additional fixes for bz600055 ("cluster busy" dialog does not work)
- Fix bz618424 (Can't remove nodes in node add dialog or create cluster dialog)
- Fix bz616382 (luci db error removing a node from a cluster)
- Fix bz613871 (luci should not give ungraceful error messages when encountering fence devices that it does not recognize/support)
* Mon Jul 26 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.2-9
- Fix bz600027 (Fix cluster service creation/configuration UX issues)
- Fix bz600040 (Add nodes to existing cluster does not work)
- Fix bz600045 (Removing nodes from existing clusters fails)
- Fix bz600055 ("cluster busy" dialog does not work)
- Fix bz613868 (Remove fence_virsh from luci UI since this fence is not supported with RHEL HA/Cluster)
- Fix bz614434 (adding an IP resource ends with an error 500)
- Fix bz614439 (adding GFS2 resource type in RHEL6 cluster is "interesting")
- Fix bz615096 (Traceback when unchecking "Prioritized" in Failover Domains)
- Fix bz615468 (When creating a new failover domain, adding nodes has no effect)
- Fix bz615872 (unicode error deleting a cluster)
- Fix bz615889 (luci cannot start an imported cluster)
- Fix bz615911 (luci shows many unsupported fence devices when adding a new fence device)
- Fix bz615917 (adding per node fence instance results in error 500 if no fence devices are configured)
- Fix bz615929 (luci generated cluster.conf with fence_scsi fails to validate)
- Fix bz616094 (Deleting a fence device which is in use, causes a traceback on Nodes page)
- Fix bz616228 (Clicking on cluster from manage clusters page results in traceback (500 error))
- Fix bz616230 (Clicking on the join button doesn't work on nodes page)
- Fix bz616244 (Clicking on the leave button doesn't work on nodes page.)
* Wed Jul 14 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.2-8
- Fix bz600021 (Fix node fence configuration UX issues)
* Tue Jul 13 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.2-7
- Build fix for bz600056
* Tue Jul 13 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.2-6
- Build fix for bz600056
* Tue Jul 13 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.2-5
- Fix bz604740 (Support nfsserver resource agent which is for NFSv4 and NFSv3)
- Fix bz600056 (Replace logo image)
* Fri Jul  9 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.2-4
- Fix bz600059 (Hide optional fields for fence_scsi)
- Fix bz600077 (cman "two_node" attribute should not be set when using qdisk)
- Fix bz600083 (Add text to broadcast mode to note that it is for demos only - no production support)
- Fix bz605780 (Qdisk shouldn't be part of the main page, it should be in the configuration tab)
* Fri Jun 18 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.2-3
- Fix bz598859 (Adding fence_xvm fence device through luci interface throws TypeError Traceback)
- Fix bz599074 ("Use same password for all nodes" doesn't work.)
- Fix bz599080 (Conga ignores "reboot nodes" check box)
- Fix bz600047 (luci allows deletion of global resources that are used by services)
- Fix bz600050 (luci requires wrongly requires users to fill interval / tko / minimum score / votes fields for qdisk configuration)
- Fix bz600052 (luci allows deletion of the last qdisk heuristics row)
- Fix bz600058 (ssh_identity field values are dropped)
- Fix bz600060 (Formatting error on fence devices overview page)
- Fix bz600061 (Default values not populated in advanced network configuration)
- Fix bz600066 (Update resource agent labels)
- Fix bz600069 (Configuration page always returns to General Properties Page)
- Fix bz600071 (If luci cannot communicate with the nodes they don't appear in the list of nodes)
- Fix bz600073 (Update resource agent list)
- Fix bz600074 (Fix display error on the resource list page)
- Fix bz600075 (update fence_virt / fence_xvm configuration)
- Fix bz600076 (When creating a cluster no default radio button is selected for Download Packages/Use locally installed packages)
- Fix bz600079 (Unable to edit existing resources)
- Fix bz600080 (Homebase page only shows a '-' for Nodes Joined)
- Fix bz602482 (Multicast settings are not relayed to cluster.conf and no default)
- Fix bz603833 ("Nodes Joined" in main page is inaccurate when no nodes have joined)
* Tue Jun  1 2010 Chris Feist <cfeist at redhat.com> - 0.22.2-2
- Fix missing requires which will cause some installations to fail
- Resolves: rhbz#598725
* Wed May 26 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.2-1
- Fix for bugs related to cluster service creation and editing (bz593836).
* Wed May 26 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.1-3
- Fix remaining unresolved issues for 593836
  - Make sure the cluster version is updated when creating services
  - Fix a bug that caused IP resources to fail in services
* Wed May 26 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.1-2
- Rebuild to fix a bug introduced during last build.
* Wed May 26 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.1-1
- Fix service creation, display, and edit.
- Fix qdisk heuristic submission.
* Wed May 19 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.0-16
- Rebase to upstream
* Mon May 17 2010 Chris Feist <cfeist at redhat.com> - 0.22.0-13
- Added static UID/GID for luci user
- Resolves: rhbz#585988
* Wed May 12 2010 Chris Feist <cfeist at redhat.com> - 0.22.0-11
- Add support for PAM authentication
- Resync with main branch
- Resolves: rhbz#518206
* Wed May 12 2010 Fabio M. Di Nitto <fdinitto at redhat.com> - 0.21.0-8
- Do not build on ppc and ppc64.
  Resolves: rhbz#590987
* Tue Apr 27 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.0-4
- Update from devel tree.
* Thu Apr 22 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.0-3
- Update from development tree.
* Thu Apr  8 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.0-2
- Update from development tree.
* Tue Mar  9 2010 Ryan McCabe <rmccabe at redhat.com> - 0.22.0-1
- Rebase to luci version 0.22.0
* Mon Mar  1 2010 Fabio M. Di Nitto <fdinitto at redhat.com> - 0.21.0-7
- Resolves: rhbz#568005
- Add ExcludeArch to drop s390 and s390x
* Tue Jan 19 2010 Ryan McCabe <rmccabe at redhat.com> - 0.21.0-6
- Remove dependency on python-tg-devtools
--------------------------------------------------------------------------------


================================================================================
 lvm2-2.02.72-4.fc12 (FEDORA-2010-12250)
 Userland logical volume management tools
--------------------------------------------------------------------------------
Update Information:

This update addresses a security problem when using the clustered LVM daemon
clvmd from the package lvm2-cluster on systems where you have non-root users.
The lvm2 package on its own is not vulnerable to this problem but if you are
using lvm2-cluster you must update both together.    Further details are given
in the Red Hat Bugzilla:       https://bugzilla.redhat.com/CVE-2010-2526
After updating the packages, make sure that clvmd restarted itself.    This
update also includes several other important bug fixes - see the detailed
changelog.
--------------------------------------------------------------------------------
ChangeLog:

* Mon Aug  2 2010 Alasdair Kergon <agk at redhat.com> - 2.02.72-5
- Make udev configurable and merge with f12.
* Mon Aug  2 2010 Alasdair Kergon <agk at redhat.com> - 2.02.72-4
- Merge f13, f14 and rawhide spec files.
* Sat Jul 31 2010 Alasdair Kergon <agk at redhat.com> - 2.02.72-3
- Address lvm2-cluster security flaw CVE-2010-2526.
    https://bugzilla.redhat.com/CVE-2010-2526
- Change clvmd to communicate with lvm2 via a socket in /var/run/lvm.
- Return controlled error if clvmd is run by non-root user.
- Never use clvmd singlenode unless explicitly requested with -Isinglenode.
- Fix exported_symbols generation to use standard compiler arguments.
- Use #include <> not "" in lvm2app.h which gets installed on the system.
- Make liblvm.device-mapper wait for include file generation.
- Fix configure to supply DEFAULT_RUN_DIR to Makefiles.
- Fix wrong number of mirror log at allocate policy
* Wed Jul 28 2010 Alasdair Kergon <agk at redhat.com> - 2.02.71-1
- Make vgck warn about missing PVs.
- Revert failed table load preparation after "create, load and resume".
- Check if cluster log daemon is running before allowing cmirror create.
- Add dm_create_lockfile to libdm and use for pidfiles for all daemons.
- Correct LV list order used by lvconvert when splitting a mirror.
- Check if LV with specified name already exists when splitting a mirror.
- Fix suspend/resume logic for LVs resulting from splitting a mirror.
- Fix possible hang when all mirror images of a mirrored log fail.
- Adjust auto-metadata repair and caching logic to try to cope with empty mdas.
- Update pvcreate, {pv|vg}change, and lvm.conf man pages about metadataignore.
- Prompt if metadataignore with vgextend or pvchange would adjust vg_mda_copies.
- Adjust vg_mda_copies if metadataignore given with vgextend or pvchange.
- Speed up the regex matcher.
- Use "nowatch" udev rule for inappropriate devices.
- Document LVM fault handling in lvm_fault_handling.txt.
- Clarify help text for vg_mda_count.
- Add more verbose messages while checking volume_list and hosttags settings.
- Add log_error when strdup fails in {vg|lv}_change_tag().
- Do not log backtrace in valid _lv_resume() code path.
* Wed Jul  7 2010 Alasdair Kergon <agk at redhat.com> - 2.02.70-1
- Remove log directly if all mirror images of a mirrored log fail.
- Randomly select which mdas to use or ignore.
- Add printf format attributes to yes_no_prompt and fix a caller.
- Always pass unsuspended dm devices through persistent filter to other filters.
- Move test for suspended dm devices ahead of other filters.
- Fix another segfault in clvmd -R if no response from daemon received. (2.02.68)
- Remove superfluous suspended device counter from clvmd.
- Fix lvm shell crash when input is entirely whitespace.
- Update partial mode warning message.
- Preserve memlock balance in clvmd when activation triggers a resume.
- Restore the removemissing behaviour of lvconvert --repair --use-policies.
* Wed Jun 30 2010 Alasdair Kergon <agk at redhat.com> - 2.02.69-1
- Fix vgremove to allow removal of VG with missing PVs. (2.02.52)
- Add metadata/vgmetadatacopies to lvm.conf.
- Add --metadataignore to pvcreate and vgextend.
- Add vg_mda_copies, pv_mda_used_count and vg_mda_used_count to reports.
- Describe --vgmetadatacopies in lvm.conf and other man pages.
- Add --[vg]metadatacopies to select number of mdas to use in a VG.
- Make the metadata ignore bit control read/write metadata areas in a PV.
- Add pvchange --metadataignore to set or clear a metadata ignore bit.
- Refactor metadata code to prepare for --metadataignore / --vgmetadatacopies.
- Ensure region_size of mirrored log does not exceed its full size.
- Preload libc locale messages to prevent reading it in memory locked state.
- Fix handling of simultaneous mirror image and mirrored log image failure.
* Thu Jun 24 2010 Peter Rajnoha <prajnoha at redhat.com> - 2.02.68-2
- Fix udev rules to handle spurious events properly.
- Add Requires: udev >= 158-1 (needed for the change in udev rules).
* Wed Jun 23 2010 Alasdair Kergon <agk at redhat.com> - 2.02.68-1
- Have device-mapper-libs require device-mapper (circular) for udev rules.
- Clear exec_prefix.
- Use early udev synchronisation and update of dev nodes for clustered mirrors.
- Add lv_path to reports to offer full /dev pathname.
- Avoid abort when generating cmirror status.
- Fix clvmd initscript status to print only active clustered LVs.
- Fix segfault in clvmd -R if no response from daemon received.
- Honour log argument when down-converting stacked mirror.
- Sleep to workaround clvmd -S race: socket closed early and server drops cmd.
- Exit successfully when using -o help (but not -o +help) with LVM reports.
- Add man pages for lvmconf, dmeventd and non-existent lvmsadc and lvmsar tools.
- Add --force, --nofsck and --resizefs to lvresize/extend/reduce man pages.
- Fix lvm2cmd example in documentation.
- Fix typo in warning message about missing device with allocated data areas.
- Add device name and offset to raw_read_mda_header error messages.
- Allow use of lvm2app and lvm2cmd headers in C++ code.
* Fri Jun  4 2010 Alasdair Kergon <agk at redhat.com> - 2.02.67-1
- Require partial option in lvchange --refresh for partial LVs.
- Don't merge unchanged persistent cache file before dumping if tool scanned.
- Avoid selecting names under /dev/block if there is an alternative.
- Fix semctl parameter (union) to avoid misaligned parameter on some arches.
- Fix clvmd initscript restart command to start clvmd if not yet running.
- Handle failed restart of clvmd using -S switch properly.
- Use built-in absolute paths in clvmd (clvmd restart and PV and LV queries).
- Consistently return ECMD_FAILED if interrupted processing multiple LVs.
- Add --type parameter description to the lvcreate man page.
- Document 'clear' in dmsetup man page.
- Replace strncmp kernel version number checks with proper ones.
- Update clustered log kernel module name to log-userspace for 2.6.31 onwards.
- Support autoloading of dm-mod module for kernels from 2.6.35.
- Add dm_tree_node_set_presuspend_node() to presuspend child when deactivating.
- Do not fail lvm_init() if init_logging() or _init_rand() generates an errno.
- Fix incorrect memory pool deallocation while using vg_read for files.
* Thu May 20 2010 Alasdair Kergon <agk at redhat.com> - 2.02.66-2
- Simplify and fix Requires package headers.
- If unable to obtain snapshot percentage leave value blank on reports.
- Use new install_system_dirs and install_initscripts makefile targets.
- Add lvm2app functions to lookup a vgname from a pvid and pvname.
- Change internal processing of PVs in pvchange.
- Validate internal lock ordering of orphan and VG_GLOBAL locks.
* Mon May 17 2010 Alasdair Kergon <agk at redhat.com> - 2.02.65-1
- Disallow vgchange --clustered if there are active mirrors or snapshots.
- Fix truncated total size displayed by pvscan.
- Skip internal lvm devices in scan if ignore_suspended_devices is set.
- Do not merge old device cache after we run full scan. (2.02.56)
- Add new --sysinit compound option to vgchange and lvchange.
- Fix clvmd init script never to deactivate non-clustered volume groups.
- Drop duplicate errors for read failures and missing devices to verbose level.
- Do not print encryption key in message debug output (cryptsetup luksResume).
- Use -d to control level of messages sent to syslog by dmeventd.
- Change -d to -f to run dmeventd in foreground.
- Fix udev flags on remove in create_and_load error path.
- Add dm_list_splice() function to join two lists together.
- Use /bin/bash for scripts with bashisms.
- Switch Libs.private to Requires.private in devmapper.pc and lvm2app.pc.
- Use pkgconfig Requires.private for devmapper-event.pc.
* Fri Apr 30 2010 Alasdair Kergon <agk at redhat.com> - 2.02.64-1
- Avoid pointless initialisation when the 'version' command is run directly.
- Fix memory leak for invalid regex pattern input.
- Display invalid regex pattern for filter configuration in case of error.
- Fix -M and --type to use strings, not pointers that change on config refresh.
- Fix lvconvert error message when existing mirrored LV is not found.
- Set appropriate udev flags for reserved LVs.
- Disallow the direct removal of a merging snapshot.
- Don't preload the origin when removing a snapshot whose merge is pending.
- Disallow the addition of mirror images while a conversion is happening.
- Disallow primary mirror image removal when mirror is not in-sync.
- Remove obsolete --name parameter from vgcfgrestore.
- Add -S command to clvmd to restart the daemon preserving exclusive locks.
- Increment lvm2app version from 1 to 2 (memory allocation changes).
- Change lvm2app memory alloc/free for pv/vg/lv properties.
- Change daemon lock filename from lvm2_monitor to lvm2-monitor for consistency.
- Add support for new IMPORT{db} udev rule.
- Add DM_UDEV_PRIMARY_SOURCE_FLAG udev flag to recognize proper DM events.
- Also include udev libs in libdevmapper.pc.
- Cache bitset locations to speed up _calc_states.
- Add a regex optimisation pass for shared prefixes and suffixes.
- Add dm_bit_and and dm_bitset_equal to libdevmapper.
- Speed up dm_bit_get_next with ffs().
* Thu Apr 15 2010 Alasdair Kergon <agk at redhat.com> - 2.02.63-2
- Remove 'lvmconf --lockinglibdir' from cluster post: locking is now built-in.
- Move libdevmapper-event-lvm2.so to devel package.
- Explicitly specify libdevmapper-event.so* attributes.
- Drop support for upgrades from very old versions that used lvm not lvm2.
- Move libdevmapper-event plug-in libraries into new device-mapper subdirectory.
- Don't verify lvm.conf contents when using rpm --verify.
* Wed Apr 14 2010 Alasdair Kergon <agk at redhat.com> - 2.02.63-1
- Move development links to shared objects to /usr (hard-coded temporarily).
- Change libdevmapper deactivation to fail if device is open.
- Wipe memory buffers for libdevmapper dm-ioctl parameters before releasing.
- Strictly require libudev if udev_sync is used.
- Add support for ioctl's DM_UEVENT_GENERATED_FLAG.
- Allow incomplete mirror restore in lvconvert --repair upon insufficient space.
- Do not reset position in metadata ring buffer on vgrename and vgcfgrestore.
- Allow VGs with active LVs to be renamed.
- Only pass visible LVs to tools in cmdline VG name/tag expansions without -a.
- Use C locale and mlockall in clvmd and dmeventd.
- Mask LCK_HOLD in cluster VG locks for upgrade compatibility with older clvmd.
- Add activation/polling_interval to lvm.conf as --interval default.
- Don't ignore error if resuming any LV fails when resuming groups of LVs.
- Skip closing persistent filter cache file if open failed.
- Permit mimage LVs to be striped in lvcreate, lvresize and lvconvert.
- Fix pvmove allocation to take existing parallel stripes into account.
- Fix incorrect removal of symlinks after LV deactivation fails.
- Fix is_partitioned_dev not to attempt to reopen device.
- Fix another thread race in clvmd.
- Improve vg_validate to detect some loops in lists.
- Change most remaining log_error WARNING messages to log_warn.
- Always use blocking lock for VGs and orphan locks.
- Allocate all memory for segments from private VG mempool.
- Optimise searching PV segments for seeking the most recently-added.
- Remove duplicated vg_validate checks when parsing cached metadata.
- Use hash table of LVs to speed up parsing of text metadata with many LVs.
- Fix two vg_validate messages, adding whitespace and parentheses.
- When dmeventd is not forking because of -d flag, don't kill parent process.
- Fix dso resource leak in error path of dmeventd.
- Fix --alloc contiguous policy only to allocate one set of parallel areas.
- Do not allow {vg|lv}change --ignoremonitoring if on clustered VG.
- Add ability to create mirrored logs for mirror LVs.
- Fix clvmd cluster propagation of dmeventd monitoring mode.
- Allow ALLOC_ANYWHERE to split contiguous areas.
- Add some assertions to allocation code.
- Introduce pv_area_used into allocation algorithm and add debug messages.
- Add activation/monitoring to lvm.conf.
- Add --monitor and --ignoremonitoring to lvcreate.
- Don't allow resizing of internal logical volumes.
- Fix libdevmapper-event pkgconfig version string to match libdevmapper.
- Avoid scanning all pvs in the system if operating on a device with mdas.
- Disable long living process flag in lvm2app library.
- Fix pvcreate device md filter check.
- Suppress repeated errors about the same missing PV uuids.
- Bypass full device scans when using internally-cached VG metadata.
- Only do one full device scan during each read of text format metadata.
- Look up missing PVs by uuid not dev_name in pvs to avoid invalid stat.
* Tue Mar  9 2010 Alasdair Kergon <agk at redhat.com> - 2.02.62-1
- Rewrite clvmd init script.
- Add default alternative to mlockall using mlock to reduce pinned memory size.
- Add use_mlockall and mlock_filter to activation section of lvm.conf.
- Handle misaligned devices that report alignment_offset of -1.
- Extend core allocation code in preparation for mirrored log areas.
- No longer fall back to looking up active devices by name if uuid not found.
- Don't touch /dev in vgmknodes if activation is disabled.
- Add --showkeys parameter description to dmsetup man page.
- Add --help option as synonym for help command.
- Add lvm2app functions lvm_{vg|lv}_{get|add|remove}_tag() functions.
- Refactor snapshot-merge deptree and device removal to support info-by-uuid.
* Fri Mar  5 2010 Peter Rajnoha <prajnoha at redhat.com> - 2.02.61-2
- Change spec file to support excluding cluster components from the build.
* Tue Feb 16 2010 Alasdair Kergon <agk at redhat.com> - 2.02.61-1
- Add %ORIGIN support to lv{create,extend,reduce,resize} --extents.
- Accept a list of LVs with 'lvconvert --merge @tag' using process_each_lv.
- Remove false "failed to find tree node" error when activating merging origin.
- Exit with success when lvconvert --repair --use-policies performs no action.
- Avoid unnecessary second resync when adding mimage to core-logged mirror.
- Make clvmd -V return status zero.
- Fix cmirrord segfault in clog_cpg list processing when converting mirror log.
- Deactivate temporary pvmove mirror cluster-wide when activating it fails.
- Add missing metadata vg_reverts in pvmove error paths.
- Unlock shared lock in clvmd if activation calls fail.
- Add lvm_pv_get_size, lvm_pv_get_free and lvm_pv_get_dev_size to lvm2app.
- Change lvm2app to return all sizes in bytes as documented (not sectors).
- Exclude internal VG names and uuids from lists returned through lvm2app.
- Add LVM_SUPPRESS_LOCKING_FAILURE_MESSAGES environment variable.
- Add DM_UDEV_DISABLE_LIBRARY_FALLBACK udev flag to rely on udev only.
- Remove hard-coding that skipped _mimage devices from 11-dm-lvm.rules.
- Export dm_udev_create_cookie function to create new cookies on demand.
- Add --udevcookie, udevcreatecookie and udevreleasecookie to dmsetup.
- Set udev state automatically instead of using DM_UDEV_DISABLE_CHECKING.
- Set udev state automatically instead of using LVM_UDEV_DISABLE_CHECKING.
- Remove pointless versioned symlinks to dmeventd plugin libraries.
* Fri Jan 29 2010 Alasdair Kergon <agk at redhat.com> - 2.02.60-5
- Replace spaces with tabs in a couple of places in spec file.
* Sat Jan 23 2010 Alasdair Kergon <agk at redhat.com> - 2.02.60-4
- Extend cmirrord man page.
- Sleep before first progress check iff pvmove/lvconvert interval has prefix '+'.
- Fix cmirror initscript syntax problems.
- Fix first syslog message prefix for dmeventd plugins.
- Make failed locking initialisation messages more descriptive.
* Fri Jan 22 2010 Alasdair Kergon <agk at redhat.com> - 2.02.59-3
- Fix dmeventd lvm2 wrapper (plug-ins unusable in last build).
- Make failed locking initialisation messages more descriptive.
* Fri Jan 22 2010 Fabio M. Di Nitto <fdinitto at redhat.com> - 2.02.59-2
- Drop duplicated BuildRequires on openaislib-devel.
- Drop Requires on clusterlib for cmirror subpackage.
- clvmd subpackage should Requires cman (#506592).
* Fri Jan 22 2010 Alasdair Kergon <agk at redhat.com> - 2.02.59-1
- Add cmirror subpackage for clustered mirrors.
- Set 'preferred_names' in default lvm.conf.
- Add libdevmapper-event-lvm2.so to serialise dmeventd plugin liblvm2cmd use.
- Stop dmeventd trying to access already-removed snapshots.
- Fix clvmd to never scan suspended devices.
- Fix detection of completed snapshot merge.
- Improve snapshot merge metadata import validation.
* Thu Jan 14 2010 Alasdair Kergon <agk at redhat.com> - 2.02.58-1
- Fix clvmd automatic target module loading crash.
- Fix allocation code not to stop at the first area of a PV that fits.
- Add support for the "snapshot-merge" kernel target (2.6.33-rc1).
- Add --merge to lvconvert to merge a snapshot into its origin.
* Tue Jan 12 2010 Alasdair Kergon <agk at redhat.com> - 2.02.57-1
- Add --splitmirrors to lvconvert to split off part of a mirror.
- Allow vgremove to remove a VG with PVs missing after a prompt.
- Add activation/udev_rules config option in lvm.conf.
- Add --poll flag to vgchange and lvchange to control background daemon launch.
- Impose limit of 8 mirror images to match the in-kernel kcopyd restriction.
- Log failure type and recognise type 'F' (flush) in dmeventd mirror plugin.
- Add --noudevrules option for dmsetup to disable /dev node management by udev.
- Fix 'dmsetup info -c -o all' to show all fields.
- Fix coredump and memory leak for 'dmsetup help -c'.
- Rename mirror_device_fault_policy to mirror_image_fault policy.
- Use extended status of new kernel snapshot target 1.8.0 to detect when empty.
- Allow use of precommitted metadata when a PV is missing.
- Add global/abort_on_internal_errors to lvm.conf to assist testing.
- If aborting due to internal error, always send that message to stderr.
- Keep log type consistent when changing mirror image count.
- Exit with success in lvconvert --repair --use-policies on failed allocation.
- Ensure any background daemon exits without duplicating parent's functionality.
- Change background daemon process names to "(lvm2)".
- Fix internal lock state after forking.
- Remove empty PV devices if lvconvert --repair is using defined policies.
- Use fixed buffer to prevent stack overflow in persistent filter dump.
- Propagate metadata commit and revert notifications to other cluster nodes.
- Fix metadata caching and lock state propagation to remote nodes in clvmd.
- Properly decode all flags in clvmd messages including VG locks.
- Drop cached metadata after device was auto-repaired and removed from VG.
- Clear MISSING_PV flag if PV reappeared and is empty.
- Fix removal of multiple devices from a mirror.
- Also clean up PVs flagged as missing in vgreduce --removemissing --force.
- Fix some pvresize and toollib error paths with missing VG releases/unlocks.
- Explicitly call suspend for temporary mirror layer.
- Add memlock information to do_lock_lv debug output.
- Always bypass calls to remote cluster nodes for non-clustered VGs.
- Permit implicit cluster lock conversion in pre/post callbacks on local node.
- Permit implicit cluster lock conversion to the lock mode already held.
- Fix lock flag masking in clvmd so intended code paths get invoked.
- Remove newly-created mirror log from metadata if initial deactivation fails.
- Improve pvmove error message when all source LVs are skipped.
- Fix memlock imbalance in lv_suspend if already suspended.
- Fix pvmove test mode not to poll (and fail).
- Fix vgcreate error message if VG already exists.
- Fix tools to use log_error when aborted due to user response to prompt.
- Fix ignored readahead setting in lvcreate --readahead.
- Fix clvmd memory leak in lv_info_by_lvid by calling release_vg.
- If LVM_UDEV_DISABLE_CHECKING is set in environment, disable udev warnings.
- If DM_UDEV_DISABLE_CHECKING is set in environment, disable udev warnings.
- Always set environment variables for an LVM2 device in 11-dm-lvm.rules.
- Disable udev rules for change events with DISK_RO set.
- Add dm_tree_add_dev_with_udev_flags to provide wider support for udev flags.
- Correct activated or deactivated text in vgchange summary message.
- Fix fsadm man page typo (fsdam).
* Tue Nov 24 2009 Alasdair Kergon <agk at redhat.com> - 2.02.56-2
- Revert vg_read_internal change as clvmd was not ready for vg_read. (2.02.55)
- Fix unbalanced memory locking when deactivating LVs.
- Add missing vg_release to pvs and pvdisplay to fix memory leak.
- Do not try to unlock VG which is not locked when processing a VG.
- Update .cache file after every full device rescan in clvmd.
- Refresh all device filters (including sysfs) before each full device rescan.
- Return error status if vgchange fails to activate any volume.
* Thu Nov 19 2009 Alasdair Kergon <agk at redhat.com> - 2.02.55-1
- Fix deadlock when changing mirrors due to unpaired memlock refcount changes.
- Fix pvmove region_size overflow for very large PVs.
- Fix lvcreate and lvresize %PVS argument always to use sensible total size.
- Directly restrict vgchange to activating visible LVs.
- Fix hash lookup segfault when keys compared are different lengths.
- Flush stdout after yes/no prompt.
- Recognise DRBD devices and handle them like md devices.
- Add dmsetup --inactive support (requires kernel support targetted for 2.6.33).
* Fri Nov 13 2009 Peter Rajnoha <prajnoha at redhat.com> - 2.02.54-3
- Support udev flags even when udev_sync is disabled.
- Remove last_rule from udev_rules.
- Udev rules cleanup.
* Tue Nov  3 2009 Peter Rajnoha <prajnoha at redhat.com> - 2.02.54-2
- Enable udev synchronisation code.
- Install default udev rules for device-mapper and LVM2.
- Add BuildRequires: libudev-devel.
- Add Requires: libudev (to check udev is running).
- Add Requires: util-linux-ng (blkid used in udev rules).
- Add Conflicts: dracut < 002-18 (for dracut to install required udev rules)
* Tue Oct 27 2009 Alasdair Kergon <agk at redhat.com> - 2.02.54-1
- Add implict pvcreate support to vgcreate and vgextend.
- Add --pvmetadatacopies for pvcreate, vgcreate, vgextend, vgconvert.
- Distinguish between powers of 1000 and powers of 1024 in unit suffixes.
- Restart lvconverts in vgchange.
- Don't attempt to deactivate an LV if any of its snapshots are in use.
- Return error if lv_deactivate fails to remove device from kernel.
- Treat input units of both 's' and 'S' as 512-byte sectors.  (2.02.49)
- Use standard output units for 'PE Size' and 'Stripe size' in pv/lvdisplay.
- Add global/si_unit_consistency to enable cleaned-up use of units in output.
- Only do lock conversions in clvmd if we are explicitly asked for one.
- Fix clvmd segfault when refresh_toolcontext fails.
- Cleanup mimagetmp LV if allocation fails for new lvconvert mimage.
- Handle metadata with unknown segment types more gracefully.
- Make clvmd return 0 on success rather than 1.
- Correct example.conf to indicate that lvm2 not lvm1 is the default format.
- Delay announcing mirror monitoring to syslog until initialisation succeeded.
- Update lvcreate/lvconvert man pages to explain PhysicalVolume parameter.
- Document --all option in man pages and cleanup {pv|vg|lv}{s|display} pages.
* Mon Oct 19 2009 Fabio M. Di Nitto <fdinitto at redhat.com> - 2.02.53-3
- Enable openais support in clvmd.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #614248 - CVE-2010-2526 lvm2-cluster: insecurity when communicating between lvm2 and clvmd
        https://bugzilla.redhat.com/show_bug.cgi?id=614248
--------------------------------------------------------------------------------


================================================================================
 mr-0.49-1.fc12 (FEDORA-2010-13266)
 A multiple repository management tool
--------------------------------------------------------------------------------
Update Information:

* Fri Aug 20 2010 Fabian Affolter <fabian at bernewireless.net> - 0.49-1  - Updated
to new upstream version 0.49
--------------------------------------------------------------------------------
ChangeLog:

* Fri Aug 20 2010 Fabian Affolter <fabian at bernewireless.net> - 0.49-1
- Updated to new upstream version 0.49
--------------------------------------------------------------------------------


================================================================================
 mspdebug-0.10-2.fc12 (FEDORA-2010-13104)
 Debugger and gdb proxy for MSP430 MCUs
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #625501 - mspdebug-debuginfo-0.10-1.fc15 is empty
        https://bugzilla.redhat.com/show_bug.cgi?id=625501
  [ 2 ] Bug #610980 - Review Request: mspdebug - Debugger and gdb proxy for MSP430 MCUs
        https://bugzilla.redhat.com/show_bug.cgi?id=610980
--------------------------------------------------------------------------------


================================================================================
 nss-3.12.6-12.fc12 (FEDORA-2010-12857)
 Network Security Services
--------------------------------------------------------------------------------
Update Information:

This update fixes import problems experienced by applications which initialize
nss using the system-wide nss database as per the guidelines in
https://wiki.mozilla.org/NSS_Shared_DB_And_LINUX. Fixes failures to load the PEM
module when the nss-sisinit module is enabled. Adds supports for PKCS #8 encoded
PEM RSA private keys in the PEM module.
--------------------------------------------------------------------------------
ChangeLog:

* Sat Aug 14 2010 Elio Maldonado <emaldona at redhat.com> - 3.12.6-12
- Apply the patches to fix rhbz#614532
* Mon Aug  9 2010 Elio Maldonado <emaldona at redhat.com> - 3.12.6-11
- Removed pem sourecs as they are in the cache
* Mon Aug  9 2010 Elio Maldonado <emaldona at redhat.com> - 3.12.6-10
- Add support for PKCS#8 encoded PEM RSA private key files (#614532)
* Sat Jul 31 2010 Elio Maldonado <emaldona at redhat.com> - 3.12.6-9
- Fix nsssysinit to return userdb ahead of systemdb (#603313)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #603313 - Cannot import private key
        https://bugzilla.redhat.com/show_bug.cgi?id=603313
  [ 2 ] Bug #614532 - Add support for PKCS#8 encoded PEM RSA private key files
        https://bugzilla.redhat.com/show_bug.cgi?id=614532
  [ 3 ] Bug #619241 - https://www.flores-associates.com results in untrusted connection
        https://bugzilla.redhat.com/show_bug.cgi?id=619241
--------------------------------------------------------------------------------


================================================================================
 pam_mount-2.5-1.fc12 (FEDORA-2010-13155)
 A PAM module that can mount volumes for a user session
--------------------------------------------------------------------------------
Update Information:

Update to libHX 3.6 fixing a buffer overflow in HX_split():    * http://libhx.gi
t.sourceforge.net/git/gitweb.cgi?p=libhx/libhx;a=commitdiff;h=904a46f90d
pam_mount v2.5 (August 10 2010)  ===============================  Changes:  -
mount.crypt: fix incorrect processing of binary files in keyfile passthrough  -
call mount.crypt by means of mount -t crypt (selinux), same for umount  -
reorder the default path to search in /usr/local first, then /usr, /  - config:
add missing fd0ssh command to restore volumes using ssh  - ofl is now run as a
separate process (selinux policy simplification)    libHX v3.6 (August 16 2010)
===========================  Fixed:  - bitmap: set/clear/test had no effect due
to wrong type selection  - bitmap: avoid left-shift larger than type on 64-bit
- string: fixed buffer overflow in HX_split when too few fields were present in
the input    libHX 3.5 (August 01 2010)  ==========================  Fixed:  -
format2: failure to skip escaped char in "%(echo foo\ bar)" was corrected  -
proc: properly check for HXPROC_STDx--HXPROC_STDx_NULL overlap  - strquote: do
not cause allocation with invalid format numbers  Enhancements:  - format2: add
the %(exec) function  - format2: add the %(shell) function  - format2: security
feature for %(exec) and %(shell)  - format2: add the %(snl) function  - string:
HX_strquote gained HXQUOTE_LDAPFLT (LDAP search filter) support  - string:
HX_strquote gained HXQUOTE_LDAPRDN (LDAP relative DN) support  Changes:  -
format1: removed older formatter in favor of format2  - format2: add check for
empty key  - format2: function-specific delimiters  - format2: do nest-counting
even with normal parentheses  - format2: check for zero-argument function calls
- hashmap: do not needlessy change TID when no reshape was done  - string:
HX_basename (the fast variant) now recognizes the root directory  - string:
HX_basename now returns the trailing component with slashes instead of
everything after the last slash (which may have been nothing)
--------------------------------------------------------------------------------
ChangeLog:

* Mon Aug 16 2010 Till Maas <opensource at till.name> - 2.5-1
- Update to lastest release
- Update libHX dependency
- remove upstreamed patches
- do not package pam_mount.txt (RH #615714)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #615714 - Remove 1-byte "doc" file pam_mount.txt?
        https://bugzilla.redhat.com/show_bug.cgi?id=615714
  [ 2 ] Bug #622743 - pam_mount-2.5 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=622743
  [ 3 ] Bug #580585 - SELinux is preventing /bin/login "sys_ptrace" access (pam_mount problem)
        https://bugzilla.redhat.com/show_bug.cgi?id=580585
  [ 4 ] Bug #620583 - SELinux is preventing /usr/sbin/sshd "execute" access on /sbin/mount.crypt (pam_mount)
        https://bugzilla.redhat.com/show_bug.cgi?id=620583
  [ 5 ] Bug #625867 - libHX: buffer overrun in HX_split() [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=625867
--------------------------------------------------------------------------------


================================================================================
 rakudo-0.0.2010.07_2.6.0-2.fc12 (FEDORA-2010-13256)
 A Perl compiler on Parrot
--------------------------------------------------------------------------------
ChangeLog:

* Mon Aug 16 2010 Gerd Pokorra <gp at zimt.uni-siegen.de> 0.0.2010.07_2.6.0-2
- update to new source from the rakudo-star release 2010.07 on parrot 2.6.0
--------------------------------------------------------------------------------


================================================================================
 rekonq-0.5.0-2.fc12 (FEDORA-2010-12255)
 KDE browser based on QtWebkit
--------------------------------------------------------------------------------
Update Information:

Fixes CVE-2010-2536    New upstream version with following changes:  * improved
adblock, automagically updating filter lists (+abp scheme support)  * RSS
support  * new urlbar (tech preview): it's just nice and more will come..  *
auto-scrolling  * downloads history tracked  * SSL Info support  * Bookmarks &
history panels improvements  * bugfixing & users wishes
--------------------------------------------------------------------------------
ChangeLog:

* Tue Aug  3 2010 Thomas Janssen <thomasj at fedoraproject.org> 0.5.0-2
- added patch to fix CVE-2010-2536 (patch by Eelko)
- fixes #620897
* Tue Jul 13 2010 Eelko Berkenpies <fedora at berkenpi.es> 0.5.0-1
- rekonq 0.5.0
* Thu Jun 17 2010 Thomas Janssen <thomasj at fedoraproject.org> 0.4.95-1
- rekonq 0.4.95
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #620897 - CVE-2010-2536 rekonq: universal XSS issue
        https://bugzilla.redhat.com/show_bug.cgi?id=620897
--------------------------------------------------------------------------------


================================================================================
 ricci-0.18.1-1.fc12 (FEDORA-2010-13253)
 Remote Cluster and Storage Management System
--------------------------------------------------------------------------------
Update Information:

This update addresses several major issues and makes the packages working again.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 19 2010 Chris Feist <cfeist at redhat.com> - 0.18-1
- Sync up to latest source tree (0.18)
--------------------------------------------------------------------------------


================================================================================
 roundup-1.4.15-1.fc12 (FEDORA-2010-12269)
 Simple and flexible issue-tracking system
--------------------------------------------------------------------------------
Update Information:

update to 1.4.15
--------------------------------------------------------------------------------
ChangeLog:

* Sun Aug  1 2010 John Khvatov <ivaxer at fedoraproject.org> - 1.4.15-1
- updated to 1.4.15
* Thu Jul 22 2010 David Malcolm <dmalcolm at redhat.com> - 1.4.13-3
- Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #610861 - roundup: XSS by processing PageTemplate template for a named page
        https://bugzilla.redhat.com/show_bug.cgi?id=610861
--------------------------------------------------------------------------------


================================================================================
 rubygem-state_machine-0.9.4-2.fc12 (FEDORA-2010-13243)
 Adds support for creating state machines for attributes on any Ruby class
--------------------------------------------------------------------------------
ChangeLog:

* Sun Aug 15 2010 Guillermo Gómez <gomix at fedoraproject.org> - 0.9.4-2
- Documentation splitted in -doc subpackage.
* Tue Aug 10 2010 Guillermo Gomez <gomix at fedoraproject.org> - 0.9.4-1
- Release 0.9.4 of state_machine.
--------------------------------------------------------------------------------


================================================================================
 selinux-policy-3.6.32-121.fc12 (FEDORA-2010-13257)
 SELinux policy configuration
--------------------------------------------------------------------------------
Update Information:

* Tue Aug 17 2010 Miroslav Grepl <mgrepl at redhat.com> 3.6.32-121   - Fix label
for mount.crypt  - Allow dhcpc to read Network Manger lib files  - Add
httpd_setrlimit boolean
--------------------------------------------------------------------------------
ChangeLog:

* Tue Aug 17 2010 Miroslav Grepl <mgrepl at redhat.com> 3.6.32-121
- Fix label for mount.crypt
- Allow dhcpc to read Network Manger lib files
- Add httpd_setrlimit boolean
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #624617 - SELinux is preventing /usr/sbin/abrtd "create" access      on abrt.socket.
        https://bugzilla.redhat.com/show_bug.cgi?id=624617
  [ 2 ] Bug #623812 - SELinux is preventing /usr/bin/uux "execute_no_trans" access      on /usr/bin/uux.
        https://bugzilla.redhat.com/show_bug.cgi?id=623812
  [ 3 ] Bug #622929 - SELinux verhindert /sbin/mount.crypt "write" Zugriff     on mapper.
        https://bugzilla.redhat.com/show_bug.cgi?id=622929
  [ 4 ] Bug #622770 - SELinux empêche l'accès en "write" à /sbin/sysctl
        https://bugzilla.redhat.com/show_bug.cgi?id=622770
  [ 5 ] Bug #622739 - SELinux /usr/bin/qemu-kvm on /dev/net/t
        https://bugzilla.redhat.com/show_bug.cgi?id=622739
  [ 6 ] Bug #622476 - SELinux is preventing /sbin/dhclient "search" access      on /var/lib/wicd.
        https://bugzilla.redhat.com/show_bug.cgi?id=622476
  [ 7 ] Bug #574248 - SELinux is preventing /usr/sbin/sshd "getattr" access      on /var/lib/BackupPC/.ssh/authorized_keys.
        https://bugzilla.redhat.com/show_bug.cgi?id=574248
  [ 8 ] Bug #571924 - lighttpd's server.max-fds conflicts with SELinux policy
        https://bugzilla.redhat.com/show_bug.cgi?id=571924
--------------------------------------------------------------------------------


================================================================================
 sems-1.2.1-6.fc12 (FEDORA-2010-13248)
 SIP Express Media Server, an extensible SIP media server
--------------------------------------------------------------------------------
Update Information:

Fixed severe issue, which caused segfaults Several minor bugfixes and one big
fix for regression in modules conference and early_media.
--------------------------------------------------------------------------------
ChangeLog:

* Fri Aug 20 2010 Peter Lemenkov <lemenkov at gmail.com> 1.2.1-6
- Fixed severe issue in early_announce module (see %patch12)
* Sat Jul 31 2010 Toshio Kuratomi <toshio at fedoraproject.org> 1.2.1-5
- rebuild for python 2.7
--------------------------------------------------------------------------------



More information about the test mailing list