Fedora 12 updates-testing report

updates at fedoraproject.org updates at fedoraproject.org
Thu Nov 11 22:26:12 UTC 2010


The following Fedora 12 Security updates need testing:

    https://admin.fedoraproject.org/updates/bzip2-1.0.6-1.fc12
    https://admin.fedoraproject.org/updates/mailman-2.1.12-10.fc12
    https://admin.fedoraproject.org/updates/bugzilla-3.4.9-1.fc12
    https://admin.fedoraproject.org/updates/gif2png-2.5.1-1202.fc12
    https://admin.fedoraproject.org/updates/cups-1.4.4-11.fc12
    https://admin.fedoraproject.org/updates/pam-1.1.1-6.fc12
    https://admin.fedoraproject.org/updates/clamav-0.96.4-1200.fc12
    https://admin.fedoraproject.org/updates/mod_fcgid-2.3.6-1.fc12


The following Fedora 12 Critical Path updates have yet to be approved:

    https://admin.fedoraproject.org/updates/mingetty-1.08-6.fc12
    https://admin.fedoraproject.org/updates/tzdata-2010o-1.fc12
    https://admin.fedoraproject.org/updates/pungi-2.0.20.1-1.fc12
    https://admin.fedoraproject.org/updates/NetworkManager-0.8.1-10.git20100831.fc12
    https://admin.fedoraproject.org/updates/pam-1.1.1-6.fc12
    https://admin.fedoraproject.org/updates/findutils-4.4.2-7.fc12
    https://admin.fedoraproject.org/updates/nss-softokn-3.12.4-16.fc12
    https://admin.fedoraproject.org/updates/xorg-x11-drv-ati-6.13.0-0.22.20100316git819b4015.fc12
    https://admin.fedoraproject.org/updates/binutils-2.19.51.0.14-38.fc12
    https://admin.fedoraproject.org/updates/util-linux-ng-2.16.2-4.fc12
    https://admin.fedoraproject.org/updates/xorg-x11-drv-synaptics-1.2.0-3.fc12
    https://admin.fedoraproject.org/updates/findutils-4.4.2-5.fc12


The following builds have been pushed to Fedora 12 updates-testing

    b43-openfwwf-5.2-5.fc12
    cups-1.4.4-11.fc12
    iodine-0.6.0-0.rc1.6.fc12
    mingetty-1.08-6.fc12
    xscreensaver-5.12-7.fc12

Details about builds:


================================================================================
 b43-openfwwf-5.2-5.fc12 (FEDORA-2010-17617)
 Open firmware for some Broadcom 43xx series WLAN chips
--------------------------------------------------------------------------------
Update Information:

* Changed directory for storing firmware (rhbz #651350)

--------------------------------------------------------------------------------
ChangeLog:

* Thu Nov 11 2010 Peter Lemenkov <lemenkov at gmail.com> 5.2-5
- Changed directory for storing firmware (rhbz #651350)
* Tue Mar 16 2010 John W. Linville <linville at redhat.com> 5.2-4
- Remove erroneous copyright notice from README.openfwwf
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #651350 - B43 open firmware placed in worng directory
        https://bugzilla.redhat.com/show_bug.cgi?id=651350
--------------------------------------------------------------------------------


================================================================================
 cups-1.4.4-11.fc12 (FEDORA-2010-17627)
 Common Unix Printing System
--------------------------------------------------------------------------------
Update Information:

This update fixes a cupsd memory corruption vulnerability (CVE-2010-2941).
--------------------------------------------------------------------------------
ChangeLog:

* Thu Nov 11 2010 Tim Waugh <twaugh at redhat.com> 1:1.4.4-11
- Applied patch to fix cupsd memory corruption vulnerability
  (CVE-2010-2941, bug #652161).
* Fri Oct 15 2010 Tim Waugh <twaugh at redhat.com> 1:1.4.4-10
- Don't crash when MIME database could not be loaded (bug #610088).
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #624438 - CVE-2010-2941 cups: cupsd memory corruption vulnerability
        https://bugzilla.redhat.com/show_bug.cgi?id=624438
--------------------------------------------------------------------------------


================================================================================
 iodine-0.6.0-0.rc1.6.fc12 (FEDORA-2010-17613)
 Solution to tunnel IPv4 data through a DNS server
--------------------------------------------------------------------------------
ChangeLog:

* Tue Oct 26 2010 Pavel Alexeev <Pahan at Hubbitus.info> - 0.6.0-0.rc1.6
- Add -DLINUX to build options (BZ#644310, thanks to Andy Shevchenko)
- Fix service scripts to find binaries in /usr/sbin instead of /usr/bin (BZ#644299 thanks to Andy Shevchenko)
- Add 0600 file attributes to prevent password access from regular users (BZ#644305).
- In comments configs add IODINE(D)_PASS variables description (BZ#644317).
* Wed Sep 29 2010 jkeating - 0.6.0-0.rc1.4.2
- Rebuilt for gcc bug 634757
* Wed Sep 29 2010 jkeating - 0.6.0-0.rc1.4.1
- Rebuilt for gcc bug 634757
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #644305 - Password is visible to non-root users
        https://bugzilla.redhat.com/show_bug.cgi?id=644305
  [ 2 ] Bug #644299 - mistakes in the init script and packaging make this unusable
        https://bugzilla.redhat.com/show_bug.cgi?id=644299
  [ 3 ] Bug #644317 - [RFE] use IODINE_PASS and IODINED_PASS as a pssword holders
        https://bugzilla.redhat.com/show_bug.cgi?id=644317
  [ 4 ] Bug #644310 - iodine is compiled wrongly, thus, totally unusable
        https://bugzilla.redhat.com/show_bug.cgi?id=644310
--------------------------------------------------------------------------------


================================================================================
 mingetty-1.08-6.fc12 (FEDORA-2010-17614)
 A compact getty program for virtual consoles only
--------------------------------------------------------------------------------
ChangeLog:

* Wed Nov 10 2010 Petr Pisar <ppisar at redhat.com> - 1.08-6
- Allow login name up to LOGIN_NAME_MAX length (bug #647143)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #647143 - If console login, username with about 100 chars are not prompted for a passwd
        https://bugzilla.redhat.com/show_bug.cgi?id=647143
--------------------------------------------------------------------------------


================================================================================
 xscreensaver-5.12-7.fc12 (FEDORA-2010-17623)
 X screen saver and locker
--------------------------------------------------------------------------------
Update Information:

When the default image directory (/usr/share/backgrounds/images/) is missing (which can happen on non-GNOME desktop environment) xscreensaver-demo repeatedly raises popup window containing "Error" messages about this.

With this new rpm, when image directory is missing, xscreensaver-demo "warns" about it only once.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Nov 11 2010 Mamoru Tasaka <mtasaka at ioa.s.u-tokyo.ac.jp> - 1:5.12-7
- Warn (not say "Error") about missing image directory, and warn
  only once (bug 648304)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #648304 - xscreensaver-demo popups warning about missing directory every time choosing hack
        https://bugzilla.redhat.com/show_bug.cgi?id=648304
--------------------------------------------------------------------------------



More information about the test mailing list