Fedora 14 updates-testing report

updates at fedoraproject.org updates at fedoraproject.org
Mon Mar 7 21:07:59 UTC 2011


The following Fedora 14 Security updates need testing:

    https://admin.fedoraproject.org/updates/libcgroup-0.36.2-6.fc14
    https://admin.fedoraproject.org/updates/wireshark-1.4.4-1.fc14
    https://admin.fedoraproject.org/updates/libxml2-2.7.7-3.fc14
    https://admin.fedoraproject.org/updates/subversion-1.6.16-1.fc14
    https://admin.fedoraproject.org/updates/php-ZendFramework-1.11.4-1.fc14
    https://admin.fedoraproject.org/updates/clamav-0.97-1400.fc14
    https://admin.fedoraproject.org/updates/logwatch-7.3.6-60.fc14
    https://admin.fedoraproject.org/updates/php-pear-1.9.2-1.fc14
    https://admin.fedoraproject.org/updates/seamonkey-2.0.12-1.fc14
    https://admin.fedoraproject.org/updates/whatsup-1.12-1.fc14
    https://admin.fedoraproject.org/updates/cgit-0.9-1.fc14
    https://admin.fedoraproject.org/updates/openldap-2.4.23-9.fc14
    https://admin.fedoraproject.org/updates/couchdb-1.0.2-1.fc14
    https://admin.fedoraproject.org/updates/mailman-2.1.13-7.fc14
    https://admin.fedoraproject.org/updates/asterisk-1.6.2.17-1.fc14
    https://admin.fedoraproject.org/updates/pywebdav-0.9.4.1-1.fc14
    https://admin.fedoraproject.org/updates/thunderbird-3.1.8-3.fc14
    https://admin.fedoraproject.org/updates/perl-Mail-Box-2.097-1.fc14
    https://admin.fedoraproject.org/updates/389-admin-1.1.15-1.fc14
    https://admin.fedoraproject.org/updates/tor-0.2.1.29-1400.fc14
    https://admin.fedoraproject.org/updates/samba-3.5.7-73.fc14
    https://admin.fedoraproject.org/updates/vsftpd-2.3.4-1.fc14
    https://admin.fedoraproject.org/updates/exim-4.72-2.fc14
    https://admin.fedoraproject.org/updates/feh-1.10.1-1.fc14


The following Fedora 14 Critical Path updates have yet to be approved:

    https://admin.fedoraproject.org/updates/gdb-7.2-46.fc14
    https://admin.fedoraproject.org/updates/libxml2-2.7.7-3.fc14
    https://admin.fedoraproject.org/updates/libconfig-1.4.6-1.fc14
    https://admin.fedoraproject.org/updates/openldap-2.4.23-9.fc14
    https://admin.fedoraproject.org/updates/lua-5.1.4-7.fc14
    https://admin.fedoraproject.org/updates/mobile-broadband-provider-info-1.20110218-1.fc14
    https://admin.fedoraproject.org/updates/xorg-x11-drv-geode-2.11.11-4.fc14
    https://admin.fedoraproject.org/updates/libmodman-2.0.0-1.fc14


The following builds have been pushed to Fedora 14 updates-testing

    cgit-0.9-1.fc14
    cutecw-1.0-1.fc14
    dovecot-2.0.11-1.fc14
    drbd-8.3.8.1-1.fc14
    fedora-release-notes-14.1.2-2.fc14
    fetchmail-6.3.17-3.fc14
    flies-python-client-0.8.0-1.fc14
    fuse-emulator-1.0.0.1-1.fc14
    ghc-hamlet-0.6.1.2-1.fc14
    ibus-m17n-1.3.2-1.fc14
    ksh-20110208-2.fc14
    microcode_ctl-1.17-8.fc14
    python-pika-0.9.4-1.fc14
    seamonkey-2.0.12-1.fc14
    spice-vdagent-0.6.3-6.fc14
    whatsup-1.12-1.fc14
    xfce4-volumed-0.1.12-1.fc14
    xlog-2.0.5-1.fc14

Details about builds:


================================================================================
 cgit-0.9-1.fc14 (FEDORA-2011-2803)
 A fast web interface for git
--------------------------------------------------------------------------------
Update Information:

In addition to closing a DOS vulnerability (thanks to Jim Meyering), this upstream feature release adds the following enhancements:

* Support for side-by-side diffs
* Support for repo content in "about" view
* Improved integration with gitolite/gitweb
* Support for git notes in commit/log view
* Support for graph in log view (similar to 'git log --graph')
* Improved handling/display of path filters
* Clients can modify diff view parameters
* Support for directory listings in plain view
* Support for remote branches
* Support for range searches in log view (like 'git log master ^stable)
* Support for expansion of environment vars in certain cgitrc options, which can simplify virtual hosting

The release announcement has a more complete changelog:

http://article.gmane.org/gmane.comp.version-control.git/168496

--------------------------------------------------------------------------------
ChangeLog:

* Sun Mar  6 2011 Todd Zullinger <tmz at pobox.com> - 0.9-1
- Update to 0.9
- Fixes: CVE-2011-1027
  http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1027
- Generate and install man page and html docs
- Use libcurl-devel on RHEL >= 6
- Include example filter scripts
- Update example cgitrc
* Tue Feb  8 2011 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 0.8.2.1-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #680905 - CVE-2011-1027 cgit: invalid hex escape (e.g., %GG) in query triggers infinite loop
        https://bugzilla.redhat.com/show_bug.cgi?id=680905
--------------------------------------------------------------------------------


================================================================================
 cutecw-1.0-1.fc14 (FEDORA-2011-2817)
 Morse Code (CW) Training Software
--------------------------------------------------------------------------------
Update Information:

Updated to version 1.0 which provides significant improvements
--------------------------------------------------------------------------------
ChangeLog:

* Sun Mar  6 2011 Wes Hardaker <wjhns174 at hardakers.net> - 1.0-1
- Updated to 1.0 upstream
--------------------------------------------------------------------------------


================================================================================
 dovecot-2.0.11-1.fc14 (FEDORA-2011-2808)
 Secure imap and pop3 server
--------------------------------------------------------------------------------
Update Information:

- IMAP: Fixed hangs with COMPRESS extension
- IMAP: Fixed a hang when trying to COPY to a nonexistent mailbox. 
- IMAP: Fixed hang/crash with SEARCHRES + pipelining $.
- IMAP: Fixed assert-crash if IDLE+DONE is sent in same TCP packet.
--------------------------------------------------------------------------------
ChangeLog:

* Mon Mar  7 2011 Michal Hlavinka <mhlavink at redhat.com> - 1:2.0.11-1
- IMAP: Fixed hangs with COMPRESS extension
- IMAP: Fixed a hang when trying to COPY to a nonexistent mailbox.
- IMAP: Fixed hang/crash with SEARCHRES + pipelining $.
- IMAP: Fixed assert-crash if IDLE+DONE is sent in same TCP packet.
--------------------------------------------------------------------------------


================================================================================
 drbd-8.3.8.1-1.fc14 (FEDORA-2011-2793)
 DRBD driver for Linux
--------------------------------------------------------------------------------
Update Information:

This package update brings the drbd client tools in line with the drbd module in Fedora 14's current kernel set.
--------------------------------------------------------------------------------
ChangeLog:

* Tue Mar  1 2011 Major Hayden <major at mhtx.net - 8.3.8.1-1
- New upstream release.
--------------------------------------------------------------------------------


================================================================================
 fedora-release-notes-14.1.2-2.fc14 (FEDORA-2011-2813)
 Release Notes
--------------------------------------------------------------------------------
Update Information:

This package update fixes a missing scriptlet dependency on /bin/touch.
--------------------------------------------------------------------------------
ChangeLog:

* Mon Feb 21 2011 Paul W. Frields <stickster at gmail.com> - 14.1.2-2
- Add /bin/touch requirement to fix post/postun noise (#669296)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #633137 - fedora-release-notes needs requires(post) and requires(postun) on coreutils
        https://bugzilla.redhat.com/show_bug.cgi?id=633137
--------------------------------------------------------------------------------


================================================================================
 fetchmail-6.3.17-3.fc14 (FEDORA-2011-2799)
 A remote mail retrieval and forwarding utility
--------------------------------------------------------------------------------
Update Information:

This update drops server(smtp) dependency.
--------------------------------------------------------------------------------
ChangeLog:

* Mon Mar  7 2011 Vitezslav Crhonek <vcrhonek at redhat.com> - 6.3.17-3
- Remove server(smtp) dependency
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #682468 - fetchmail should not have dependency on a MTA e.g. Exim
        https://bugzilla.redhat.com/show_bug.cgi?id=682468
--------------------------------------------------------------------------------


================================================================================
 flies-python-client-0.8.0-1.fc14 (FEDORA-2011-2802)
 Python Client for Flies Server
--------------------------------------------------------------------------------
ChangeLog:

* Mon Mar  7 2011 James Ni <jni at redhat.com> - 0.8.0
- Stable release
* Wed Feb 23 2011 James Ni <jni at redhat.com> - 0.7.6-1
- Rename the command line option, add a Logger class for better output, set copytrans default value to true, make the
  extensions to a list of gettext and comment.
* Tue Feb 22 2011 James Ni <jni at redhat.com> - 0.7.4-1
- Fix issue 245:stop processing when type 'n', Add version service, rename the command line option and help info, add
  InternalServerError
* Mon Feb 21 2011 James Ni <jni at redhat.com> - 0.7.3-1
- Fix issue 244, issue 245, issue 247 and issue 30, add command list for 'flies publican', rewrite the README
* Fri Feb 18 2011 James Ni <jni at redhat.com> - 0.7.2-1
- Rename the gettextutil to publicanutil, Remove the translator from textFlowTarget, Add more help info
* Tue Feb  8 2011 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 0.7.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
--------------------------------------------------------------------------------


================================================================================
 fuse-emulator-1.0.0.1-1.fc14 (FEDORA-2011-2795)
 The Free UNIX Spectrum Emulator
--------------------------------------------------------------------------------
Update Information:

Update to latest upstream release.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Mar  3 2011 Lucian Langa <cooly at gnome.eu.org> - 1.0.0.1-1
- new upstream release
* Tue Feb  8 2011 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 1.0.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
--------------------------------------------------------------------------------


================================================================================
 ghc-hamlet-0.6.1.2-1.fc14 (FEDORA-2011-2818)
 Haml-like template files that are compile-time checked
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #630292 - Review Request: ghc-hamlet - Haml-like template files that are compile-time checked
        https://bugzilla.redhat.com/show_bug.cgi?id=630292
--------------------------------------------------------------------------------


================================================================================
 ibus-m17n-1.3.2-1.fc14 (FEDORA-2011-2816)
 The M17N engine for IBus platform
--------------------------------------------------------------------------------
Update Information:

new upstream release
--------------------------------------------------------------------------------
ChangeLog:

* Mon Mar  7 2011 Daiki Ueno <dueno at redhat.com> - 1.3.2-1
- New upstream release.
--------------------------------------------------------------------------------


================================================================================
 ksh-20110208-2.fc14 (FEDORA-2011-2800)
 The Original ATT Korn Shell
--------------------------------------------------------------------------------
Update Information:

- fix ( ) compound list altering environment
- updated to 2011-02-02
- fixed crash caused by wrong wctrans_t size 
--------------------------------------------------------------------------------
ChangeLog:

* Mon Mar  7 2011 Michal Hlavinka <mhlavink at redhat.com> - 20110208-1
- fix ( ) compound list altering environment
* Wed Feb  9 2011 Michal Hlavinka <mhlavink at redhat.com> - 20110208-1
- ksh updated to 2011-02-08
- ksh updated to 2011-02-08
* Fri Feb  4 2011 Michal Hlavinka <mhlavink at redhat.com> - 20110202-1
- ksh updated to 2011-02-02
* Wed Feb  2 2011 Michal Hlavinka <mhlavink at redhat.com> - 20110131-1
- ksh updated to 2011-01-31
* Fri Jan 28 2011 Michal Hlavinka <mhlavink at redhat.com> - 20110127-1
- ksh updated to 2011-01-27
* Thu Jan 20 2011 Michal Hlavinka <mhlavink at redhat.com> - 20110118-1
- ksh updated to 2011-01-18
* Mon Jan 17 2011 Michal Hlavinka <mhlavink at redhat.com> - 20110104-1
- ksh updated to 2011-01-04
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #667670 - [abrt] ksh-20110104-1.fc15: towctrans: Process /bin/ksh was killed by signal 11 (SIGSEGV)
        https://bugzilla.redhat.com/show_bug.cgi?id=667670
  [ 2 ] Bug #664106 - Regression in ksh-20101212
        https://bugzilla.redhat.com/show_bug.cgi?id=664106
--------------------------------------------------------------------------------


================================================================================
 microcode_ctl-1.17-8.fc14 (FEDORA-2011-2807)
 Tool to update x86/x86-64 CPU microcode.
--------------------------------------------------------------------------------
Update Information:

amd microcode update
--------------------------------------------------------------------------------
ChangeLog:

* Mon Mar  7 2011 Anton Arapov <anton at redhat.com> 1.17-8
- Update to amd-ucode-2011-01-11.tar
--------------------------------------------------------------------------------


================================================================================
 python-pika-0.9.4-1.fc14 (FEDORA-2011-2804)
 AMQP 0-9-1 client library for Python
--------------------------------------------------------------------------------
Update Information:

Updated python-pika to version 0.9.4.
--------------------------------------------------------------------------------
ChangeLog:

* Sun Mar  6 2011 Ilia Cheishvili <ilia.cheishvili at gmail.com> - 0.9.4-1
- Upgrade to version 0.9.4
--------------------------------------------------------------------------------


================================================================================
 seamonkey-2.0.12-1.fc14 (FEDORA-2011-2797)
 Web browser, e-mail, news, IRC client, HTML editor
--------------------------------------------------------------------------------
Update Information:

Update to new upstream SeaMonkey version 2.0.12, fixing multiple security issues detailed in the upstream advisories:

http://www.mozilla.org/security/known-vulnerabilities/seamonkey20.html#seamonkey2.0.12
--------------------------------------------------------------------------------
ChangeLog:

* Mon Mar  7 2011 Martin Stransky <stransky at redhat.com> 2.0.12-1
- Update to 2.0.12
--------------------------------------------------------------------------------


================================================================================
 spice-vdagent-0.6.3-6.fc14 (FEDORA-2011-2798)
 Agent for Spice guests
--------------------------------------------------------------------------------
Update Information:

- Fix setting of the guest resolution from a multi monitor client
- Make sysvinit script exit cleanly when not running on a spice enabled vm
- Put the pid and log files into their own subdir (#648553)

--------------------------------------------------------------------------------
ChangeLog:

* Mon Mar  7 2011 Hans de Goede <hdegoede at redhat.com> 0.6.3-6
- Fix setting of the guest resolution from a multi monitor client
* Wed Feb  9 2011 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 0.6.3-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
* Mon Jan 10 2011 Hans de Goede <hdegoede at redhat.com> 0.6.3-4
- Make sysvinit script exit cleanly when not running on a spice enabled vm
* Fri Nov 19 2010 Hans de Goede <hdegoede at redhat.com> 0.6.3-3
- Put the pid and log files into their own subdir (#648553)
--------------------------------------------------------------------------------


================================================================================
 whatsup-1.12-1.fc14 (FEDORA-2011-2801)
 Node up/down detection utility
--------------------------------------------------------------------------------
ChangeLog:

* Mon Mar  7 2011 Ruben Kerkhof <ruben at rubenkerkhof.com> 1.12-1
- Upstream released new version
- Link against system-provided expat (#652981)
- Fixes FTBFS (#661001)
- Drop patch for incorrect open which was merged upstream
* Thu Sep 30 2010 Dan Horák <dan[at]danny.cz> 1.10-2
- no InfiniBand on s390(x)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #661001 - FTBFS whatsup-1.10-1.fc14
        https://bugzilla.redhat.com/show_bug.cgi?id=661001
  [ 2 ] Bug #652981 - libnodeupdown-backend-ganglia contains an embedded copy of expat, prone to CVE-2009-3720
        https://bugzilla.redhat.com/show_bug.cgi?id=652981
--------------------------------------------------------------------------------


================================================================================
 xfce4-volumed-0.1.12-1.fc14 (FEDORA-2011-2819)
 Daemon to add additional functionality to the volume keys of the keyboard
--------------------------------------------------------------------------------
Update Information:

This update fixes a crash when the wrong soundcard is detected as default.
--------------------------------------------------------------------------------
ChangeLog:

* Sun Mar  6 2011 Christoph Wickert <cwickert at fedoraproject.org> - 0.1.12-1
- Update to 0.1.12 (fixes #680111)
* Mon Feb  7 2011 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 0.1.11-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
* Sat Nov 27 2010 Christoph Wickert <cwickert at fedoraproject.org> - 0.1.11-1
- Update to 0.1.11
* Sat Nov  6 2010 Christoph Wickert <cwickert at fedoraproject.org> - 0.1.10-2
- Fix for libnotify 0.7.0
* Wed Nov  3 2010 Christoph Wickert <cwickert at fedoraproject.org> - 0.1.10-1
- Update to 0.1.10 (#631199)
- Build requirements change: Require keybinder-devel instead of xcb-util-devel
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #680111 - [abrt] xfce4-volumed-0.1.11-2.fc15: xvd_calculate_avg_volume: Process /usr/bin/xfce4-volumed was killed by signal 8 (SIGFPE)
        https://bugzilla.redhat.com/show_bug.cgi?id=680111
--------------------------------------------------------------------------------


================================================================================
 xlog-2.0.5-1.fc14 (FEDORA-2011-2810)
 Logging program for Hamradio Operators
--------------------------------------------------------------------------------
Update Information:

Update to latest upstream release.
--------------------------------------------------------------------------------
ChangeLog:

* Sat Mar  5 2011 Lucian Langa <cooly at gnome.eu.org> - 2.0.5-1
- new upstream release
* Mon Feb  7 2011 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 2.0.4-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
--------------------------------------------------------------------------------



More information about the test mailing list