Fedora 20 updates-testing report

updates at fedoraproject.org updates at fedoraproject.org
Thu Jun 19 23:03:28 UTC 2014


The following Fedora 20 Security updates need testing:
 Age  URL
  49  https://admin.fedoraproject.org/updates/FEDORA-2014-5897/nrpe-2.15-2.fc20
  28  https://admin.fedoraproject.org/updates/FEDORA-2014-6551/chicken-4.8.0.6-2.fc20
  27  https://admin.fedoraproject.org/updates/FEDORA-2014-6615/drupal7-views-3.8-1.fc20
   9  https://admin.fedoraproject.org/updates/FEDORA-2014-7166/python-jinja2-2.7.3-1.fc20
   7  https://admin.fedoraproject.org/updates/FEDORA-2014-7296/tor-0.2.4.22-2.fc20
   6  https://admin.fedoraproject.org/updates/FEDORA-2014-7348/ReviewBoard-1.7.26-2.fc20,python-django-evolution-0.6.9-4.fc20
   6  https://admin.fedoraproject.org/updates/FEDORA-2014-7359/wireshark-1.10.7-3.fc20
   2  https://admin.fedoraproject.org/updates/FEDORA-2014-7406/rb_libtorrent-0.16.11-2.fc20
   2  https://admin.fedoraproject.org/updates/FEDORA-2014-7423/xen-4.3.2-5.fc20
   1  https://admin.fedoraproject.org/updates/FEDORA-2014-7446/openstack-neutron-2013.2.3-9.fc20
   1  https://admin.fedoraproject.org/updates/FEDORA-2014-7479/sos-3.1-1.fc20
   1  https://admin.fedoraproject.org/updates/FEDORA-2014-5497/openstack-keystone-2013.2.3-4.fc20
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-7523/readline-6.2-10.fc20


The following Fedora 20 Critical Path updates have yet to be approved:
 Age URL
   9  https://admin.fedoraproject.org/updates/FEDORA-2014-7113/libbluray-0.6.0-1.fc20
   7  https://admin.fedoraproject.org/updates/FEDORA-2014-7276/gupnp-av-0.12.6-1.fc20
   4  https://admin.fedoraproject.org/updates/FEDORA-2014-7385/squashfs-tools-4.3-6.fc20
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-7538/python-2.7.5-12.fc20
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-7512/systemd-208-18.fc20
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-7499/selinux-policy-3.12.1-171.fc20
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-7523/readline-6.2-10.fc20
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-7501/pcre-8.33-5.fc20


The following builds have been pushed to Fedora 20 updates-testing

    asm6809-2.1-1.fc20
    certmonger-0.75.2-1.fc20
    compat-lua-5.1.5-1.fc20
    copr-cli-1.33-1.fc20
    doclifter-2.15-1.fc20
    eclipse-testng-6.8.6-3.fc20
    erlang-sd_notify-0.1-1.fc20
    iperf3-3.0.5-1.fc20
    knot-1.4.7-1.fc20
    lapack-3.4.2-5.fc20
    lwtools-4.10-1.fc20
    mathex-0.3b-2.fc20
    mnemosyne-2.3.1-1.fc20
    mozilla-https-everywhere-3.5.1-2.fc20
    nodejs-0.10.29-1.fc20
    pcp-3.9.5-1.fc20
    pcre-8.33-5.fc20
    pen-0.23.0-1.fc20
    perl-Promises-0.93-1.fc20
    perl-Redis-1.974-1.fc20
    perl-Text-PDF-0.29a-15.fc20
    perl-Tree-R-0.06-1.fc20
    python-2.7.5-12.fc20
    python-cvxopt-1.1.7-1.fc20
    python-django-dajaxice-0.6-1.fc20
    ratools-0.5.3-2.fc20
    readline-6.2-10.fc20
    redis-2.6.17-1.fc20
    rubygem-deep_merge-1.0.1-5.fc20
    selinux-policy-3.12.1-171.fc20
    spamassassin-3.4.0-6.fc20
    system-config-language-2.2.0-2.fc20
    systemd-208-18.fc20
    tika-1.4-4.fc20
    traceroute-2.0.20-1.fc20
    udt-4.11-2.fc20
    v8-3.14.5.10-9.fc20
    wcd-5.2.5-1.fc20
    xfig-3.2.5-43.c.fc20

Details about builds:


================================================================================
 asm6809-2.1-1.fc20 (FEDORA-2014-7517)
 Multiple pass 6809 & 6309 cross assembler
--------------------------------------------------------------------------------
Update Information:

asm6809 - Multiple pass 6809 & 6309 cross assembler
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1109366 - Review Request: asm6809 -  Multiple pass 6809 & 6309 cross assembler
        https://bugzilla.redhat.com/show_bug.cgi?id=1109366
--------------------------------------------------------------------------------


================================================================================
 certmonger-0.75.2-1.fc20 (FEDORA-2014-7529)
 Certificate status monitor and PKI enrollment client
--------------------------------------------------------------------------------
Update Information:

This update adds several new features to certmonger:
* Generation of DSA and EC key pairs and self-signed certificates.
* A "local" signer.
* Better reporting of local filesystem permissions errors.
* Retrieval of root certificates from certain CA types (implemented only for IPA and "local").
* Storage of retrieved CA certificates in specified locations.
* Signing requests can now include IP address subject alternative names.

--------------------------------------------------------------------------------
ChangeLog:

* Mon Jun 16 2014 Nalin Dahyabhai <nalin at redhat.com> 0.75.2-1
- when generating keys using OpenSSL, if key generation fails, try
  again with the default key size, in case we're in FIPS mode
- documentation updates
* Sat Jun 14 2014 Nalin Dahyabhai <nalin at redhat.com> 0.75.1-1
- log the state in 'getcert status' verbose mode
* Fri Jun 13 2014 Nalin Dahyabhai <nalin at redhat.com> 0.75-1
- add a -w (wait) flag to the getcert's request/resubmit/start-tracking
  commands, and add a non-waiting status command
* Wed Jun 11 2014 Nalin Dahyabhai <nalin at redhat.com> 0.74.96-1
- make the trust settings we apply to CA-supplied certificates while
  saving them to NSS databases run-time configurable
- fix compiling against EL5-era OpenSSL
- when saving CA certificates we pull from an IPA server, nickname
  it using the realm name with " IPA CA" appended rather than just
  naming it "IPA CA"
- fix the local signer so that when it issues itself a new certificate,
  it uses the same subject name
- add a -w flag to getcert's request, resubmit, and start-tracking
  commands, telling it to wait until either the certificate is issued,
  we get to a state where we know that we won't be able to get one, or
  we are waiting for a CA
* Mon Jun  9 2014 Nalin Dahyabhai <nalin at redhat.com> 0.74.95-1
- add the "local" signer, a local toy CA that signs anything you'll
  ask it to sign
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 0.74-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Fri Jun  6 2014 Nalin Dahyabhai <nalin at redhat.com> 0.74.94-1
- fix self-test errors that we trigger with new OpenSSL
- fix a build error that would sometimes happen when we're told to
  build PIE binaries
- quiet a compile warning
* Thu Jun  5 2014 Nalin Dahyabhai <nalin at redhat.com> 0.74.93-1
- add some self-tests
- simplify the internal submit-to-CA logic
- fixes for more problems found through static analysis
* Tue Jun  3 2014 Nalin Dahyabhai <nalin at redhat.com> 0.74.92-1
- retrieve CA information from CAs, if the helpers can do so, and
  add a command to explicitly refresh that data: "getcert refresh-ca"
- offer to save CA certificates to files and databases, when specified with
  new -a and -F flags to getcert request/resubmit/start-tracking (#1098208,
  trac #31)
- add IP address subject alternate names when getcert request/resubmit
  is passed the -A option (trac #35)
- read and cache the freshestCRL extension in certificates
- properly interpret KDC-unreachable errors encountered in the IPA
  submission error as a server-unreachable error that we will retry,
  rather than a misconfiguration error which we won't
- don't let tests get tripped up by new formatting used in dos2unix status
  messages (#1099080)
- updated translations
- be explicit that we are going to use bashisms in test scripts by calling
  the shell interpreter as 'bash' rather than 'sh' (trac #27)
* Thu Apr  3 2014 Nalin Dahyabhai <nalin at redhat.com> 0.74-1
- also save state when we exit due to SIGHUP
- don't get tripped up when enrollment helpers hand us certificates which
  include CRLF line terminators (ticket #25)
- be tolerant of certificate issuer names, subject names, DNS, email, and
  Kerberos principal namem subjectAltNames, and crl distribution point URLs
  that contain newlines
- read and cache the certificate template extension in certificates
- enforce different minimum key sizes depending on the type of key we're
  trying to generate
- store DER versions of subject, issuer and template subject, if we have
  them (Jan Cholasta, ticket #26)
- when generating signing requests with subject names that don't quite parse
  as subject names, encode what we're given as PrintableString rather than
  as a UTF8String
- always chdir() to a known location at startup, even if we're not becoming
  a daemon
- fix a couple of memory leaks (static analysis)
- add missing buildrequires: on which
* Thu Feb 20 2014 Nalin Dahyabhai <nalin at redhat.com> 0.73-1
- updates to 0.73
  - getcert no longer claims to be stuck when a CA is unreachable,
    because the daemon isn't actually stuck
* Mon Feb 17 2014 Nalin Dahyabhai <nalin at redhat.com>
- updates to 0.73
  - also pass the key type to enrollment helpers in the environment as
    a the value of "CERTMONGER_KEY_TYPE"
* Mon Feb 10 2014 Nalin Dahyabhai <nalin at redhat.com>
- move the tmpfiles.d file from /etc/tmpfiles.d to %{_tmpfilesdir},
  where it belongs
* Mon Feb 10 2014 Nalin Dahyabhai <nalin at redhat.com>
- updates for 0.73
  - set the flag to encode EC public key parameters using named curves
    instead of the default of all-the-details when using OpenSSL
  - don't break when NSS supports secp521r1 but OpenSSL doesn't
  - also pass the CA nickname to enrollment helpers in the environment as
    a text value in "CERTMONGER_CA_NICKNAME", so they can use that value
    when reading configuration settings
  - also pass the SPKAC value to enrollment helpers in the environment as
    a base64 value in "CERTMONGER_SPKAC"
  - also pass the request's SubjectPublicKeyInfo value to enrollment helpers
    in the environment as a base64 value in "CERTMONGER_SPKI"
  - when generating signing requests using NSS, be more accommodating of
    requested subject names that don't parse properly
* Mon Feb  3 2014 Nalin Dahyabhai <nalin at redhat.com> 0.72-1
- update to 0.72
  - support generating DSA parameters and keys on sufficiently-new OpenSSL
    and NSS
  - support generating EC keys when OpenSSL and NSS support it, using key
    size to select the curve to use from among secp256r1, secp384r1,
    secp521r1 (which are the ones that are usually available, though
    secp521r1 isn't always, even if the other two are)
  - stop trying to cache public key parameters at all and instead cache public
    key info properly
  - encode the friendlyName attribute in signing requests as a BMPString,
    not as a PrintableString
  - catch more filesystem permissions problems earlier (more of #996581)
--------------------------------------------------------------------------------


================================================================================
 compat-lua-5.1.5-1.fc20 (FEDORA-2014-7520)
 Powerful light-weight programming language (compat version)
--------------------------------------------------------------------------------
Update Information:

- Rebase to 5.1.5 (rhbz#1111013)
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Hans de Goede <hdegoede at redhat.com> - 5.1.5-1
- Rebase to 5.1.5 (rhbz#1111013)
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 5.1.4-6
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1111013 - Update compat-lua to latest 5.1 version
        https://bugzilla.redhat.com/show_bug.cgi?id=1111013
--------------------------------------------------------------------------------


================================================================================
 copr-cli-1.33-1.fc20 (FEDORA-2014-7544)
 Command line interface for COPR
--------------------------------------------------------------------------------
Update Information:

cancel added to the man page
exit code 4 for failed build and man pages updated
error and shell return code 1 when build fails
delete a project
shell return codes with errors
copr-cli cancel fix
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Miroslav Suchý <msuchy at redhat.com> 1.33-1
- cancel added to the man page
- exit code 4 for failed build and man pages updated
- error and shell return code 1 when build fails
- delete a project
- shell return codes with errors
- copr-cli cancel fix
--------------------------------------------------------------------------------


================================================================================
 doclifter-2.15-1.fc20 (FEDORA-2014-7528)
 Translates documents written in troff macros to DocBook
--------------------------------------------------------------------------------
Update Information:

New upstream version.
--------------------------------------------------------------------------------
ChangeLog:

--------------------------------------------------------------------------------


================================================================================
 eclipse-testng-6.8.6-3.fc20 (FEDORA-2014-7508)
 TestNG plug-in for Eclipse
--------------------------------------------------------------------------------
Update Information:

First release of the TestNG plug-in for Eclipse.
--------------------------------------------------------------------------------


================================================================================
 erlang-sd_notify-0.1-1.fc20 (FEDORA-2014-7532)
 Erlang interface to systemd notify subsystem
--------------------------------------------------------------------------------
Update Information:

* Initial build
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1104604 - Review Request: erlang-sd_notify - Erlang interface to systemd notify subsystem
        https://bugzilla.redhat.com/show_bug.cgi?id=1104604
--------------------------------------------------------------------------------


================================================================================
 iperf3-3.0.5-1.fc20 (FEDORA-2014-7526)
 Measurement tool for TCP/UDP bandwidth performance
--------------------------------------------------------------------------------
Update Information:

Update to  3.0.5
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Susant Sahani <ssahani at redhat.com> 3.0.5-1
- Update to 3.0.5
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1111027 - iperf3-3.0.5 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1111027
--------------------------------------------------------------------------------


================================================================================
 knot-1.4.7-1.fc20 (FEDORA-2014-7519)
 An authoritative DNS daemon
--------------------------------------------------------------------------------
Update Information:

update to 1.4.7
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 18 2014 Jan Vcelak <jvcelak at fedoraproject.org> 1.4.7-1
- update to 1.4.7
  + Fixed DDNS corner cases
  + Fixed zone EXPIRE timer
  + Fixed semantic checks false positives
  + Fixed sending malformed IXFR with automatic DNSSEC
  + Fixed NAPTR record serialization
--------------------------------------------------------------------------------


================================================================================
 lapack-3.4.2-5.fc20 (FEDORA-2014-7500)
 Numerical linear algebra package libraries
--------------------------------------------------------------------------------
Update Information:

Also link tmglib to lapacke library.
Add matgen_obj files to lapacke library.
--------------------------------------------------------------------------------
ChangeLog:

* Tue Jun 17 2014 Tom Callaway <spot at fedoraproject.org> - 3.4.2-4
- add matgen_obj files to lapacke lib
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1108192 - Include all LAPACKE routines
        https://bugzilla.redhat.com/show_bug.cgi?id=1108192
--------------------------------------------------------------------------------


================================================================================
 lwtools-4.10-1.fc20 (FEDORA-2014-7522)
 Cross-development tool chain for Motorola 6809 and Hitachi 6309
--------------------------------------------------------------------------------
Update Information:

lwtools - Cross-development tool chain for Motorola 6809 and Hitachi 6309
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1109314 - Review Request: lwtools - Cross-development tool chain for Motorola 6809 and Hitachi 6309
        https://bugzilla.redhat.com/show_bug.cgi?id=1109314
--------------------------------------------------------------------------------


================================================================================
 mathex-0.3b-2.fc20 (FEDORA-2014-7497)
 C++ library to parse/evaluate mathematical expressions
--------------------------------------------------------------------------------
Update Information:

Initial package.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1109496 - Review Request: mathex - C++ library to parse/evaluate mathematical expressions
        https://bugzilla.redhat.com/show_bug.cgi?id=1109496
--------------------------------------------------------------------------------


================================================================================
 mnemosyne-2.3.1-1.fc20 (FEDORA-2014-7502)
 Flash-card learning tool
--------------------------------------------------------------------------------
Update Information:

New upstream bug-fix release.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Jiri Popelka <jpopelka at redhat.com> - 2.3.1-1
- 2.3.1
--------------------------------------------------------------------------------


================================================================================
 mozilla-https-everywhere-3.5.1-2.fc20 (FEDORA-2014-7541)
 HTTPS/HSTS enforcement extension for Mozilla Firefox and SeaMonkey
--------------------------------------------------------------------------------
Update Information:

Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
ChangeLog:

* Sat Jun  7 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 3.5.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Fri May 30 2014 Russell Golden <niveusluna at niveusluna.org> - 3.5.1-1
- Revert https://github.com/EFForg/https-everywhere/pull/134 due to YouTube
 -- breakage.
- Re-enable ability to see all rulesets in enable/disable dialog.
- Added more Debian coverage.
- Fixes to Doubleclick, Guardian, Heroku, Home Depot, HypeMachine, IMDB,
 -- Justin.tv, Kikatek, Mozilla, MyFitnessPal, Pinterest, XKCD, Reuters,
 -- Technet, Tumblr, Wordpress, Yandex, Youtube, Flickr.
- Fix Australis icon positioning:
 -- https://github.com/EFForg/https-everywhere/pull/216
* Wed Apr 16 2014 Russell Golden <niveusluna at niveusluna.org> - 3.5-1
- Merge all non-ruleset changes from 4.0development.16
- Merge all new/modified rulesets from 4.0development.16 that are
 -- in the Alexa Top 1000 using utils/alexa-ruleset-checker.py. For a full list,
 -- see utils/alexa-logs/07042014.log.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1100493 - can't access http://www.pcworld.com with mozilla-https-everywhere enabled
        https://bugzilla.redhat.com/show_bug.cgi?id=1100493
--------------------------------------------------------------------------------


================================================================================
 nodejs-0.10.29-1.fc20 (FEDORA-2014-7527)
 JavaScript runtime
--------------------------------------------------------------------------------
Update Information:

2014.06.05, Version 0.10.29 (Stable)

* child_process: do not set args before throwing (Greg Sabia Tucker)

* child_process: spawn() does not throw TypeError (Greg Sabia Tucker)

* constants: export O_NONBLOCK (Fedor Indutny)

* crypto: improve memory usage (Alexis Campailla)

* fs: close file if fstat() fails in readFile() (cjihrig)

* lib: name EventEmitter prototype methods (Ben Noordhuis)

* tls: fix performance issue (Alexis Campailla)

The invalid UTF8 fix has been reverted since this breaks v8 API, which cannot be done in a stable distribution release.  This build of nodejs will behave as if NODE_INVALID_UTF8 was set.  For more information on the implications, see: http://blog.nodejs.org/2014/06/16/openssl-and-breaking-utf-8-change/

Additionally, a minor bug in v8 has been fixed that caused certain integer comparisons to return true when they should have returned false.

Please note that there is no OpenSSL security fixes as part of this update as there were upstream; nodejs in Fedora uses the system OpenSSL library and thus receives security updates as soon as the "openssl" packages on your system are updated.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 T.C. Hollingsworth <tchollingsworth at gmail.com> - 0.10.29-1
- new upstream release 0.10.29
  http://blog.nodejs.org/2014/06/16/node-v0-10-29-stable/
- The invalid UTF8 fix has been reverted since this breaks v8 API, which cannot
  be done in a stable distribution release.  This build of nodejs will behave as
  if NODE_INVALID_UTF8 was set.  For more information on the implications, see:
  http://blog.nodejs.org/2014/06/16/openssl-and-breaking-utf-8-change/
--------------------------------------------------------------------------------


================================================================================
 pcp-3.9.5-1.fc20 (FEDORA-2014-7537)
 System-level performance monitoring and performance management
--------------------------------------------------------------------------------
Update Information:

Daemon signal handlers no longer use unsafe APIs (BZ 847343), Handle /var/run setups on a temporary filesystem (BZ 656659), Resolve pmlogcheck sigsegv for some archives (BZ 1077432), Ensure pcp-gui-{testsuite,debuginfo} packages get replaced, Revive support for EPEL5 builds, post pcp-gui merge, Update to latest PCP sources.
Update to latest PCP sources
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 18 2014 Dave Brolley <brolley at redhat.com> - 3.9.5-1
- Daemon signal handlers no longer use unsafe APIs (BZ 847343)
- Handle /var/run setups on a temporary filesystem (BZ 656659)
- Resolve pmlogcheck sigsegv for some archives (BZ 1077432)
- Ensure pcp-gui-{testsuite,debuginfo} packages get replaced.
- Revive support for EPEL5 builds, post pcp-gui merge.
- Update to latest PCP sources.
* Fri Jun  6 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 3.9.4-1.1
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Thu May 15 2014 Nathan Scott <nathans at redhat.com> - 3.9.4-1
- Merged pcp-gui and pcp-doc packages into core PCP.
- Allow for conditional libmicrohttpd builds in spec file.
- Adopt slow-start capability in systemd PMDA (BZ 1073658)
- Resolve pmcollectl network/disk mis-reporting (BZ 1097095)
- Update to latest PCP sources.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #847343 - pcp: pmcd signal handlers are unsafe
        https://bugzilla.redhat.com/show_bug.cgi?id=847343
  [ 2 ] Bug #656659 - Please Update Spec File to use %ghost on files in /var/run and /var/lock
        https://bugzilla.redhat.com/show_bug.cgi?id=656659
  [ 3 ] Bug #1077432 - pmlogcheck SEGV
        https://bugzilla.redhat.com/show_bug.cgi?id=1077432
  [ 4 ] Bug #1073658 - intermittent pmdasystemd failure at pmcd startup during system boot
        https://bugzilla.redhat.com/show_bug.cgi?id=1073658
--------------------------------------------------------------------------------


================================================================================
 pcre-8.33-5.fc20 (FEDORA-2014-7501)
 Perl-compatible regular expression library
--------------------------------------------------------------------------------
Update Information:

This release fixes matching first character in multi-line case-insensitive UTF-8 mode and compilation of character class with a literal quotation.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Petr Pisar <ppisar at redhat.com> - 8.33-5
- Fix bad starting data when char with more than one other case follows
  circumflex in multiline UTF mode (bug #1110620)
- Fix character class with a literal quotation (bug #1111054)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1110620 - First character optimization bug for multi-line case insensitive UTF-8 match
        https://bugzilla.redhat.com/show_bug.cgi?id=1110620
  [ 2 ] Bug #1111054 - Character class with literal quotation is miscompiled
        https://bugzilla.redhat.com/show_bug.cgi?id=1111054
--------------------------------------------------------------------------------


================================================================================
 pen-0.23.0-1.fc20 (FEDORA-2014-7505)
 Load balancer for "simple" tcp based protocols such as http or smtp
--------------------------------------------------------------------------------
Update Information:

This release adds support for IPv6 for backend servers as well as the listening socket.

Usage: http://morestuff.siag.nu/2014/04/14/using-pen-as-an-address-family-adapter/
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 18 2014 Christopher Meng <rpm at cicku.me> - 0.23.0-1
- Update to 0.23.0
* Thu Apr  3 2014 Christopher Meng <rpm at cicku.me> - 0.22.1-1
- Update to 0.22.1
- Patch merged upstream.
* Wed Apr  2 2014 Christopher Meng <rpm at cicku.me> - 0.22.0-2
- Patch messed with syntax.
--------------------------------------------------------------------------------


================================================================================
 perl-Promises-0.93-1.fc20 (FEDORA-2014-7530)
 Implementation of Promises in Perl
--------------------------------------------------------------------------------
Update Information:

Initial release
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1105854 - Review Request: perl-Promises - Implementation of Promises in Perl
        https://bugzilla.redhat.com/show_bug.cgi?id=1105854
--------------------------------------------------------------------------------


================================================================================
 perl-Redis-1.974-1.fc20 (FEDORA-2014-7535)
 Perl binding for Redis database
--------------------------------------------------------------------------------
Update Information:

Initial release
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1098778 - Review Request: perl-Redis - Perl binding for Redis database
        https://bugzilla.redhat.com/show_bug.cgi?id=1098778
--------------------------------------------------------------------------------


================================================================================
 perl-Text-PDF-0.29a-15.fc20 (FEDORA-2014-7536)
 Module for manipulating PDF files
--------------------------------------------------------------------------------
Update Information:

Support paper sizes from A0 through A5.
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 18 2014 Petr Šabata <contyk at redhat.com> - 0.29a-15
- Support A0-A5 paper sizes (#1105775)
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 0.29a-14
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1105775 - pdfbklt does not support A3
        https://bugzilla.redhat.com/show_bug.cgi?id=1105775
--------------------------------------------------------------------------------


================================================================================
 perl-Tree-R-0.06-1.fc20 (FEDORA-2014-7540)
 Perl extension for the R-tree data structure and algorithms
--------------------------------------------------------------------------------
Update Information:

Initial release
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1110246 - Review Request: perl-Tree-R - Perl extension for the Rtree data structure and algorithms
        https://bugzilla.redhat.com/show_bug.cgi?id=1110246
--------------------------------------------------------------------------------


================================================================================
 python-2.7.5-12.fc20 (FEDORA-2014-7538)
 An interpreted, interactive, object-oriented programming language
--------------------------------------------------------------------------------
Update Information:

- Fix test failure with sqlite 3.8.4
- Prevent double close of subprocess pipes when child process fails
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Bohuslav Kabrda <bkabrda at redhat.com> - 2.7.5-12
- Fix test failures with SQLite 3.8.4
- Fix double close of subprocess pipes when child process fails
Resolves: rhbz#1103450
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1103450 - double close of subprocess pipes when the child process fails starting
        https://bugzilla.redhat.com/show_bug.cgi?id=1103450
--------------------------------------------------------------------------------


================================================================================
 python-cvxopt-1.1.7-1.fc20 (FEDORA-2014-7525)
 A Python Package for Convex Optimization
--------------------------------------------------------------------------------
Update Information:

Version 1.1.7 contains upgraded GLPK and MOSEK interfaces (although only the former is relevant for Fedora).
--------------------------------------------------------------------------------
ChangeLog:

* Tue Jun 17 2014 Jerry James <loganjerry at gmail.com> - 1.1.7-1
- New upstream release
- Drop upstreamed -fixglpkinclude and -glpk patches
- Use better URL for Source0
- Build documentation with python3
- Minor spec file cleanups
--------------------------------------------------------------------------------


================================================================================
 python-django-dajaxice-0.6-1.fc20 (FEDORA-2014-7495)
 Agnostic and easy to use AJAX library for Django
--------------------------------------------------------------------------------
Update Information:

New upstream release 0.6. You can find the changes in the upstream description at http://django-dajaxice.readthedocs.org/en/latest/changelog.html#id1
--------------------------------------------------------------------------------
ChangeLog:

* Tue Jun 17 2014 Richard Marko <rmarko at fedoraproject.org> - 0.6-1
- New upstream release
--------------------------------------------------------------------------------


================================================================================
 ratools-0.5.3-2.fc20 (FEDORA-2014-7539)
 Framework for IPv6 Router Advertisements
--------------------------------------------------------------------------------
Update Information:

Update to ratools-0.5.3
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 18 2014 Florian Lehner <dev at der-flo.net> - 0.5.3-2
- Use macroized scriptlets for systemd
* Mon Jun 16 2014 Florian Lehner <dev at der-flo.net> - 0.5.3-1
- Move ractl.8-manpage from section 1 to section 8
- Add rad.8-manpage
- Add Systemd files
- Move config.example to example.conf
* Sun Jun  8 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 0.5.2-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------


================================================================================
 readline-6.2-10.fc20 (FEDORA-2014-7523)
 A library for editing typed command lines
--------------------------------------------------------------------------------
Update Information:

readline in Fedora is very slow when rl_event_hook is used, this update fix it.
Security patch for debug functions
--------------------------------------------------------------------------------
ChangeLog:

* Mon Jun 16 2014 Jiří Klimeš <jklimes at redhat.com> 6.2-10
- resolves: #1109946
  input: fix rl_read_key slowness when using rl_event_hook
* Mon May 26 2014 jchaloup <jchaloup at redhat.com> - 6.2-9
- resolves: #1077026
  Security patch for debug functions
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1109946 - readline in Fedora is very slow when rl_event_hook is used
        https://bugzilla.redhat.com/show_bug.cgi?id=1109946
  [ 2 ] Bug #1077026 - readline: insecure temporary file use in _rl_tropen() [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=1077026
--------------------------------------------------------------------------------


================================================================================
 redis-2.6.17-1.fc20 (FEDORA-2014-7534)
 A persistent caching system, key-value and data structures database
--------------------------------------------------------------------------------
Update Information:

--[ Redis 2.6.17 ] Release date: 11 Dec 2013

UPGRADE URGENCY: MODERATE.

* [FIX] redis-cli: fix big keys search when the key no longer exist.
* [FIX] Allow AUTH / PING when disconnected from slave with serve-stale-data on.
* [FIX] redis-benchmark: update help for new __rand_int__ form.
* [FIX] Fix broken rdbWriteRaw() return value check in rdb.c (harmless).
* [FIX] Log to what master a slave is going to connect to.
* [FIX] Only run the fast active expire cycle if master & enabled.
* [FIX] Fixed a replication bug involving 32 bit instances and big datasets hard to compress that resulted into more than 2GB of RDB file sent.
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 18 2014 Christopher Meng <rpm at cicku.me> - 2.6.17-1
- Update to 2.6.17
--------------------------------------------------------------------------------


================================================================================
 rubygem-deep_merge-1.0.1-5.fc20 (FEDORA-2014-7511)
 Merge Deeply Nested Hashes
--------------------------------------------------------------------------------
Update Information:

New package rubygem-deep_merge - Merges deep hashes in ruby
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1064352 - Review Request: rubygem-deep_merge - Merges deep hashes in ruby.
        https://bugzilla.redhat.com/show_bug.cgi?id=1064352
--------------------------------------------------------------------------------


================================================================================
 selinux-policy-3.12.1-171.fc20 (FEDORA-2014-7499)
 SELinux policy configuration
--------------------------------------------------------------------------------
Update Information:

See http://koji.fedoraproject.org/koji/buildinfo?buildID=538761
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 18 2014 Lukas Vrabec <lvrabec at redhat.com> 3.12.1-171
- Add additional interfaces needed by mozilla_plugin_use_bluejeans boolean
* Wed Jun 18 2014 Lukas Vrabec <lvrabec at redhat.com> 3.12.1-170
- Add labels for swapon and xfs_growfs
- Add mozilla_plugin_use_bluejeans boolean
- apcupsd will send a wall message to all terminals telling the system is about to go down
- Additional policy required for geard.
- Allow geard to transition to passwd and useradd
* Tue Jun 17 2014 Lukas Vrabec <lvrabec at redhat.com> 3.12.1-169
- Allow unpriv users to manage games data files. Needed by nethack.
- add games_manage_data_files() interface
- Revert gnome_dontaudit_search_config in cobbler policy
* Thu Jun 12 2014 Lukas Vrabec <lvrabec at redhat.com> 3.12.1-168
- Google chrome has a new directory in homedir
- Allow nova domains to read passwd/utmp files
- Added policy for geoclue
* Mon Jun  9 2014 Lukas Vrabec <lvrabec at redhat.com> 3.12.1-167
- Allow keystone to connect to additional ports to make OpenStack working
- Allow thumb_t to connect to the xserver port when you are runnin it via an ssh tunnel
- Allow certmonger to manage all certs
- rhsmcertd seems to need these accesses.
- Add cups_execmem boolean
- Allow cups to execute its rw_etc_t files, for brothers printers
- Need these privs inorder to watch videon
- Allow locate to list directories without labels
- Allow staff_t to communicate and run docker
- Add fixes to make munin and munin-cgi working. Allow munin-cgit to create files/dirs in /tmp, list munin conf dir
- Allow bitlbee to use tcp/7778 port
- /etc/cron.daily/logrotate to execute fail2ban-client.
- Allow keepalives to connect to SNMP port. Support to do  SNMP stuff
- Allow also fowner cap for varnishd
- Allow keepalived to execute bin_t/shell_exec_t
- Fix bitlbee policy
- Fix rabbitmq.te
- Fix labels on rabbitmq_var_run_t on file/dir creation
- Allow neutron to create sock files
- Allow postfix domains to getattr on all file systems
- Add fixes for squid which is configured to run with more than one worker.
- Allow certmonger to manage all certs
- Fix *_ecryptfs_home_dirs booleans
- Fix typoes in userdomain.if and libraries.te
- Allow ldconfig_t to read/write inherited user tmp pipes
- Use proper calling in ssh.te for userdom_home_manager attribute
- Fix decl for cockip port
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1053910 - SELinux is preventing /usr/sbin/ssmtp from 'append' accesses on the file /var/lib/munin/dead.letter.
        https://bugzilla.redhat.com/show_bug.cgi?id=1053910
  [ 2 ] Bug #1092768 - swift and neutron denials in instack user tests
        https://bugzilla.redhat.com/show_bug.cgi?id=1092768
  [ 3 ] Bug #1093567 - Unable to execute docker as confined user (staff_u)
        https://bugzilla.redhat.com/show_bug.cgi?id=1093567
  [ 4 ] Bug #1099543 - SELinux prevents squid runing in SMP mode
        https://bugzilla.redhat.com/show_bug.cgi?id=1099543
  [ 5 ] Bug #1099665 - SELinux is preventing /usr/lib64/firefox/plugin-container from 'read' accesses on the lnk_file .
        https://bugzilla.redhat.com/show_bug.cgi?id=1099665
  [ 6 ] Bug #1100509 - SELinux is preventing /usr/bin/perf from 'read' accesses on the file .
        https://bugzilla.redhat.com/show_bug.cgi?id=1100509
  [ 7 ] Bug #1100804 - SELinux is preventing /usr/bin/bash from 'getattr' accesses on the filesystem .
        https://bugzilla.redhat.com/show_bug.cgi?id=1100804
  [ 8 ] Bug #1101079 - lircd prevented open on /dev/ttyS0
        https://bugzilla.redhat.com/show_bug.cgi?id=1101079
  [ 9 ] Bug #1102966 - SELinux is preventing /usr/sbin/ldconfig from 'write' accesses on the fifo_file .
        https://bugzilla.redhat.com/show_bug.cgi?id=1102966
  [ 10 ] Bug #1103042 - SELinux is preventing /usr/bin/python "search" access      on /root/.local.
        https://bugzilla.redhat.com/show_bug.cgi?id=1103042
  [ 11 ] Bug #1103585 - logrotate of fail2ban raise selinux alert
        https://bugzilla.redhat.com/show_bug.cgi?id=1103585
  [ 12 ] Bug #1105729 - SELinux is preventing /usr/bin/totem-video-thumbnailer from 'name_connect' accesses on the tcp_socket .
        https://bugzilla.redhat.com/show_bug.cgi?id=1105729
  [ 13 ] Bug #1108247 - SELinux is preventing /usr/lib64/dbus-1/dbus-daemon-launch-helper from 'entrypoint' accesses on the file .
        https://bugzilla.redhat.com/show_bug.cgi?id=1108247
  [ 14 ] Bug #1108464 - SELinux is preventing /usr/sbin/swapoff from 'write' accesses on the blk_file .
        https://bugzilla.redhat.com/show_bug.cgi?id=1108464
  [ 15 ] Bug #1110108 - SELinux is preventing /usr/games/nethack-3.4.3/nethack from 'write' accesses on the directory .
        https://bugzilla.redhat.com/show_bug.cgi?id=1110108
  [ 16 ] Bug #1110355 - SELinux is preventing /usr/lib64/firefox/plugin-container from 'name_bind' accesses on the tcp_socket .
        https://bugzilla.redhat.com/show_bug.cgi?id=1110355
  [ 17 ] Bug #1047720 - munin-cgi doesn't work with SELinux. Default install produces error 500.
        https://bugzilla.redhat.com/show_bug.cgi?id=1047720
  [ 18 ] Bug #1101091 - New AVC with fail2ban
        https://bugzilla.redhat.com/show_bug.cgi?id=1101091
  [ 19 ] Bug #1102045 - selinux stops logrotate from running fail2ban-client
        https://bugzilla.redhat.com/show_bug.cgi?id=1102045
  [ 20 ] Bug #1078783 - SELinux prevents certmonger from accessing /etc/pki/pki-tomcat/alias
        https://bugzilla.redhat.com/show_bug.cgi?id=1078783
--------------------------------------------------------------------------------


================================================================================
 spamassassin-3.4.0-6.fc20 (FEDORA-2014-7509)
 Spam filter for email which can be invoked from mail delivery agents
--------------------------------------------------------------------------------
Update Information:

Adjust systemd unit to not log to syslog since spamd does it already.
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 18 2014 Kevin Fenzi <kevin at scrye.com> 3.4.0-6
- Adjust systemd unit to not log to syslog since spamd does it already. 
- Fixes bug #1107541
* Sun Jun  8 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 3.4.0-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1107541 - Spamassassin logs to both messages and maillog
        https://bugzilla.redhat.com/show_bug.cgi?id=1107541
--------------------------------------------------------------------------------


================================================================================
 system-config-language-2.2.0-2.fc20 (FEDORA-2014-7516)
 A graphical interface for modifying the system language
--------------------------------------------------------------------------------
Update Information:

enhancement update that included
1) s-c-l now uses PackageKit
2) s-c-l now uses yum-langpacks
3) s-c-l now uses Policykit
4) s-c-l GUI is re-written using PyGobject3 API's.

Please test the general test case
Set any language in system-config-language UI
logout and login and check if root user is using new language

--------------------------------------------------------------------------------
ChangeLog:

* Mon Jun 16 2014 Parag Nemade <pnemade AT redhat DOT com> - 2.2.0-2
- bump the release for missing sources
* Mon Jun 16 2014 Parag Nemade <pnemade AT redhat DOT com> - 2.2.0-1
- Update to 2.2.0 release
* Sun Jun  8 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 2.1.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Tue May 27 2014 Parag Nemade <pnemade AT redhat DOT com> - 2.1.0-1
- Update to 2.1.0 release
* Wed May 21 2014 Parag Nemade <pnemade AT redhat DOT com> - 2.0.0-1
- Update to 2.0.0 release
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #493912 - S-c-tools cleanup: port to PolicyKit
        https://bugzilla.redhat.com/show_bug.cgi?id=493912
  [ 2 ] Bug #444888 - RFE: switch to PackageKit
        https://bugzilla.redhat.com/show_bug.cgi?id=444888
  [ 3 ] Bug #830563 - s-c-l should use langinstall instead of groupinstall
        https://bugzilla.redhat.com/show_bug.cgi?id=830563
  [ 4 ] Bug #1059192 - Missing contextual information
        https://bugzilla.redhat.com/show_bug.cgi?id=1059192
  [ 5 ] Bug #1101392 - Error calling StartServiceByName for org.freedesktop.PackageKit
        https://bugzilla.redhat.com/show_bug.cgi?id=1101392
--------------------------------------------------------------------------------


================================================================================
 systemd-208-18.fc20 (FEDORA-2014-7512)
 A System and Service Manager
--------------------------------------------------------------------------------
Update Information:

Hardware database update, documentation updates, and bugfixes.
--------------------------------------------------------------------------------
ChangeLog:

* Tue Jun 17 2014 Zbigniew Jędrzejewski-Szmek <zbyszek at in.waw.pl> - 208-18
- Fix permissions on new journal files (#1047729)
- Fix systemd-delta output (#1088418)
- Fix some (potential) bad memory accesses
- Fix cryptsetup keysize handling
- Fix handling of jobs during systemd reload
- Fix detection of container virtualization under KVM and Xen domU
- Update hardware database
- Some small documentation updates (#1096067, #1073402, #1088057)
- Make SYSV $network be equivalent to network-online, not network target
- Do not skip RUN execution when udev fails to rename network device
- Minor overhaul of systmemctl install handling with symlinked units
  and --root
- Make systemd close sockets asynchronously to prevent stalls
- Allow local users to hibernate
- Fix selinux policy reload on switch-root
- Restore backlight also for "raw" devices (#1108019)
- Make backlight paths stable (backlight settings will probably by lost on
  update), and sanitize restored values (#1062638)
- Add cryptsetup-pre.target (#1097938)
- Make btrfs-control and loop-control owned by group 'disk' (#1045432)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1047729 - RFE: allow access to specific groups if journal logs are volatile (stored in /run)
        https://bugzilla.redhat.com/show_bug.cgi?id=1047729
  [ 2 ] Bug #1088418 - LC_ALL=C systemd-delta prints escaped unicode characters ('→')
        https://bugzilla.redhat.com/show_bug.cgi?id=1088418
  [ 3 ] Bug #1096067 - sd-journal: Undocumented behaviour of sd_journal_send
        https://bugzilla.redhat.com/show_bug.cgi?id=1096067
  [ 4 ] Bug #1073402 - "man 7 daemon" reference to "refspecs.freestandards.org" is out of date
        https://bugzilla.redhat.com/show_bug.cgi?id=1073402
  [ 5 ] Bug #1088057 - RequiresMountsFor doesn't do anything
        https://bugzilla.redhat.com/show_bug.cgi?id=1088057
  [ 6 ] Bug #1108019 - systemd should save + restore raw backlight interface(s) when there are no firmware interfaces
        https://bugzilla.redhat.com/show_bug.cgi?id=1108019
  [ 7 ] Bug #1062638 - Failed to start Load/Save Screen Backlight Brightness of acpi_video0.
        https://bugzilla.redhat.com/show_bug.cgi?id=1062638
  [ 8 ] Bug #1097938 - Systemd fails to umount/ & luksClose crypted iSCSI mounts on shutdown
        https://bugzilla.redhat.com/show_bug.cgi?id=1097938
  [ 9 ] Bug #1045432 - RFE: make /dev/loop-control owned by group 'disk'
        https://bugzilla.redhat.com/show_bug.cgi?id=1045432
--------------------------------------------------------------------------------


================================================================================
 tika-1.4-4.fc20 (FEDORA-2014-7507)
 A content analysis toolkit
--------------------------------------------------------------------------------
Update Information:

enable app module, RHBZ#1109072
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 11 2014 Fabrice Bellet <fabrice at bellet.info> 1.4-4
- enable app module, RHBZ#1109072
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1109072 - subpackage for the tika standalone app
        https://bugzilla.redhat.com/show_bug.cgi?id=1109072
--------------------------------------------------------------------------------


================================================================================
 traceroute-2.0.20-1.fc20 (FEDORA-2014-7531)
 Traces the route taken by packets over an IPv4/IPv6 network
--------------------------------------------------------------------------------
Update Information:

Update to 2.0.20
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 18 2014 Dmitry Butskoy <Dmitry at Butskoy.name>  - 3:2.0.20-1
- update to 2.0.20
* Sun Jun  8 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 3:2.0.19-6
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Tue Dec  3 2013 Dmitry Butskoy <Dmitry at Butskoy.name>  - 3:2.0.19-5
- fix format-security issue (#1037363)
--------------------------------------------------------------------------------


================================================================================
 udt-4.11-2.fc20 (FEDORA-2014-7521)
 UDP based Data Transfer Protocol
--------------------------------------------------------------------------------
Update Information:

UDT is a reliable UDP based application level data transport protocol for distributed data intensive applications over wide area high-speed networks. UDT uses UDP to transfer bulk data with its own eliability control and congestion control mechanisms. The new protocol can transfer data at a much higher speed than TCP does. UDT is also a highly configurable framework that can accommodate various congestion control algorithms.

--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1107441 - Review Request: udt - UDP based Data Transfer Protocol
        https://bugzilla.redhat.com/show_bug.cgi?id=1107441
--------------------------------------------------------------------------------


================================================================================
 v8-3.14.5.10-9.fc20 (FEDORA-2014-7527)
 JavaScript Engine
--------------------------------------------------------------------------------
Update Information:

2014.06.05, Version 0.10.29 (Stable)

* child_process: do not set args before throwing (Greg Sabia Tucker)

* child_process: spawn() does not throw TypeError (Greg Sabia Tucker)

* constants: export O_NONBLOCK (Fedor Indutny)

* crypto: improve memory usage (Alexis Campailla)

* fs: close file if fstat() fails in readFile() (cjihrig)

* lib: name EventEmitter prototype methods (Ben Noordhuis)

* tls: fix performance issue (Alexis Campailla)

The invalid UTF8 fix has been reverted since this breaks v8 API, which cannot be done in a stable distribution release.  This build of nodejs will behave as if NODE_INVALID_UTF8 was set.  For more information on the implications, see: http://blog.nodejs.org/2014/06/16/openssl-and-breaking-utf-8-change/

Additionally, a minor bug in v8 has been fixed that caused certain integer comparisons to return true when they should have returned false.

Please note that there is no OpenSSL security fixes as part of this update as there were upstream; nodejs in Fedora uses the system OpenSSL library and thus receives security updates as soon as the "openssl" packages on your system are updated.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 T.C. Hollingsworth <tchollingsworth at gmail.com> - 1:3.14.5.10-9
- fix corner case in integer comparisons (v8 bug#2416; nodejs bug#7528)
--------------------------------------------------------------------------------


================================================================================
 wcd-5.2.5-1.fc20 (FEDORA-2014-7513)
 Chdir for DOS and Unix
--------------------------------------------------------------------------------
Update Information:

New upstream version 5.2.5.
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 18 2014 Erwin Waterlander <waterlan at xs4all.nl> - 5.2.5-1
- New upstream version 5.2.5.
--------------------------------------------------------------------------------


================================================================================
 xfig-3.2.5-43.c.fc20 (FEDORA-2014-7503)
 An X Window System tool for drawing basic vector graphics
--------------------------------------------------------------------------------
Update Information:

- Fix crash when changing arrow size on x86_64 (rhbz#1046102)

--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 18 2014 Hans de Goede <hdegoede at redhat.com> - 3.2.5-43.c
- Fix crash when changing arrow size on x86_64 (rhbz#1046102)
* Sun Jun  8 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 3.2.5-42.c
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1046102 - [abrt] xfig: set_arrow_size_state(): xfig-Xaw3d killed by SIGABRT
        https://bugzilla.redhat.com/show_bug.cgi?id=1046102
--------------------------------------------------------------------------------



More information about the test mailing list