The following Fedora EPEL 7 Security updates need testing: Age URL 491 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-1087 dokuwiki-0-0.24.20140929c.el7 253 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-dac7ed832f mcollective-2.8.4-1.el7 120 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-785fc9a2ea dropbear-2016.72-1.el7 16 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-e0c08a1414 php-PHPMailer-5.2.16-2.el7 11 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-a01cdab420 nodejs-ws-1.1.1-1.el7 9 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-3adfacd2eb mbedtls-2.3.0-1.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-325598c9ad pagure-2.2.2-1.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-2e94f8cba5 tcpreplay-4.1.1-2.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-767125139f python34-3.4.3-5.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-d85f5db77a php-doctrine-orm-2.4.8-1.el7 The following builds have been pushed to Fedora EPEL 7 updates-testing NetworkManager-l2tp-1.0.4-1.el7 ProDy-1.8.2-1.el7 atomic-reactor-1.6.13-1.el7 avrdude-5.11.1-4.el7 backupninja-1.0.1-8.el7 chicken-4.11.0-2.el7 geany-1.28-2.el7 geany-plugins-1.28-1.el7 kf5-gpgmepp-16.04.3-1.el7 libint2-2.0.3-17.644hg.el7 nitroshare-0.3.2-1.el7 nordugrid-arc-5.1.2-1.el7 nordugrid-arc-doc-2.0.8-1.el7 php-deepend-Mockery-0.9.5-1.el7 php-doctrine-orm-2.4.8-1.el7 php-swiftmailer-5.4.3-1.el7 python-pika-0.10.0-5.el7 qhttpengine-0.1.0-1.el7 root-6.06.06-1.el7 trojita-0.7-4.el7 winetricks-20160709-1.el7 Details about builds: ================================================================================ NetworkManager-l2tp-1.0.4-1.el7 (FEDORA-EPEL-2016-dbceb878ae) NetworkManager VPN plugin for L2TP and L2TP/IPsec -------------------------------------------------------------------------------- Update Information: First release of NetworkManager-l2tp for EPEL7 branch. -------------------------------------------------------------------------------- ================================================================================ ProDy-1.8.2-1.el7 (FEDORA-EPEL-2016-703c7d84b3) Application for protein structure, dynamics and sequence analysis -------------------------------------------------------------------------------- Update Information: - Update to 1.8.2 -------------------------------------------------------------------------------- ================================================================================ atomic-reactor-1.6.13-1.el7 (FEDORA-EPEL-2016-8a567c23eb) Improved builder for Docker images -------------------------------------------------------------------------------- Update Information: Changes since 1.6.10: Build JSON API changes ---- * pulp_sync: no longer accepts username and password parameters * pulp_sync: now accepts optional registry_secret_path, insecure_registry, and pulp_repo_prefix parameters, allowing sync from V2 registry that requires authentication -- note: this requires dockpulp > 1.22 * tag_and_push: registries can now include a "secret" key in their description, which is the path to the Kubernetes dockercfg secret required for pushing to the registry * bump_release: no longer accepts git_ref, author_name, author_email, committer_name, committer_email, commit_message, or push_url * bump_release: now requires parameters target (Koji build target) and hub (Koji hub URL) * tag_from_config: new available plugin Bug fixes ----- * plugins whose constructors fail are now handled correctly * intermediate docker registry links are not set in annotations if ```pulp_sync``` plugin is enabled * ```bump_release``` plugin now takes component version into consideration * `tag_from_config` plugin no longer accepts additional tags containing hyphens Improvements ---- * pulp_sync is now able to ask Pulp to sync from a V2 registry that requires authentication * bump_release now uses a Koji hub to discover the latest release of the component and uses that to provide a value for the Release label if missing * new tag_from_config plugin to add additional tags to the image * API documentation was updated * Custom repo urls are supported for base images * `koji_promote` plugin now includes 'tags' field in build output metadata ---- Build JSON API changes ================== * none Bug fixes ======= * koji_promote: submit correct start time Improvements =========== * base image build improvements: default config and kickstart, documentation ---- New upstream release. ---- Build JSON API changes ================== * Exit plugins can now fail the build. All exit plugins are run at the end of the build regardless of whether the build has failed. Exit plugin failures for plugins marked as required for a successful build would previously not cause the build to fail, but they now do. * koji_promote: now accepts optional target parameter * pull_base_image: this plugin is no longer added if missing * tag_and_push: this plugin is no longer added if missing Bug fixes ======= * docker build: fix logging so that it is properly decoded from JSON * koji_promote: use component, not name, to determine the name-version- release for the Koji build. Improvements =========== * add_filesystem: new plugin for creating base images via Koji * koji_promote: * store originating Koji task ID in Koji build metadata * show upload progress in log output * store resulting Koji build ID as OpenShift build label * tag build in Koji if target provided ---- New upstream release. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1349872 - atomic-reactor-1.6.12 is available https://bugzilla.redhat.com/show_bug.cgi?id=1349872 [ 2 ] Bug #1340074 - atomic-reactor-1.6.9 is available https://bugzilla.redhat.com/show_bug.cgi?id=1340074 [ 3 ] Bug #1329778 - atomic-reactor-1.6.7 is available https://bugzilla.redhat.com/show_bug.cgi?id=1329778 [ 4 ] Bug #1304907 - atomic-reactor-1.6.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=1304907 -------------------------------------------------------------------------------- ================================================================================ avrdude-5.11.1-4.el7 (FEDORA-EPEL-2016-3cb82f6d28) Software for programming Atmel AVR Microcontroller -------------------------------------------------------------------------------- Update Information: Fixing texi errors (causing builds to fail) -------------------------------------------------------------------------------- ================================================================================ backupninja-1.0.1-8.el7 (FEDORA-EPEL-2016-0dc986334e) Lightweight, extensible backup system -------------------------------------------------------------------------------- Update Information: - Fix duplicity path - Fix S3, CloudFiles usage - Modernize the spec -------------------------------------------------------------------------------- References: [ 1 ] Bug #1351465 - Backupninja dup handler fails on par2+s3+http because of bash error https://bugzilla.redhat.com/show_bug.cgi?id=1351465 -------------------------------------------------------------------------------- ================================================================================ chicken-4.11.0-2.el7 (FEDORA-EPEL-2016-3867e64cca) A practical and portable Scheme system -------------------------------------------------------------------------------- Update Information: Update to latest upstream release. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1250274 - chicken-4.11.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1250274 -------------------------------------------------------------------------------- ================================================================================ geany-1.28-2.el7 (FEDORA-EPEL-2016-0953f0b536) A fast and lightweight IDE using GTK2 -------------------------------------------------------------------------------- Update Information: Geany 1.28 with updated scintilla version in spec file -------------------------------------------------------------------------------- References: [ 1 ] Bug #1316602 - [abrt] geany: markdown_config_get_template_text(): geany killed by SIGSEGV https://bugzilla.redhat.com/show_bug.cgi?id=1316602 [ 2 ] Bug #1302543 - [abrt] geany: PyEval_GetGlobals(): geany killed by SIGSEGV https://bugzilla.redhat.com/show_bug.cgi?id=1302543 [ 3 ] Bug #1300446 - Semi-transparent background behind some dialogs appear to be outdated screen captures. https://bugzilla.redhat.com/show_bug.cgi?id=1300446 [ 4 ] Bug #1251767 - Geany couldn't open file from gvfs share https://bugzilla.redhat.com/show_bug.cgi?id=1251767 [ 5 ] Bug #1213140 - [abrt] geany: g_source_unref_internal(): geany killed by SIGSEGV https://bugzilla.redhat.com/show_bug.cgi?id=1213140 [ 6 ] Bug #1079505 - [abrt] geany: gtk_notebook_button_release(): geany killed by SIGSEGV https://bugzilla.redhat.com/show_bug.cgi?id=1079505 [ 7 ] Bug #1354225 - geany-1.28.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1354225 [ 8 ] Bug #1314155 - [abrt] geany: update_filename_label(): geany killed by SIGFPE https://bugzilla.redhat.com/show_bug.cgi?id=1314155 -------------------------------------------------------------------------------- ================================================================================ geany-plugins-1.28-1.el7 (FEDORA-EPEL-2016-b7abf4da79) Plugins for Geany -------------------------------------------------------------------------------- Update Information: geany-pluins update to 1.28 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1346073 - geany-plugins-geanylatex should not have a whole LaTeX environment as a hard dependency https://bugzilla.redhat.com/show_bug.cgi?id=1346073 [ 2 ] Bug #1341107 - Geany Scope blank window https://bugzilla.redhat.com/show_bug.cgi?id=1341107 -------------------------------------------------------------------------------- ================================================================================ kf5-gpgmepp-16.04.3-1.el7 (FEDORA-EPEL-2016-6b4a6a4b9a) C++ wrapper and Qt integration for GpgMe library -------------------------------------------------------------------------------- Update Information: Trojita v0.7 - add support for GPG and S/MIME use GitHub translation files as of 20160612 drop manpage (manually generated, do we really need it?) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1297996 - kf5-gpgmepp: Provide package for f23/epel7 https://bugzilla.redhat.com/show_bug.cgi?id=1297996 [ 2 ] Bug #1349074 - kf5-gpgmepp: missing dependency on gpgme-devel https://bugzilla.redhat.com/show_bug.cgi?id=1349074 -------------------------------------------------------------------------------- ================================================================================ libint2-2.0.3-17.644hg.el7 (FEDORA-EPEL-2016-e06c421e27) A library for efficient evaluation of electron repulsion integrals -------------------------------------------------------------------------------- Update Information: First release in EPEL7. -------------------------------------------------------------------------------- ================================================================================ nitroshare-0.3.2-1.el7 (FEDORA-EPEL-2016-cc3c47c2a3) Transfer files from one device to another made extremely simple -------------------------------------------------------------------------------- Update Information: NitroShare v0.3.2 - - fixes rhbz#1354081 - add subpackage for nautilus extension - rename icons subpackages for more difference to extension - provide translations (add Qt5LinguistTools) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1354081 - nitroshare-0.3.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=1354081 -------------------------------------------------------------------------------- ================================================================================ nordugrid-arc-5.1.2-1.el7 (FEDORA-EPEL-2016-c6d4a7e59c) Advanced Resource Connector Grid Middleware -------------------------------------------------------------------------------- Update Information: NorduGrid ARC 15.03 update 8. http://www.nordugrid.org/arc/releases/15.03u8/release_notes_15.03u8.html -------------------------------------------------------------------------------- ================================================================================ nordugrid-arc-doc-2.0.8-1.el7 (FEDORA-EPEL-2016-c6d4a7e59c) Advanced Resource Connector Documentation -------------------------------------------------------------------------------- Update Information: NorduGrid ARC 15.03 update 8. http://www.nordugrid.org/arc/releases/15.03u8/release_notes_15.03u8.html -------------------------------------------------------------------------------- ================================================================================ php-deepend-Mockery-0.9.5-1.el7 (FEDORA-EPEL-2016-3367dbba97) Mockery is a simple but flexible PHP mock object framework -------------------------------------------------------------------------------- Update Information: **Version 0.9.5** * This brings PHP 7.0 compatibility to the 0.9 branch **Version 0.9.4** * shouldIgnoreMissing will respect global allowMockingNonExistentMethods config * Some support for variadic parameters * Hamcrest is now a required dependency * Instance mocks now respect shouldIgnoreMissing call on control instance * This will be the last version to support PHP 5.3 * Added Mockery\Adapter\Phpunit\MockeryPHPUnitIntegration trait * Added makePartial to Mockery\MockInterface as it was missing -------------------------------------------------------------------------------- ================================================================================ php-doctrine-orm-2.4.8-1.el7 (FEDORA-EPEL-2016-d85f5db77a) Doctrine Object-Relational-Mapper (ORM) -------------------------------------------------------------------------------- Update Information: ## v2.4.8 ### Security - CVE-2015-5723 php-doctrine-orm filesystem permission issues - https://access.redhat.com/security/cve/CVE-2015-5723 - http://www.doctrine-project.org/2015/08/31/security_misconfiguration_vulnerabili ty_in_various_doctrine_projects.html ### Bug - [DDC-3310] - [GH-1138] Join column index names - [DDC-3343] - `PersistentCollection::removeElement` schedules an entity for deletion when relationship is EXTRA_LAZY, with `orphanRemoval` false. - [DDC-3464] - [GH-1231] Backport 'Merge pull request #1098 from encoder32/DDC-1590' to 2.4 branch - [DDC-3482] - [GH-1242] Attempting to lock a proxy object fails as UOW doesn't init proxy first - [DDC-3493] - New (PHP 5.5) "class" keyword - wrong parsing by EntityGenerator - [DDC-3494] - [GH-1250] Test case for "class" keyword - [DDC-3500] - [GH-1254] Fix applying ON/WITH conditions to first join in Class Table Inheritance - [DDC-3502] - [GH-1256] DDC-3493 - fixed EntityGenerator parsing for php 5.5 "::class" syntax - [DDC-3518] - [GH-1266] [2.4] Fix schema generation in the test suite - [DDC-3537] - [GH-1282] Hotfix/#1169 extra lazy one to many should not delete referenced entities (backport to 2.4) - [DDC-3551] - [GH-1294] Avoid Connection error when calling ClassMetadataFactor::getAllMetadata() - [DDC-3560] - [GH-1300] [2.4] #1169 DDC-3343 one-to-omany persister deletes only on EXTRA_LAZY plus orphanRemoval - [DDC-3608] - [GH-1327] Properly generate default value from yml & xml mapping - [DDC-3619] - spl_object_hash collision - [DDC-3624] - [GH-1338] [DDC-3619] Update identityMap when entity gets managed again - [DDC-3643] - [GH-1352] fix EntityGenerator RegenerateEntityIfExists ### Improvement - [DDC-3530] - [GH-1276] travis: run coverage just once -------------------------------------------------------------------------------- References: [ 1 ] Bug #1347926 - CVE-2015-5723 php-doctrine-orm filesystem permission issues https://bugzilla.redhat.com/show_bug.cgi?id=1347926 -------------------------------------------------------------------------------- ================================================================================ php-swiftmailer-5.4.3-1.el7 (FEDORA-EPEL-2016-5146a514f9) Free Feature-rich PHP Mailer -------------------------------------------------------------------------------- Update Information: **Version 5.4.3** (2016-07-08) * fixed SimpleHeaderSet::has()/get() when the 0 index is removed * removed the need to have mcrypt installed * fixed broken MIME header encoding with quotes/colons and non-ascii chars * allowed mail transport send for messages without To header * fixed PHP 7 support -------------------------------------------------------------------------------- ================================================================================ python-pika-0.10.0-5.el7 (FEDORA-EPEL-2016-6e8e5ec9f6) AMQP 0-9-1 client library for Python -------------------------------------------------------------------------------- Update Information: - generate additional documentation - execute unit and acceptance tests after build -------------------------------------------------------------------------------- ================================================================================ qhttpengine-0.1.0-1.el7 (FEDORA-EPEL-2016-9e775d66cb) HTTP server for Qt applications -------------------------------------------------------------------------------- Update Information: initial package, rhbz#1354184 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1354184 - Review Request: qhttpengine - HTTP server for Qt applications https://bugzilla.redhat.com/show_bug.cgi?id=1354184 -------------------------------------------------------------------------------- ================================================================================ root-6.06.06-1.el7 (FEDORA-EPEL-2016-fcc7456b56) Numerical data analysis framework -------------------------------------------------------------------------------- Update Information: ROOT 6.06.06 https://root.cern.ch/doc/v606/release-notes.html#release-6.0606 -------------------------------------------------------------------------------- ================================================================================ trojita-0.7-4.el7 (FEDORA-EPEL-2016-6b4a6a4b9a) IMAP e-mail client -------------------------------------------------------------------------------- Update Information: Trojita v0.7 - add support for GPG and S/MIME use GitHub translation files as of 20160612 drop manpage (manually generated, do we really need it?) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1297996 - kf5-gpgmepp: Provide package for f23/epel7 https://bugzilla.redhat.com/show_bug.cgi?id=1297996 [ 2 ] Bug #1349074 - kf5-gpgmepp: missing dependency on gpgme-devel https://bugzilla.redhat.com/show_bug.cgi?id=1349074 -------------------------------------------------------------------------------- ================================================================================ winetricks-20160709-1.el7 (FEDORA-EPEL-2016-e29a3b0227) Work around common problems in Wine -------------------------------------------------------------------------------- Update Information: inital package, rhbz#1344115 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1344115 - Review Request: winetricks - Work around common problems in Wine https://bugzilla.redhat.com/show_bug.cgi?id=1344115 -------------------------------------------------------------------------------- _______________________________________________ epel-devel mailing list epel-devel@xxxxxxxxxxxxxxxxxxxxxxx https://lists.fedoraproject.org/admin/lists/epel-devel@xxxxxxxxxxxxxxxxxxxxxxx