The following Fedora EPEL 7 Security updates need testing: Age URL 682 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-1087 dokuwiki-0-0.24.20140929c.el7 445 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-dac7ed832f mcollective-2.8.4-1.el7 163 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-23fa04bf1c redis-3.2.3-1.el7 147 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-e8f4ff76b3 chicken-4.11.0-3.el7 27 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-04bc9dd81d libbsd-0.8.3-1.el7 17 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-92129d651d exim-4.88-2.el7 9 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-fbb2447c6e php-PHPMailer-5.2.22-1.el7 9 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-3d29bf8e34 php-ZendFramework2-2.4.11-1.el7 6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-f1acebb58b wordpress-4.7.1-1.el7 5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-6ee140a6d3 fedmsg-0.18.2-1.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-6e3dadcb1d pdns-recursor-3.7.4-1.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-9bcc7b6164 mingw-nsis-3.01-1.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-ad7467bd9c pdns-3.4.11-1.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-8cb1dcd776 python-crypto-2.6.1-13.el7 The following builds have been pushed to Fedora EPEL 7 updates-testing brightnessctl-0.2-1.el7 gfal2-python-1.8.5-1.el7 golang-github-BurntSushi-toml-0-0.10.git2ceedfe.el7 golang-github-davecgh-go-spew-0-0.11.git6d21280.el7 golang-github-emicklei-go-restful-1.1.3-0.11.gitbf50d2b.el7 golang-github-golang-sys-0-0.9.git8f0908a.el7 golang-github-kr-text-0-0.10.git6807e77.el7 golang-github-magiconair-properties-1.7.0-1.el7 golang-github-rackspace-gophercloud-1.0.0-13.el7 golang-github-ugorji-go-0-0.8.git5cd0f2b.el7 golang-github-urfave-cli-1.18.0-0.1.git61f519f.el7 golang-googlecode-uuid-0-0.11.gitb984ec7.el7 libglvnd-0.2.999-6.git28867bb.el7 lighttpd-1.4.45-1.el7 mod_cluster-1.2.6-3.1.el7 module-build-service-1.1.0-2.el7 nagios-plugins-2.1.4-3.el7 python-crypto-2.6.1-13.el7 python-djblets-0.9.4-4.el7 python-flask-migrate-2.0.0-3.el7 python-flask-script-2.0.5-6.el7 python-funcsigs-1.0.2-4.el7 texlive-extension-2012-50.el7 wcstools-3.9.4-1.el7 webfts-2.2.11-1.el7 Details about builds: ================================================================================ brightnessctl-0.2-1.el7 (FEDORA-EPEL-2017-b46b8048fe) Read and control device brightness -------------------------------------------------------------------------------- Update Information: update -------------------------------------------------------------------------------- References: [ 1 ] Bug #1413787 - brightnessctl-0.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=1413787 -------------------------------------------------------------------------------- ================================================================================ gfal2-python-1.8.5-1.el7 (FEDORA-EPEL-2017-78aad12c06) Python bindings for gfal 2 -------------------------------------------------------------------------------- Update Information: Update for new upstream release -------------------------------------------------------------------------------- ================================================================================ golang-github-BurntSushi-toml-0-0.10.git2ceedfe.el7 (FEDORA-EPEL-2017-72417a4204) TOML parser and encoder for Go with reflection -------------------------------------------------------------------------------- Update Information: Polish the spec file ---- Enable devel and unit-test for epel7 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1247656 - Tracker for golang-github-BurntSushi-toml https://bugzilla.redhat.com/show_bug.cgi?id=1247656 -------------------------------------------------------------------------------- ================================================================================ golang-github-davecgh-go-spew-0-0.11.git6d21280.el7 (FEDORA-EPEL-2017-d38ca4e63e) Deep pretty printer for Go data structures to aid in debug -------------------------------------------------------------------------------- Update Information: Bump to upstream 6d212800a42e8ab5c146b8ace3490ee17e5225f9 ---- Polish the spec file -------------------------------------------------------------------------------- References: [ 1 ] Bug #1248791 - Tracker for golang-github-davecgh-go-spew https://bugzilla.redhat.com/show_bug.cgi?id=1248791 -------------------------------------------------------------------------------- ================================================================================ golang-github-emicklei-go-restful-1.1.3-0.11.gitbf50d2b.el7 (FEDORA-EPEL-2017-53a1f3631b) Package for building REST-style Web Services using Google Go -------------------------------------------------------------------------------- Update Information: Bump to upstream bf50d2be18145391aa3d4339b07195807b25a427 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1215626 - Tracker for golang-github-emicklei-go-restful https://bugzilla.redhat.com/show_bug.cgi?id=1215626 -------------------------------------------------------------------------------- ================================================================================ golang-github-golang-sys-0-0.9.git8f0908a.el7 (FEDORA-EPEL-2017-2bb7a66437) Go packages for low-level interaction with the operating system -------------------------------------------------------------------------------- Update Information: Bump to upstream 8f0908ab3b2457e2e15403d3697c9ef5cb4b57a9 ---- Polish the spec file ---- Bump to upstream 62bee037599929a6e9146f29d10dd5208c43507d ---- Enable devel and unit-test subpackage for epel7 ---- Bump to upstream 33267e036fd93fcd26ea95b7bdaf2d8306cb743c -------------------------------------------------------------------------------- References: [ 1 ] Bug #1360748 - update for s390x support https://bugzilla.redhat.com/show_bug.cgi?id=1360748 -------------------------------------------------------------------------------- ================================================================================ golang-github-kr-text-0-0.10.git6807e77.el7 (FEDORA-EPEL-2017-fc98b142f1) Go package for manipulating paragraphs of text -------------------------------------------------------------------------------- Update Information: Polish the spec file -------------------------------------------------------------------------------- References: [ 1 ] Bug #1248175 - Tracker for golang-github-kr-text https://bugzilla.redhat.com/show_bug.cgi?id=1248175 -------------------------------------------------------------------------------- ================================================================================ golang-github-magiconair-properties-1.7.0-1.el7 (FEDORA-EPEL-2017-f073498cb7) Java properties scanner for Go -------------------------------------------------------------------------------- Update Information: Bump to upstream 0723e352fa358f9322c938cc2dadda874e9151a9 ---- Polish the spec file -------------------------------------------------------------------------------- References: [ 1 ] Bug #1413067 - Tracker for golang-github-magiconair-properties https://bugzilla.redhat.com/show_bug.cgi?id=1413067 -------------------------------------------------------------------------------- ================================================================================ golang-github-rackspace-gophercloud-1.0.0-13.el7 (FEDORA-EPEL-2017-da40dd19b1) The Go SDK for Openstack http://gophercloud.io -------------------------------------------------------------------------------- Update Information: Bump to upstream c90cb954266e1bdd6d1914678fd6909fc5fabbfa -------------------------------------------------------------------------------- References: [ 1 ] Bug #1214774 - Tracker for golang-github-rackspace-gophercloud https://bugzilla.redhat.com/show_bug.cgi?id=1214774 -------------------------------------------------------------------------------- ================================================================================ golang-github-ugorji-go-0-0.8.git5cd0f2b.el7 (FEDORA-EPEL-2017-5d1ed59f1e) Idiomatic codec and rpc lib for msgpack, cbor, json, etc -------------------------------------------------------------------------------- Update Information: Bump to upstream 5cd0f2b3b6cca8e3a0a4101821e41a73cb59bed6 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1250516 - Tracker for golang-github-ugorji-go https://bugzilla.redhat.com/show_bug.cgi?id=1250516 -------------------------------------------------------------------------------- ================================================================================ golang-github-urfave-cli-1.18.0-0.1.git61f519f.el7 (FEDORA-EPEL-2017-193eefe843) A simple, fast, and fun package for building command line apps in Go -------------------------------------------------------------------------------- Update Information: Bump to upstream 61f519fe5e57c2518c03627b194899a105838eba ---- enable devel and unit-test for epel7 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1354378 - Review Request: golang-github-urfave-cli - A simple, fast, and fun package for building command line apps in Go https://bugzilla.redhat.com/show_bug.cgi?id=1354378 -------------------------------------------------------------------------------- ================================================================================ golang-googlecode-uuid-0-0.11.gitb984ec7.el7 (FEDORA-EPEL-2017-bb616c1df9) Generates and inspects UUIDs based on RFC 4122 and DCE 1.1 -------------------------------------------------------------------------------- Update Information: Bump to upstream b984ec7fa9ff9e428bd0cf0abf429384dfbe3e37 ---- Enable devel and unit-test for epel7 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1250523 - Tracker for golang-googlecode-uuid https://bugzilla.redhat.com/show_bug.cgi?id=1250523 -------------------------------------------------------------------------------- ================================================================================ libglvnd-0.2.999-6.git28867bb.el7 (FEDORA-EPEL-2017-0def2de72e) The GL Vendor-Neutral Dispatch library -------------------------------------------------------------------------------- Update Information: Update ---- - Update snapshot - Restore hardened build - Remove ExclusiveArch - Remove some pointless Provides/Obsoletes - BuildRequires pkgconfig(xext) not pkgconfig(xv) - Update description to be a bit more confident - Dump make check errors into the build log -------------------------------------------------------------------------------- ================================================================================ lighttpd-1.4.45-1.el7 (FEDORA-EPEL-2017-931611857b) Lightning fast webserver with light system requirements -------------------------------------------------------------------------------- Update Information: 1.4.45 https://www.lighttpd.net/2017/1/14/1.4.45/ -------------------------------------------------------------------------------- References: [ 1 ] Bug #1413278 - lighttpd-1.4.45 is available https://bugzilla.redhat.com/show_bug.cgi?id=1413278 -------------------------------------------------------------------------------- ================================================================================ mod_cluster-1.2.6-3.1.el7 (FEDORA-EPEL-2017-cffe7b8501) Apache HTTP load balancer -------------------------------------------------------------------------------- Update Information: Disable java bindings -------------------------------------------------------------------------------- ================================================================================ module-build-service-1.1.0-2.el7 (FEDORA-EPEL-2017-c0acc244c8) The Module Build Service for Modularity -------------------------------------------------------------------------------- Update Information: Branch for EPEL7. -------------------------------------------------------------------------------- ================================================================================ nagios-plugins-2.1.4-3.el7 (FEDORA-EPEL-2017-99cefd5950) Host/service/network monitoring program plugins for Nagios -------------------------------------------------------------------------------- Update Information: Put in patch to fix check_file_age -------------------------------------------------------------------------------- References: [ 1 ] Bug #1410039 - check_file_age is broken in recent update https://bugzilla.redhat.com/show_bug.cgi?id=1410039 -------------------------------------------------------------------------------- ================================================================================ python-crypto-2.6.1-13.el7 (FEDORA-EPEL-2017-8cb1dcd776) Cryptography library for Python -------------------------------------------------------------------------------- Update Information: A heap-buffer overflow vulnerability was discovered in pycrypto leading to arbitrary code execution. All users of pycrypto's AES module that allow the mode of operation to be specified by an attacker, check for ECB explicitly and create the objects without specifying an IV are vulnerable to this issue. This is CVE-2013-7459. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1409754 - CVE-2013-7459 pycrypto: Heap-buffer overflow in ALGobject structure https://bugzilla.redhat.com/show_bug.cgi?id=1409754 -------------------------------------------------------------------------------- ================================================================================ python-djblets-0.9.4-4.el7 (FEDORA-EPEL-2017-92bd66a505) A collection of useful classes and functions for Django -------------------------------------------------------------------------------- Update Information: Fix missing dependencies breaking Review Board -------------------------------------------------------------------------------- ================================================================================ python-flask-migrate-2.0.0-3.el7 (FEDORA-EPEL-2017-564e805f01) SQLAlchemy database migrations for Flask applications using Alembic -------------------------------------------------------------------------------- Update Information: Branch for EPEL7. -------------------------------------------------------------------------------- ================================================================================ python-flask-script-2.0.5-6.el7 (FEDORA-EPEL-2017-605bdb6f6a) Scripting support for Flask -------------------------------------------------------------------------------- Update Information: Branch for EPEL7. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1412273 - Please branch for EPEL7 https://bugzilla.redhat.com/show_bug.cgi?id=1412273 -------------------------------------------------------------------------------- ================================================================================ python-funcsigs-1.0.2-4.el7 (FEDORA-EPEL-2017-5c2d6629a7) Python function signatures from PEP362 for Python 2.6, 2.7 and 3.2+ -------------------------------------------------------------------------------- Update Information: Branch for EPEL7. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1414541 - Please build for EPEL7. https://bugzilla.redhat.com/show_bug.cgi?id=1414541 -------------------------------------------------------------------------------- ================================================================================ texlive-extension-2012-50.el7 (FEDORA-EPEL-2017-6223b86d63) TeX formatting system -------------------------------------------------------------------------------- Update Information: update texlive-extension fixes following bugs: - bz#1272882, add siunitx - bz#1309785, fixed wrong provides/requires on tex(texnansi.enc) - bz#1239049, tex files cannot be compiled on RHEL7 - bz##1238433 missing auto-pst-pdf.sty -------------------------------------------------------------------------------- References: [ 1 ] Bug #1309785 - Missing texlive components: mathdesign.sty texnansi.sty vmargin.sty https://bugzilla.redhat.com/show_bug.cgi?id=1309785 [ 2 ] Bug #1239049 - None https://bugzilla.redhat.com/show_bug.cgi?id=1239049 [ 3 ] Bug #1272882 - None https://bugzilla.redhat.com/show_bug.cgi?id=1272882 [ 4 ] Bug #1238433 - missing auto-pst-pdf.sty https://bugzilla.redhat.com/show_bug.cgi?id=1238433 -------------------------------------------------------------------------------- ================================================================================ wcstools-3.9.4-1.el7 (FEDORA-EPEL-2017-8766d3a1d8) Software utilities to display and manipulate the WCS of a FITS image -------------------------------------------------------------------------------- Update Information: Unretire wcstools package and update to latest available release. -------------------------------------------------------------------------------- ================================================================================ webfts-2.2.11-1.el7 (FEDORA-EPEL-2017-cfeab3739a) Web Interface for FTS -------------------------------------------------------------------------------- Update Information: * new upstream release -------------------------------------------------------------------------------- _______________________________________________ epel-devel mailing list -- epel-devel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to epel-devel-leave@xxxxxxxxxxxxxxxxxxxxxxx