The following Fedora EPEL 6 Security updates need testing: Age URL 603 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-7031 python-virtualenv-12.0.7-1.el6 597 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-7168 rubygem-crack-0.3.2-2.el6 487 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-e2b4b5b2fb mcollective-2.8.4-1.el6 459 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-35e240edd9 thttpd-2.25b-24.el6 189 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-8594ed3a53 chicken-4.11.0-3.el6 69 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-e3e50897ac libbsd-0.8.3-2.el6 54 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-8c6c7bf06e dbus-sharp-0.7.0-16.el6 dbus-sharp-glib-0.5.0-14.el6 mono-4.2.4-9.el6 19 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-acd2c2af0d nagios-4.2.4-4.el6 12 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-c3b112eb9e tomcat-7.0.75-1.el6 7 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-4e715bd3df phpMyAdmin-4.0.10.19-1.el6 4 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-02d45f12e7 canl-c-2.1.8-1.el6 3 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-148092c401 cacti-1.0.4-1.el6 3 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-1bdfd523cb drupal7-metatag-1.21-1.el6 1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-e4e18670f5 drupal7-views-3.15-1.el6 1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-23896f34bd munin-2.0.30-5.el6 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-6f8067610a GraphicsMagick-1.3.25-6.el6 The following builds have been pushed to Fedora EPEL 6 updates-testing GraphicsMagick-1.3.25-6.el6 NetworkManager-openconnect-0.8.6.0-3.el6 guacamole-server-0.9.11-2.el6 mock-1.3.5-1.el6 nodejs-rhea-0.2.0-1.el6 php-horde-Horde-Core-2.27.7-1.el6 qpid-dispatch-0.7.0-1.el6 qpid-proton-0.17.0-1.el6 rubygem-qpid_proton-0.17.0-1.el6 rubygem-sequel-4.44.0-1.el6 xrootd-4.6.0-6.el6 Details about builds: ================================================================================ GraphicsMagick-1.3.25-6.el6 (FEDORA-EPEL-2017-6f8067610a) An ImageMagick fork, offering faster image generation and better quality -------------------------------------------------------------------------------- Update Information: Backport fixes for multiple security vulnerabilities. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1385583 - CVE-2016-8682 CVE-2016-8683 CVE-2016-8684 GraphicsMagick: Multiple security issues https://bugzilla.redhat.com/show_bug.cgi?id=1385583 [ 2 ] Bug #1383223 - CVE-2016-7996 CVE-2016-7997 GraphicsMagick: WPG Reader Issues https://bugzilla.redhat.com/show_bug.cgi?id=1383223 [ 3 ] Bug #1381148 - CVE-2016-7800 GraphicsMagick: 8BIM/8BIMW unsigned underflow leads to heap overflow https://bugzilla.redhat.com/show_bug.cgi?id=1381148 -------------------------------------------------------------------------------- ================================================================================ NetworkManager-openconnect-0.8.6.0-3.el6 (FEDORA-EPEL-2017-d268eb5424) NetworkManager VPN integration for openconnect -------------------------------------------------------------------------------- Update Information: Updated for new openconnect release -------------------------------------------------------------------------------- ================================================================================ guacamole-server-0.9.11-2.el6 (FEDORA-EPEL-2017-9125c5d36a) Server-side native components that form the Guacamole proxy -------------------------------------------------------------------------------- Update Information: Update to the latest 0.9.11 release. Please see configuration changes here: http://guacamole.incubator.apache.org/releases/0.9.10-incubating/#deprecation --compatibility-notes http://guacamole.incubator.apache.org/releases/0.9.11-incubating/#deprecation --compatibility-notes -------------------------------------------------------------------------------- ================================================================================ mock-1.3.5-1.el6 (FEDORA-EPEL-2017-2c7e8574bf) Builds packages inside chroots -------------------------------------------------------------------------------- Update Information: Beside listed bugfixes there are new features: * scm plugin now supports DistGit (or DistSVN etc.) . * log files of package_state plugin got `.log` extension. I.e. `available_pkgs.log` and `installed_pkgs.log`. * Configuration files for Fedora 26 has been added. * Configuration files for Fedora 23 has been removed. * Even rawhide configs now use best=1. * when Mock is run directly without consolehelper it now return exit code 2. * You can pass additional arguments to systemd-nspawn using this config option: `config_opts['nspawn_args'] = []`. * kojipkgs urls now use https instead of http. * new plugin hw_info which prints HW information of builder. This plugin is enabled by default. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1409735 - Cannot create default config on rawhide https://bugzilla.redhat.com/show_bug.cgi?id=1409735 [ 2 ] Bug #1297430 - RFE: chroot_scan should extract files preserving ownership and mode https://bugzilla.redhat.com/show_bug.cgi?id=1297430 [ 3 ] Bug #1372234 - mock --new-chroot can't shutdown mongo running inside https://bugzilla.redhat.com/show_bug.cgi?id=1372234 [ 4 ] Bug #1409734 - Provide an easy way to install debuginfo into mock chroot https://bugzilla.redhat.com/show_bug.cgi?id=1409734 [ 5 ] Bug #1428301 - Cannot run mock on el6 https://bugzilla.redhat.com/show_bug.cgi?id=1428301 -------------------------------------------------------------------------------- ================================================================================ nodejs-rhea-0.2.0-1.el6 (FEDORA-EPEL-2017-11c92d15a7) A reactive messaging library based on the AMQP protocol -------------------------------------------------------------------------------- Update Information: Rebased to 0.2.0. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1352735 - nodejs-rhea-0.1.11 is available https://bugzilla.redhat.com/show_bug.cgi?id=1352735 -------------------------------------------------------------------------------- ================================================================================ php-horde-Horde-Core-2.27.7-1.el6 (FEDORA-EPEL-2017-fbef1b4f7b) Horde Core Framework libraries -------------------------------------------------------------------------------- Update Information: **Horde_Core 2.27.7** * [mjr] Fix adding a separator item to a custom menu (Bug #14581). * [jan] Enable LDAP rootDSE caching. * [mjr] Use new ActiveSync log handling. * [jan] Correctly encode IP address literal in first Received: header (Bug #14574). * [mjr] Remove support for defunct CloudMade, and MyTopo mapping APIs. * [jan] Fix fatal error screen for PHP 7 error objects. * [jan] Remember the configuration values of split-read database environments. * [jan] Only show $conf[sql][ca] if $conf[sql][ssl] is enabled. -------------------------------------------------------------------------------- ================================================================================ qpid-dispatch-0.7.0-1.el6 (FEDORA-EPEL-2017-c4eb510615) Dispatch router for Qpid -------------------------------------------------------------------------------- Update Information: Rebased to 0.7.0. -------------------------------------------------------------------------------- ================================================================================ qpid-proton-0.17.0-1.el6 (FEDORA-EPEL-2017-c689f0007b) A high performance, lightweight messaging library -------------------------------------------------------------------------------- Update Information: Rebased to 0.17.0. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1381366 - There is no package for qpid-proton-cpp or qpid-proton-cpp-devel https://bugzilla.redhat.com/show_bug.cgi?id=1381366 [ 2 ] Bug #1381362 - qpid-proton-c-devel improperly includes C++ headers https://bugzilla.redhat.com/show_bug.cgi?id=1381362 -------------------------------------------------------------------------------- ================================================================================ rubygem-qpid_proton-0.17.0-1.el6 (FEDORA-EPEL-2017-11737fb9bd) Ruby language bindings for the Qpid Proton messaging framework -------------------------------------------------------------------------------- Update Information: Rebased to 0.17.0. -------------------------------------------------------------------------------- ================================================================================ rubygem-sequel-4.44.0-1.el6 (FEDORA-EPEL-2017-55a25b2f45) The Database Toolkit for Ruby -------------------------------------------------------------------------------- Update Information: Update to sequel 4.44.0 ---- Update to add bug fixes to 4.42.0 ---- Updated to sequel 4.42.0 ---- Upgrade to sequel 4.40.0 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1400756 - rubygem-sequel-4.42.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1400756 [ 2 ] Bug #1389916 - rubygem-sequel-4.40.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1389916 [ 3 ] Bug #1419221 - rubygem-sequel-4.44.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1419221 [ 4 ] Bug #1412861 - rubygem-sequel-4.42.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=1412861 -------------------------------------------------------------------------------- ================================================================================ xrootd-4.6.0-6.el6 (FEDORA-EPEL-2017-85c437a7c5) Extended ROOT file server -------------------------------------------------------------------------------- Update Information: New version 4.6.0, release notes are here: https://github.com/xrootd/xrootd/blob/v4.6.0/docs/ReleaseNotes.txt -------------------------------------------------------------------------------- _______________________________________________ epel-devel mailing list -- epel-devel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to epel-devel-leave@xxxxxxxxxxxxxxxxxxxxxxx