The following Fedora EPEL 7 Security updates need testing: Age URL 769 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-1087 dokuwiki-0-0.24.20140929c.el7 531 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-dac7ed832f mcollective-2.8.4-1.el7 233 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-e8f4ff76b3 chicken-4.11.0-3.el7 113 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-04bc9dd81d libbsd-0.8.3-1.el7 30 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-05ac8b1dc4 php-onelogin-php-saml-2.10.5-1.el7 14 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-e9e451db03 chromium-57.0.2987.133-1.el7 11 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-1ae79d206b ReviewBoard-2.5.10-1.el7 11 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-d9e3bfe77d php-horde-Horde-Crypt-2.7.6-1.el7 11 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-7889b3b509 libupnp-1.6.21-1.el7 11 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-d241156dfe mod_cluster-1.3.3-10.el7 9 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-45845d256f python-django-1.6.11.6-1.el7 9 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-5f9a6163b4 tnef-1.4.14-1.el7 8 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-7ecb12e378 python-XStatic-jquery-ui-1.12.0.1-1.el7 6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-99c7c2f382 xorgxrdp-0.2.1-1.el7 xrdp-0.9.2-5.el7 5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-b9db4ff3ec proftpd-1.3.5e-1.el7 4 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-5e2d792c06 php-pear-CAS-1.3.5-1.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-3972e1c525 ansible-2.3.0.0-1.el7 1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-323bfce094 yara-3.5.0-7.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-e4d67c8654 collectd-5.7.1-2.el7 The following builds have been pushed to Fedora EPEL 7 updates-testing collectd-5.7.1-2.el7 drupal7-webform-4.15-1.el7 gnustep-make-2.7.0-1.el7 graphite-web-0.9.16-1.el7 healpix-3.31-3.el7 php-symfony-psr-http-message-bridge-1.0.0-1.el7 php-zendframework-zend-diactoros-1.4.0-1.el7 python-carbon-0.9.16-1.el7 python-whisper-0.9.16-1.el7 Details about builds: ================================================================================ collectd-5.7.1-2.el7 (FEDORA-EPEL-2017-e4d67c8654) Statistics collection daemon for filling RRD files -------------------------------------------------------------------------------- Update Information: Fix CVE-2017-7401 collectd: Infinite loop due to incorrect interaction of parse_packet() and parse_part_sign_sha256() functions. This is a bug in the network plugin. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1439674 - CVE-2017-7401 collectd: Infinite loop due to incorrect interaction of parse_packet() and parse_part_sign_sha256() functions https://bugzilla.redhat.com/show_bug.cgi?id=1439674 -------------------------------------------------------------------------------- ================================================================================ drupal7-webform-4.15-1.el7 (FEDORA-EPEL-2017-4104c01ada) Enables the creation of forms and questionnaires -------------------------------------------------------------------------------- Update Information: * [7.x-4.15](https://www.drupal.org/project/webform/releases/7.x-4.15) ---- * [7.x-4.15-rc1](https://www.drupal.org/project/webform/releases/7.x-4.15-rc1) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1442289 - drupal7-webform-4.15 is available https://bugzilla.redhat.com/show_bug.cgi?id=1442289 [ 2 ] Bug #1437695 - drupal7-webform-4.15-rc1 is available https://bugzilla.redhat.com/show_bug.cgi?id=1437695 -------------------------------------------------------------------------------- ================================================================================ gnustep-make-2.7.0-1.el7 (FEDORA-EPEL-2017-7e4430ca6e) GNUstep makefile package -------------------------------------------------------------------------------- Update Information: - Update to 2.7.0 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1442379 - gnustep-make-2.7.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1442379 -------------------------------------------------------------------------------- ================================================================================ graphite-web-0.9.16-1.el7 (FEDORA-EPEL-2017-c73dcc4d2a) A Django web application for enterprise scalable realtime graphing -------------------------------------------------------------------------------- Update Information: Update to bugfix release 0.9.16 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1441497 - Please upgrade to upstream version https://bugzilla.redhat.com/show_bug.cgi?id=1441497 -------------------------------------------------------------------------------- ================================================================================ healpix-3.31-3.el7 (FEDORA-EPEL-2017-9a1b5a7cb6) Hierarchical Equal Area isoLatitude Pixelization of a sphere -------------------------------------------------------------------------------- Update Information: initial healpix on EPEL7 -------------------------------------------------------------------------------- ================================================================================ php-symfony-psr-http-message-bridge-1.0.0-1.el7 (FEDORA-EPEL-2017-f32aa2bbc5) Symfony PSR HTTP message bridge -------------------------------------------------------------------------------- Update Information: ## 1.0.0 Initial release -------------------------------------------------------------------------------- References: [ 1 ] Bug #1370802 - php-symfony-psr-http-message-bridge-v1.0.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1370802 -------------------------------------------------------------------------------- ================================================================================ php-zendframework-zend-diactoros-1.4.0-1.el7 (FEDORA-EPEL-2017-c376053ace) PSR HTTP Message implementations -------------------------------------------------------------------------------- Update Information: ## 1.4.0 ### Added * \#219 adds two new classes, `Zend\Diactoros\Request\ArraySerializer` and `Zend\Diactoros\Response\ArraySerializer`. Each exposes the static methods `toArray()` and `fromArray()`, allowing de/serialization of messages from and to arrays. * \#236 adds two new constants to the `Response` class: `MIN_STATUS_CODE_VALUE` and `MAX_STATUS_CODE_VALUE`. ### Changes * \#240 changes the behavior of `ServerRequestFactory::fromGlobals()` when no `$cookies` argument is present. Previously, it would use `$_COOKIES`; now, if a `Cookie` header is present, it will parse and use that to populate the instance instead. * This change allows utilizing cookies that contain period characters (`.`) in their names (PHP's built-in cookie handling renames these to replace `.` with `_`, which can lead to synchronization issues with clients). * \#235 changes the behavior of `Uri::__toString()` to better follow proscribed behavior in PSR-7. In particular, prior to this release, if a scheme was missing but an authority was present, the class was incorrectly returning a value that did not include a `//` prefix. As of this release, it now does this correctly. ### Deprecated Nothing. ### Removed Nothing. ### Fixed Nothing. ## 1.3.11 ### Added Nothing. ### Changes * \#241 changes the constraint by which the package provides `psr/http-message-implementation` to simply `1.0` instead of `~1.0.0`, to follow how other implementations provide PSR-7. ### Deprecated Nothing. ### Removed Nothing. ### Fixed * \#161 adds additional validations to header names and values to ensure no malformed values are provided. * \#234 fixes a number of reason phrases in the `Response` instance, and adds automation from the canonical IANA sources to ensure any new phrases added are correct. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1440332 - php-zendframework-zend-diactoros-1.4.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1440332 -------------------------------------------------------------------------------- ================================================================================ python-carbon-0.9.16-1.el7 (FEDORA-EPEL-2017-c73dcc4d2a) Back-end data caching and persistence daemon for Graphite -------------------------------------------------------------------------------- Update Information: Update to bugfix release 0.9.16 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1441497 - Please upgrade to upstream version https://bugzilla.redhat.com/show_bug.cgi?id=1441497 -------------------------------------------------------------------------------- ================================================================================ python-whisper-0.9.16-1.el7 (FEDORA-EPEL-2017-c73dcc4d2a) Simple database library for storing time-series data -------------------------------------------------------------------------------- Update Information: Update to bugfix release 0.9.16 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1441497 - Please upgrade to upstream version https://bugzilla.redhat.com/show_bug.cgi?id=1441497 -------------------------------------------------------------------------------- _______________________________________________ epel-devel mailing list -- epel-devel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to epel-devel-leave@xxxxxxxxxxxxxxxxxxxxxxx