The following Fedora EPEL 7 Security updates need testing: Age URL 877 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-1087 dokuwiki-0-0.24.20140929c.el7 640 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-dac7ed832f mcollective-2.8.4-1.el7 222 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-04bc9dd81d libbsd-0.8.3-1.el7 120 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-d241156dfe mod_cluster-1.3.3-10.el7 118 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-5f9a6163b4 tnef-1.4.14-1.el7 117 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-7ecb12e378 python-XStatic-jquery-ui-1.12.0.1-1.el7 20 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-47be021843 heimdal-7.4.0-1.el7 19 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-a8886eb42e cross-binutils-2.27-9.el7.1 cross-gcc-4.8.5-16.el7.1 10 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-c39b9065fa GraphicsMagick-1.3.26-3.el7 10 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-c4e53cc90d chicken-4.12.0-3.el7 10 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-1024674dfb moodle-3.1.7-1.el7 8 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-b39314b704 mingw-c-ares-1.13.0-1.el7 8 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-2c3a1062a0 seamonkey-2.48-1.el7 6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-b50572c103 sscep-0.6.1-5.20160525git2052ee1.el7 5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-4908d32c3c python-dbusmock-0.11.1-6.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-017fbc40e8 supervisor-3.1.4-1.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-52b6bc17c1 globus-ftp-client-8.36-1.el7 globus-ftp-control-7.8-1.el7 globus-gass-cache-program-6.7-1.el7 globus-gass-copy-9.27-1.el7 globus-gram-client-13.19-1.el7 globus-gram-job-manager-14.36-1.el7 globus-gram-job-manager-condor-2.6-5.el7 globus-gridftp-server-12.2-1.el7 globus-gridftp-server-control-5.1-1.el7 globus-gssapi-gsi-12.17-3.el7 globus-io-11.9-1.el7 globus-net-manager-0.17-1.el7 globus-xio-5.16-1.el7 globus-xio-gsi-driver-3.11-1.el7 globus-xio-pipe-driver-3.10-1.el7 globus-xio-udt-driver-1.28-1.el7 myproxy-6.1.28-1.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-37e736147d knot-2.5.3-2.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-94c168d702 php-horde-Horde-Core-2.30.0-1.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-7d6b89ab36 php-horde-Horde-Form-2.0.18-1.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-359039e1f1 php-horde-Horde-Url-2.2.6-1.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-aebd466ffa php-horde-horde-5.2.16-1.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-531b8ee43e php-horde-kronolith-4.2.22-1.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-055fdcdee7 php-horde-nag-4.2.15-1.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-bad0726ae5 php-horde-turba-4.2.20-1.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-886e003d48 gsoap-2.8.16-9.el7 The following builds have been pushed to Fedora EPEL 7 updates-testing cppcheck-1.80-1.el7 gitolite-2.3.1-15.el7 google-api-python-client-1.6.2-1.el7 gsoap-2.8.16-9.el7 nqp-0.0.2017.07-1.el7 perl-Proc-Queue-1.23-11.el7 php-horde-Horde-Browser-2.0.14-1.el7 php-horde-Horde-Core-2.30.0-1.el7 php-horde-Horde-Form-2.0.18-1.el7 php-horde-Horde-Imap-Client-2.29.14-1.el7 php-horde-Horde-Url-2.2.6-1.el7 php-horde-horde-5.2.16-1.el7 php-horde-imp-6.2.20-1.el7 php-horde-kronolith-4.2.22-1.el7 php-horde-nag-4.2.15-1.el7 php-horde-turba-4.2.20-1.el7 putty-0.70-2.el7 python-argcomplete-1.7.0-2.el7 python-lazr-delegates-2.0.3-5.el7 python-lazr-smtptest-2.0.3-6.el7 python-uritemplate-3.0.0-1.el7 qmapshack-1.9.0-1.el7 rakudo-0.2017.07-2.el7 tracer-0.6.13-1.el7 uid_wrapper-1.2.4-1.el7 Details about builds: ================================================================================ cppcheck-1.80-1.el7 (FEDORA-EPEL-2017-b406104009) Tool for static C/C++ code analysis -------------------------------------------------------------------------------- Update Information: 1.80 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1476472 - cppcheck-1.80 is available https://bugzilla.redhat.com/show_bug.cgi?id=1476472 -------------------------------------------------------------------------------- ================================================================================ gitolite-2.3.1-15.el7 (FEDORA-EPEL-2017-876b020066) Highly flexible server for git directory version tracker -------------------------------------------------------------------------------- Update Information: First EL7 build. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1464165 - gitolite package is missing in EPEL7 https://bugzilla.redhat.com/show_bug.cgi?id=1464165 -------------------------------------------------------------------------------- ================================================================================ google-api-python-client-1.6.2-1.el7 (FEDORA-EPEL-2017-2f281be7ca) Google APIs Client Library for Python -------------------------------------------------------------------------------- Update Information: Update to 1.6.2 -------------------------------------------------------------------------------- ================================================================================ gsoap-2.8.16-9.el7 (FEDORA-EPEL-2017-886e003d48) Generator Tools for Coding SOAP/XML Web Services in C and C++ -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2017-9765. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1472808 - CVE-2017-9765 gsoap: Stack-based buffer overflow when receieving XML message with size larger than 2GB [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=1472808 -------------------------------------------------------------------------------- ================================================================================ nqp-0.0.2017.07-1.el7 (FEDORA-EPEL-2017-ea27621c44) Not Quite Perl (6) -------------------------------------------------------------------------------- Update Information: update to 2017.07 -------------------------------------------------------------------------------- ================================================================================ perl-Proc-Queue-1.23-11.el7 (FEDORA-EPEL-2017-1d7a741e14) Limit the number of child processes running -------------------------------------------------------------------------------- Update Information: Added perl-Proc-Queue to EPEL 7 -------------------------------------------------------------------------------- ================================================================================ php-horde-Horde-Browser-2.0.14-1.el7 (FEDORA-EPEL-2017-d122616d1c) Horde Browser API -------------------------------------------------------------------------------- Update Information: **Horde_Browser 2.0.14** * [jan] Filter out control characters from file names when sending download headers. -------------------------------------------------------------------------------- ================================================================================ php-horde-Horde-Core-2.30.0-1.el7 (FEDORA-EPEL-2017-94c168d702) Horde Core Framework libraries -------------------------------------------------------------------------------- Update Information: **Horde_Core 2.30.0** * [jan] SECURITY: Fix XSS vulnerability with pathinfo component in Horde::selfUrl(). * [jan] Deprecate Horde::redirect(). * [jan] Add Horde::signUrl() and Horde::verifySignedUrl(). -------------------------------------------------------------------------------- ================================================================================ php-horde-Horde-Form-2.0.18-1.el7 (FEDORA-EPEL-2017-7d6b89ab36) Horde Form API -------------------------------------------------------------------------------- Update Information: **Horde_Form 2.0.18** * [jan] SECURITY: Fix XSS vulnerability with form sections. -------------------------------------------------------------------------------- ================================================================================ php-horde-Horde-Imap-Client-2.29.14-1.el7 (FEDORA-EPEL-2017-3a54963a70) Horde IMAP abstraction interface -------------------------------------------------------------------------------- Update Information: **Horde_Imap_Client 2.29.14** * [jan] Fix check if QRESYNC is enabled in vanished() (i.badamshin). -------------------------------------------------------------------------------- ================================================================================ php-horde-Horde-Url-2.2.6-1.el7 (FEDORA-EPEL-2017-359039e1f1) Horde Url class -------------------------------------------------------------------------------- Update Information: **Horde_Url 2.2.6** * [jan] SECURITY: Fix XSS vulnerability with pathinfo component in toString(). -------------------------------------------------------------------------------- ================================================================================ php-horde-horde-5.2.16-1.el7 (FEDORA-EPEL-2017-aebd466ffa) Horde Application Framework -------------------------------------------------------------------------------- Update Information: **horde 5.2.16** * [jan] SECURITY: Fix open redirects. -------------------------------------------------------------------------------- ================================================================================ php-horde-imp-6.2.20-1.el7 (FEDORA-EPEL-2017-7521407cf7) A web based webmail system -------------------------------------------------------------------------------- Update Information: **imp 6.2.20** * [jan] Fix finding reply or forward text from signed or encrypted messages with HTML content again (Bug #14656). * [mjr] Fix issue with reattaching a file after removing it on Chrome browsers (Bug #14657), * [jan] Allow Command-C to copy text from HTML message previews (Bug #14653). -------------------------------------------------------------------------------- ================================================================================ php-horde-kronolith-4.2.22-1.el7 (FEDORA-EPEL-2017-531b8ee43e) A web based calendar -------------------------------------------------------------------------------- Update Information: **kronolith 4.2.22** * [jan] SECURITY: Fix open redirects. * [mjr] Prevent broken iCalendar files from causing fatal errors (Bug #14672). * [jan] Work around calendar servers advertising as CalDAV-capable, but ignoring CalDAV requests (Bug #14662). * [jan] Fix displaying yesterday's event in Prior Events portal block (admin@xxxxxxxxxxx, Bug #14638). -------------------------------------------------------------------------------- ================================================================================ php-horde-nag-4.2.15-1.el7 (FEDORA-EPEL-2017-055fdcdee7) A web based task list manager -------------------------------------------------------------------------------- Update Information: **nag 4.2.15** * [jan] SECURITY: Fix open redirects. * [mjr] Fix handling of delayed start dates (Bug #14634). -------------------------------------------------------------------------------- ================================================================================ php-horde-turba-4.2.20-1.el7 (FEDORA-EPEL-2017-bad0726ae5) A web based address book -------------------------------------------------------------------------------- Update Information: **turba 4.2.20** * [jan] SECURITY: Fix open redirects. * [jan] Fix creating address books with the external API. -------------------------------------------------------------------------------- ================================================================================ putty-0.70-2.el7 (FEDORA-EPEL-2017-4ff5697cee) SSH, Telnet and Rlogin client -------------------------------------------------------------------------------- Update Information: This is an update enabling rebuild of documentation with halibut. -------------------------------------------------------------------------------- ================================================================================ python-argcomplete-1.7.0-2.el7 (FEDORA-EPEL-2017-6aed43ddbe) Bash tab completion for argparse -------------------------------------------------------------------------------- Update Information: report reboot for new kernels (#83) (seanokeeffe797@xxxxxxxxx) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1469282 - tracer-common should require python3-argcomplete https://bugzilla.redhat.com/show_bug.cgi?id=1469282 [ 2 ] Bug #1450388 - RFE: add logic to tracer to recognize more services https://bugzilla.redhat.com/show_bug.cgi?id=1450388 -------------------------------------------------------------------------------- ================================================================================ python-lazr-delegates-2.0.3-5.el7 (FEDORA-EPEL-2017-5b6f12bba4) Easily write objects that delegate behavior -------------------------------------------------------------------------------- Update Information: New package -------------------------------------------------------------------------------- ================================================================================ python-lazr-smtptest-2.0.3-6.el7 (FEDORA-EPEL-2017-362be3e4d3) Test framework for SMTP-based applications -------------------------------------------------------------------------------- Update Information: New package -------------------------------------------------------------------------------- ================================================================================ python-uritemplate-3.0.0-1.el7 (FEDORA-EPEL-2017-9ff41fbe8b) Simple python library to deal with URI Templates (RFC 6570) -------------------------------------------------------------------------------- Update Information: Initial build for epel7 -------------------------------------------------------------------------------- ================================================================================ qmapshack-1.9.0-1.el7 (FEDORA-EPEL-2017-f5a4029615) GPS mapping and management tool -------------------------------------------------------------------------------- Update Information: - updated to 1.9.0 - https://bitbucket.org/maproom/qmapshack/raw/18cf6f7dcc56b29 3e450a62a4737c07f8c6e31be/changelog.txt -------------------------------------------------------------------------------- References: [ 1 ] Bug #1474557 - qmapshack-1.9.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1474557 -------------------------------------------------------------------------------- ================================================================================ rakudo-0.2017.07-2.el7 (FEDORA-EPEL-2017-ea27621c44) Perl 6 compiler implementation that runs on MoarVM -------------------------------------------------------------------------------- Update Information: update to 2017.07 -------------------------------------------------------------------------------- ================================================================================ tracer-0.6.13-1.el7 (FEDORA-EPEL-2017-6aed43ddbe) Finds outdated running applications in your system -------------------------------------------------------------------------------- Update Information: report reboot for new kernels (#83) (seanokeeffe797@xxxxxxxxx) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1469282 - tracer-common should require python3-argcomplete https://bugzilla.redhat.com/show_bug.cgi?id=1469282 [ 2 ] Bug #1450388 - RFE: add logic to tracer to recognize more services https://bugzilla.redhat.com/show_bug.cgi?id=1450388 -------------------------------------------------------------------------------- ================================================================================ uid_wrapper-1.2.4-1.el7 (FEDORA-EPEL-2017-b6a8cbab05) A wrapper for privilege separation -------------------------------------------------------------------------------- Update Information: Update to version 1.2.4 -------------------------------------------------------------------------------- _______________________________________________ epel-devel mailing list -- epel-devel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to epel-devel-leave@xxxxxxxxxxxxxxxxxxxxxxx