The following Fedora EPEL 7 Security updates need testing: Age URL 910 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-1087 dokuwiki-0-0.24.20140929c.el7 673 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-dac7ed832f mcollective-2.8.4-1.el7 255 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-04bc9dd81d libbsd-0.8.3-1.el7 153 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-d241156dfe mod_cluster-1.3.3-10.el7 151 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-5f9a6163b4 tnef-1.4.14-1.el7 150 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-7ecb12e378 python-XStatic-jquery-ui-1.12.0.1-1.el7 53 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-47be021843 heimdal-7.4.0-1.el7 17 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-17b77b3268 botan-1.10.16-1.el7 14 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-a8c25bd6d7 exim-4.89-2.el7 12 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-fc1436acf8 dnsdist-1.2.0-1.el7 12 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-9a8c22eb51 cacti-1.1.19-1.el7 3 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-40114bdc74 mbedtls-2.6.0-1.el7 3 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-8f80d01c29 chromium-60.0.3112.113-2.el7 3 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-9c2a089ab4 libidn2-2.0.4-1.el7 3 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-f159ad2ec9 mingw-libidn2-2.0.4-1.el7 1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-29c9f4e49e freexl-1.0.0i-1.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-dadbc43983 mimedefang-2.81-1.el7 The following builds have been pushed to Fedora EPEL 7 updates-testing clustershell-1.7.81-4.el7 fedpkg-1.29-3.el7 mimedefang-2.81-1.el7 php-pear-crypt-gpg-1.6.2-1.el7 rpkg-1.50-2.el7 votca-csg-1.4.1-1.el7 votca-tools-1.4.1-1.el7 xfce4-taskmanager-1.2.0-4.el7 Details about builds: ================================================================================ clustershell-1.7.81-4.el7 (FEDORA-EPEL-2017-37bf571f8c) Python framework for efficient cluster administration -------------------------------------------------------------------------------- Update Information: ClusterShell 1.8 beta1 targeted for updates-testing only. Release #4 removes the vim-clustershell subpackage as it was confusing for the users. VIM extensions are just provided by the main clustershell subpackage, which now requires vim- filesystem instead of vim-common if available (only not on el6). ---- ClusterShell 1.8 beta1 targeted for updates-testing only. -------------------------------------------------------------------------------- ================================================================================ fedpkg-1.29-3.el7 (FEDORA-EPEL-2017-2c5c94bf8c) Fedora utility for working with dist-git -------------------------------------------------------------------------------- Update Information: # Highlight - Read Koji configuration from profile. - fedpkg-stage is usable - Non-zero is returned when local command fails - More Python 3 compatible - Allow container builds from any namespace - Supply namespace to lookaside (if enabled) UPDATED: Please test command ``container-build``. # rpkg - Fix PEP8 error (cqi) - Spelling fixes (ville.skytta) - Reword help and description of new- sources and upload commands - 1248737 (cqi) - Set autorebuild enabled by default (bfontecc) - Add commands to whitelist_externals (cqi) - Declare Python 3 versions to support in setup.py (cqi) - Replace unicode with six.text_type (cqi) - Run tests in both Python 2 and 3 with tox (cqi) - Make tests and covered code compatible with Py3 (cqi) - Add requirements files (cqi) - Do not build srpm in test (cqi) - Do not actually run git-diff in tests (cqi) - Remove deprecated modules used in koji (cqi) - Non-zero exit when rpmbuild fails in local command (cqi) - Report deprecation of config via logger (lsedlar) - Print --dist deprecation warning explicitly (lsedlar) - utils: Avoid DeprecationWarning for messages for users (lsedlar) - Supply namespace to lookaside (if enabled) (lsedlar) - Support reading koji config from profile - #187 (cqi) - Remove kitchen (cqi) - Fix string format (cqi) - Recommend --release instead of --dist in mockbuild --help (tmz) - Allow overriding container build target by downstream (lsedlar) - Add a separate property for namespace (lsedlar) - Allow container builds from any namespace (maxamillion) - Make osbs support optional (cqi) - make osbs dependency optional (pavlix) - Allow explicit namespaces with slashes (lsedlar) - Do not hang indefinitely when lookaside cache server stops sending data (jkaluza) - Make --module-name work with namespaces - #216 (lsedlar) - Include README.rst in dist package (cqi) - More document in README - #189 (cqi) - Make new command be able to print unicode - #205 (cqi) - Allow to specify custom info to a dummy commit (cqi) - Load module name correctly even if push url ends in slash - #192 (cqi) - Replace fedorahosted.org with pagure.io - #202 (cqi) - Fix rpm command to get changelog from SPEC - rhbz#1412224 (cqi) - Rewrite tests to avoid running rpmbuild and rpmlint (cqi) - Use fake value to make Command in test (cqi) - Python 3.6 invalid escape sequence deprecation fixes (ville.skytta) # fedpkg - Remove unused variable in Commands.retire (cqi) - No more pkgdb. (rbean) - Add --arches to build completions (ville.skytta) - Add ppc64le to arch completions (ville.skytta) - Explain how to write a note in multiple lines in update template - #123 (cqi) - Remove code that handles secondary arch (cqi) - Simplify passing arguments when creating Command object - #14 (cqi) - Set koji profile for secondary arch immediately (cqi) - Use profile to load Koji configuration - #97 (cqi) - Remove push.default from clone_default - #109 (cqi) - remove special handling of s390 specific packages (dan) - Replace fedorahosted.org with pagure.io in manpage - #113 (cqi) - Remove tracbaseurl from conf file - #112 (cqi) - Set disttag properly (cqi) - koji stage config moved, update fedpkg defaults (maxamillion) - Specific help of --release for fedpkg - rhbz#1054440 (cqi) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1487383 - cannot do build https://bugzilla.redhat.com/show_bug.cgi?id=1487383 [ 2 ] Bug #1248737 - What is the difference between new-sources and upload? https://bugzilla.redhat.com/show_bug.cgi?id=1248737 [ 3 ] Bug #1412224 - fedpkg update fails: Could not execute update: error: Unable to open /home/jsynacek/rpmbuild/SOURCES/triggers.systemd: No such file or directory https://bugzilla.redhat.com/show_bug.cgi?id=1412224 [ 4 ] Bug #1410300 - "fedpkg local" should return nonzero exitcode when build fails https://bugzilla.redhat.com/show_bug.cgi?id=1410300 -------------------------------------------------------------------------------- ================================================================================ mimedefang-2.81-1.el7 (FEDORA-EPEL-2017-dadbc43983) E-Mail filtering framework using Sendmail's Milter interface -------------------------------------------------------------------------------- Update Information: MIMEDefang 2.81 =============== * Don't barf if the installed version of Sys::Syslog has a developer tag added (like 0.33_01 on Debian Stretch). * Make mimedefang and mimedefang-multiplexor write their PID files as root to avoid an unprivileged user tampering with the pidfiles. Thanks to Michael Orlitzky for pointing this issue out. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1487543 - CVE-2017-14102 mimedefang: Privilege escalation via PID file manipulation https://bugzilla.redhat.com/show_bug.cgi?id=1487543 -------------------------------------------------------------------------------- ================================================================================ php-pear-crypt-gpg-1.6.2-1.el7 (FEDORA-EPEL-2017-f1f0009954) GNU Privacy Guard (GnuPG) -------------------------------------------------------------------------------- Update Information: **Version 1.6.2** * Added options to configure digest/cipher algorithms. ---- **Version 1.6.1** * Fix Bug pear#21237: Use --skip-verify in decrypt() method * Update list of hash algorithm names * Add option to ignore signature verification errors on decrypt. -------------------------------------------------------------------------------- ================================================================================ rpkg-1.50-2.el7 (FEDORA-EPEL-2017-2c5c94bf8c) Python library for interacting with rpm+git -------------------------------------------------------------------------------- Update Information: # Highlight - Read Koji configuration from profile. - fedpkg-stage is usable - Non-zero is returned when local command fails - More Python 3 compatible - Allow container builds from any namespace - Supply namespace to lookaside (if enabled) UPDATED: Please test command ``container-build``. # rpkg - Fix PEP8 error (cqi) - Spelling fixes (ville.skytta) - Reword help and description of new- sources and upload commands - 1248737 (cqi) - Set autorebuild enabled by default (bfontecc) - Add commands to whitelist_externals (cqi) - Declare Python 3 versions to support in setup.py (cqi) - Replace unicode with six.text_type (cqi) - Run tests in both Python 2 and 3 with tox (cqi) - Make tests and covered code compatible with Py3 (cqi) - Add requirements files (cqi) - Do not build srpm in test (cqi) - Do not actually run git-diff in tests (cqi) - Remove deprecated modules used in koji (cqi) - Non-zero exit when rpmbuild fails in local command (cqi) - Report deprecation of config via logger (lsedlar) - Print --dist deprecation warning explicitly (lsedlar) - utils: Avoid DeprecationWarning for messages for users (lsedlar) - Supply namespace to lookaside (if enabled) (lsedlar) - Support reading koji config from profile - #187 (cqi) - Remove kitchen (cqi) - Fix string format (cqi) - Recommend --release instead of --dist in mockbuild --help (tmz) - Allow overriding container build target by downstream (lsedlar) - Add a separate property for namespace (lsedlar) - Allow container builds from any namespace (maxamillion) - Make osbs support optional (cqi) - make osbs dependency optional (pavlix) - Allow explicit namespaces with slashes (lsedlar) - Do not hang indefinitely when lookaside cache server stops sending data (jkaluza) - Make --module-name work with namespaces - #216 (lsedlar) - Include README.rst in dist package (cqi) - More document in README - #189 (cqi) - Make new command be able to print unicode - #205 (cqi) - Allow to specify custom info to a dummy commit (cqi) - Load module name correctly even if push url ends in slash - #192 (cqi) - Replace fedorahosted.org with pagure.io - #202 (cqi) - Fix rpm command to get changelog from SPEC - rhbz#1412224 (cqi) - Rewrite tests to avoid running rpmbuild and rpmlint (cqi) - Use fake value to make Command in test (cqi) - Python 3.6 invalid escape sequence deprecation fixes (ville.skytta) # fedpkg - Remove unused variable in Commands.retire (cqi) - No more pkgdb. (rbean) - Add --arches to build completions (ville.skytta) - Add ppc64le to arch completions (ville.skytta) - Explain how to write a note in multiple lines in update template - #123 (cqi) - Remove code that handles secondary arch (cqi) - Simplify passing arguments when creating Command object - #14 (cqi) - Set koji profile for secondary arch immediately (cqi) - Use profile to load Koji configuration - #97 (cqi) - Remove push.default from clone_default - #109 (cqi) - remove special handling of s390 specific packages (dan) - Replace fedorahosted.org with pagure.io in manpage - #113 (cqi) - Remove tracbaseurl from conf file - #112 (cqi) - Set disttag properly (cqi) - koji stage config moved, update fedpkg defaults (maxamillion) - Specific help of --release for fedpkg - rhbz#1054440 (cqi) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1487383 - cannot do build https://bugzilla.redhat.com/show_bug.cgi?id=1487383 [ 2 ] Bug #1248737 - What is the difference between new-sources and upload? https://bugzilla.redhat.com/show_bug.cgi?id=1248737 [ 3 ] Bug #1412224 - fedpkg update fails: Could not execute update: error: Unable to open /home/jsynacek/rpmbuild/SOURCES/triggers.systemd: No such file or directory https://bugzilla.redhat.com/show_bug.cgi?id=1412224 [ 4 ] Bug #1410300 - "fedpkg local" should return nonzero exitcode when build fails https://bugzilla.redhat.com/show_bug.cgi?id=1410300 -------------------------------------------------------------------------------- ================================================================================ votca-csg-1.4.1-1.el7 (FEDORA-EPEL-2017-eff31be24a) VOTCA coarse-graining engine -------------------------------------------------------------------------------- Update Information: Bump Votca packages to 1.4.1 -------------------------------------------------------------------------------- ================================================================================ votca-tools-1.4.1-1.el7 (FEDORA-EPEL-2017-eff31be24a) VOTCA tools library -------------------------------------------------------------------------------- Update Information: Bump Votca packages to 1.4.1 -------------------------------------------------------------------------------- ================================================================================ xfce4-taskmanager-1.2.0-4.el7 (FEDORA-EPEL-2017-c566981870) Taskmanager for the Xfce desktop environment -------------------------------------------------------------------------------- Update Information: xfce4-taskmanager for EL-7.x -------------------------------------------------------------------------------- _______________________________________________ epel-devel mailing list -- epel-devel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to epel-devel-leave@xxxxxxxxxxxxxxxxxxxxxxx