The following Fedora EPEL 7 Security updates need testing: Age URL 949 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-1087 dokuwiki-0-0.24.20140929c.el7 711 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-dac7ed832f mcollective-2.8.4-1.el7 293 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-04bc9dd81d libbsd-0.8.3-1.el7 191 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-d241156dfe mod_cluster-1.3.3-10.el7 188 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-7ecb12e378 python-XStatic-jquery-ui-1.12.0.1-1.el7 23 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-e27758bd23 libmspack-0.6-0.1.alpha.el7 20 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-52b8147c68 openvpn-auth-ldap-2.0.3-15.el7 14 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-afdcf119f4 freexl-1.0.4-1.el7 11 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-4826761f5d openvpn-2.4.4-1.el7 11 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-abe6f98ebf tor-0.2.9.12-1.el7 11 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-0f92580f68 yadifa-2.2.6-1.el7 7 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-17b77b3268 botan-1.10.17-1.el7 7 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-3c06a7eecf nagios-4.3.4-3.el7 5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-9e6a789af9 check-mk-1.2.8p26-1.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-853d71e01b tnef-1.4.15-1.el7 The following builds have been pushed to Fedora EPEL 7 updates-testing arc-gui-clients-0.4.6-13.el7 cinnamon-screensaver-3.4.3-1.el7 fedmsg-1.0.1-5.el7 golang-github-SAP-go-hdb-0.9.1-1.el7 golang-github-armon-go-proxyproto-0-0.1.20170621git48572f1.el7 golang-github-boombuler-barcode-0-0.1.20170922git3cfea5a.el7 golang-github-cockroachdb-cockroach-go-0-0.1.20170809gitc806b48.el7 golang-github-mitchellh-go-testing-interface-0-0.1.20171004gita61a995.el7 golang-github-patrickmn-go-cache-2.0.0-1.el7 golang-github-ryanuber-go-glob-0.1-1.el7 hercules-3.13-1.el7 pdc-updater-0.6.3-1.el7 python-django-haystack-2.4.1-1.el7 python-keyring-5.0-3.el7 rpl-1.5.7-3.el7 tnef-1.4.15-1.el7 vtun-3.0.4-5.el7 Details about builds: ================================================================================ arc-gui-clients-0.4.6-13.el7 (FEDORA-EPEL-2017-964b40fb2d) ARC Graphical Clients -------------------------------------------------------------------------------- Update Information: Minor bugfix. -------------------------------------------------------------------------------- ================================================================================ cinnamon-screensaver-3.4.3-1.el7 (FEDORA-EPEL-2017-3f44186174) Cinnamon Screensaver -------------------------------------------------------------------------------- Update Information: Update to 3.4.3 release -------------------------------------------------------------------------------- References: [ 1 ] Bug #1501269 - lock screen locks only 1 monitor ! https://bugzilla.redhat.com/show_bug.cgi?id=1501269 [ 2 ] Bug #1488790 - Session unlocked after resuming from hibernate, private data visible, login screen missing https://bugzilla.redhat.com/show_bug.cgi?id=1488790 [ 3 ] Bug #1483523 - [abrt] cinnamon-screensaver: manager.py:210:on_despawn_stage_complete:AttributeError: 'NoneType' object has no attribute 'destroy_stage' https://bugzilla.redhat.com/show_bug.cgi?id=1483523 [ 4 ] Bug #1471468 - [abrt] cinnamon-screensaver: on_client_setup_complete(): logindClient.py:61:on_client_setup_complete:TypeError: Argument 3 does not allow None as a value https://bugzilla.redhat.com/show_bug.cgi?id=1471468 -------------------------------------------------------------------------------- ================================================================================ fedmsg-1.0.1-5.el7 (FEDORA-EPEL-2017-57b6bb1261) Tools for Fedora Infrastructure real-time messaging -------------------------------------------------------------------------------- Update Information: * Refactor subpackages so that python2-fedmsg contains everything * Update to the latest upstream release * Since 1.0.1-4: Drop Python dependency on cryptography, m2crypto is still used on el7 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1480026 - fedmsg-1.0.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1480026 [ 2 ] Bug #1365612 - Missing dependencies for python3-fedmsg-core https://bugzilla.redhat.com/show_bug.cgi?id=1365612 -------------------------------------------------------------------------------- ================================================================================ golang-github-SAP-go-hdb-0.9.1-1.el7 (FEDORA-EPEL-2017-9f6f487ad9) SAP HANA Database Client for Go (Golang) -------------------------------------------------------------------------------- Update Information: First package for Fedora -------------------------------------------------------------------------------- References: [ 1 ] Bug #1499486 - Review Request: golang-github-SAP-go-hdb - SAP HANA Database Client for Go (Golang) https://bugzilla.redhat.com/show_bug.cgi?id=1499486 -------------------------------------------------------------------------------- ================================================================================ golang-github-armon-go-proxyproto-0-0.1.20170621git48572f1.el7 (FEDORA-EPEL-2017-53dcb1936a) Golang package to handle HAProxy Proxy Protocol -------------------------------------------------------------------------------- Update Information: First package for Fedora -------------------------------------------------------------------------------- References: [ 1 ] Bug #1499488 - Review Request: golang-github-armon-go-proxyproto - Golang package to handle HAProxy Proxy Protocol https://bugzilla.redhat.com/show_bug.cgi?id=1499488 -------------------------------------------------------------------------------- ================================================================================ golang-github-boombuler-barcode-0-0.1.20170922git3cfea5a.el7 (FEDORA-EPEL-2017-bbdb4048d7) A barcode creation lib for Go (Golang) -------------------------------------------------------------------------------- Update Information: First package for Fedora -------------------------------------------------------------------------------- References: [ 1 ] Bug #1499502 - Review Request: golang-github-boombuler-barcode - A barcode creation lib for Go (Golang) https://bugzilla.redhat.com/show_bug.cgi?id=1499502 -------------------------------------------------------------------------------- ================================================================================ golang-github-cockroachdb-cockroach-go-0-0.1.20170809gitc806b48.el7 (FEDORA-EPEL-2017-a2d4596741) CockroachDB helpers for Go (Golang) -------------------------------------------------------------------------------- Update Information: First package for Fedora -------------------------------------------------------------------------------- References: [ 1 ] Bug #1499491 - Review Request: golang-github-cockroachdb-cockroach-go - CockroachDB helpers for Go (Golang) https://bugzilla.redhat.com/show_bug.cgi?id=1499491 -------------------------------------------------------------------------------- ================================================================================ golang-github-mitchellh-go-testing-interface-0-0.1.20171004gita61a995.el7 (FEDORA-EPEL-2017-a81c40ba47) Go (Golang) library to expose *testing.T as an interface -------------------------------------------------------------------------------- Update Information: First package for Fedora -------------------------------------------------------------------------------- References: [ 1 ] Bug #1499495 - Review Request: golang-github-mitchellh-go-testing-interface - Go (Golang) library to expose *testing.T as an interface https://bugzilla.redhat.com/show_bug.cgi?id=1499495 -------------------------------------------------------------------------------- ================================================================================ golang-github-patrickmn-go-cache-2.0.0-1.el7 (FEDORA-EPEL-2017-a5039dfc63) An in-memory key:value store/cache library for Go (Golang) -------------------------------------------------------------------------------- Update Information: First package for Fedora -------------------------------------------------------------------------------- References: [ 1 ] Bug #1499496 - Review Request: golang-github-patrickmn-go-cache - An in-memory key:value store/cache library for Go (Golang) https://bugzilla.redhat.com/show_bug.cgi?id=1499496 -------------------------------------------------------------------------------- ================================================================================ golang-github-ryanuber-go-glob-0.1-1.el7 (FEDORA-EPEL-2017-3b4e08d48b) Basic string globs in Go (Golang) -------------------------------------------------------------------------------- Update Information: First package for Fedora -------------------------------------------------------------------------------- References: [ 1 ] Bug #1499504 - Review Request: golang-github-ryanuber-go-glob - Basic string globs in Go (Golang) https://bugzilla.redhat.com/show_bug.cgi?id=1499504 -------------------------------------------------------------------------------- ================================================================================ hercules-3.13-1.el7 (FEDORA-EPEL-2017-c7253538e8) Hercules S/370, ESA/390, and z/Architecture emulator -------------------------------------------------------------------------------- Update Information: - updated to 3.13 - http://www.hercules-390.eu/hercnew.html -------------------------------------------------------------------------------- References: [ 1 ] Bug #1497378 - hercules-3.13 is available https://bugzilla.redhat.com/show_bug.cgi?id=1497378 -------------------------------------------------------------------------------- ================================================================================ pdc-updater-0.6.3-1.el7 (FEDORA-EPEL-2017-0bd9a85510) Update the product definition center in response to fedmsg -------------------------------------------------------------------------------- Update Information: See note on the [infra list](https://lists.fedoraproject.org/archives/list/infra structure@xxxxxxxxxxxxxxxxxxxxxxx/thread/PTZWLTZWKJEWZ5A6JXYAHYNYIURGIITK/). -------------------------------------------------------------------------------- ================================================================================ python-django-haystack-2.4.1-1.el7 (FEDORA-EPEL-2017-40864203ec) Pluggable search for Django. -------------------------------------------------------------------------------- Update Information: Update to the 2.4.1 release -------------------------------------------------------------------------------- ================================================================================ python-keyring-5.0-3.el7 (FEDORA-EPEL-2017-56c4d62597) Store and access your passwords safely -------------------------------------------------------------------------------- Update Information: Fix warning when using the python-keyring CLI about GnomeKeyring being used without a version. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1498477 - PyGIWarning: GnomeKeyring was imported without specifying a version first. https://bugzilla.redhat.com/show_bug.cgi?id=1498477 -------------------------------------------------------------------------------- ================================================================================ rpl-1.5.7-3.el7 (FEDORA-EPEL-2017-376ab9c25b) Intelligent recursive search/replace utility -------------------------------------------------------------------------------- Update Information: Initial build for EL7 -------------------------------------------------------------------------------- ================================================================================ tnef-1.4.15-1.el7 (FEDORA-EPEL-2017-853d71e01b) Extract files from email attachments like WINMAIL.DAT -------------------------------------------------------------------------------- Update Information: Update to 1.4.15. Fixes CVE-2017-8911 ---- Release 1.4.14 includes security bug fixes introduced in 1.4.13 and a further bug fix. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1427435 - CVE-2017-6307 CVE-2017-6308 CVE-2017-6309 CVE-2017-6310 tnef: Multiple vulnerabilities fixed in 1.4.13 [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=1427435 [ 2 ] Bug #1451259 - CVE-2017-8911 tnef: Integer underflow in unicode_to_utf8 [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=1451259 [ 3 ] Bug #1451258 - CVE-2017-8911 tnef: Integer underflow in unicode_to_utf8 [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1451258 -------------------------------------------------------------------------------- ================================================================================ vtun-3.0.4-5.el7 (FEDORA-EPEL-2017-fd12483a2d) Virtual tunnel over TCP/IP networks -------------------------------------------------------------------------------- Update Information: remove segfaulting openssl-1.1 patch; use compat-openssl10 instead -------------------------------------------------------------------------------- References: [ 1 ] Bug #1424526 - vtun: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=1424526 [ 2 ] Bug #1462458 - Add vtun to EPEL 7? https://bugzilla.redhat.com/show_bug.cgi?id=1462458 [ 3 ] Bug #1487003 - vtun - segfault vtun 304-2 ( error 4 in libcrypto.so.1.0.1e[7fa38561c000+1c0000]) https://bugzilla.redhat.com/show_bug.cgi?id=1487003 -------------------------------------------------------------------------------- _______________________________________________ epel-devel mailing list -- epel-devel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to epel-devel-leave@xxxxxxxxxxxxxxxxxxxxxxx