The following Fedora EPEL 7 Security updates need testing: Age URL 1104 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-1087 dokuwiki-0-0.24.20140929c.el7 867 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-dac7ed832f mcollective-2.8.4-1.el7 449 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-04bc9dd81d libbsd-0.8.3-1.el7 346 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-d241156dfe mod_cluster-1.3.3-10.el7 178 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-e27758bd23 libmspack-0.6-0.1.alpha.el7 116 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-e64eeb6ece nagios-4.3.4-5.el7 65 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-73ee944e65 rootsh-1.5.3-17.el7 21 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-3e70a38ad4 drupal7-7.57-1.el7 14 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-815e0064e9 tor-0.2.9.15-1.el7 10 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-f7a629b46f python-django16-1.6.11.7-1.el7 5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-635348eab4 php-simplesamlphp-saml2_1-1.10.6-1.el7 5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-7150fa5dce php-simplesamlphp-saml2-2.3.8-1.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-673b3314a1 exim-4.90.1-3.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-3f41541339 monitorix-3.10.1-1.el7 The following builds have been pushed to Fedora EPEL 7 updates-testing auter-0.11-2.el7 glpi-0.90.5-2.el7 mosquitto-1.4.15-1.el7 nodejs-rhea-0.2.10-1.el7 pdc-updater-0.8.4-2.el7 python-pyngus-2.2.2-1.el7 python-qpid-1.37.0-4.el7 python-yara-3.7.0-5.el7 qpid-cpp-1.37.0-2.el7 qpid-dispatch-1.0.1-1.el7 qpid-proton-0.21.0-2.el7 rubygem-qpid_proton-0.21.0-1.el7 Details about builds: ================================================================================ auter-0.11-2.el7 (FEDORA-EPEL-2018-00612777c1) Prepare and apply updates -------------------------------------------------------------------------------- Update Information: Update to 0.11 -------------------------------------------------------------------------------- ================================================================================ glpi-0.90.5-2.el7 (FEDORA-EPEL-2018-ae3a1eae7e) Free IT asset management software -------------------------------------------------------------------------------- Update Information: escape get keys to prevent possible xss CVE-2018-7563 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1554755 - CVE-2018-7563 glpi: XSS vulnerability in the query string to front/preference.php https://bugzilla.redhat.com/show_bug.cgi?id=1554755 -------------------------------------------------------------------------------- ================================================================================ mosquitto-1.4.15-1.el7 (FEDORA-EPEL-2018-add4fc19d8) An Open Source MQTT v3.1/v3.1.1 Broker -------------------------------------------------------------------------------- Update Information: Fix CVE-2017-7651 (rhbz#1551755, rhbz#1551754) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1551743 - CVE-2017-7652 mosquitto: configuration reload fails when no free sockets/file descriptors are available https://bugzilla.redhat.com/show_bug.cgi?id=1551743 -------------------------------------------------------------------------------- ================================================================================ nodejs-rhea-0.2.10-1.el7 (FEDORA-EPEL-2018-ebd370905e) A reactive messaging library based on the AMQP protocol -------------------------------------------------------------------------------- Update Information: Rebased to 0.2.10. ---- Rebased to 0.2.9. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1523897 - nodejs-rhea-0.2.9 is available https://bugzilla.redhat.com/show_bug.cgi?id=1523897 -------------------------------------------------------------------------------- ================================================================================ pdc-updater-0.8.4-2.el7 (FEDORA-EPEL-2018-f7e0237724) Update the product definition center in response to fedmsg -------------------------------------------------------------------------------- Update Information: Latest upstream. ---- Latest upstream. -------------------------------------------------------------------------------- ================================================================================ python-pyngus-2.2.2-1.el7 (FEDORA-EPEL-2018-7144beead2) Callback API implemented over Proton -------------------------------------------------------------------------------- Update Information: Rebased to 2.2.2. -------------------------------------------------------------------------------- ================================================================================ python-qpid-1.37.0-4.el7 (FEDORA-EPEL-2018-08f2624d0f) Python client library for AMQP -------------------------------------------------------------------------------- Update Information: Updated python requires. -------------------------------------------------------------------------------- ================================================================================ python-yara-3.7.0-5.el7 (FEDORA-EPEL-2018-453b3badcc) Python binding for the YARA pattern matching tool -------------------------------------------------------------------------------- Update Information: Rebuild the python-yara with the recent yara version. -------------------------------------------------------------------------------- ================================================================================ qpid-cpp-1.37.0-2.el7 (FEDORA-EPEL-2018-77b2a7b9cc) Libraries for Qpid C++ client applications -------------------------------------------------------------------------------- Update Information: Updated pyton packages. -------------------------------------------------------------------------------- ================================================================================ qpid-dispatch-1.0.1-1.el7 (FEDORA-EPEL-2018-3f92ca70dd) Dispatch router for Qpid -------------------------------------------------------------------------------- Update Information: Rebased to 1.0.1. -------------------------------------------------------------------------------- ================================================================================ qpid-proton-0.21.0-2.el7 (FEDORA-EPEL-2018-355078a357) A high performance, lightweight messaging library -------------------------------------------------------------------------------- Update Information: Rebased to 0.21.0. -------------------------------------------------------------------------------- ================================================================================ rubygem-qpid_proton-0.21.0-1.el7 (FEDORA-EPEL-2018-e87d79f7ea) Ruby language bindings for the Qpid Proton messaging framework -------------------------------------------------------------------------------- Update Information: Rebased to 0.21.0. -------------------------------------------------------------------------------- _______________________________________________ epel-devel mailing list -- epel-devel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to epel-devel-leave@xxxxxxxxxxxxxxxxxxxxxxx