The following Fedora EPEL 8 Security updates need testing: Age URL 50 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-1e00c3d01e cutter-re-2.2.0-1.el8 rizin-0.5.1-1.el8 10 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-44ff2475c4 apptainer-1.1.8-1.el8 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-ae97901b58 vtk-9.0.1-10.el8 The following builds have been pushed to Fedora EPEL 8 updates-testing chromium-113.0.5672.63-1.el8 engrampa-1.26.1-1.el8 mate-session-manager-1.26.1-1.el8 scorep-6.0-18.el8 Details about builds: ================================================================================ chromium-113.0.5672.63-1.el8 (FEDORA-EPEL-2023-f44d817bc9) A WebKit (Blink) powered web browser that Google doesn't want you to use -------------------------------------------------------------------------------- Update Information: update to 113.0.5672.64. Fixes the following security issues: CVE-2023-2459 CVE-2023-2460 CVE-2023-2461 CVE-2023-2462 CVE-2023-2463 CVE-2023-2464 CVE-2023-2465 CVE-2023-2466 CVE-2023-2467 CVE-2023-2468 -------------------------------------------------------------------------------- ChangeLog: * Wed May 3 2023 Than Ngo <than@xxxxxxxxxx> - 113.0.5672.63-1 - update to 113.0.5672.63 * Sun Apr 23 2023 Than Ngo <than@xxxxxxxxxx> - 112.0.5615.165-2 - make --use-gl=egl default for x11/wayland - enable WebUIDarkMode -------------------------------------------------------------------------------- References: [ 1 ] Bug #2192762 - CVE-2023-2459 chromium-browser: Inappropriate implementation in Prompts https://bugzilla.redhat.com/show_bug.cgi?id=2192762 [ 2 ] Bug #2192763 - CVE-2023-2460 chromium-browser: Insufficient validation of untrusted input in Extensions https://bugzilla.redhat.com/show_bug.cgi?id=2192763 [ 3 ] Bug #2192764 - CVE-2023-2461 chromium-browser: Use after free in OS Inputs https://bugzilla.redhat.com/show_bug.cgi?id=2192764 [ 4 ] Bug #2192765 - CVE-2023-2462 chromium-browser: Inappropriate implementation in Prompts https://bugzilla.redhat.com/show_bug.cgi?id=2192765 [ 5 ] Bug #2192766 - CVE-2023-2463 chromium-browser: Inappropriate implementation in Full Screen Mode https://bugzilla.redhat.com/show_bug.cgi?id=2192766 [ 6 ] Bug #2192767 - CVE-2023-2464 chromium-browser: Inappropriate implementation in PictureInPicture https://bugzilla.redhat.com/show_bug.cgi?id=2192767 [ 7 ] Bug #2192768 - CVE-2023-2465 chromium-browser: Inappropriate implementation in CORS https://bugzilla.redhat.com/show_bug.cgi?id=2192768 [ 8 ] Bug #2192769 - CVE-2023-2466 chromium-browser: Inappropriate implementation in Prompts https://bugzilla.redhat.com/show_bug.cgi?id=2192769 [ 9 ] Bug #2192770 - CVE-2023-2467 chromium-browser: Inappropriate implementation in Prompts https://bugzilla.redhat.com/show_bug.cgi?id=2192770 [ 10 ] Bug #2192771 - CVE-2023-2468 chromium-browser: Inappropriate implementation in PictureInPicture https://bugzilla.redhat.com/show_bug.cgi?id=2192771 -------------------------------------------------------------------------------- ================================================================================ engrampa-1.26.1-1.el8 (FEDORA-EPEL-2023-72c1526931) MATE Desktop file archiver -------------------------------------------------------------------------------- Update Information: - update to 1.26.1 release -------------------------------------------------------------------------------- ChangeLog: * Thu May 4 2023 Wolfgang Ulbrich <fedora@xxxxxxxxx> - 1.26.1-1 - update to 1.26.1 -------------------------------------------------------------------------------- ================================================================================ mate-session-manager-1.26.1-1.el8 (FEDORA-EPEL-2023-8a49a490ef) MATE Desktop session manager -------------------------------------------------------------------------------- Update Information: - update to 1.26.1 -------------------------------------------------------------------------------- ChangeLog: * Fri May 5 2023 Wolfgang Ulbrich <fedora@xxxxxxxxx> - 1.26.1-1 - update to 1.26.1 -------------------------------------------------------------------------------- ================================================================================ scorep-6.0-18.el8 (FEDORA-EPEL-2023-219b058a50) Scalable Performance Measurement Infrastructure for Parallel Codes -------------------------------------------------------------------------------- Update Information: Fix building from source. -------------------------------------------------------------------------------- ChangeLog: * Fri May 5 2023 <vagrant@rhel8.localdomain> - 6.0-18 - Add patch to fix FTBFS with current opari2 -------------------------------------------------------------------------------- _______________________________________________ epel-devel mailing list -- epel-devel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to epel-devel-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/epel-devel@xxxxxxxxxxxxxxxxxxxxxxx Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue