The following Fedora 14 Security updates need testing: https://admin.fedoraproject.org/updates/phpMyAdmin-3.4.3.1-1.fc14 https://admin.fedoraproject.org/updates/drupal7-7.4-1.fc14 https://admin.fedoraproject.org/updates/NetworkManager-0.8.4-2.git20110622.fc14 https://admin.fedoraproject.org/updates/mingw32-libpng-1.4.3-2.fc14 https://admin.fedoraproject.org/updates/libpng10-1.0.55-1.fc14 https://admin.fedoraproject.org/updates/cifs-utils-4.8.1-6.fc14 https://admin.fedoraproject.org/updates/squirrelmail-1.4.22-2.fc14 https://admin.fedoraproject.org/updates/libvirt-0.8.3-10.fc14 https://admin.fedoraproject.org/updates/bind-9.7.4-0.3.b1.fc14 https://admin.fedoraproject.org/updates/libsndfile-1.0.25-1.fc14 https://admin.fedoraproject.org/updates/libpng-1.2.46-1.fc14 https://admin.fedoraproject.org/updates/tomcat6-6.0.26-21.fc14 https://admin.fedoraproject.org/updates/openldap-2.4.23-10.fc14 https://admin.fedoraproject.org/updates/oprofile-0.9.6-21.fc14 https://admin.fedoraproject.org/updates/gdk-pixbuf2-2.22.0-2.fc14 The following Fedora 14 Critical Path updates have yet to be approved: https://admin.fedoraproject.org/updates/libpng-1.2.46-1.fc14 https://admin.fedoraproject.org/updates/libsndfile-1.0.25-1.fc14 https://admin.fedoraproject.org/updates/ModemManager-0.4.998-1.git20110706.fc14 https://admin.fedoraproject.org/updates/libjpeg-turbo-1.1.1-1.fc14 https://admin.fedoraproject.org/updates/acl-2.2.49-9.fc14 https://admin.fedoraproject.org/updates/unique-1.1.6-3.fc14 https://admin.fedoraproject.org/updates/xorg-x11-drv-savage-2.3.2-3.fc14 https://admin.fedoraproject.org/updates/cronie-1.4.8-2.fc14 https://admin.fedoraproject.org/updates/mash-0.5.22-1.fc14 https://admin.fedoraproject.org/updates/tzdata-2011h-1.fc14 https://admin.fedoraproject.org/updates/python-slip-0.2.17-1.fc14 https://admin.fedoraproject.org/updates/gdk-pixbuf2-2.22.0-2.fc14 https://admin.fedoraproject.org/updates/NetworkManager-0.8.4-2.git20110622.fc14 https://admin.fedoraproject.org/updates/perl-5.12.4-146.fc14 https://admin.fedoraproject.org/updates/policycoreutils-2.0.85-30.2.fc14 https://admin.fedoraproject.org/updates/system-config-keyboard-1.3.1-5.fc14 https://admin.fedoraproject.org/updates/fedora-logos-14.0.2-1.fc14 https://admin.fedoraproject.org/updates/xorg-x11-drv-openchrome-0.2.904-8.fc14.2 https://admin.fedoraproject.org/updates/pcre-8.10-2.fc14 https://admin.fedoraproject.org/updates/xorg-x11-drv-qxl-0.0.21-3.fc14 https://admin.fedoraproject.org/updates/evolution-exchange-2.32.3-1.fc14,evolution-data-server-2.32.3-1.fc14,evolution-2.32.3-1.fc14 https://admin.fedoraproject.org/updates/xorg-x11-drv-nouveau-0.0.16-14.20101010git8c8f15c.fc14 https://admin.fedoraproject.org/updates/libconcord-0.23-5.fc14,udev-161-9.fc14,concordance-0.23-2.fc14 https://admin.fedoraproject.org/updates/openldap-2.4.23-10.fc14 The following builds have been pushed to Fedora 14 updates-testing PyMca-4.4.1-4.p1.fc14 be-1.0.1-1.fc14 django-picklefield-0.1.9-1.fc14 dspam-3.9.0-21.fc14 libpng-1.2.46-1.fc14 libsndfile-1.0.25-1.fc14 python-newt_syrup-0.1.2-1.fc14 python-rhsm-0.96.7-1.fc14 rubygem-thin-1.2.11-5.fc14 saphire-3.3.1-1.fc14 spyder-2.0.12-1.fc14 texworks-0.4.3-1.fc14 vttest-20110705-1.fc14 Details about builds: ================================================================================ PyMca-4.4.1-4.p1.fc14 (FEDORA-2011-9349) GUI for multi-channel analyser spectra visualization and analysis -------------------------------------------------------------------------------- Update Information: Fix binary permissions. -------------------------------------------------------------------------------- ChangeLog: * Thu Jul 14 2011 Jussi Lehtola <jussilehtola@xxxxxxxxxxxxxxxxx> - 4.4.1-4.p1 - Fix binary permissions (BZ #721149). * Fri Feb 25 2011 Jussi Lehtola <jussilehtola@xxxxxxxxxxxxxxxxx> - 4.4.1-3.p1 - Update to 4.4.1p1. * Mon Feb 7 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 4.4.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild * Fri Dec 10 2010 Jussi Lehtola <jussilehtola@xxxxxxxxxxxxxxxxx> - 4.4.1-1 - Update to 4.4.1. -------------------------------------------------------------------------------- References: [ 1 ] Bug #721149 - /usr/bin/pymca not executable after package installation https://bugzilla.redhat.com/show_bug.cgi?id=721149 -------------------------------------------------------------------------------- ================================================================================ be-1.0.1-1.fc14 (FEDORA-2011-9329) Bugs Everywhere, a distributed bug tracker -------------------------------------------------------------------------------- Update Information: Updates bugs-everywhere to the latest upstream release -------------------------------------------------------------------------------- ChangeLog: * Wed Jul 13 2011 Michel Salim <salimma@xxxxxxxxxxxxxxxxx> - 1.0.1-1 - Update to 1.0.1 -------------------------------------------------------------------------------- References: [ 1 ] Bug #721325 - be-1.0.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=721325 -------------------------------------------------------------------------------- ================================================================================ django-picklefield-0.1.9-1.fc14 (FEDORA-2011-9352) Implementation of a pickled object field -------------------------------------------------------------------------------- Update Information: django-picklefield provides an implementation of a pickled object field. Such fields can contain any picklable objects. The implementation is taken and adopted from Django snippet #1694 by Taavi Taijala, which is in turn based on Django snippet #513 by Oliver Beattie. -------------------------------------------------------------------------------- References: [ 1 ] Bug #611068 - Review Request: django-picklefield - Implementation of a pickled object field https://bugzilla.redhat.com/show_bug.cgi?id=611068 -------------------------------------------------------------------------------- ================================================================================ dspam-3.9.0-21.fc14 (FEDORA-2011-9357) A library and Mail Delivery Agent for Bayesian SPAM filtering -------------------------------------------------------------------------------- Update Information: Sets dspam to run as the dspam user instead of root -------------------------------------------------------------------------------- ChangeLog: * Wed Jul 13 2011 Nathanael Noblet <nathanael@xxxxxxx> - 3.9.0-21 - Start daemon as dspam user * Wed May 25 2011 Nathanael Noblet <nathanael@xxxxxxx> - 3.9.0-20 - add tmpfile for /var/run/dspam - remove rpaths that suddenly show up in F15 * Tue Mar 22 2011 Nathanael Noblet <nathanael@xxxxxxx> - 3.9.0-19 - Rebuilt for libmysqlclient soname bump * Wed Mar 9 2011 Nathanael Noblet <nathanael@xxxxxxx> - 3.9.0-18 - Removed patch -------------------------------------------------------------------------------- ================================================================================ libpng-1.2.46-1.fc14 (FEDORA-2011-9336) A library of functions for manipulating PNG image format files -------------------------------------------------------------------------------- Update Information: Update to libpng 1.2.46, includes fixes for CVE-2011-2501, CVE-2011-2690, CVE-2011-2691, CVE-2011-2692 -------------------------------------------------------------------------------- ChangeLog: * Thu Jul 14 2011 Tom Lane <tgl@xxxxxxxxxx> 2:1.2.46-1 - Update to libpng 1.2.46, includes fixes for CVE-2011-2501, CVE-2011-2690, CVE-2011-2691, CVE-2011-2692 Resolves: #717509 Resolves: #721307 -------------------------------------------------------------------------------- References: [ 1 ] Bug #720607 - CVE-2011-2690 libpng: buffer overwrite in png_rgb_to_gray https://bugzilla.redhat.com/show_bug.cgi?id=720607 [ 2 ] Bug #720608 - CVE-2011-2691 libpng: Crash in png_default_error due to use of NULL Pointer https://bugzilla.redhat.com/show_bug.cgi?id=720608 [ 3 ] Bug #720612 - CVE-2011-2692 libpng: Memory corruption when handling empty sCAL chunks https://bugzilla.redhat.com/show_bug.cgi?id=720612 [ 4 ] Bug #717084 - CVE-2011-2501 libpng: regression of CVE-2004-0421 in 1.2.23+ https://bugzilla.redhat.com/show_bug.cgi?id=717084 -------------------------------------------------------------------------------- ================================================================================ libsndfile-1.0.25-1.fc14 (FEDORA-2011-9319) Library for reading and writing sound files -------------------------------------------------------------------------------- Update Information: - fixes integer overflow by processing certain PAF audio files -------------------------------------------------------------------------------- ChangeLog: * Thu Jul 14 2011 Michal Hlavinka <mhlavink@xxxxxxxxxx> - 1.0.25-1 - Update to 1.0.25 - fixes integer overflow by processing certain PAF audio files (#721240) -------------------------------------------------------------------------------- References: [ 1 ] Bug #721234 - libsndfile: Application crash due integer overflow by processing certain PAF audio files https://bugzilla.redhat.com/show_bug.cgi?id=721234 -------------------------------------------------------------------------------- ================================================================================ python-newt_syrup-0.1.2-1.fc14 (FEDORA-2011-9331) Newt Syrup is an app framework built on top of Newt -------------------------------------------------------------------------------- Update Information: Added the utils module. -------------------------------------------------------------------------------- ChangeLog: * Wed Jul 13 2011 Darryl L. Pierce <dpierce@xxxxxxxxxx> - 0.1.2-1 - Added utils.py module. * Tue Feb 8 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.1.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ python-rhsm-0.96.7-1.fc14 (FEDORA-2011-9350) A Python library to communicate with a Red Hat Unified Entitlement Platform -------------------------------------------------------------------------------- Update Information: Add support for uploading package profiles, package profile comparison, and registration to a Katello environment. -------------------------------------------------------------------------------- ChangeLog: * Wed Jul 13 2011 Devan Goodwin <dgoodwin@xxxxxxxx> 0.96.7-1 - Logging cleanup. (dgoodwin@xxxxxxxxxx) - Remove unused add_ssl_certs method. (dgoodwin@xxxxxxxxxx) - Load supported resources when UEPConnection is instantiated. (dgoodwin@xxxxxxxxxx) - Send package profile. (dgoodwin@xxxxxxxxxx) - Allow testing if package profiles equal one another. (dgoodwin@xxxxxxxxxx) - Support creating package profile from a file descriptor. (dgoodwin@xxxxxxxxxx) - Allow the attributes to be None for username and password in consumer selction. (bkearney@xxxxxxxxxx) - Add a Package object. (dgoodwin@xxxxxxxxxx) * Wed Jul 6 2011 Devan Goodwin <dgoodwin@xxxxxxxx> 0.96.6-1 - Add support for new Katello error responses. (dgoodwin@xxxxxxxxxx) - Log the response when there's an issue parsing error JSON. (dgoodwin@xxxxxxxxxx) - Add support for registration to Katello environments. (dgoodwin@xxxxxxxxxx) - Don't send an http body if we don't have one. (jbowes@xxxxxxxxxx) - Add call to list environments. (dgoodwin@xxxxxxxxxx) - Do not load CA certs if in insecure mode. (dgoodwin@xxxxxxxxxx) - Cache supported resources after establishing connection. (dgoodwin@xxxxxxxxxx) -------------------------------------------------------------------------------- ================================================================================ rubygem-thin-1.2.11-5.fc14 (FEDORA-2011-9354) A thin and fast web server -------------------------------------------------------------------------------- Update Information: Fixing Thin::HttpParser error This update should fix the issues with unintialized Thin::HttpParser -------------------------------------------------------------------------------- ChangeLog: * Thu Jul 14 2011 Michal Fojtik <mfojtik@xxxxxxxxxx> - 1.2.11-5 - Fixed patch format * Thu Jul 14 2011 Michal Fojtik <mfojtik@xxxxxxxxxx> - 1.2.11-4 - Removed deprecated Prereq * Thu Jul 14 2011 Michal Fojtik <mfojtik@xxxxxxxxxx> - 1.2.11-3 - Added ldconfig to refresh cache after update * Thu Jul 14 2011 Michal Fojtik <mfojtik@xxxxxxxxxx> - 1.2.11-2 - Added patch to fix loading of thin_parser.so * Thu Jul 14 2011 Michal Fojtik <mfojtik@xxxxxxxxxx> - 1.2.11-1 - Version bump * Tue Mar 1 2011 Michal Fojtik <mfojtik@xxxxxxxxxx> - 1.2.8-3 - Removed Rake dependency completely * Tue Mar 1 2011 Michal Fojtik <mfojtik@xxxxxxxxxx> - 1.2.8-2 - Fixed RSpec tests * Tue Mar 1 2011 Michal Fojtik <mfojtik@xxxxxxxxxx> - 1.2.8-1 - Updated to upstream version * Wed Feb 9 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.2.7-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild * Wed Sep 8 2010 Michal Fojtik <mfojtik@xxxxxxxxxx> - 1.2.7-1 - Updated to upstream version -------------------------------------------------------------------------------- References: [ 1 ] Bug #721385 - Deltacloudd cannot start because of old version of thin https://bugzilla.redhat.com/show_bug.cgi?id=721385 -------------------------------------------------------------------------------- ================================================================================ saphire-3.3.1-1.fc14 (FEDORA-2011-9324) Yet another shell -------------------------------------------------------------------------------- Update Information: New version 3.3.1 is released. -------------------------------------------------------------------------------- ChangeLog: * Thu Jul 14 2011 Mamoru Tasaka <mtasaka@xxxxxxxxxxxxxxxxx> - 3.3.1-1 - 3.3.1 * Mon Jul 11 2011 Mamoru Tasaka <mtasaka@xxxxxxxxxxxxxxxxx> - 3.3.0-1 - 3.3.0 -------------------------------------------------------------------------------- ================================================================================ spyder-2.0.12-1.fc14 (FEDORA-2011-9328) Scientific Python Development Environment -------------------------------------------------------------------------------- Update Information: Update to spyder 2.0.12 -------------------------------------------------------------------------------- ChangeLog: * Thu Jul 14 2011 Radek Novacek <rnovacek@xxxxxxxxxx> - 2.0.12.1 - Update to 2.0.12 -------------------------------------------------------------------------------- ================================================================================ texworks-0.4.3-1.fc14 (FEDORA-2011-9342) A simple IDE for authoring TeX documents -------------------------------------------------------------------------------- Update Information: Upstream bugfix release -------------------------------------------------------------------------------- ChangeLog: * Thu Jul 14 2011 Robin Lee <cheeselee@xxxxxxxxxxxxxxxxx> - 0.4.3-1 - Update to 0.4.3 (BZ#718982) -------------------------------------------------------------------------------- References: [ 1 ] Bug #718982 - texworks-0.4.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=718982 -------------------------------------------------------------------------------- ================================================================================ vttest-20110705-1.fc14 (FEDORA-2011-9332) Test the compatibility of so-called "VT100-compatible" terminals -------------------------------------------------------------------------------- Update Information: Update to latest upstream. Closing BZ# 645078 -------------------------------------------------------------------------------- ChangeLog: * Wed Jul 13 2011 Adam Miller <maxamillion@xxxxxxxxxxxxxxxxx> - 20110705-1 - Updated to latest upstream release -------------------------------------------------------------------------------- References: [ 1 ] Bug #645078 - vttest-20110705 is available https://bugzilla.redhat.com/show_bug.cgi?id=645078 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test