The following Fedora 16 Security updates need testing: https://admin.fedoraproject.org/updates/mozvoikko-1.9.0-8.fc16,xulrunner-7.0-1.fc16,firefox-7.0-1.fc16 https://admin.fedoraproject.org/updates/stunnel-4.42-1.fc16 https://admin.fedoraproject.org/updates/quagga-0.99.19-1.fc16 https://admin.fedoraproject.org/updates/perl-FCGI-0.74-1.fc16 https://admin.fedoraproject.org/updates/drupal6-views_bulk_operations-1.11-1.fc16 https://admin.fedoraproject.org/updates/tomcat6-6.0.32-17.fc16 https://admin.fedoraproject.org/updates/php-5.3.8-3.fc16 https://admin.fedoraproject.org/updates/cyrus-imapd-2.4.11-1.fc16 https://admin.fedoraproject.org/updates/thunderbird-7.0-1.fc16 https://admin.fedoraproject.org/updates/NetworkManager-0.9.1.90-3.git20110927.fc16 https://admin.fedoraproject.org/updates/puppet-2.6.6-2.fc16 The following Fedora 16 Critical Path updates have yet to be approved: https://admin.fedoraproject.org/updates/anaconda-16.20-1.fc16 https://admin.fedoraproject.org/updates/grub-0.97-79.fc16 https://admin.fedoraproject.org/updates/system-setup-keyboard-0.8.7-2.fc16 https://admin.fedoraproject.org/updates/gdb-7.3.50.20110722-7.fc16 https://admin.fedoraproject.org/updates/evolution-mapi-3.2.0-1.fc16,evolution-exchange-3.2.0-1.fc16,evolution-3.2.0-1.fc16,evolution-data-server-3.2.0-1.fc16,gtkhtml3-4.2.0-1.fc16 https://admin.fedoraproject.org/updates/libdb-5.2.36-1.fc16,perl-BerkeleyDB-0.49-2.fc16 https://admin.fedoraproject.org/updates/fuse-2.8.6-1.fc16 https://admin.fedoraproject.org/updates/device-mapper-multipath-0.4.9-19.fc16 https://admin.fedoraproject.org/updates/tzdata-2011k-0.1.20110921.fc16 https://admin.fedoraproject.org/updates/m4-1.4.16-2.fc16 https://admin.fedoraproject.org/updates/xfwm4-4.8.1-3.fc16 https://admin.fedoraproject.org/updates/shared-mime-info-0.91-1.fc16 https://admin.fedoraproject.org/updates/xorg-x11-drv-geode-2.11.12-2.fc16 https://admin.fedoraproject.org/updates/xorg-x11-drv-qxl-0.0.21-5.fc16 https://admin.fedoraproject.org/updates/openldap-2.4.26-4.fc16 https://admin.fedoraproject.org/updates/xorg-x11-drv-openchrome-0.2.904-16.fc16 https://admin.fedoraproject.org/updates/PackageKit-0.6.18-1.fc16 https://admin.fedoraproject.org/updates/libarchive-2.8.5-1.fc16 https://admin.fedoraproject.org/updates/sendmail-8.14.5-9.fc16 https://admin.fedoraproject.org/updates/gvfs-1.9.4-1.fc16 https://admin.fedoraproject.org/updates/udev-173-2.fc16 https://admin.fedoraproject.org/updates/evolution-data-server-3.1.5-2.fc16 https://admin.fedoraproject.org/updates/pm-utils-1.4.1-12.fc16 https://admin.fedoraproject.org/updates/perl-threads-1.83-4.fc16 https://admin.fedoraproject.org/updates/libconfig-1.4.8-1.fc16 The following builds have been pushed to Fedora 16 updates-testing django-authenticator-0.1.4-2.fc16 fftw-3.3-2.fc16 gaupol-0.19.1-1.fc16 gettext-0.18.1.1-8.fc16 ghc-attoparsec-enumerator-0.2.0.4-2.fc16 gsl-1.15-3.fc16 ibus-m17n-1.3.3-5.fc16 mc-4.7.5.5-1.fc16 mgetty-1.1.36-12.fc16 quagga-0.99.19-1.fc16 telepathy-gabble-0.12.7-1.fc16 tomboy-1.8.0-1.fc16 wso2-wsf-cpp-2.1.0-4.fc16 xscreensaver-5.15-1.fc16 Details about builds: ================================================================================ django-authenticator-0.1.4-2.fc16 (FEDORA-2011-13477) Authentication client for django -------------------------------------------------------------------------------- Update Information: new package for fedora -------------------------------------------------------------------------------- References: [ 1 ] Bug #739832 - Review Request: django-authenticator - authentication client for django https://bugzilla.redhat.com/show_bug.cgi?id=739832 -------------------------------------------------------------------------------- ================================================================================ fftw-3.3-2.fc16 (FEDORA-2011-13495) A Fast Fourier Transform library -------------------------------------------------------------------------------- Update Information: Update to 3.3 series, bringing performance boosts and quadruple precision support. -------------------------------------------------------------------------------- ChangeLog: * Sat Jul 30 2011 Jussi Lehtola <jussilehtola@xxxxxxxxxxxxxxxxx> - 3.3-2 - Conditionalize OpenMP and quadruple precision support based on capabilities of system compiler. * Thu Jul 28 2011 Jussi Lehtola <jussilehtola@xxxxxxxxxxxxxxxxx> - 3.3-1 - Update to 3.3. -------------------------------------------------------------------------------- References: [ 1 ] Bug #716945 - Update fftw to 3.3 series https://bugzilla.redhat.com/show_bug.cgi?id=716945 -------------------------------------------------------------------------------- ================================================================================ gaupol-0.19.1-1.fc16 (FEDORA-2011-13487) Subtitle editor -------------------------------------------------------------------------------- Update Information: Update to latest upstream release. -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 26 2011 cooly@xxxxxxxxxxxx - 0.19.1-1 - new upstream release -------------------------------------------------------------------------------- ================================================================================ gettext-0.18.1.1-8.fc16 (FEDORA-2011-13491) GNU libraries and utilities for producing multi-lingual messages -------------------------------------------------------------------------------- Update Information: Upstream patch to gnulib tests to accept EINVAL from readlink and readlinkat on empty files. -------------------------------------------------------------------------------- ChangeLog: * Wed Sep 28 2011 Jens Petersen <petersen@xxxxxxxxxx> - 0.18.1.1-8 - add gettext-readlink-einval.patch to fix build on kernel >= 2.6.39 (#739188) - add optional buildrequires suggested in the DEPENDENCIES file -------------------------------------------------------------------------------- References: [ 1 ] Bug #739188 - FTBFS: gettext 0.18.1.1 on kernel >= 2.6.39 https://bugzilla.redhat.com/show_bug.cgi?id=739188 -------------------------------------------------------------------------------- ================================================================================ ghc-attoparsec-enumerator-0.2.0.4-2.fc16 (FEDORA-2011-13488) Haskell attoparsec to iteree library -------------------------------------------------------------------------------- Update Information: Haskell attoparsec to iteree library -------------------------------------------------------------------------------- References: [ 1 ] Bug #740283 - Review Request: ghc-attoparsec-enumerator - Haskell attoparsec to enumerator library https://bugzilla.redhat.com/show_bug.cgi?id=740283 -------------------------------------------------------------------------------- ================================================================================ gsl-1.15-3.fc16 (FEDORA-2011-13494) The GNU Scientific Library for numerical analysis -------------------------------------------------------------------------------- Update Information: Removed unnecessary explicit dependency. -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 27 2011 Peter Schiffer <pschiffe@xxxxxxxxxx> - 1.15-3 - resolves: #741138 removed unnecessary Requires: atlas -------------------------------------------------------------------------------- References: [ 1 ] Bug #741138 - remove explicit Requires: atlas https://bugzilla.redhat.com/show_bug.cgi?id=741138 -------------------------------------------------------------------------------- ================================================================================ ibus-m17n-1.3.3-5.fc16 (FEDORA-2011-13493) The M17N engine for IBus platform -------------------------------------------------------------------------------- Update Information: * hide status prop if the status string is equal to the IM title -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 29 2011 Daiki Ueno <dueno@xxxxxxxxxx> - 1.3.3-5 - Add ibus-m17n-hide-title-status.patch. - Fix bug 741157 - ibus-m17n: m17n "title" variable appears as a dormant button on the language panel * Fri Sep 16 2011 Daiki Ueno <dueno@xxxxxxxxxx> - 1.3.3-4 - Fix Indic IME symbols (thanks to pravins). -------------------------------------------------------------------------------- References: [ 1 ] Bug #741157 - ibus-m17n: m17n "title" variable appears as a dormant button on the language panel https://bugzilla.redhat.com/show_bug.cgi?id=741157 -------------------------------------------------------------------------------- ================================================================================ mc-4.7.5.5-1.fc16 (FEDORA-2011-13490) User-friendly text console file manager and visual shell -------------------------------------------------------------------------------- Update Information: update to 4.7.5.5 -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 29 2011 Jindrich Novy <jnovy@xxxxxxxxxx> 4.7.5.5-1 - update to 4.7.5.5 * Thu Sep 15 2011 Jindrich Novy <jnovy@xxxxxxxxxx> 4.7.5.4-1 - update to 4.7.5.4 -------------------------------------------------------------------------------- ================================================================================ mgetty-1.1.36-12.fc16 (FEDORA-2011-13486) A getty replacement for use with data and fax modems -------------------------------------------------------------------------------- Update Information: Fix generation of debug files, fix misleading information in description of mgetty-viewfax about dependency on mgetty. -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 29 2011 Michal Sekletar <msekleta@xxxxxxxxxx> - 1.1.36-12 - Resolves: #737573 - Removes information about dependency on mgetty from mgetty-viewfax description * Thu Sep 29 2011 Michal Sekletar <msekleta@xxxxxxxxxx> - 1.1.36-11 - Resolves: #729003 - generation of .degug files -------------------------------------------------------------------------------- References: [ 1 ] Bug #742210 - Debug files missing in debuginfo package for 7 binaries https://bugzilla.redhat.com/show_bug.cgi?id=742210 [ 2 ] Bug #742219 - mgetty-viewfax doesn't pull in mgetty https://bugzilla.redhat.com/show_bug.cgi?id=742219 -------------------------------------------------------------------------------- ================================================================================ quagga-0.99.19-1.fc16 (FEDORA-2011-13492) Routing daemon -------------------------------------------------------------------------------- Update Information: fixes CVE-2011-332{3..7} update to latest upstream 0.99.19 -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 29 2011 Jiri Skala <jskala@xxxxxxxxxx> - 0.99.19-1 - fixes #741343 - CVE-2011-3323 CVE-2011-3324 CVE-2011-3325 CVE-2011-3326 CVE-2011-3327 - fixes #741580 - updated to latest upstream version 0.99.19 -------------------------------------------------------------------------------- References: [ 1 ] Bug #738393 - CVE-2011-3323 Quagga (ospf6d): Stack-based buffer overflow while decoding Link State Update packet with malformed Inter Area Prefix LSA https://bugzilla.redhat.com/show_bug.cgi?id=738393 [ 2 ] Bug #738394 - CVE-2011-3324 Quagga (ospf6d): Denial of service by decoding malformed Database Description packet headers https://bugzilla.redhat.com/show_bug.cgi?id=738394 [ 3 ] Bug #738396 - CVE-2011-3325 Quagga (ospfd): Denial of service by decoding too short Hello packet or Hello packet with invalid OSPFv2 header type https://bugzilla.redhat.com/show_bug.cgi?id=738396 [ 4 ] Bug #738398 - CVE-2011-3326 Quagga (ospfd): Denial of service by decoding Link State Update LSAs of unknown type https://bugzilla.redhat.com/show_bug.cgi?id=738398 [ 5 ] Bug #738400 - CVE-2011-3327 Quagga (bgpd): Heap-based buffer overflow by decoding BGP UPDATE message with unknown AS_PATH attributes https://bugzilla.redhat.com/show_bug.cgi?id=738400 -------------------------------------------------------------------------------- ================================================================================ telepathy-gabble-0.12.7-1.fc16 (FEDORA-2011-13489) A Jabber/XMPP connection manager -------------------------------------------------------------------------------- Update Information: Latest stable release. Fixes include * Joining a password-protected chat room where someone else already has the nickname you wanted to use—a pretty obscure scenario—now works again. * Closing a Call channel immediately after it is created—specifically, before the Google relay server has had a chance to reply—no longer crashes Gabble. * The Google Talk setting controlling the sending of mail notifications is now explicitly enabled if a client is interested in mail notifications. -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 29 2011 Brian Pepple <bpepple@xxxxxxxxxxxxxxxxx> - 0.12.7-1 - Update to 0.12.7. * Wed Aug 24 2011 Matthias Clasen <mclasen@xxxxxxxxxx> - 0.12.6-2 - Rebuild to match f16 -------------------------------------------------------------------------------- ================================================================================ tomboy-1.8.0-1.fc16 (FEDORA-2011-13484) Note-taking application -------------------------------------------------------------------------------- Update Information: The latest table release of tomboy. For details, see http://download.gnome.org/sources/tomboy/1.8/tomboy-1.8.0.changes -------------------------------------------------------------------------------- ChangeLog: * Wed Sep 28 2011 Ray <rstrode@xxxxxxxxxx> - 1.8.0-1 - Update to 1.8.0 * Wed Sep 28 2011 Ray <rstrode@xxxxxxxxxx> - 1.8.0-1 - Update to 1.8.0 * Tue Sep 13 2011 Thomas Moschny <thomas.moschny@xxxxxx> - 1.7.6-1 - Update to 1.7.6. - Use xz-compressed source. -------------------------------------------------------------------------------- ================================================================================ wso2-wsf-cpp-2.1.0-4.fc16 (FEDORA-2011-13485) WSO2 Web Services Framework for C++ -------------------------------------------------------------------------------- Update Information: Added generic stream support -------------------------------------------------------------------------------- ChangeLog: * Tue Aug 16 2011 Robert Rati <rrati@redhat> - 2.1.0-4 - Added generic stream patch - Created security package to separate rampart dependency -------------------------------------------------------------------------------- ================================================================================ xscreensaver-5.15-1.fc16 (FEDORA-2011-13496) X screen saver and locker -------------------------------------------------------------------------------- Update Information: New version 5.15 is released. -------------------------------------------------------------------------------- ChangeLog: * Fri Sep 30 2011 Mamoru Tasaka <mtasaka@xxxxxxxxxxxxxxxxx> - 1:5.15-1 - Update to 5.15 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test