The following Fedora 16 Security updates need testing: https://admin.fedoraproject.org/updates/FEDORA-2012-1059/wicd-1.7.0-10.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-0913/moodle-2.0.7-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-0921/znc-0.204-3.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-0941/bip-0.8.8-2.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-0730/jetty-6.1.26-8.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-0972/mysql-5.5.20-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-0825/BackupPC-3.2.1-7.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-0840/polipo-1.0.4.1-6.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1098/samba-3.6.3-78.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1054/ettercap-0.7.4-3.fc16 https://admin.fedoraproject.org/updates/FEDORA-2011-14691/tomcat6-6.0.32-19.fc16 The following Fedora 16 Critical Path updates have yet to be approved: https://admin.fedoraproject.org/updates/FEDORA-2012-1064/nss-3.13.1-11.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1089/evolution-data-server-3.2.3-2.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1073/clutter-1.8.4-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1067/krb5-1.9.2-6.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1061/gnupg-1.4.12-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1098/samba-3.6.3-78.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1062/net-tools-1.60-126.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1031/coreutils-8.12-6.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1025/alsa-lib-1.0.25-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-0972/mysql-5.5.20-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-0934/strigi-0.7.7-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-0820/schroedinger-1.0.11-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-0689/virtuoso-opensource-6.1.4-4.fc16 https://admin.fedoraproject.org/updates/FEDORA-2011-15301/lxpanel-0.5.8-1.fc16,lxinput-0.3.1-1.fc16,lxsession-edit-0.2.0-1.fc16,lxrandr-0.1.2-1.fc16,lxpolkit-0.1.0-1.fc16,lxterminal-0.1.11-1.fc16,lxshortcut-0.1.2-1.fc16 The following builds have been pushed to Fedora 16 updates-testing bacula-5.0.3-26.fc16 cherrytree-0.25.2-1.fc16 clutter-1.8.4-1.fc16 ettercap-0.7.4-3.fc16 evolution-data-server-3.2.3-2.fc16 glade3-3.10.0-6.fc16 gnome-tweak-tool-3.2.2-2.fc16 gnupg-1.4.12-1.fc16 gpredict-1.3-4.fc16 ibus-hangul-1.4.0-2.fc16 jd-2.8.5-0.2.svn3993_trunk.fc16 krb5-1.9.2-6.fc16 lcov-1.9-1.fc16 m4ri-20111203-1.fc16 mtpaint-3.40-1.fc16 net-tools-1.60-126.fc16 nss-3.13.1-11.fc16 perl-Gnome2-Vte-0.09-1.fc16 python-docutils-0.8.1-2.fc16 python-libcloud-0.6.2-3.fc16 python-sqlalchemy-0.7.5-1.fc16 qemu-0.15.1-4.fc16 redis-2.4.6-2.fc16 rsh-0.17-68.fc16 rt3-3.8.11-6.fc16 samba-3.6.3-78.fc16 sevmgr-0.2.0-1.fc16 spice-gtk-0.9-1.fc16 srm-ifce-1.12.2-6.fc16 tcpflow-1.1.0-1.fc16 tudu-0.8.1-1.fc16 vala-0.14.1-1.fc16 wicd-1.7.0-10.fc16 Details about builds: ================================================================================ bacula-5.0.3-26.fc16 (FEDORA-2012-1072) Cross platform network backup for Linux, Unix, Mac and Windows -------------------------------------------------------------------------------- Update Information: Correct license to AGPLv3, split off libs in separate backends and fix ldconfig/alternatives symlinks on removal of packages. -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 30 2012 Simone Caronni <negativo17@xxxxxxxxx> - 5.0.3-26 - Fix ldconfig/alternatives symlinks on removal of packages. * Mon Jan 30 2012 Lukas Nykryn <lnykryn@xxxxxxxxxx> - 5.0.3-25 - Remove dependency on WxGTK in RHEL. * Fri Jan 27 2012 Simone Caronni <negativo17@xxxxxxxxx> - 5.0.3-24 - Correct license to AGPLv3. - Split off libs in separate backends. - Trim changelog for version <5.0.0. * Thu Jan 26 2012 Simone Caronni <negativo17@xxxxxxxxx> - 5.0.3-23 - Add ldconfig after setting up symlinks for libbacsql variants. -------------------------------------------------------------------------------- References: [ 1 ] Bug #784587 - Bacula director broken, trys to connect to postgresl when database is mysql https://bugzilla.redhat.com/show_bug.cgi?id=784587 -------------------------------------------------------------------------------- ================================================================================ cherrytree-0.25.2-1.fc16 (FEDORA-2012-1095) Hierarchical note taking application -------------------------------------------------------------------------------- Update Information: Upstream bugfix release -------------------------------------------------------------------------------- ChangeLog: * Wed Jan 25 2012 Robin Lee <cheeselee@xxxxxxxxxxxxxxxxx> - 0.25.2-1 - Update to 0.25.2 -------------------------------------------------------------------------------- ================================================================================ clutter-1.8.4-1.fc16 (FEDORA-2012-1073) Open Source software library for creating rich graphical user interfaces -------------------------------------------------------------------------------- Update Information: Clutter 1.8.42012-01-30 =============================================================================== * List of changes since Clutter 1.8.2 - Restore support for non-ARGB visuals on X11 The changes in the Cogl API for creating onscreen framebuffers led to a regression in the selection of visuals for the GLX context: Clutter started requesting only ARGB visuals, even though it's not strictly necessary. This regression has now been fixed. - Ensure that the OffscreenEffect uses the right size for the FBO Especially for subclasses that change the size of the target texture. - Fix build for Clutter on X11 without XI2 support - Introspection annotation fixes - Return the correct default value for the font resolution We should be returning 96.0 as the default value, not -1. This ensures that the code using font resolution, like the em-to-pixels conversion, always uses valid values. * List of bugs fixed since Clutter 1.8.2 [bugzilla.gnome.org] #665040 - The offscreen effect always recreates the texture if create_texture() is overridden to change the size #664996 - clutter_state_set_key (allow-none) #664336 - path: Fix introspection annotations -------------------------------------------------------------------------------- ChangeLog: * Tue Jan 31 2012 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> - 1.8.4-1 - 1.8.4 stable release - http://ftp.gnome.org/pub/GNOME/sources/clutter/1.8/clutter-1.8.4.news -------------------------------------------------------------------------------- ================================================================================ ettercap-0.7.4-3.fc16 (FEDORA-2012-1054) Network traffic sniffer/analyser, NCURSES interface version -------------------------------------------------------------------------------- Update Information: New upstream, and patch for insecure global settings file. Restored RPM_OPT_FLAGS to build. New upstream, and patch for insecure global settings file. New upstream, and patch for insecure global settings file. New upstream, and patch for insecure global settings file. -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 30 2012 Jon Ciesla <limburgher@xxxxxxxxx> - 0.7.4-3 - RPM_OPT_FLAGS fix, BZ 785562. * Thu Jan 26 2012 Jon Ciesla <limburgher@xxxxxxxxx> - 0.7.4-2 - Patch for CVE-2010-3843. * Thu Jan 26 2012 Jon Ciesla <limburgher@xxxxxxxxx> - 0.7.4-1 - New upstream. Now BRs bison, flex. * Fri Jan 13 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.7.3-40 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild * Tue Dec 6 2011 Adam Jackson <ajax@xxxxxxxxxx> - 0.7.3-39 - Rebuild for new libpng -------------------------------------------------------------------------------- References: [ 1 ] Bug #643454 - CVE-2010-3843 ettercap: insecure global settings file [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=643454 [ 2 ] Bug #783675 - Segfault in curses interface https://bugzilla.redhat.com/show_bug.cgi?id=783675 [ 3 ] Bug #659903 - Segmentation Fault on ettercap https://bugzilla.redhat.com/show_bug.cgi?id=659903 [ 4 ] Bug #785562 - ettercap 0.7.4-2 not built with $RPM_OPT_FLAGS https://bugzilla.redhat.com/show_bug.cgi?id=785562 -------------------------------------------------------------------------------- ================================================================================ evolution-data-server-3.2.3-2.fc16 (FEDORA-2012-1089) Backend data server for Evolution -------------------------------------------------------------------------------- Update Information: Add patch for Red Hat's bug #785183, regression found with CalDAV calendars when using libical 0.48. -------------------------------------------------------------------------------- ChangeLog: * Tue Jan 31 2012 Milan Crha <mcrha@xxxxxxxxxx> - 3.2.3-2 - Add patch for Red Hat bug #785183 (Google Calendar: Cannot modify calendar object) -------------------------------------------------------------------------------- References: [ 1 ] Bug #785183 - Evolution Google Calendar: Cannot modify calendar object https://bugzilla.redhat.com/show_bug.cgi?id=785183 -------------------------------------------------------------------------------- ================================================================================ glade3-3.10.0-6.fc16 (FEDORA-2012-1058) User Interface Designer for GTK+ and GNOME -------------------------------------------------------------------------------- Update Information: Fix devhelp dependency -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 30 2012 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> - 1:3.10.0-6 - Fix dependencies RHBZ 671592 and 604356 * Fri Sep 16 2011 John (J5) Palmieri <johnp@xxxxxxxxxx> - 1:3.10.0-5 - make glade build with the latest version of pygobject3 which broke abi * Fri Sep 16 2011 John (J5) Palmieri <johnp@xxxxxxxxxx> - 1:3.10.0-4 - add gnome-common to the BuildRequires * Fri Sep 16 2011 John (J5) Palmieri <johnp@xxxxxxxxxx> - 1:3.10.0-3 - add patch to make compile against pygobject3 so that we can load custom python widgets -------------------------------------------------------------------------------- References: [ 1 ] Bug #671592 - glade3-libgladeui should not depend on devhelp https://bugzilla.redhat.com/show_bug.cgi?id=671592 [ 2 ] Bug #604356 - glade3-libgladeui-devel depends on gtk-doc unnecessarily https://bugzilla.redhat.com/show_bug.cgi?id=604356 -------------------------------------------------------------------------------- ================================================================================ gnome-tweak-tool-3.2.2-2.fc16 (FEDORA-2012-1090) A tool to customize advanced GNOME 3 options -------------------------------------------------------------------------------- Update Information: This updates fixes the GNOME Shell theme installation/selection feature. Since version 3.2.1, gnome-shell extensions changed their UUID to another value. According to the changelog, this was made because gnome.org is temporarily forbidden in UUIDS. As a consequence, gnome-tweak-tool didn't detect the user-theme extension. See also https://bugzilla.gnome.org/show_bug.cgi?id=664655 -------------------------------------------------------------------------------- ChangeLog: * Tue Jan 31 2012 Mohamed El Morabity <melmorabity@xxxxxxxxxxxxxxxxx> - 3.2.2-2 - Fix shell theme selection (see https://bugzilla.gnome.org/show_bug.cgi?id=664655) -------------------------------------------------------------------------------- ================================================================================ gnupg-1.4.12-1.fc16 (FEDORA-2012-1061) A GNU utility for secure communication and data storage -------------------------------------------------------------------------------- Update Information: New upstream v1.4.12 -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 30 2012 Brian C. Lane <bcl@xxxxxxxxxx> - 1.4.12-1 - New upstream v1.4.12 -------------------------------------------------------------------------------- ================================================================================ gpredict-1.3-4.fc16 (FEDORA-2012-1078) Real-time satellite tracking and orbit prediction program -------------------------------------------------------------------------------- Update Information: Properly mapped locale files. -------------------------------------------------------------------------------- ChangeLog: * Tue Jan 31 2012 Eric "Sparks" Christensen <sparks@xxxxxxxxxxxxxxxxx> - 1.3-4 - Mapped localized files * Fri Jan 13 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.3-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild * Tue Dec 6 2011 Adam Jackson <ajax@xxxxxxxxxx> - 1.3-2 - Rebuild for new libpng -------------------------------------------------------------------------------- References: [ 1 ] Bug #786002 - gpredict not packaged with translations https://bugzilla.redhat.com/show_bug.cgi?id=786002 -------------------------------------------------------------------------------- ================================================================================ ibus-hangul-1.4.0-2.fc16 (FEDORA-2012-1048) The Hangul engine for IBus input platform -------------------------------------------------------------------------------- Update Information: incorporate upstream patch to avoid ibus-setup-hangul crash -------------------------------------------------------------------------------- ChangeLog: * Tue Jan 31 2012 Daiki Ueno <dueno@xxxxxxxxxx> - 1.4.0-2 - Add ibus-hangul-no-ibus-daemon.patch. - Fix bug 784377 - [abrt] ibus-hangul-1.4.0-1.fc16 -------------------------------------------------------------------------------- References: [ 1 ] Bug #784377 - [abrt] ibus-hangul-1.4.0-1.fc16: bus.py:61:__init__:TypeError: expected string or Unicode object, NoneType found https://bugzilla.redhat.com/show_bug.cgi?id=784377 -------------------------------------------------------------------------------- ================================================================================ jd-2.8.5-0.2.svn3993_trunk.fc16 (FEDORA-2012-1049) A 2ch browser -------------------------------------------------------------------------------- Update Information: Updated to the latest trunk to fix 2ch login -------------------------------------------------------------------------------- ChangeLog: * Tue Jan 31 2012 Mamoru Tasaka <mtasaka@xxxxxxxxxxxxxxxxx> - rev 3993 * Sun Jan 8 2012 Mamoru Tasaka <mtasaka@xxxxxxxxxxxxxxxxx> - rev 3982 * Sat Oct 22 2011 Mamoru Tasaka <mtasaka@xxxxxxxxxxxxxxxxx> - rev 3975 -------------------------------------------------------------------------------- ================================================================================ krb5-1.9.2-6.fc16 (FEDORA-2012-1067) The Kerberos network authentication system -------------------------------------------------------------------------------- Update Information: This update backports fixes needed by development versions of FreeIPA from upstream's development tree, and incorporates a patch to accept entries with version number 0 as matching any desired version number when scanning keytabs for matching entries. -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 30 2012 Nalin Dahyabhai <nalin@xxxxxxxxxx> 1.9.2-6 - add patch to accept keytab entries with vno==0 as matches when we're searching for an entry with a specific name/kvno (#230382/#782211,RT#3349) * Tue Dec 13 2011 Nalin Dahyabhai <nalin@xxxxxxxxxx> 1.9.2-5 - backport patch for RT#7046: tag a ccache containing credentials obtained via S4U2Proxy with the principal name of the proxying principal (part of #761317) so that the default principal name can be set to that of the client for which it is proxying, which results in the ccache looking more normal to consumers of the ccache that don't care that there's proxying going on - pull in patch for RT#7047: allow tickets obtained via S4U2Proxy to be cached (more of #761317) - backport patch for RT#7048: allow PAC verification to only bother trying to verify the signature with keys that it's given (still more of #761317) -------------------------------------------------------------------------------- References: [ 1 ] Bug #761317 - Please backport s4u2proxy fixes from upstream trunk https://bugzilla.redhat.com/show_bug.cgi?id=761317 -------------------------------------------------------------------------------- ================================================================================ lcov-1.9-1.fc16 (FEDORA-2012-1055) LTP GCOV extension code coverage tool -------------------------------------------------------------------------------- Update Information: Update to 1.9 release to support branch coverage reporting -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 30 2012 Daniel P. Berrange <berrange@xxxxxxxxxx> - 1.9-1 - Update to 1.9 release (rhbz #627576) -------------------------------------------------------------------------------- References: [ 1 ] Bug #627576 - Update to 1.9 release for branch coverage reporting https://bugzilla.redhat.com/show_bug.cgi?id=627576 -------------------------------------------------------------------------------- ================================================================================ m4ri-20111203-1.fc16 (FEDORA-2012-1079) Linear Algebra over F_2 -------------------------------------------------------------------------------- Update Information: See https://bitbucket.org/malb/m4ri/wiki/M4RI-20111203 for changes in this release. -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 30 2012 Jerry James <loganjerry@xxxxxxxxx> - 20111203-1 - New upstream version - Add libpng-devel BR * Fri Jan 6 2012 Jerry James <loganjerry@xxxxxxxxx> - 20111004-2 - Rebuild for GCC 4.7 -------------------------------------------------------------------------------- ================================================================================ mtpaint-3.40-1.fc16 (FEDORA-2012-1086) Painting program for creating icons and pixel-based artwork -------------------------------------------------------------------------------- Update Information: Update to latest upstream release mtpaint 3.40. -------------------------------------------------------------------------------- ChangeLog: * Sun Jan 29 2012 Terje Rosten <terje.rosten@xxxxxxx> - 3.40-1 - Update to 3.40 * Fri Jan 13 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 3.31-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild * Mon Nov 7 2011 Terje Rosten <terje.rosten@xxxxxxx> - 3.31-6 - Add png patch -------------------------------------------------------------------------------- ================================================================================ net-tools-1.60-126.fc16 (FEDORA-2012-1062) Basic networking tools -------------------------------------------------------------------------------- Update Information: Bugfix-only release. -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 30 2012 Jiri Popelka <jpopelka@xxxxxxxxxx> - 1.60-126 - Minor spec file changes. * Mon Oct 3 2011 Jiri Popelka <jpopelka@xxxxxxxxxx> - 1.60-125 - Fixed ether-wake(8) and mii-diag(8) man pages (#742629) * Mon Sep 19 2011 Jiri Popelka <jpopelka@xxxxxxxxxx> - 1.60-124 - Improved arp-ethers.service unit file (#735617) * Wed Aug 24 2011 Jiri Popelka <jpopelka@xxxxxxxxxx> - 1.60-123 - Improved netstat_stop_trim.patch to not truncate IPV6 UDP sockets (#732984) -------------------------------------------------------------------------------- References: [ 1 ] Bug #735617 - /etc/ethers ignored https://bugzilla.redhat.com/show_bug.cgi?id=735617 [ 2 ] Bug #742629 - [PATCH] Man page fixes https://bugzilla.redhat.com/show_bug.cgi?id=742629 -------------------------------------------------------------------------------- ================================================================================ nss-3.13.1-11.fc16 (FEDORA-2012-1064) Network Security Services -------------------------------------------------------------------------------- Update Information: This update fixes crashes caused by applications that called NSS without having initialized it first as it is documented. NSS now protects itself against such calls. Resolves: rhbz#784672. -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 26 2012 Elio Maldonado <emaldona@xxxxxxxxxx> - 3.13.1-12 - Resolves: Bug 784672 - nss should protect against being called before nss_Init -------------------------------------------------------------------------------- References: [ 1 ] Bug #784672 - nss should protect against being called before nss_Init https://bugzilla.redhat.com/show_bug.cgi?id=784672 -------------------------------------------------------------------------------- ================================================================================ perl-Gnome2-Vte-0.09-1.fc16 (FEDORA-2012-1091) Gnome2::Vte Perl module -------------------------------------------------------------------------------- Update Information: Introduce new Gnome2::Vte perl module -------------------------------------------------------------------------------- References: [ 1 ] Bug #785767 - Review Request: perl-Gnome2-Vte - Gnome2::Vte Perl module https://bugzilla.redhat.com/show_bug.cgi?id=785767 -------------------------------------------------------------------------------- ================================================================================ python-docutils-0.8.1-2.fc16 (FEDORA-2012-1075) System for processing plaintext documentation -------------------------------------------------------------------------------- Update Information: Attempt a fix for throwing UnicodeError when operating in directories that have non-ascii characters. -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 30 2012 Toshio Kuratomi <toshio@xxxxxxxxxxxxxxxxx> - 0.8.1-2 - Fix a unicode traceback https://bugzilla.redhat.com/show_bug.cgi?id=785622 -------------------------------------------------------------------------------- References: [ 1 ] Bug #785622 - [abrt] python-docutils-0.8.1-1.fc16: posixpath.py:71:join:UnicodeDecodeError: 'ascii' codec can't decode byte 0xc3 in position 41: ordinal not in range(128) https://bugzilla.redhat.com/show_bug.cgi?id=785622 -------------------------------------------------------------------------------- ================================================================================ python-libcloud-0.6.2-3.fc16 (FEDORA-2012-1093) A Python library to address multiple cloud provider APIs -------------------------------------------------------------------------------- Update Information: "A Python library to address multiple cloud provider APIs." -------------------------------------------------------------------------------- References: [ 1 ] Bug #756491 - Review Request: python-libcloud - Python library that abstracts away differences among multiple cloud provider APIs. https://bugzilla.redhat.com/show_bug.cgi?id=756491 -------------------------------------------------------------------------------- ================================================================================ python-sqlalchemy-0.7.5-1.fc16 (FEDORA-2012-1050) Modular and flexible ORM library for python -------------------------------------------------------------------------------- Update Information: Upstream bugfix release, see http://www.sqlalchemy.org/changelog/CHANGES_0_7_5 for details. -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 30 2012 Nils Philippsen <nils@xxxxxxxxxx> - 0.7.5-1 - Upstream bugfix release - package README.rst instead of README as documentation * Tue Jan 10 2012 Nils Philippsen <nils@xxxxxxxxxx> - 0.7.3-2 - rebuild for gcc 4.7 -------------------------------------------------------------------------------- ================================================================================ qemu-0.15.1-4.fc16 (FEDORA-2012-1080) QEMU is a FAST! processor emulator -------------------------------------------------------------------------------- Update Information: This update should fix issues with USB Passthrough, Guest floppy access, and ensure that the vhost-net module is loaded on KVM hosts. -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 30 2012 Justin M. Forbes <jforbes@xxxxxxxxxx> - 2:0.15.1-4 - Add vhost-net to kvm.modules - Fix USB passthrough assert on packet completion (#769625) - * Thu Jan 5 2012 Christophe Fergeau <cfergeau@xxxxxxxxxx> - 2:0.15.1-3.1 - Backport patches from qemu 1.0 to fix floppy drives (#753863) -------------------------------------------------------------------------------- References: [ 1 ] Bug #769625 - qemu-kvm aborts when using passthrough USB device https://bugzilla.redhat.com/show_bug.cgi?id=769625 [ 2 ] Bug #753863 - Floppy support broken https://bugzilla.redhat.com/show_bug.cgi?id=753863 -------------------------------------------------------------------------------- ================================================================================ redis-2.4.6-2.fc16 (FEDORA-2012-1083) A persistent key-value database -------------------------------------------------------------------------------- Update Information: This update fixes the service-file to use redis.conf. -------------------------------------------------------------------------------- ChangeLog: * Tue Jan 31 2012 Fabian Deutsch <fabiand@xxxxxxxxxxxxxxxxx> - 2.4.6-2 - Fix .service file, credits go to Timon. -------------------------------------------------------------------------------- ================================================================================ rsh-0.17-68.fc16 (FEDORA-2012-1094) Clients for remote access commands (rsh, rlogin, rcp) -------------------------------------------------------------------------------- Update Information: This update fixes following issues: * rcp didn't copy directories which end with slash correctly. (BZ#784467) * in.rshd daemon called setpwent/endpwent but it wasn't needed. -------------------------------------------------------------------------------- ChangeLog: * Tue Jan 31 2012 Adam Tkac <atkac redhat com> - 0.17-68 - rcp: handle copying of directories with ending slash well (#784467) * Sat Jan 14 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.17-67 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild * Wed Oct 26 2011 Adam Tkac <atkac redhat com> - 0.17-66 - remove unneeded setpwent/endpwent calls -------------------------------------------------------------------------------- References: [ 1 ] Bug #784467 - inconsistent recursive directory copy https://bugzilla.redhat.com/show_bug.cgi?id=784467 -------------------------------------------------------------------------------- ================================================================================ rt3-3.8.11-6.fc16 (FEDORA-2012-1088) Request tracker 3 -------------------------------------------------------------------------------- Update Information: Major upstream update, which is supposed to fix various issues. -------------------------------------------------------------------------------- ChangeLog: * Tue Jan 31 2012 Ralf Corsépius <corsepiu@xxxxxxxxxxxxxxxxx> - 3.8.11-6 - Misc. specfile improvements. * Tue Jan 31 2012 Ralf Corsépius <corsepiu@xxxxxxxxxxxxxxxxx> - 3.8.11-5 - Rewrite *-tests package (Don't use tests macros). * Mon Jan 30 2012 Ralf Corsépius <corsepiu@xxxxxxxxxxxxxxxxx> - 3.8.11-4 - Rename rpmbuild option with_tests into with_runtests. - Add rt3-tests subpackage. - Add README.tests. - Remove removal of ${RT3_LIBDIR}/t (Fixed by upstream). - Rework R:/BR:. - Use %{__rm} instead of /bin/rm. - Misc minor spec file cleanup. * Wed Jan 18 2012 Ralf Corsépius <corsepiu@xxxxxxxxxxxxxxxxx> - 3.8.11-3 - Fix typo in filter rules. - Add lexdir, manualdir, RT3_LEXDIR. * Mon Jan 16 2012 Ralf Corsépius <corsepiu@xxxxxxxxxxxxxxxxx> - 3.8.11-2 - Remove redundant R: config(rt3), Remove P: config(rt3). - Rewrite filter rules. * Sun Jan 15 2012 Ralf Corsépius <corsepiu@xxxxxxxxxxxxxxxxx> - 3.8.11-1 - Upstream update. -------------------------------------------------------------------------------- References: [ 1 ] Bug #755721 - Request Tracker RT3 perl deprecated errors and crashes https://bugzilla.redhat.com/show_bug.cgi?id=755721 -------------------------------------------------------------------------------- ================================================================================ samba-3.6.3-78.fc16 (FEDORA-2012-1098) Server and Client software to interoperate with Windows machines -------------------------------------------------------------------------------- Update Information: This is a security release in order to address CVE-2012-0817 (Memory leak/Denial of service). -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 30 2012 Andreas Schneider <asn@xxxxxxxxxx> - 1:3.6.3-78 - Update to 3.6.3 - Fixes CVE-2012-0817 -------------------------------------------------------------------------------- References: [ 1 ] Bug #785746 - CVE-2012-0817 samba: DoS (smbd crash) due memory leak in management of fds for socket connections https://bugzilla.redhat.com/show_bug.cgi?id=785746 -------------------------------------------------------------------------------- ================================================================================ sevmgr-0.2.0-1.fc16 (FEDORA-2012-1063) C++ Simulation-Oriented Discrete Event Management Library -------------------------------------------------------------------------------- Update Information: New package -------------------------------------------------------------------------------- References: [ 1 ] Bug #781775 - Review Request: sevmgr - C++ Simulation-Oriented Discrete Event Management Library https://bugzilla.redhat.com/show_bug.cgi?id=781775 -------------------------------------------------------------------------------- ================================================================================ spice-gtk-0.9-1.fc16 (FEDORA-2012-1069) A GTK+ widget for SPICE clients -------------------------------------------------------------------------------- Update Information: New upstream release 0.9: - Add command line options for setting the cache size and the glz window size - Add a USB device selection widget to libspice-client-gtk - Various bug fixes and code improvements -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 30 2012 Hans de Goede <hdegoede@xxxxxxxxxx> - 0.9-1 - New upstream release 0.9 -------------------------------------------------------------------------------- ================================================================================ srm-ifce-1.12.2-6.fc16 (FEDORA-2012-1087) SRM client side library -------------------------------------------------------------------------------- Update Information: fix important memory problem -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 30 2012 Adrien Devress <adevress at cern.ch> - 1.12.2-6 - Fix a stack smash problem relative to gsoap internal struct -------------------------------------------------------------------------------- ================================================================================ tcpflow-1.1.0-1.fc16 (FEDORA-2012-1076) Network traffic recorder -------------------------------------------------------------------------------- Update Information: Update to latest upstream release tcpflow 1.1.0. -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 30 2012 Terje Rosten <terje.rosten@xxxxxxx> - 1.1.0-1 - 1.1.0 * Sat Jan 14 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.0.4-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ tudu-0.8.1-1.fc16 (FEDORA-2012-1092) A simple, command line interface to do list application -------------------------------------------------------------------------------- Update Information: Updated to latest version (0.8.1) -------------------------------------------------------------------------------- ChangeLog: * Tue Dec 20 2011 Eric "Sparks" Christensen <sparks@xxxxxxxxxxxxxxxxx> - 0.8.1-1 - Updated to version 0.8.1 - Added arrow keys on date editor - Added support for non-latin keybinding pairs - Fixed wrong plotting while change tudu task position - Fixed category problems (autofill, showonly, ...) - Fixed Makefile problems reported on debian bug #611077 - Removed freeze on moving task - Added ./configure script compatible with autotools - Added multiple category support - Added support for non-fix length categories - Added warning color to old scheduled tasks in sched - Added AvPag and RvPag to normal interface - Fixed display when the length of the title equal to the screen - Fixed problems with updating sched when the title changes -------------------------------------------------------------------------------- References: [ 1 ] Bug #678138 - New version available https://bugzilla.redhat.com/show_bug.cgi?id=678138 [ 2 ] Bug #769648 - Latest version of TuDu doesn't allow redirecting files to certain directories on install https://bugzilla.redhat.com/show_bug.cgi?id=769648 -------------------------------------------------------------------------------- ================================================================================ vala-0.14.1-1.fc16 (FEDORA-2012-1096) A modern programming language for GNOME -------------------------------------------------------------------------------- Update Information: Upstream bugfix release: - Add libwnck-3.0 bindings. - Many bug fixes and binding updates. -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 30 2012 Michel Salim <salimma@xxxxxxxxxxxxxxxxx> - 0.14.1-1 - Update to 0.14.1 -------------------------------------------------------------------------------- References: [ 1 ] Bug #767388 - Can not compile vala totem plugins https://bugzilla.redhat.com/show_bug.cgi?id=767388 -------------------------------------------------------------------------------- ================================================================================ wicd-1.7.0-10.fc16 (FEDORA-2012-1059) Wireless and wired network connection manager -------------------------------------------------------------------------------- Update Information: CVE-2012-0813 A sensitive information disclosure flaw was found in the way wicd, wireless and wired network connection manager, performed management of sensitive information, to be stored in log files. Fields like 'password', 'identity', 'private_key', 'private_key_passwd' etc., were not excluded from being logged into /var/log/wicd log file, which could allow local attacker, with the privileges of the 'adm' group to view content of these entities in plain text, leading to information disclosure. This update fixes the problem. A reboot is not technically necessary, but if you do not reboot your system after installing this update, you should at least restart the wicd service. -------------------------------------------------------------------------------- ChangeLog: * Fri Jan 27 2012 David Cantrell <dcantrell@xxxxxxxxxx> - 1.7.0-10 - Fix CVS-2012-0813 (#785147) -------------------------------------------------------------------------------- References: [ 1 ] Bug #785147 - CVE-2012-0813 wicd: Sensitive information disclosure via log file entries https://bugzilla.redhat.com/show_bug.cgi?id=785147 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test