The following Fedora 16 Security updates need testing: https://admin.fedoraproject.org/updates/FEDORA-2012-1519/glpi-0.80.7-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1567/rocksndiamonds-3.3.0.1-5.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1592/nagios-3.3.1-3.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-0730/jetty-6.1.26-8.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1268/drupal7-7.12-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1709/apr-1.4.6-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1598/httpd-2.2.22-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1306/drupal6-6.24-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1856/xulrunner-10.0.1-3.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1844/thunderbird-10.0.1-2.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1409/drupal7-field_permissions-1.0-0.2.beta2.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1922/libpng-1.2.46-2.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1934/WebCalendar-1.2.4-3.fc16 https://admin.fedoraproject.org/updates/FEDORA-2011-14691/tomcat6-6.0.32-19.fc16 The following Fedora 16 Critical Path updates have yet to be approved: https://admin.fedoraproject.org/updates/FEDORA-2012-1936/createrepo-0.9.9-11.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1921/libtevent-0.9.15-1.fc16,libtalloc-2.0.7-4.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1931/phonon-backend-gstreamer-4.6.0-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1922/libpng-1.2.46-2.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1862/mdadm-3.2.3-5.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1844/thunderbird-10.0.1-2.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1856/xulrunner-10.0.1-3.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1720/gtk3-3.2.3-2.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1712/xorg-x11-drv-ati-6.14.3-4.20120201git36c190671.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1695/iscsi-initiator-utils-6.2.0.872-17.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1691/GConf2-3.2.3-3.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1709/apr-1.4.6-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1589/xfce4-session-4.8.3-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1523/dnsmasq-2.59-4.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1440/libgee-0.6.4-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-1322/taglib-1.7-3.fc16 https://admin.fedoraproject.org/updates/FEDORA-2011-15301/lxpanel-0.5.8-1.fc16,lxinput-0.3.1-1.fc16,lxsession-edit-0.2.0-1.fc16,lxrandr-0.1.2-1.fc16,lxpolkit-0.1.0-1.fc16,lxterminal-0.1.11-1.fc16,lxshortcut-0.1.2-1.fc16 The following builds have been pushed to Fedora 16 updates-testing WebCalendar-1.2.4-3.fc16 ceph-0.39-2.fc16 createrepo-0.9.9-11.fc16 erlang-meck-0.7.1-1.fc16 gperftools-2.0-4.fc16 grub2-1.99-13.fc16.1 ldtp-2.3.0-1.fc16 libpng-1.2.46-2.fc16 libtalloc-2.0.7-4.fc16 libtevent-0.9.15-1.fc16 mingw32-zlib-1.2.5-5.fc16 muffin-1.0.1-1.fc16 phonon-backend-gstreamer-4.6.0-1.fc16 php-bartlett-PHP-CompatInfo-2.2.4-1.fc16 php-bartlett-PHP-Reflect-1.3.0-1.fc16 python-mwlib-docbook-0.1.0-3.fc16 python-mwlib-xhtml-0.1.0-3.fc16 rubygem-dynect_rest-0.4.0-3.fc16 sugar-pippy-45-1.fc16 sugar-turtleart-136-1.fc16 uim-1.7.3-1.fc16 Details about builds: ================================================================================ WebCalendar-1.2.4-3.fc16 (FEDORA-2012-1934) Single/multi-user web-based calendar application -------------------------------------------------------------------------------- Update Information: Fixes CVE-2012-846 and some other XSS vulnerabilities -------------------------------------------------------------------------------- ChangeLog: * Fri Feb 17 2012 Patrick Monnerat <pm@xxxxxxxxxxxxx> 1.2.4-3 - Patch "cve2012_0846" fixes CVE-2012-0846 and some other XSS vulnerabilities. http://sourceforge.net/tracker/?func=detail&aid=3472745&group_id=3870&atid=103870 -------------------------------------------------------------------------------- References: [ 1 ] Bug #794499 - CVE-2012-0846 WebCalendar: location XSS flaw https://bugzilla.redhat.com/show_bug.cgi?id=794499 -------------------------------------------------------------------------------- ================================================================================ ceph-0.39-2.fc16 (FEDORA-2012-1682) User space components of the Ceph file system -------------------------------------------------------------------------------- Update Information: New Package: gperftools Please note, this package Provides/Obsoletes "google-perftools", soon to be retired. Also includes ceph, rebuilt to resolve dependencies. -------------------------------------------------------------------------------- ChangeLog: * Thu Feb 16 2012 Tom Callaway <spot@xxxxxxxxxxxxxxxxx> 0.39-2 - rebuild against gperftools -------------------------------------------------------------------------------- References: [ 1 ] Bug #790468 - Review Request: gperftools - Very fast malloc and performance analysis tools https://bugzilla.redhat.com/show_bug.cgi?id=790468 [ 2 ] Bug #791150 - Update of gperftools breaks ceph (due to SOname bump) https://bugzilla.redhat.com/show_bug.cgi?id=791150 -------------------------------------------------------------------------------- ================================================================================ createrepo-0.9.9-11.fc16 (FEDORA-2012-1936) Creates a common metadata repository -------------------------------------------------------------------------------- Update Information: Fix problem with lots of workers and not many packages (Eg. 9 workers for 5 packages). -------------------------------------------------------------------------------- ChangeLog: * Thu Feb 16 2012 James Antill <james at fedoraproject.org> - 0.9.9-11 - update to latest head - fix for lots of workers and not many rpms. -------------------------------------------------------------------------------- ================================================================================ erlang-meck-0.7.1-1.fc16 (FEDORA-2012-1924) A mocking library for Erlang -------------------------------------------------------------------------------- Update Information: New package. -------------------------------------------------------------------------------- ================================================================================ gperftools-2.0-4.fc16 (FEDORA-2012-1682) Very fast malloc and performance analysis tools -------------------------------------------------------------------------------- Update Information: New Package: gperftools Please note, this package Provides/Obsoletes "google-perftools", soon to be retired. Also includes ceph, rebuilt to resolve dependencies. -------------------------------------------------------------------------------- References: [ 1 ] Bug #790468 - Review Request: gperftools - Very fast malloc and performance analysis tools https://bugzilla.redhat.com/show_bug.cgi?id=790468 [ 2 ] Bug #791150 - Update of gperftools breaks ceph (due to SOname bump) https://bugzilla.redhat.com/show_bug.cgi?id=791150 -------------------------------------------------------------------------------- ================================================================================ grub2-1.99-13.fc16.1 (FEDORA-2012-1925) Bootloader with support for Linux, Multiboot and more -------------------------------------------------------------------------------- Update Information: Build with -Os -------------------------------------------------------------------------------- ChangeLog: * Fri Feb 17 2012 Orion Poplawski <orion@xxxxxxxxxxxxx> - 1:1.99-13.1 - Build with -Os (bug 782144) -------------------------------------------------------------------------------- References: [ 1 ] Bug #782144 - Regression in core.img size in grub2-1.99-13.fc16 https://bugzilla.redhat.com/show_bug.cgi?id=782144 -------------------------------------------------------------------------------- ================================================================================ ldtp-2.3.0-1.fc16 (FEDORA-2012-1917) Desktop testing framework -------------------------------------------------------------------------------- Update Information: New upstream, fixed requires. Please test as much as possible. New upstream, fixed requires. Please test as much as possible. New upstream, fixed requires. Please test as much as possible. -------------------------------------------------------------------------------- ChangeLog: * Fri Feb 17 2012 Jon Ciesla <limburgher@xxxxxxxxx> - 2.3.0-1 - New upstream, BZ 794704. * Sat Feb 11 2012 Jon Ciesla <limburgher@xxxxxxxxx> - 2.2.0-1.20120213gitbd10ba6 - Latest upstream, BZ 557080. - Using git snapshot to fix a few minor upstream bugs. - Moved to noarch, 603842. - Fixed Requires, BZ 667724. * Fri Jan 13 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.0.6-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #557080 - ldtp-2.2.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=557080 [ 2 ] Bug #667724 - [abrt] ldtp-2.0.6-3.fc14: __init__.py:43:main:ImportError: No module named web https://bugzilla.redhat.com/show_bug.cgi?id=667724 [ 3 ] Bug #794704 - ldtp-2.3.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=794704 -------------------------------------------------------------------------------- ================================================================================ libpng-1.2.46-2.fc16 (FEDORA-2012-1922) A library of functions for manipulating PNG image format files -------------------------------------------------------------------------------- Update Information: Fix nasty buffer overrun bug, CVE-2011-3026 -------------------------------------------------------------------------------- ChangeLog: * Thu Feb 16 2012 Tom Lane <tgl@xxxxxxxxxx> 2:1.2.46-2 - Fix CVE-2011-3026 Resolves: #791183 -------------------------------------------------------------------------------- References: [ 1 ] Bug #790737 - CVE-2011-3026 libpng: Heap-buffer-overflow in png_decompress_chunk https://bugzilla.redhat.com/show_bug.cgi?id=790737 -------------------------------------------------------------------------------- ================================================================================ libtalloc-2.0.7-4.fc16 (FEDORA-2012-1921) The talloc library -------------------------------------------------------------------------------- Update Information: New upstream releases of libtevent and libtalloc to support the latest samba4 alpha builds. -------------------------------------------------------------------------------- ChangeLog: * Fri Jan 13 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.0.7-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild * Thu Dec 1 2011 Stephen Gallagher <sgallagh@xxxxxxxxxx> - 2.0.7-3 - Add patch to ignore --disable-silent-rules - Package API docs into libtalloc-devel * Wed Nov 23 2011 Stephen Gallagher <sgallagh@xxxxxxxxxx> - 2.0.7-2 - Add explicit mention of the bundled libreplace - https://fedorahosted.org/fpc/ticket/120 * Fri Nov 4 2011 Stephen Gallagher <sgallagh@xxxxxxxxxx> - 2.0.7-1 - New upstream release - Required for new Samba 4 alpha builds -------------------------------------------------------------------------------- ================================================================================ libtevent-0.9.15-1.fc16 (FEDORA-2012-1921) The tevent library -------------------------------------------------------------------------------- Update Information: New upstream releases of libtevent and libtalloc to support the latest samba4 alpha builds. -------------------------------------------------------------------------------- ChangeLog: * Fri Feb 10 2012 Stephen Gallagher <sgallagh@xxxxxxxxxx> - 0.9.15-1 - New upstream release 0.9.15 - Properly re-sets the nested.level flag in the ev.ctx when reinitializing after a fork() - Allow tevent_signal events to be freed during their handler * Fri Jan 13 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.9.14-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild * Tue Dec 6 2011 Stephen Gallagher <sgallagh@xxxxxxxxxx> - 0.9.14-4 - Include missing patch file * Tue Dec 6 2011 Stephen Gallagher <sgallagh@xxxxxxxxxx> - 0.9.14-4 - Build pytevent properly * Thu Dec 1 2011 Stephen Gallagher <sgallagh@xxxxxxxxxx> - 0.9.14-3 - Add patch to ignore --disable-silent-rules - Include API documentation * Wed Nov 23 2011 Stephen Gallagher <sgallagh@xxxxxxxxxx> - 0.9.14-2 - Add explicit mention of the bundled libreplace - https://fedorahosted.org/fpc/ticket/120 * Wed Nov 9 2011 Stephen Gallagher <sgallagh@xxxxxxxxxx> - 0.9.14-1 - New upstream release - Required for building more recent versions of samba4 -------------------------------------------------------------------------------- ================================================================================ mingw32-zlib-1.2.5-5.fc16 (FEDORA-2012-1927) MinGW Windows zlib compression library -------------------------------------------------------------------------------- Update Information: fix dll name in .la file -------------------------------------------------------------------------------- ChangeLog: * Fri Feb 17 2012 David Tardon <dtardon@xxxxxxxxxx> - 1.2.5-5 - fix dlname in libz.la -------------------------------------------------------------------------------- References: [ 1 ] Bug #794726 - wrong dll name in libz.la https://bugzilla.redhat.com/show_bug.cgi?id=794726 -------------------------------------------------------------------------------- ================================================================================ muffin-1.0.1-1.fc16 (FEDORA-2012-1939) Window and compositing manager based on Clutter -------------------------------------------------------------------------------- Update Information: update to 1.0.1 -------------------------------------------------------------------------------- ChangeLog: * Fri Feb 17 2012 Leigh Scott <leigh123linux@xxxxxxxxxxxxxx> - 1.0.1-1 - update version to 1.0.1 -------------------------------------------------------------------------------- ================================================================================ phonon-backend-gstreamer-4.6.0-1.fc16 (FEDORA-2012-1931) Gstreamer phonon backend -------------------------------------------------------------------------------- Update Information: The Phonominals are super proud to announce the release of Phonon-GStreamer 4.6! See also, http://wm161.net/2012/02/16/phonon-gstreamer-4-6/ -------------------------------------------------------------------------------- ChangeLog: * Fri Feb 17 2012 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 4.6.0-1 - 4.6.0 * Sat Jan 14 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2:4.5.90-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild * Tue Nov 15 2011 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 2:4.5.90-4 - drop hard dep on PackageKit-gstreamer-plugin -------------------------------------------------------------------------------- ================================================================================ php-bartlett-PHP-CompatInfo-2.2.4-1.fc16 (FEDORA-2012-1926) Find out version and the extensions required for a piece of code to run -------------------------------------------------------------------------------- Update Information: New upstream Version 2.2.4 which handle PHP 5.3.10 and PHP 5.4.0 compatibility detection. -------------------------------------------------------------------------------- ChangeLog: * Fri Feb 17 2012 Remi Collet <remi@xxxxxxxxxxxxxxxxx> - 2.2.4-1 - Version 2.2.4 (stable) - API 2.2.0 (stable) -------------------------------------------------------------------------------- ================================================================================ php-bartlett-PHP-Reflect-1.3.0-1.fc16 (FEDORA-2012-1926) Adds the ability to reverse-engineer PHP -------------------------------------------------------------------------------- Update Information: New upstream Version 2.2.4 which handle PHP 5.3.10 and PHP 5.4.0 compatibility detection. -------------------------------------------------------------------------------- ChangeLog: * Fri Feb 17 2012 Remi Collet <remi@xxxxxxxxxxxxxxxxx> - 1.3.0-1 - Version 1.3.0 (stable) - API 1.3.0 (stable) -------------------------------------------------------------------------------- ================================================================================ python-mwlib-docbook-0.1.0-3.fc16 (FEDORA-2012-1932) DocBook writer for mwlib -------------------------------------------------------------------------------- Update Information: Provides the XHTML and DocBook writers for mwlib. -------------------------------------------------------------------------------- References: [ 1 ] Bug #790984 - Review Request: python-mwlib-xhtml - XHTML writer for mwlib https://bugzilla.redhat.com/show_bug.cgi?id=790984 [ 2 ] Bug #790985 - Review Request: python-mwlib-docbook - DocBook writer for mwlib https://bugzilla.redhat.com/show_bug.cgi?id=790985 -------------------------------------------------------------------------------- ================================================================================ python-mwlib-xhtml-0.1.0-3.fc16 (FEDORA-2012-1932) XHTML writer for mwlib -------------------------------------------------------------------------------- Update Information: Provides the XHTML and DocBook writers for mwlib. -------------------------------------------------------------------------------- References: [ 1 ] Bug #790984 - Review Request: python-mwlib-xhtml - XHTML writer for mwlib https://bugzilla.redhat.com/show_bug.cgi?id=790984 [ 2 ] Bug #790985 - Review Request: python-mwlib-docbook - DocBook writer for mwlib https://bugzilla.redhat.com/show_bug.cgi?id=790985 -------------------------------------------------------------------------------- ================================================================================ rubygem-dynect_rest-0.4.0-3.fc16 (FEDORA-2012-1923) Dynect REST API library -------------------------------------------------------------------------------- Update Information: Use the Dynect services REST API -------------------------------------------------------------------------------- References: [ 1 ] Bug #790525 - Review Request: rubygem-dynect_rest - Dynect REST API library https://bugzilla.redhat.com/show_bug.cgi?id=790525 -------------------------------------------------------------------------------- ================================================================================ sugar-pippy-45-1.fc16 (FEDORA-2012-1928) Pippy for Sugar -------------------------------------------------------------------------------- Update Information: Release notes: *New translations. *Not harcoding tamtam-edit path (using get_bundle_path) fixes SL#2829. -------------------------------------------------------------------------------- ChangeLog: * Fri Feb 17 2012 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> - 45-1 - Release 45 * Sat Jan 14 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 44-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ sugar-turtleart-136-1.fc16 (FEDORA-2012-1935) Turtle Art activity for sugar -------------------------------------------------------------------------------- Update Information: Release notes: 136 ENHANCEMENTS: * Add method to retrieve plugin instance (Alan Jhonn Aguiar Schwyn) * New translations BUG FIXES: * Fixed regression in resistance sensor calibration for XO 1.75 * Fixed another problem with expanded compare blocks * Fixed problem with disappearing blocks due to dragging over hidden palettes 135 ENHANCEMENTS: * Changed mechanism for handling "hidden" blocks (used by some plugins) BUG FIX: * Restore currently selected palette after hide/show palette cycle -------------------------------------------------------------------------------- ChangeLog: * Fri Feb 17 2012 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> - 136-1 - New 136 release -------------------------------------------------------------------------------- ================================================================================ uim-1.7.3-1.fc16 (FEDORA-2012-1929) A multilingual input method library -------------------------------------------------------------------------------- Update Information: New upstream release. -------------------------------------------------------------------------------- ChangeLog: * Fri Feb 17 2012 Akira TAGOH <tagoh@xxxxxxxxxx> - 1.7.3-1 - New upstream release. (#790407) -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test