The following Fedora 15 Security updates need testing: https://admin.fedoraproject.org/updates/FEDORA-2012-6371/nginx-1.0.15-1.fc15 https://admin.fedoraproject.org/updates/FEDORA-2012-5631/phpMyAdmin-3.5.0-1.fc15 https://admin.fedoraproject.org/updates/FEDORA-2012-6395/openssl-1.0.0i-1.fc15 https://admin.fedoraproject.org/updates/FEDORA-2012-6414/rubygems-1.7.2-5.fc15 https://admin.fedoraproject.org/updates/FEDORA-2012-6349/samba4-4.0.0-26.alpha11.fc15.6 https://admin.fedoraproject.org/updates/FEDORA-2012-6396/bugzilla-3.6.9-1.fc15 https://admin.fedoraproject.org/updates/FEDORA-2012-6511/wordpress-3.3.2-2.fc15 https://admin.fedoraproject.org/updates/FEDORA-2012-6630/dokuwiki-0-0.10.20110525.a.fc15 https://admin.fedoraproject.org/updates/FEDORA-2012-6610/xulrunner-12.0-1.fc15,firefox-12.0-1.fc15,gnome-python2-extras-2.25.3-35.fc15.7,perl-Gtk2-MozEmbed-0.09-1.fc15.11 https://admin.fedoraproject.org/updates/FEDORA-2012-5916/python3-3.2.3-1.fc15 https://admin.fedoraproject.org/updates/FEDORA-2012-6629/gdb-7.3.1-50.fc15 https://admin.fedoraproject.org/updates/FEDORA-2012-6177/gridengine-6.2u5-10.fc15.3 https://admin.fedoraproject.org/updates/FEDORA-2012-6398/cifs-utils-5.4-1.fc15 https://admin.fedoraproject.org/updates/FEDORA-2011-17233/tor-0.2.1.32-1500.fc15 The following Fedora 15 Critical Path updates have yet to be approved: https://admin.fedoraproject.org/updates/FEDORA-2012-6629/gdb-7.3.1-50.fc15 https://admin.fedoraproject.org/updates/FEDORA-2012-6610/xulrunner-12.0-1.fc15,firefox-12.0-1.fc15,gnome-python2-extras-2.25.3-35.fc15.7,perl-Gtk2-MozEmbed-0.09-1.fc15.11 https://admin.fedoraproject.org/updates/FEDORA-2012-6552/PackageKit-0.6.17-2.fc15 https://admin.fedoraproject.org/updates/FEDORA-2012-6517/pcre-8.12-8.fc15 https://admin.fedoraproject.org/updates/FEDORA-2012-6395/openssl-1.0.0i-1.fc15 https://admin.fedoraproject.org/updates/FEDORA-2012-6373/fuse-2.8.7-1.fc15.1 https://admin.fedoraproject.org/updates/FEDORA-2012-5915/python-2.7.3-2.fc15,python-docs-2.7.3-1.fc15 https://admin.fedoraproject.org/updates/FEDORA-2012-5745/nss-util-3.13.4-2.fc15,nss-3.13.4-2.fc15,nss-softokn-3.13.4-1.fc15,nspr-4.9-2.fc15 https://admin.fedoraproject.org/updates/dracut-009-15.fc15 https://admin.fedoraproject.org/updates/FEDORA-2011-13190/phonon-backend-gstreamer-4.5.90-2.fc15,phonon-4.5.57-1.20110914.fc15 The following builds have been pushed to Fedora 15 updates-testing bind-9.8.2-1.fc15 dokuwiki-0-0.10.20110525.a.fc15 emelfm2-0.8.1-1.fc15 firefox-12.0-1.fc15 gdb-7.3.1-50.fc15 ghc-void-0.5.5-1.fc15 gnome-python2-extras-2.25.3-35.fc15.7 perl-Gtk2-MozEmbed-0.09-1.fc15.11 python-cagraph-1.2-10.fc15 pytorctl-0-0.9.20111213git.fc15 rubygem-xmlparser-0.6.81-9.fc15 srptools-0.0.4-13.fc15 xulrunner-12.0-1.fc15 Details about builds: ================================================================================ bind-9.8.2-1.fc15 (FEDORA-2012-6606) The Berkeley Internet Name Domain (BIND) DNS (Domain Name System) server -------------------------------------------------------------------------------- Update Information: Update to the latest 9.8.2 stable release. -------------------------------------------------------------------------------- ChangeLog: * Tue Apr 24 2012 Adam Tkac <atkac redhat com> 32:9.8.2-1 - update to 9.8.2 - bind-9.5-overflow.patch is no longer needed -------------------------------------------------------------------------------- ================================================================================ dokuwiki-0-0.10.20110525.a.fc15 (FEDORA-2012-6630) Standards compliant simple to use wiki -------------------------------------------------------------------------------- Update Information: Fix XSS Flaw -------------------------------------------------------------------------------- ChangeLog: * Tue Apr 24 2012 Andrew Colin Kissa <andrew@xxxxxxxxxxxxx> - 0-0.10.20110525.a - Fix CVE-2012-2129 - Fix Bugzilla bugs #815123 -------------------------------------------------------------------------------- References: [ 1 ] Bug #815122 - CVE-2012-2128 CVE-2012-2129 dokuwiki: XSS and CSRF due improper escaping of 'target' parameter in preprocessing edit form data https://bugzilla.redhat.com/show_bug.cgi?id=815122 -------------------------------------------------------------------------------- ================================================================================ emelfm2-0.8.1-1.fc15 (FEDORA-2012-6618) File manager that implements the popular two-pane design -------------------------------------------------------------------------------- Update Information: This update fixes a frequent crash with glib 2.32 and some other bugs as outlined at http://emelfm2.net/wiki/ChangeLog -------------------------------------------------------------------------------- ChangeLog: * Tue Apr 24 2012 Christoph Wickert <cwickert@xxxxxxxxxxxxxxxxx> - 0.8.1-1 - Update to 0.8.1 - Patch editor to position cursor at start of opened file (instead of end) - Explicitly build GTK2 version for now - Add VCS key * Fri Jan 13 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.8.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild * Thu Jun 16 2011 Christoph Wickert <cwickert@xxxxxxxxxxxxxxxxx> - 0.8.0-1 - Update to 0.8.0 -------------------------------------------------------------------------------- References: [ 1 ] Bug #809941 - emelfm2 segfaults https://bugzilla.redhat.com/show_bug.cgi?id=809941 -------------------------------------------------------------------------------- ================================================================================ firefox-12.0-1.fc15 (FEDORA-2012-6610) Mozilla Firefox Web browser -------------------------------------------------------------------------------- Update Information: Update to Firefox 12. -------------------------------------------------------------------------------- ChangeLog: * Tue Apr 24 2012 Martin Stransky <stransky@xxxxxxxxxx> - 12.0-1 - Update to 12.0 * Thu Mar 15 2012 Martin Stransky <stransky@xxxxxxxxxx> - 11.0-2 - Switched dependency to xulrunner (rhbz#803471) -------------------------------------------------------------------------------- ================================================================================ gdb-7.3.1-50.fc15 (FEDORA-2012-6629) A GNU source-level debugger for C, C++, Java and other languages -------------------------------------------------------------------------------- Update Information: Update "set auto-load" patchset and the --with-auto-load-safe-path setting. Security fix for loading untrusted inferiors, see "set auto-load". Security fix for loading untrusted inferiors, see "set auto-load". Workaround crashes from stale frame_info pointer (BZ 804256). Security fix for loading untrusted inferiors, see "set auto-load" (BZ 756117). -------------------------------------------------------------------------------- ChangeLog: * Tue Apr 24 2012 Jan Kratochvil <jan.kratochvil@xxxxxxxxxx> - 7.3.1-50.fc15 - Update "set auto-load" patchset and the --with-auto-load-safe-path setting. * Sat Apr 21 2012 Jan Kratochvil <jan.kratochvil@xxxxxxxxxx> - 7.3.1-49.fc15 - Security fix for loading untrusted inferiors, see "set auto-load" (BZ 756117). -------------------------------------------------------------------------------- References: [ 1 ] Bug #756117 - CVE-2011-4355 gdb: arbitrary code execution via .debug_gdb_scripts [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=756117 [ 2 ] Bug #804256 - gdb: until command segfaults in amd64_sigtramp_frame_sniffer https://bugzilla.redhat.com/show_bug.cgi?id=804256 -------------------------------------------------------------------------------- ================================================================================ ghc-void-0.5.5-1.fc15 (FEDORA-2012-6615) Haskell 98 logically uninhabited data type -------------------------------------------------------------------------------- Update Information: Haskell98 logically uninhabited datatype -------------------------------------------------------------------------------- References: [ 1 ] Bug #810781 - Review Request: ghc-void - Haskell98 logically uninhabited datatype https://bugzilla.redhat.com/show_bug.cgi?id=810781 -------------------------------------------------------------------------------- ================================================================================ gnome-python2-extras-2.25.3-35.fc15.7 (FEDORA-2012-6610) Additional PyGNOME Python extension modules -------------------------------------------------------------------------------- Update Information: Update to Firefox 12. -------------------------------------------------------------------------------- ChangeLog: * Tue Apr 24 2012 Jan Horak <jhorak@xxxxxxxxxx> - 2.25.3-35.7 - Rebuild against newer gecko -------------------------------------------------------------------------------- ================================================================================ perl-Gtk2-MozEmbed-0.09-1.fc15.11 (FEDORA-2012-6610) Interface to the Mozilla embedding widget -------------------------------------------------------------------------------- Update Information: Update to Firefox 12. -------------------------------------------------------------------------------- ChangeLog: * Tue Apr 24 2012 Jan Horak <jhorak@xxxxxxxxxx> - 0.09-1.11 - Rebuild against newer gecko -------------------------------------------------------------------------------- ================================================================================ python-cagraph-1.2-10.fc15 (FEDORA-2012-6621) A PyGTK Cairo chart widget -------------------------------------------------------------------------------- Update Information: A PyGTK widget for plotting charts and graphs -------------------------------------------------------------------------------- References: [ 1 ] Bug #756443 - Review Request: python-cagraph - A PyGTK widget for plotting charts and graphs https://bugzilla.redhat.com/show_bug.cgi?id=756443 -------------------------------------------------------------------------------- ================================================================================ pytorctl-0-0.9.20111213git.fc15 (FEDORA-2012-6608) TorCtl Python bindings -------------------------------------------------------------------------------- Update Information: Python bindings for controlling the Tor router -------------------------------------------------------------------------------- References: [ 1 ] Bug #756435 - Review Request: pytorctl - Python bindings for controlling the Tor router https://bugzilla.redhat.com/show_bug.cgi?id=756435 -------------------------------------------------------------------------------- ================================================================================ rubygem-xmlparser-0.6.81-9.fc15 (FEDORA-2012-6620) Ruby bindings to the Expat XML parsing library -------------------------------------------------------------------------------- Update Information: Ruby bindings to the Expat XML parsing library -------------------------------------------------------------------------------- References: [ 1 ] Bug #719854 - Review Request: rubygem-xmlparser-0.6.81-1 - Ruby bindings to the Expat XML parsing library https://bugzilla.redhat.com/show_bug.cgi?id=719854 -------------------------------------------------------------------------------- ================================================================================ srptools-0.0.4-13.fc15 (FEDORA-2012-6633) Tools for using the InfiniBand SRP protocol devices -------------------------------------------------------------------------------- Update Information: Make the srptools package install the init script by default (although it is also disabled in all runlevels by default). Fix a few LSB header bugs at the same time. -------------------------------------------------------------------------------- ChangeLog: * Tue Apr 24 2012 Doug Ledford <dledford@xxxxxxxxxx> - 0.0.4-13 - Further tweaks to LSB init script headers - Add a %post and %preun scriptlets to add/remove the init script -------------------------------------------------------------------------------- ================================================================================ xulrunner-12.0-1.fc15 (FEDORA-2012-6610) XUL Runtime for Gecko Applications -------------------------------------------------------------------------------- Update Information: Update to Firefox 12. -------------------------------------------------------------------------------- ChangeLog: * Tue Apr 24 2012 Martin Stransky <stransky@xxxxxxxxxx> - 12.0-1 - Update to 12.0 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test