The following Fedora 16 Security updates need testing: https://admin.fedoraproject.org/updates/FEDORA-2012-8647/FlightGear-2.4.0-2.fc16,SimGear-2.4.0-4.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8686/pidgin-2.10.4-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-5833/python3-3.2.3-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-6614/gdb-7.3.50.20110722-16.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8692/asterisk-1.8.12.2-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8729/nut-2.6.3-4.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8803/krb5-1.9.3-2.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8821/strongswan-4.6.4-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8883/rubygem-actionpack-3.0.10-6.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8946/bind-9.8.3-2.P1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8893/postgresql-9.1.4-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8985/php-symfony-symfony-1.4.18-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8956/mumble-1.2.3-5.fc16.1 https://admin.fedoraproject.org/updates/FEDORA-2012-8675/arpwatch-2.1a15-18.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8982/rubygem-activerecord-3.0.10-2.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-7593/tomcat6-6.0.35-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8890/kernel-3.3.8-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8067/libgssglue-0.4-0.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8021/sudo-1.8.3p1-3.fc16 The following Fedora 16 Critical Path updates have yet to be approved: https://admin.fedoraproject.org/updates/FEDORA-2012-8765/koji-1.7.0-2.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8727/bash-4.2.29-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8744/perl-5.14.2-198.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8617/gnutls-2.12.14-3.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8601/libvpx-1.0.0-3.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8587/ppp-2.4.5-21.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8385/control-center-3.2.3-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8389/pm-utils-1.4.1-13.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8381/colord-0.1.21-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-6994/upower-0.9.16-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-3319/GConf2-3.2.3-4.fc16 The following builds have been pushed to Fedora 16 updates-testing ReviewBoard-1.6.7-1.fc16 abi-compliance-checker-1.97.7-1.fc16 bind-9.8.3-2.P1.fc16 chirp-0.2.2-1.fc16 chmsee-1.99-0.15.9.git36b4702.fc16 dropwatch-1.4-1.fc16 ecryptfs-utils-96-3.fc16 erlang-erlsyslog-0.2-1.fc16 erlang-rebar-2.0.0-1.fc16 etckeeper-0.63-1.fc16 gambit-c-4.6.6-1.fc16 ghc-sized-types-0.3.4.0-1.fc16 kernel-3.3.8-1.fc16 koji-1.7.0-2.fc16 litmus-0.13-5.fc16 mozc-1.5.1090.102-1.fc16 mumble-1.2.3-5.fc16.1 php-symfony-symfony-1.4.18-1.fc16 picard-1.0-1.fc16 postfix-2.8.11-1.fc16 postgresql-9.1.4-1.fc16 pure-0.55-1.fc16 python-cliapp-0.29-2.fc16 python-djblets-0.6.18-1.fc16 python-proteus-2.0.2-2.fc16 python-qpid-0.16-1.fc16 python-tracing-0.6-2.fc16 rcssserver-15.1.0-1.fc16 rubygem-activerecord-3.0.10-2.fc16 softhsm-1.3.3-1.fc16 stellarium-0.11.3-1.fc16 sugar-finance-8-1.fc16 sugar-speak-40-1.fc16 sugar-turtleart-142-1.fc16 tryton-2.0.4-1.fc16 trytond-2.0.5-1.fc16 trytond-account-2.0.4-1.fc16 trytond-account-invoice-2.0.1-1.fc16 trytond-ldap-authentication-2.0.1-1.fc16 trytond-party-siret-2.0.1-1.fc16 trytond-purchase-2.0.4-1.fc16 trytond-sale-2.0.3-1.fc16 trytond-stock-2.0.3-1.fc16 trytond-stock-supply-2.0.2-1.fc16 uim-1.8.1-1.fc16 uptimed-0.3.17-1.fc16 Details about builds: ================================================================================ ReviewBoard-1.6.7-1.fc16 (FEDORA-2012-8905) Web-based code review tool -------------------------------------------------------------------------------- Update Information: * Tue Jun 05 2012 Stephen Gallagher <sgallagh@xxxxxxxxxx> - 1.6.7-1 - New upstream release 1.6.7 - Important Updates: - support the new method for authentication that we need in order to fetch data from GitHub - New Features: - Introduced a new model for hosting service integration - Made the maximum diff size customizable - Added Plastic SCM 4.0 compatibility - Web API Changes: - Added a /api/hosting-service-accounts/ resource for querying existing hosting service accounts and for linking new ones - Bug Fixes: - Review Board no longer continues to show the Manual Updates page if the problem is resolved - Subversion now understands the $Header$ keyword - Setting the issue status on deleted screenshots no longer fails -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 5 2012 Stephen Gallagher <sgallagh@xxxxxxxxxx> - 1.6.7-1 - New upstream release 1.6.7 - Important Updates: - support the new method for authentication that we need in order to fetch data from GitHub - New Features: - Introduced a new model for hosting service integration - Made the maximum diff size customizable - Added Plastic SCM 4.0 compatibility - Web API Changes: - Added a /api/hosting-service-accounts/ resource for querying existing hosting service accounts and for linking new ones - Bug Fixes: - Review Board no longer continues to show the Manual Updates page if the problem is resolved - Subversion now understands the $Header$ keyword - Setting the issue status on deleted screenshots no longer fails -------------------------------------------------------------------------------- ================================================================================ abi-compliance-checker-1.97.7-1.fc16 (FEDORA-2012-8929) An ABI Compliance Checker -------------------------------------------------------------------------------- Update Information: Update to latest upstream release. -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 4 2012 Richard Shaw <hobbes1069@xxxxxxxxx> - 1.97.7-1 - Update to latest upstream release. -------------------------------------------------------------------------------- ================================================================================ bind-9.8.3-2.P1.fc16 (FEDORA-2012-8946) The Berkeley Internet Name Domain (BIND) DNS (Domain Name System) server -------------------------------------------------------------------------------- Update Information: Update to the latest upstream release which fixes CVE-2012-1667. More information is available on http://www.isc.org/software/bind/advisories/cve-2012-1667 -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 4 2012 Adam Tkac <atkac redhat com> 32:9.8.3-2.P1 - update to 9.8.3-P1 (CVE-2012-1667) -------------------------------------------------------------------------------- References: [ 1 ] Bug #828078 - CVE-2012-1667 bind: handling of zero length rdata can cause named to terminate unexpectedly https://bugzilla.redhat.com/show_bug.cgi?id=828078 -------------------------------------------------------------------------------- ================================================================================ chirp-0.2.2-1.fc16 (FEDORA-2012-8894) A tool for programming two-way radio equipment -------------------------------------------------------------------------------- Update Information: Update to latest upstream release. -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 4 2012 Richard Shaw <hobbes1069@xxxxxxxxx> - 0.2.2-1 - Update to latest upstream release. -------------------------------------------------------------------------------- ================================================================================ chmsee-1.99-0.15.9.git36b4702.fc16 (FEDORA-2012-8977) HTML Help viewer for Unix/Linux -------------------------------------------------------------------------------- Update Information: Rebuild for xulrunner 13 -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 5 2012 bbbush <bbbush.yuan@xxxxxxxxx> - 1.99-0.15.9.git36b4702 - rebuild for xulrunner 13 -------------------------------------------------------------------------------- ================================================================================ dropwatch-1.4-1.fc16 (FEDORA-2012-8974) Kernel dropped packet monitor -------------------------------------------------------------------------------- Update Information: Update to the latest upstream version of dropwatch -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 4 2012 Neil Horman <nhorman@xxxxxxxxxx> - 1.4-1 - Update to latest upstream -------------------------------------------------------------------------------- References: [ 1 ] Bug #818510 - cpdb --update seems to be dependent on internet connection for some xsd files used by liquibase https://bugzilla.redhat.com/show_bug.cgi?id=818510 -------------------------------------------------------------------------------- ================================================================================ ecryptfs-utils-96-3.fc16 (FEDORA-2012-8891) The eCryptfs mount helper and support libraries -------------------------------------------------------------------------------- Update Information: - always load ecryptfs module in advance - this should fix situations, where ecryptfs mounts and decrypts data, but file names are still encrypted -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 4 2012 Michal Hlavinka <mhlavink@xxxxxxxxxx> - 96-3 - for file name encryption support check, module must be loaded already * Mon Apr 16 2012 Michal Hlavinka <mhlavink@xxxxxxxxxx> - 96-2 - when ecryptfs-mount-fails, check if user is member of ecryptfs group -------------------------------------------------------------------------------- ================================================================================ erlang-erlsyslog-0.2-1.fc16 (FEDORA-2012-8981) Syslog facility for Erlang -------------------------------------------------------------------------------- Update Information: * Ver. 0.2 -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 5 2012 Peter Lemenkov <lemenkov@xxxxxxxxx> - 0.2-1 - Ver. 0.2 * Fri Jan 13 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.1-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ erlang-rebar-2.0.0-1.fc16 (FEDORA-2012-8922) Erlang Build Tools -------------------------------------------------------------------------------- Update Information: - Ver. 2.0.0 -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 5 2012 Peter Lemenkov <lemenkov@xxxxxxxxx> - 2.0.0-1 - Ver. 2.0.0 -------------------------------------------------------------------------------- ================================================================================ etckeeper-0.63-1.fc16 (FEDORA-2012-8918) Store /etc in a SCM system (git, mercurial, bzr or darcs) -------------------------------------------------------------------------------- Update Information: Update to the latest stable version. >From the upstream changelog: * bzr: Improve detection of unclean repos, to work when there are shelved changes. * uninit: Now preserves parts of the gitignore and similar files that are outside the managed by etckeeper block. Closes: http://bugs.debian.org/673996 Thanks, David De La Harpe Golden (Squared Financial) -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 4 2012 Thomas Moschny <thomas.moschny@xxxxxx> - 0.63-1 - Update to 0.63. -------------------------------------------------------------------------------- ================================================================================ gambit-c-4.6.6-1.fc16 (FEDORA-2012-8947) Scheme programming system -------------------------------------------------------------------------------- Update Information: Latest upstream release -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 5 2012 Michel Salim <salimma@xxxxxxxxxxxxxxxxx> - 4.6.6-1 - Update to 4.6.6 * Sat Mar 31 2012 Michel Salim <salimma@xxxxxxxxxxxxxxxxx> - 4.6.5-2 - Reduce optimization level on ppc64 to work around gcc compilation error -------------------------------------------------------------------------------- References: [ 1 ] Bug #827969 - gambit-c-4.6.6 is available https://bugzilla.redhat.com/show_bug.cgi?id=827969 -------------------------------------------------------------------------------- ================================================================================ ghc-sized-types-0.3.4.0-1.fc16 (FEDORA-2012-8989) Haskell sized-types library -------------------------------------------------------------------------------- Update Information: New package, ghc-sized-types -------------------------------------------------------------------------------- References: [ 1 ] Bug #827690 - Review Request: ghc-sized-types - Provides indices, matrixes, and bit vectors https://bugzilla.redhat.com/show_bug.cgi?id=827690 -------------------------------------------------------------------------------- ================================================================================ kernel-3.3.8-1.fc16 (FEDORA-2012-8890) The Linux kernel -------------------------------------------------------------------------------- Update Information: Linux v3.3.8 Fixes for CVE-2012-2390 and CVE-2012-2372. Disabled 32bit NX emulation which is suspected of being broken and aligns us more with upstream. Final 3.3.x update before rebasing to the 3.4 kernel series. -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 4 2012 Josh Boyer <jwboyer@xxxxxxxxxx> 3.3.8-1 - Linux v3.3.8 * Mon Jun 4 2012 Dave Jones <davej@xxxxxxxxxx> - Disable 32bit NX emulation. * Wed May 30 2012 Josh Boyer <jwboyer@xxxxxxxxxx> - CVE-2012-2390 huge pages: memory leak on mmap failure (rhbz 824352 824345) * Fri May 25 2012 Mauro Carvalho Chehab <mchehab@xxxxxxxxxx> - Don't manually customise tuners/frontends (rhbz 825203) * Thu May 24 2012 Josh Boyer <jwboyer@xxxxxxxxxx> - CVE-2012-2372 mm: 32bit PAE pmd walk vs populate SMP race (rhbz 822821 822825) -------------------------------------------------------------------------------- References: [ 1 ] Bug #822821 - CVE-2012-2373 kernel: mm: read_pmd_atomic: 32bit PAE pmd walk vs pmd_populate SMP race condition https://bugzilla.redhat.com/show_bug.cgi?id=822821 [ 2 ] Bug #824345 - CVE-2012-2390 kernel: huge pages: memory leak on mmap failure https://bugzilla.redhat.com/show_bug.cgi?id=824345 -------------------------------------------------------------------------------- ================================================================================ koji-1.7.0-2.fc16 (FEDORA-2012-8765) Build system tools -------------------------------------------------------------------------------- Update Information: update koji to 1.7.0 koji-hub and koji-web use mod_wsgi with mod_python deprectaed -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 5 2012 Dennis Gilmore <dennis@xxxxxxxx> - 1.7.0-2 - use topurl not pkgurl in the fedora config * Fri Jun 1 2012 Dennis Gilmore <dennis@xxxxxxxx> - 1.7.0-1 - update to 1.7.0 many bugfixes and improvements - now uses mod_wsgi * Fri Jan 13 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.6.0-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #829018 - update /etc/koji.conf https://bugzilla.redhat.com/show_bug.cgi?id=829018 [ 2 ] Bug #785994 - Put topurl in koji.conf https://bugzilla.redhat.com/show_bug.cgi?id=785994 -------------------------------------------------------------------------------- ================================================================================ litmus-0.13-5.fc16 (FEDORA-2012-8923) WebDAV server compliance test suite -------------------------------------------------------------------------------- Update Information: This update fixes an issue with a 'foo' missing file in htdocs, required at runtime. -------------------------------------------------------------------------------- ChangeLog: * Fri Mar 16 2012 Ricardo Rocha <ricardo.rocha@xxxxxxx> - 0.13-4 - Removed data dir cleanup, files are needed at runtime (bug #800477) * Fri Jan 13 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.13-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #800477 - could not open /usr/share/litmus/htdocs/foo: No such file or directory https://bugzilla.redhat.com/show_bug.cgi?id=800477 -------------------------------------------------------------------------------- ================================================================================ mozc-1.5.1090.102-1.fc16 (FEDORA-2012-8948) Open-sourced Google Japanese Input -------------------------------------------------------------------------------- Update Information: * New upstream release * Update zipcode dictionaries -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 5 2012 Akira TAGOH <tagoh@xxxxxxxxxx> - 1.5.1090.102-1 - New upstream release. (#828202) - Update zipcode dictionaries. -------------------------------------------------------------------------------- References: [ 1 ] Bug #828202 - mozc-1.5.1090.102 is available https://bugzilla.redhat.com/show_bug.cgi?id=828202 -------------------------------------------------------------------------------- ================================================================================ mumble-1.2.3-5.fc16.1 (FEDORA-2012-8956) Voice chat suite aimed at gamers -------------------------------------------------------------------------------- Update Information: This update fixes a number of startup problems of the mumble server murmur. Additionally it contains a fix for CVE-2012-0863 (insecure world-readable permissions on database file) of the mumble client. -------------------------------------------------------------------------------- ChangeLog: * Thu May 31 2012 Christian Krause <chkr@xxxxxxxxxxxxxxxxx> - 1.2.3-5.1 - Fix startup issues of murmurd (BZ 711711, BZ 771423) - Fix directory ownership of %{_libdir}/mumble and %{_datadir}/mumble* (BZ 744886) - Add upstream patch for CVE-2012-0863 (BZ 791058) - Fix broken logrotate config file (BZ 730129) - Add dependency for qt4-sqlite (BZ 660221) - Remove /sbin/ldconfig from %post(un) since mumble does not contain any libraries in %{_libdir} - Some minor cleanup -------------------------------------------------------------------------------- References: [ 1 ] Bug #791000 - CVE-2012-0863 mumble: insecure world-readable permissions on database file https://bugzilla.redhat.com/show_bug.cgi?id=791000 -------------------------------------------------------------------------------- ================================================================================ php-symfony-symfony-1.4.18-1.fc16 (FEDORA-2012-8985) Open-Source PHP Web Framework -------------------------------------------------------------------------------- Update Information: - upstream 1.4.18 - fixes: CVE-2012-2667 php-symfony-symfony: Session fixation flaw -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 4 2012 Christof Damian <christof@xxxxxxxxxx> - 1.4.18-1 - upstream 1.4.18 (security fix) * Thu Mar 8 2012 Christof Damian <christof@xxxxxxxxxx> - 1.4.17-2 - fix doctrine path * Thu Mar 8 2012 Christof Damian <christof@xxxxxxxxxx> - 1.4.17-1 - upstream 1.4.17 * Sat Jan 14 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.4.8-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #828079 - CVE-2012-2667 php-symfony-symfony: Session fixation flaw corrected in upstream 1.4.18 version [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=828079 -------------------------------------------------------------------------------- ================================================================================ picard-1.0-1.fc16 (FEDORA-2012-8967) MusicBrainz-based audio tagger -------------------------------------------------------------------------------- Update Information: Update to latest upstream (1.0). For more details see: http://blog.musicbrainz.org/?p=1457 Note that this update may not fix all bugs mentioned here, feel free to re-open if this update did not address your issue. -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 4 2012 Alex Lancaster <alexlan[AT]fedoraproject org> - 1.0-1 - Update to latest upstream 1.0 (#827880) - Use versions of plugins now distributed in contrib/plugins - Update BR for PyQt >= 4.6 (#757398) - Drop obsolete conditional in %files (#757234) * Sat Jan 14 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.16-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #827880 - Please update to Picard 1.0 https://bugzilla.redhat.com/show_bug.cgi?id=827880 [ 2 ] Bug #757398 - picard: update PyQT4 dependency to 4.6 https://bugzilla.redhat.com/show_bug.cgi?id=757398 [ 3 ] Bug #757234 - Please remove "%if 0%{?fedora} >= 9" from picard.spec https://bugzilla.redhat.com/show_bug.cgi?id=757234 [ 4 ] Bug #827623 - [abrt] picard-0.16-2.fc17: mainwindow.py:550:add_directory:UnicodeEncodeError: 'ascii' codec can't encode character u'\xe9' in position 20: ordinal not in range(128) https://bugzilla.redhat.com/show_bug.cgi?id=827623 [ 5 ] Bug #823074 - [abrt] picard-0.16-2.fc17: tageditor.py:71:__init__:TypeError: not all arguments converted during string formatting https://bugzilla.redhat.com/show_bug.cgi?id=823074 [ 6 ] Bug #769258 - [abrt] picard-0.15.1-1.fc15: metadata.py:91:compare_to_release:ValueError: invalid literal for int() with base 10: 'www.MzHipHop.com' https://bugzilla.redhat.com/show_bug.cgi?id=769258 [ 7 ] Bug #768781 - [abrt] picard-0.16-1.fc16: script.py:105:__raise_eof:EndOfFile: Unexpected end of script at position 87, line 1 https://bugzilla.redhat.com/show_bug.cgi?id=768781 [ 8 ] Bug #757425 - [abrt] picard-0.16-1.fc16: webservice.py:76:__getattr__:AttributeError: response https://bugzilla.redhat.com/show_bug.cgi?id=757425 [ 9 ] Bug #744939 - [abrt] picard-0.15.1-1.fc14: script.py:310:func_num:ValueError: invalid literal for int() with base 10: '.2' https://bugzilla.redhat.com/show_bug.cgi?id=744939 -------------------------------------------------------------------------------- ================================================================================ postfix-2.8.11-1.fc16 (FEDORA-2012-8957) Postfix Mail Transport Agent -------------------------------------------------------------------------------- Update Information: This is an update that fixes several bugs. For list of changes see original announcement http://www.postfix.org/announcements/postfix-2.9.3.html -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 5 2012 Jaroslav Škarvada <jskarvad@xxxxxxxxxx> - 2:2.8.11-1 - New version -------------------------------------------------------------------------------- ================================================================================ postgresql-9.1.4-1.fc16 (FEDORA-2012-8893) PostgreSQL client programs -------------------------------------------------------------------------------- Update Information: Upstream bug fix + security updates, including the fixes for CVE-2012-2143, CVE-2012-2655 -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 4 2012 Tom Lane <tgl@xxxxxxxxxx> 9.1.4-1 - Update to PostgreSQL 9.1.4, for various fixes described at http://www.postgresql.org/docs/9.1/static/release-9-1-4.html including the fixes for CVE-2012-2143, CVE-2012-2655 Resolves: #826606 - Update previous version (embedded in postgresql-upgrade) to 9.0.8 because fix in whole-row variable dumping could be needed for upgrades - Revert fix for bug #800416, per fedora-packaging discussion at http://lists.fedoraproject.org/pipermail/packaging/2012-April/008314.html "service postgresql initdb" is dead and will stay that way -------------------------------------------------------------------------------- References: [ 1 ] Bug #826606 - CVE-2012-2143 CVE-2012-2655 postgresql: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=826606 -------------------------------------------------------------------------------- ================================================================================ pure-0.55-1.fc16 (FEDORA-2012-8896) A term-rewriting functional programming language -------------------------------------------------------------------------------- Update Information: Latest upstream release, see announcement for details: https://groups.google.com/forum/?fromgroups#!topic/pure-lang/L6_C_s6T488 -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 5 2012 Michel Salim <salimma@xxxxxxxxxxxxxxxxx> - 0.55-1 - Update to 0.55 -------------------------------------------------------------------------------- References: [ 1 ] Bug #828245 - pure-0.55 is available https://bugzilla.redhat.com/show_bug.cgi?id=828245 -------------------------------------------------------------------------------- ================================================================================ python-cliapp-0.29-2.fc16 (FEDORA-2012-8933) Python framework for Unix command line programs -------------------------------------------------------------------------------- Update Information: Initial Fedora release of cliapp -------------------------------------------------------------------------------- References: [ 1 ] Bug #827804 - Review Request: python-cliapp - Python framework for Unix command line programs https://bugzilla.redhat.com/show_bug.cgi?id=827804 -------------------------------------------------------------------------------- ================================================================================ python-djblets-0.6.18-1.fc16 (FEDORA-2012-8905) A collection of useful classes and functions for Django -------------------------------------------------------------------------------- Update Information: * Tue Jun 05 2012 Stephen Gallagher <sgallagh@xxxxxxxxxx> - 1.6.7-1 - New upstream release 1.6.7 - Important Updates: - support the new method for authentication that we need in order to fetch data from GitHub - New Features: - Introduced a new model for hosting service integration - Made the maximum diff size customizable - Added Plastic SCM 4.0 compatibility - Web API Changes: - Added a /api/hosting-service-accounts/ resource for querying existing hosting service accounts and for linking new ones - Bug Fixes: - Review Board no longer continues to show the Manual Updates page if the problem is resolved - Subversion now understands the $Header$ keyword - Setting the issue status on deleted screenshots no longer fails -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 5 2012 Stephen Gallagher <sgallagh@xxxxxxxxxx> - 0.6.18-1 - New upstream release 0.6.18 - djblets.siteconfig: - Settings form rows in the template now have IDs indicating the row and CSS class names - Help text for fields are now marked as safe, so that the contents aren't escaped - The form's disabled_reasons is no longer assumed to be populated - The initial field values are now always set - djblets.util: - Added a json_dumps filter, which serialized a value to JSON -------------------------------------------------------------------------------- ================================================================================ python-proteus-2.0.2-2.fc16 (FEDORA-2012-8939) Library to access Tryton's internal objects -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sat Jun 2 2012 Dan Horák <dan@xxxxxxxx> - 2.0.2-2 - fix BR/R * Sat Jun 2 2012 Dan Horák <dan@xxxxxxxx> - 2.0.2-1 - new upstream version 2.0.2 -------------------------------------------------------------------------------- ================================================================================ python-qpid-0.16-1.fc16 (FEDORA-2012-8932) Python client library for AMQP -------------------------------------------------------------------------------- Update Information: Release 0.16 of Qpid upstream. -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 5 2012 Darryl L. Pierce <dpierce@xxxxxxxxxx> - 0.16-1 - Release 0.16 of Qpid upstream. - Some cleanup to remove rpmlint errors. -------------------------------------------------------------------------------- ================================================================================ python-tracing-0.6-2.fc16 (FEDORA-2012-8889) Python debug logging helper -------------------------------------------------------------------------------- Update Information: Initial Fedora release of python-tracing, a debug logging helper library for Python -------------------------------------------------------------------------------- References: [ 1 ] Bug #827807 - Review Request: python-tracing - Python debug logging helper https://bugzilla.redhat.com/show_bug.cgi?id=827807 -------------------------------------------------------------------------------- ================================================================================ rcssserver-15.1.0-1.fc16 (FEDORA-2012-8987) Robocup 2D Soccer Simulation Server -------------------------------------------------------------------------------- Update Information: * Fixed a bug of referee's player clearance operation after fouls. * Fixed a defect of zero division in Quantize method. -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 4 2012 Hedayat Vatankhah <hedayat.fwd+rpmchlog@xxxxxxxxx> - 15.1.0-1 - Update to version 15.1.0 - Remove some no-longer-necessary lines (e.g. buildroot tag) - ax_boost_base.m4 patch no longer necessary -------------------------------------------------------------------------------- ================================================================================ rubygem-activerecord-3.0.10-2.fc16 (FEDORA-2012-8982) Implements the ActiveRecord pattern for ORM -------------------------------------------------------------------------------- Update Information: Fix for CVE-2012-2661. -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 4 2012 Vít Ondruch <vondruch@xxxxxxxxxx> - 1:3.0.10-2 - Fix for CVE-2012-2661. -------------------------------------------------------------------------------- References: [ 1 ] Bug #827363 - CVE-2012-2661 rubygem-activerecord: SQL injection when processing nested query paramaters https://bugzilla.redhat.com/show_bug.cgi?id=827363 -------------------------------------------------------------------------------- ================================================================================ softhsm-1.3.3-1.fc16 (FEDORA-2012-8943) Software version of a PKCS#11 Hardware Security Module -------------------------------------------------------------------------------- Update Information: Slight speed improvements -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 4 2012 Paul Wouters <pwouters@xxxxxxxxxx> - 1.3.3-1 - Updated to 1.3.3 * Tue Apr 3 2012 Paul Wouters <pwouters@xxxxxxxxxx> - 1.3.2-1 - Updated to 1.3.2. - Changed user from opendnssec to ods, as used in the opendnssec package -------------------------------------------------------------------------------- ================================================================================ stellarium-0.11.3-1.fc16 (FEDORA-2012-8940) Photo-realistic nightsky renderer -------------------------------------------------------------------------------- Update Information: Upstream bug fix release -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 4 2012 Jochen Schmitt <Jochen herr-schmitt de> 0.11.3-1 - New upstream release -------------------------------------------------------------------------------- ================================================================================ sugar-finance-8-1.fc16 (FEDORA-2012-8984) Financial planning for Sugar -------------------------------------------------------------------------------- Update Information: v8 -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 5 2012 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> - 8-1 - Release 8 * Sat May 5 2012 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> - 7-1 - Release 7 * Sat Jan 14 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 3-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ sugar-speak-40-1.fc16 (FEDORA-2012-8917) Speak for Sugar -------------------------------------------------------------------------------- Update Information: v40 -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 5 2012 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> - 40-1 - New 40 release * Sat May 26 2012 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> - 39-1 - New 39 release -------------------------------------------------------------------------------- ================================================================================ sugar-turtleart-142-1.fc16 (FEDORA-2012-8961) Turtle Art activity for sugar -------------------------------------------------------------------------------- Update Information: v142 -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 5 2012 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> - 142-1 - New 142 release * Sat Jun 2 2012 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> - 141-1 - New 141 release * Sun May 27 2012 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> - 140-1 - New 140 release -------------------------------------------------------------------------------- ================================================================================ tryton-2.0.4-1.fc16 (FEDORA-2012-8939) Client for the Tryton application framework -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sat Jun 2 2012 Dan Horák <dan@xxxxxxxx> - 2.0.4-1 - new upstream version 2.0.4 -------------------------------------------------------------------------------- ================================================================================ trytond-2.0.5-1.fc16 (FEDORA-2012-8939) Server for the Tryton application framework -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sat Jun 2 2012 Dan Horák <dan@xxxxxxxx> - 2.0.5-1 - new upstream version 2.0.5 -------------------------------------------------------------------------------- ================================================================================ trytond-account-2.0.4-1.fc16 (FEDORA-2012-8939) account module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sat Jun 2 2012 Dan Horák <dan@xxxxxxxx> - 2.0.4-1 - new upstream version 2.0.4 -------------------------------------------------------------------------------- ================================================================================ trytond-account-invoice-2.0.1-1.fc16 (FEDORA-2012-8939) account-invoice module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sat Jun 2 2012 Dan Horák <dan@xxxxxxxx> - 2.0.1-1 - new upstream version 2.0.1 -------------------------------------------------------------------------------- ================================================================================ trytond-ldap-authentication-2.0.1-1.fc16 (FEDORA-2012-8939) ldap-authentication module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sat Jun 2 2012 Dan Horák <dan@xxxxxxxx> - 2.0.1-1 - new upstream version 2.0.1 -------------------------------------------------------------------------------- ================================================================================ trytond-party-siret-2.0.1-1.fc16 (FEDORA-2012-8939) party-siret module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sat Jun 2 2012 Dan Horák <dan@xxxxxxxx> - 2.0.1-1 - new upstream version 2.0.1 -------------------------------------------------------------------------------- ================================================================================ trytond-purchase-2.0.4-1.fc16 (FEDORA-2012-8939) purchase module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sat Jun 2 2012 Dan Horák <dan@xxxxxxxx> - 2.0.4-1 - new upstream version 2.0.4 -------------------------------------------------------------------------------- ================================================================================ trytond-sale-2.0.3-1.fc16 (FEDORA-2012-8939) sale module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sat Jun 2 2012 Dan Horák <dan@xxxxxxxx> - 2.0.3-1 - new upstream version 2.0.3 -------------------------------------------------------------------------------- ================================================================================ trytond-stock-2.0.3-1.fc16 (FEDORA-2012-8939) stock module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sat Jun 2 2012 Dan Horák <dan@xxxxxxxx> - 2.0.3-1 - new upstream version 2.0.3 -------------------------------------------------------------------------------- ================================================================================ trytond-stock-supply-2.0.2-1.fc16 (FEDORA-2012-8939) stock-supply module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sat Jun 2 2012 Dan Horák <dan@xxxxxxxx> - 2.0.2-1 - new upstream version 2.0.2 -------------------------------------------------------------------------------- ================================================================================ uim-1.8.1-1.fc16 (FEDORA-2012-8907) A multilingual input method library -------------------------------------------------------------------------------- Update Information: New upstream release -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 5 2012 Akira TAGOH <tagoh@xxxxxxxxxx> - 1.8.1-1 - New upstream release. (#828281) -------------------------------------------------------------------------------- References: [ 1 ] Bug #828281 - uim-1.8.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=828281 -------------------------------------------------------------------------------- ================================================================================ uptimed-0.3.17-1.fc16 (FEDORA-2012-8919) A daemon to record and keep track of system up times -------------------------------------------------------------------------------- Update Information: New upstream version. -------------------------------------------------------------------------------- ChangeLog: * Sun Jun 3 2012 Tomasz Torcz <ttorcz@xxxxxxxxxxxxxxxxx> 0.3.17-1 - new upstream version - do not regenerate auto* stuff -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test