The following Fedora 16 Security updates need testing: https://admin.fedoraproject.org/updates/FEDORA-2012-10089/libtiff-3.9.6-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-10175/wireshark-1.6.8-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-9546/vte-0.28.2-6.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-9371/viewvc-1.1.15-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-9978/php-ZendFramework-1.11.12-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-6614/gdb-7.3.50.20110722-16.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-9577/clamav-0.97.5-1600.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-10023/openldap-2.4.26-8.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-7593/tomcat6-6.0.35-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-8021/sudo-1.8.3p1-3.fc16 The following Fedora 16 Critical Path updates have yet to be approved: https://admin.fedoraproject.org/updates/selinux-policy-3.10.0-90.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-10089/libtiff-3.9.6-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-10023/openldap-2.4.26-8.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-10007/kernel-3.4.4-3.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-9930/gmp-4.3.2-5.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-9931/mdadm-3.2.5-3.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-9866/elfutils-0.154-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-9863/python-tempita-0.5.1-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-9906/qrencode-3.3.1-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-9800/mobile-broadband-provider-info-1.20120614-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-6994/upower-0.9.16-1.fc16 https://admin.fedoraproject.org/updates/FEDORA-2012-3319/GConf2-3.2.3-4.fc16 The following builds have been pushed to Fedora 16 updates-testing NetworkManager-openconnect-0.9.4.0-7.git20120612.fc16 clucy-0.3.0-2.fc16 fonts-tweak-tool-0.0.6-1.fc16 gauche-0.9.3.3-1.fc16 gdesklets-citation-2.0-1.20120702git355e2ee.fc16 git-annex-3.20120522-2.fc16 kvirc-4.2.0-1.fc16 libcli-1.9.6-1.fc16 libskk-0.0.13-1.fc16 malaga-suomi-voikko-1.12-1.fc16 muse-2.0-2.fc16 nagios-3.4.1-2.fc16 nagios-plugins-1.4.15-7.fc16 nickle-2.76-1.fc16 openconnect-4.03-1.fc16 php-5.3.14-2.fc16 python-application-1.3.1-1.fc16 scorched3d-43.3d-1.fc16 vlgothic-fonts-20120629-1.fc16 wireshark-1.6.8-1.fc16 Details about builds: ================================================================================ NetworkManager-openconnect-0.9.4.0-7.git20120612.fc16 (FEDORA-2012-10156) NetworkManager VPN integration for openconnect -------------------------------------------------------------------------------- Update Information: This update adds gnome-keyring support for storing VPN passwords, and switches to the new OpenConnect library which supports the use of certificates from PKCS#11 tokens. -------------------------------------------------------------------------------- ChangeLog: * Sun Jun 17 2012 David Woodhouse <David.Woodhouse@xxxxxxxxx> - 0.9.4-7 - Add missing patch to git * Sat Jun 16 2012 David Woodhouse <David.Woodhouse@xxxxxxxxx> - 0.9.4-6 - Add gnome-keyring support for saving passwords (bgo #638861) * Wed Jun 13 2012 David Woodhouse <David.Woodhouse@xxxxxxxxx> - 0.9.4-5 - Update to work with new libopenconnect * Wed Jun 13 2012 Ville Skyttä <ville.skytta@xxxxxx> - 0.9.4.0-4 - Remove unnecessary ldconfig calls from scriptlets (#737330). -------------------------------------------------------------------------------- ================================================================================ clucy-0.3.0-2.fc16 (FEDORA-2012-10165) Clojure interface to Lucene -------------------------------------------------------------------------------- Update Information: Initial Fedora release of clucy, a Clojure interface to the Lucene indexer -------------------------------------------------------------------------------- References: [ 1 ] Bug #830777 - Review Request: clucy - Clojure interface to Lucene https://bugzilla.redhat.com/show_bug.cgi?id=830777 -------------------------------------------------------------------------------- ================================================================================ fonts-tweak-tool-0.0.6-1.fc16 (FEDORA-2012-10170) Tool for customizing fonts per language -------------------------------------------------------------------------------- Update Information: Implement pango_language feature and bugs fix -------------------------------------------------------------------------------- ChangeLog: * Wed Jun 27 2012 James Ni <jni@xxxxxxxxxx> - 0.0.6-1 - Implement pango_language feature and bug fix -------------------------------------------------------------------------------- ================================================================================ gauche-0.9.3.3-1.fc16 (FEDORA-2012-10169) Scheme script interpreter with multibyte character handling -------------------------------------------------------------------------------- Update Information: Upstream bugfix release; see ChangeLog -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 2 2012 Michel Salim <salimma@xxxxxxxxxxxxxxxxx> - 0.9.3.3-1 - Update to 0.9.3.3 -------------------------------------------------------------------------------- References: [ 1 ] Bug #827970 - gauche-0.9.3.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=827970 -------------------------------------------------------------------------------- ================================================================================ gdesklets-citation-2.0-1.20120702git355e2ee.fc16 (FEDORA-2012-10187) Display quote -------------------------------------------------------------------------------- Update Information: Update to new release 2.0 -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 2 2012 Jonathan MERCIER <bioinfornatics at gmail.com> - 2.0-1.20120702git355e2ee - update to release 2.0 * Fri Jan 13 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.5-12 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ git-annex-3.20120522-2.fc16 (FEDORA-2012-10183) Manage files with git, without checking their contents into git -------------------------------------------------------------------------------- Update Information: http://git-annex.branchable.com/ -------------------------------------------------------------------------------- References: [ 1 ] Bug #662259 - Review Request: git-annex - Manage files with git, without checking their contents in https://bugzilla.redhat.com/show_bug.cgi?id=662259 -------------------------------------------------------------------------------- ================================================================================ kvirc-4.2.0-1.fc16 (FEDORA-2012-10157) Free portable IRC client -------------------------------------------------------------------------------- Update Information: KVIrc 4.2.0 - Change max dcc packet size to increase the transfer speed - system.runcmd: added gnome-terminal to the list of terminals - new splashy - Add support for magnet and spotify urls - Added CP949 to KviLocale - Added Aria theme - Dropped the KviTalPopupMenu layer, ported the involved code to QAction - Some work on cleaning window management and activation - Added $file.time() function - added $insideAlias(): a function to identify whether code was called as /alias or $function - Add a -t switch to system.runcmd so a terminal can be explicitly provided - Allow STARTTLS to be used also without CAP support - Improvements in class webview, cleaning of kvs classes - Theme the background of KviSharedFilesWindow - Added rejoin popup entry on dead channels KviMainWindow when global transparency is not used - Improve irc:// url handling: avoid a double connection when the url points to an already connected server - Added KviShortcut to better handle keyboard accellerators - Dropped cryptopp dependency - SSL certificate fingerprint verification - Added "force KVS mode" shortcut modifier - Improved KviCString - Splitted Initalization Vector engine to its own file and added real CBC mode to Rijndael engine (wip) - Reworked IRC URI handling using regexp and added the possibility to paste a URI in the address bar or type a host directly without the protocol (eg: irc://) - Discriminate channels across different networks in settings - Added case sensivity flag to $str.* functions - Improved SQL object class - Added the ability to export logs to different formats (plain text, HTML, ...) - Added $log.export() function - Added mediaplayer interface for Spotify - Added 16x16 and 48x48 icon sizes - Added alpha component in color options - Added $file.diskspace(), $isBot() and $gender() functions - Added Qt SVG support - Ported the pseudo transparency to Qt way - Reworked toolbars (including drag'n'drop) and ported actions to Qt way - Improved the input editor -------------------------------------------------------------------------------- ChangeLog: * Sun Jul 1 2012 Alexey Kurov <nucleo@xxxxxxxxxxxxxxxxx> - 4.2.0-1 - KVIrc 4.2.0 - drop BR: cryptopp-devel, esound-devel * Thu Jan 5 2012 Alexey Kurov <nucleo@xxxxxxxxxxxxxxxxx> - 4.0.4-3 - fix build with gcc-4.7.0 -------------------------------------------------------------------------------- ================================================================================ libcli-1.9.6-1.fc16 (FEDORA-2012-10163) A shared library for a Cisco-like cli -------------------------------------------------------------------------------- Update Information: Update to latest upstream, including fix for missing header. -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 2 2012 Jon Ciesla <limburgher@xxxxxxxxx> - 1.9.6-1 - Latest upstream. * Fri Jan 13 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.9.5-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #836923 - Missing sys/time.h include in libcli.h https://bugzilla.redhat.com/show_bug.cgi?id=836923 -------------------------------------------------------------------------------- ================================================================================ libskk-0.0.13-1.fc16 (FEDORA-2012-10152) Library to deal with Japanese kana-to-kanji conversion method -------------------------------------------------------------------------------- Update Information: new upstream release -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 2 2012 Daiki Ueno <dueno@xxxxxxxxxx> - 0.0.13-1 - new upstream release -------------------------------------------------------------------------------- ================================================================================ malaga-suomi-voikko-1.12-1.fc16 (FEDORA-2012-10160) A description of Finnish morphology written in Malaga (Voikko edition) -------------------------------------------------------------------------------- Update Information: After version 1.11 the following notable changes have been made: * Significant number of names and other words have been added. * WORDBASES attribute has been extended to include information about root words of derived parts in compound words. -------------------------------------------------------------------------------- ChangeLog: * Sun Jul 1 2012 Ville-Pekka Vainio <vpvainio AT iki.fi> - 1.12-1 - Suomi-malaga 1.12 -------------------------------------------------------------------------------- ================================================================================ muse-2.0-2.fc16 (FEDORA-2012-10151) Midi/Audio Music Sequencer -------------------------------------------------------------------------------- Update Information: Hello everybody! Finally it has happened, nearly two years from the last stable release we are ready to present to you the final MusE 2.0 version. A lot has happened and changed, still the migration from 1.1 to 2.0 should be quite easy and definitely worth it. The big changes since 1.1 are as follows: * Moved to qt4, this affects the visuals and potentially improved portability * Graphical automation in the arranger * A new score editor * MusE now defaults to using midi through Jack, -A enables native alsa support * New style MDI gui with a bunch of configuration options to satisfy all tastes * Redone midi editing tool dialogs with lots of new functionality * Lots and lots and lots of internal small and big changes to improve stability, speed and functionality * PSIIF support (support for: probably something important I forgot) A much condensed list of changes since the last beta are as follows: - Sync fix: MusE now records tempo changes from externally clocked midi. - Finally! Audio controller playback has smooooth frame resolution even with large audio buffers. - Feature: Midi control of audio paramters. - Lots of automation improvements - Switched to use JACK midi - Added: -A switch: "Force inclusion of ALSA midi even if using Jack". - Lots of leaks removed - Added colorhints to iR and oR routing buttons - Templates: File dialog: Lots of changes - Lots of widget focus fixes - Allow loading of DSSI synths in LADSPA browser. - Midi editors: Added "Delta Mode" button to Note Info toolbar. The full changelog is available at: http://lmuse.svn.sourceforge.net/viewvc/lmuse/tags/muse_2_0/ChangeLog?revision=1555 -------------------------------------------------------------------------------- ChangeLog: * Sun Jul 1 2012 Orcan Ogetbil <oget[DOT]fedora[AT]gmail[DOT]com> - 1:2.0-2 - Add requires filter * Sun Jul 1 2012 Orcan Ogetbil <oget[DOT]fedora[AT]gmail[DOT]com> - 1:2.0-1 - MusE-2.0 final! * Tue Feb 28 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1:2.0-0.8.rc2 - Rebuilt for c++ ABI breakage -------------------------------------------------------------------------------- ================================================================================ nagios-3.4.1-2.fc16 (FEDORA-2012-10142) Nagios monitors hosts and services and yells if somethings breaks -------------------------------------------------------------------------------- Update Information: Update to 3.4.1. -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 28 2012 Petr Pisar <ppisar@xxxxxxxxxx> - 3.4.1-2 - Perl 5.16 rebuild * Mon Jun 25 2012 Jose Pedro Oliveira <jpo at di.uminho.pt> - 3.4.1-1 - Upgrade to 3.4.1 (#835047) - Dropped nagios-0012-Fixed-html-rss-install-files.patch * Fri Jun 15 2012 Petr Pisar <ppisar@xxxxxxxxxx> - 3.3.1-4 - Perl 5.16 rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #835047 - Update nagios to 3.4.1 https://bugzilla.redhat.com/show_bug.cgi?id=835047 -------------------------------------------------------------------------------- ================================================================================ nagios-plugins-1.4.15-7.fc16 (FEDORA-2012-10178) Host/service/network monitoring program plugins for Nagios -------------------------------------------------------------------------------- Update Information: The directory /usr/lib{,64}/nagios/plugins is now owned by nagios-common. -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 26 2012 Jose Pedro Oliveira <jpo at di.uminho.pt> - 1.4.15-7 - glibc 2.16 no longer defines gets for ISO C11, ISO C++11, and _GNU_SOURCE (#835621): nagios-plugins-0007-undef-gets-and-glibc-2.16.patch * Tue Jun 26 2012 Jose Pedro Oliveira <jpo at di.uminho.pt> - 1.4.15-6 - The nagios-plugins RPM no longer needs to own the /usr/lib{,64}/nagios/plugins directory; this directory is now owned by nagios-common (#835621) - Small updates (clarification) to the file nagios-plugins.README.Fedora * Fri Jan 13 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.4.15-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #835621 - nagios-common has a file conflict with nagios-plugins in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=835621 -------------------------------------------------------------------------------- ================================================================================ nickle-2.76-1.fc16 (FEDORA-2012-10184) A programming language-based prototyping environment -------------------------------------------------------------------------------- Update Information: * Don't crash when using initializer with forward ref type * Fix crashes when MemCollect occurs during Twixt execution -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 2 2012 Michel Salim <salimma@xxxxxxxxxxxxxxxxx> - 2.76-1 - Update to 2.76 -------------------------------------------------------------------------------- References: [ 1 ] Bug #831189 - nickle-2.76 is available https://bugzilla.redhat.com/show_bug.cgi?id=831189 -------------------------------------------------------------------------------- ================================================================================ openconnect-4.03-1.fc16 (FEDORA-2012-10185) Open client for Cisco AnyConnect VPN -------------------------------------------------------------------------------- Update Information: This update fixes compatibilty with some AnyConnect servers which are picky about TLS versions or restricted in their choice of TLS ciphers. -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 2 2012 David Woodhouse <David.Woodhouse@xxxxxxxxx> - 4.03-1 - Update to 4.03 release (#836558) * Wed Jun 27 2012 David Woodhouse <David.Woodhouse@xxxxxxxxx> - 4.02-1 - Update to 4.02 release * Wed Jun 27 2012 David Woodhouse <David.Woodhouse@xxxxxxxxx> - 4.01-1 - Update to 4.01 release * Thu Jun 21 2012 David Woodhouse <David.Woodhouse@xxxxxxxxx> - 4.00-3 - Remove zlib from openconnect.pc dependencies * Thu Jun 21 2012 David Woodhouse <David.Woodhouse@xxxxxxxxx> - 4.00-2 - Fix dependencies for RHEL[56] -------------------------------------------------------------------------------- References: [ 1 ] Bug #836558 - openconnect upgrade breaks VPN to Cisco routers https://bugzilla.redhat.com/show_bug.cgi?id=836558 -------------------------------------------------------------------------------- ================================================================================ php-5.3.14-2.fc16 (FEDORA-2012-10173) PHP scripting language for creating dynamic web sites -------------------------------------------------------------------------------- Update Information: Only packaging changes. Add missing provides for provided extension * php-core * php-ereg * php-filter * php-standard Add provides for version check * php(language) Add RPM macro for version check * %{php_version} -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 2 2012 Remi Collet <remi@xxxxxxxxxxxxxxxxx> 5.3.14-2 - provide php(language) to allow version check - define %{php_version} -------------------------------------------------------------------------------- ================================================================================ python-application-1.3.1-1.fc16 (FEDORA-2012-10188) Basic building blocks for python applications -------------------------------------------------------------------------------- Update Information: * Added workaround for logging unicode and string objects * Don't apply str over log records diverted from Twisted * Fixed the wrapper's default arguments when preserving function signatures -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 2 2012 Michel Salim <salimma@xxxxxxxxxxxxxxxxx> - 1.3.1-1 - Update to 1.3.1 - Drop unneeded %{python_sitelib} declaration -------------------------------------------------------------------------------- References: [ 1 ] Bug #830697 - python-application-1.3.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=830697 -------------------------------------------------------------------------------- ================================================================================ scorched3d-43.3d-1.fc16 (FEDORA-2012-10150) Game based loosely on the classic DOS game Scorched Earth -------------------------------------------------------------------------------- Update Information: Allow players to play on network servers since 43.3d is needed. -------------------------------------------------------------------------------- ChangeLog: * Sat Jun 30 2012 Bruno Wolff III <bruno@xxxxxxxx> - 43.3d-1 - Lots of minor bugfixes, but incompatible with 43.3. - 43.3d release announcement: http://www.scorched3d.co.uk/phpBB3/viewtopic.php?t=6594 * Tue Feb 7 2012 Jon Ciesla <limburgher@xxxxxxxxx> - 43.3-1 - New upstream. * Tue Jan 17 2012 Hans de Goede <hdegoede@xxxxxxxxxx> - 43.2a-7 - Fix building with gcc-4.7 * Sat Jan 14 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 43.2a-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild * Sun Nov 6 2011 Bruno Wolff III <bruno@xxxxxxxx> - 43.2a-5 - Fix broken fix for broken fix * Sun Nov 6 2011 Bruno Wolff III <bruno@xxxxxxxx> - 43.2a-4 - Fix broken palette fix * Sun Nov 6 2011 Bruno Wolff III <bruno@xxxxxxxx> - 43.2a-3 - Rebuild for libpng 1.5 - Make sure all direct png struct references are through accessors -------------------------------------------------------------------------------- References: [ 1 ] Bug #832832 - Rebuild for version 43.3d https://bugzilla.redhat.com/show_bug.cgi?id=832832 -------------------------------------------------------------------------------- ================================================================================ vlgothic-fonts-20120629-1.fc16 (FEDORA-2012-10149) Japanese TrueType font -------------------------------------------------------------------------------- Update Information: New upstream release -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 2 2012 Akira TAGOH <tagoh@xxxxxxxxxx> - 20120629-1 - New upstream release. -------------------------------------------------------------------------------- References: [ 1 ] Bug #836629 - vlgothic-fonts-20120629 is available https://bugzilla.redhat.com/show_bug.cgi?id=836629 -------------------------------------------------------------------------------- ================================================================================ wireshark-1.6.8-1.fc16 (FEDORA-2012-10175) Network traffic analyzer -------------------------------------------------------------------------------- Update Information: Update to latest upstream release, fixing few security bugs. CVE-2012-2392: Infinite and large loops in ANSI MAP, ASF, IEEE 802.11, IEEE 802.3, and LTP dissectors. CVE-2012-2393: Memory allocation flaw in the DIAMETER dissector. CVE-2012-2394: Denial of service (crash) due memory alignment problem on SPARC and Itanium processors. CVE-2012-3825: Integer overflows in BACapp and Bluetooth HCI dissectors, leading to DoS CVE-2012-3826: Integer overflows in the R3 dissector, leading to DoS. -------------------------------------------------------------------------------- ChangeLog: * Wed May 23 2012 Jan Safranek <jsafrane@xxxxxxxxxx> - 1.6.8-1 - upgrade to 1.6.8 - see http://www.wireshark.org/docs/relnotes/wireshark-1.6.8.html * Mon May 21 2012 Jan Safranek <jsafrane@xxxxxxxxxx> - 1.6.7-2 - Removed dependency on GeoIP on RHEL. * Tue Apr 10 2012 Jan Safranek <jsafrane@xxxxxxxxxx> - 1.6.7-1 - upgrade to 1.6.7 - see http://www.wireshark.org/docs/relnotes/wireshark-1.6.7.html -------------------------------------------------------------------------------- References: [ 1 ] Bug #824426 - CVE-2012-2392 CVE-2012-2393 CVE-2012-2394 CVE-2012-3825 CVE-2012-3826 wireshark various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=824426 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test