The following Fedora 16 Security updates need testing: Age URL 72 https://admin.fedoraproject.org/updates/FEDORA-2012-14452/bacula-5.0.3-33.fc16 0 https://admin.fedoraproject.org/updates/FEDORA-2012-19538/weechat-0.3.9.2-2.fc16 10 https://admin.fedoraproject.org/updates/FEDORA-2012-18782/android-tools-20121120git3ddc005-1.fc16 45 https://admin.fedoraproject.org/updates/FEDORA-2012-16415/389-ds-base-1.2.10.16-1.fc16 29 https://admin.fedoraproject.org/updates/FEDORA-2012-17553/libproxy-0.4.10-1.fc16 4 https://admin.fedoraproject.org/updates/FEDORA-2012-19267/plexus-cipher-1.5-11.fc16 3 https://admin.fedoraproject.org/updates/FEDORA-2012-19347/cups-1.5.4-7.fc16 150 https://admin.fedoraproject.org/updates/FEDORA-2012-10314/revelation-0.4.14-1.fc16 70 https://admin.fedoraproject.org/updates/FEDORA-2012-14654/tor-0.2.2.39-1600.fc16 8 https://admin.fedoraproject.org/updates/FEDORA-2012-18927/cups-pk-helper-0.1.3-4.fc16 3 https://admin.fedoraproject.org/updates/FEDORA-2012-19357/kernel-3.6.8-2.fc16 51 https://admin.fedoraproject.org/updates/FEDORA-2012-16032/cobbler-2.4.0-beta2.fc16 8 https://admin.fedoraproject.org/updates/FEDORA-2012-18931/seamonkey-2.14-1.fc16 11 https://admin.fedoraproject.org/updates/FEDORA-2012-18687/libssh-0.5.3-1.fc16 4 https://admin.fedoraproject.org/updates/FEDORA-2012-19227/squashfs-tools-4.2-5.fc16 1 https://admin.fedoraproject.org/updates/FEDORA-2012-19449/drupal6-ctools-1.10-1.fc16 32 https://admin.fedoraproject.org/updates/FEDORA-2012-17291/thunderbird-16.0.2-1.fc16 1 https://admin.fedoraproject.org/updates/FEDORA-2012-19455/php-symfony2-HttpFoundation-2.0.19-1.fc16 4 https://admin.fedoraproject.org/updates/FEDORA-2012-18330/perl-CGI-3.52-203.fc16,perl-5.14.3-203.fc16 4 https://admin.fedoraproject.org/updates/FEDORA-2012-19195/php-symfony-symfony-1.4.20-2.fc16 11 https://admin.fedoraproject.org/updates/FEDORA-2012-18661/firefox-17.0-1.fc16,xulrunner-17.0-3.fc16,thunderbird-enigmail-1.4.6-2.fc16,thunderbird-lightning-1.9-1.fc16,thunderbird-17.0-1.fc16 The following Fedora 16 Critical Path updates have yet to be approved: Age URL 1 https://admin.fedoraproject.org/updates/FEDORA-2012-19471/xulrunner-17.0.1-1.fc16,firefox-17.0.1-1.fc16 1 https://admin.fedoraproject.org/updates/FEDORA-2012-19486/phonon-backend-gstreamer-4.6.2-2.fc16 3 https://admin.fedoraproject.org/updates/FEDORA-2012-19357/kernel-3.6.8-2.fc16 4 https://admin.fedoraproject.org/updates/FEDORA-2012-19265/lxpanel-0.5.10-3.fc16 4 https://admin.fedoraproject.org/updates/FEDORA-2012-19227/squashfs-tools-4.2-5.fc16 8 https://admin.fedoraproject.org/updates/FEDORA-2012-18927/cups-pk-helper-0.1.3-4.fc16 9 https://admin.fedoraproject.org/updates/FEDORA-2012-18857/koji-1.7.1-1.fc16 11 https://admin.fedoraproject.org/updates/FEDORA-2012-18687/libssh-0.5.3-1.fc16 11 https://admin.fedoraproject.org/updates/FEDORA-2012-18692/NetworkManager-0.9.6.4-2.fc16 12 https://admin.fedoraproject.org/updates/FEDORA-2012-18524/dnsmasq-2.59-5.fc16 4 https://admin.fedoraproject.org/updates/FEDORA-2012-18330/perl-CGI-3.52-203.fc16,perl-5.14.3-203.fc16 The following builds have been pushed to Fedora 16 updates-testing perl-Config-Validator-0.6-1.fc16 perl-Directory-Queue-1.7-1.fc16 perl-Messaging-Message-1.4-1.fc16 unison240-2.40.102-1.fc16 vile-9.8i-1.fc16 weechat-0.3.9.2-2.fc16 Details about builds: ================================================================================ perl-Config-Validator-0.6-1.fc16 (FEDORA-2012-19536) Schema based configuration validation -------------------------------------------------------------------------------- Update Information: updating to latest upstream version 0.6 -------------------------------------------------------------------------------- ChangeLog: * Tue Nov 20 2012 Massimo Paladin <massimo.paladin@xxxxxxxxx> 0.6-1 - Update to 0.6. * Fri Jul 20 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.4-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild * Tue Jun 12 2012 Petr Pisar <ppisar@xxxxxxxxxx> - 0.4-2 - Perl 5.16 rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #877913 - Upgrade to new upstream version https://bugzilla.redhat.com/show_bug.cgi?id=877913 -------------------------------------------------------------------------------- ================================================================================ perl-Directory-Queue-1.7-1.fc16 (FEDORA-2012-19543) Object oriented interface to a directory based queue -------------------------------------------------------------------------------- Update Information: updating to latest upstream version 1.7 -------------------------------------------------------------------------------- ChangeLog: * Tue Nov 20 2012 Massimo Paladin <massimo.paladin@xxxxxxxxx> - 1.7-1 - Update to 1.7 rhbz#877951. * Fri Jul 20 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.6-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild * Tue Jun 12 2012 Petr Pisar <ppisar@xxxxxxxxxx> - 1.6-2 - Perl 5.16 rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #877951 - Upgrade to new upstream version https://bugzilla.redhat.com/show_bug.cgi?id=877951 -------------------------------------------------------------------------------- ================================================================================ perl-Messaging-Message-1.4-1.fc16 (FEDORA-2012-19547) Abstraction of a message -------------------------------------------------------------------------------- Update Information: updating to latest upstream version 1.4 -------------------------------------------------------------------------------- ChangeLog: * Tue Nov 20 2012 Massimo Paladin <massimo.paladin@xxxxxxxxx> 1.4-1 - Upgrade to 1.4 upstream version. * Fri Jul 20 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.3-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild * Sat Jun 16 2012 Petr Pisar <ppisar@xxxxxxxxxx> - 1.3-2 - Perl 5.16 rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #877952 - Upgrade to new upstream version https://bugzilla.redhat.com/show_bug.cgi?id=877952 -------------------------------------------------------------------------------- ================================================================================ unison240-2.40.102-1.fc16 (FEDORA-2012-19534) Multi-master File synchronization tool -------------------------------------------------------------------------------- Update Information: fixes incompatibility between unison ocaml3 and ocaml4 builds -------------------------------------------------------------------------------- ChangeLog: * Thu Nov 15 2012 Gregor Tätzner <brummbq@xxxxxxxxxxxxxxxxx> - 2.40.102-1 - 2.40.102 - fixes incompatibility between unison ocaml3 and ocaml4 builds * Sun Jul 22 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.40.63-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ vile-9.8i-1.fc16 (FEDORA-2012-19537) VI Like Emacs -------------------------------------------------------------------------------- Update Information: upgrade to 9.8i -------------------------------------------------------------------------------- ChangeLog: * Sun Dec 2 2012 Mark McKinstry <mmckinst@xxxxxxxxxxx> - 9.8i-1 - upgrade to 9.8i - use better icons -------------------------------------------------------------------------------- ================================================================================ weechat-0.3.9.2-2.fc16 (FEDORA-2012-19538) Portable, fast, light and extensible IRC client -------------------------------------------------------------------------------- Update Information: New upstream version Fix arbitrary code execution due to call of shell when executing command within hook_process Fix the security bug in the linked Bugzilla. -------------------------------------------------------------------------------- ChangeLog: * Sun Dec 2 2012 Paul Komkoff <i@xxxxxxxxxx> - 0.3.9.2-2 - add zlib-devel dependency for epel6/ppc build * Sat Dec 1 2012 Paul P. Komkoff Jr <i@xxxxxxxxxx> - 0.3.9.2-1 - new upstream, long overdue -------------------------------------------------------------------------------- References: [ 1 ] Bug #878025 - CVE-2012-5534 weechat (scripts / plug-ins): Arbitrary code execution due to call of shell when executing command within hook_process https://bugzilla.redhat.com/show_bug.cgi?id=878025 [ 2 ] Bug #875181 - CVE-2012-5854 weechat: Heap-based buffer overflow when decoding IRC colors https://bugzilla.redhat.com/show_bug.cgi?id=875181 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test