The following Fedora 16 Security updates need testing: Age URL 13 https://admin.fedoraproject.org/updates/FEDORA-2013-0723/thunderbird-17.0.2-1.fc16 45 https://admin.fedoraproject.org/updates/FEDORA-2012-20157/libproxy-0.4.11-1.fc16 7 https://admin.fedoraproject.org/updates/FEDORA-2013-0915/moodle-2.1.10-1.fc16 5 https://admin.fedoraproject.org/updates/FEDORA-2013-1130/php-symfony2-Yaml-2.0.22-1.fc16 2 https://admin.fedoraproject.org/updates/FEDORA-2013-1233/rhncfg-5.10.36-1.fc16 44 https://admin.fedoraproject.org/updates/FEDORA-2012-20236/rssh-2.3.4-1.fc16 2 https://admin.fedoraproject.org/updates/FEDORA-2013-1257/libexif-0.6.21-2.fc16 2 https://admin.fedoraproject.org/updates/FEDORA-2013-1274/xen-4.1.4-3.fc16 2 https://admin.fedoraproject.org/updates/FEDORA-2013-1289/jakarta-commons-httpclient-3.1-12.fc16 7 https://admin.fedoraproject.org/updates/FEDORA-2013-0934/qemu-0.15.1-9.fc16 203 https://admin.fedoraproject.org/updates/FEDORA-2012-10314/revelation-0.4.14-1.fc16 123 https://admin.fedoraproject.org/updates/FEDORA-2012-14654/tor-0.2.2.39-1600.fc16 0 https://admin.fedoraproject.org/updates/FEDORA-2013-1485/Zim-0.59-1.fc16 0 https://admin.fedoraproject.org/updates/FEDORA-2013-1432/seamonkey-2.15.1-1.fc16 16 https://admin.fedoraproject.org/updates/FEDORA-2012-19347/cups-1.5.4-12.fc16 2 https://admin.fedoraproject.org/updates/FEDORA-2013-1301/ndjbdns-1.05.6-1.fc16 0 https://admin.fedoraproject.org/updates/FEDORA-2013-1494/gdal-1.7.3-15.fc16,OpenImageIO-1.0.11-2.fc16,libwebp-0.2.1-1.fc16 9 https://admin.fedoraproject.org/updates/FEDORA-2013-0894/ettercap-0.7.5-3.fc16.1.20120906gitc796e5 7 https://admin.fedoraproject.org/updates/FEDORA-2013-0935/samba4-4.0.0-39.alpha16.fc16 5 https://admin.fedoraproject.org/updates/FEDORA-2013-0468/proftpd-1.3.4b-5.fc16 5 https://admin.fedoraproject.org/updates/FEDORA-2013-0992/asterisk-1.8.20.0-1.fc16 5 https://admin.fedoraproject.org/updates/FEDORA-2013-1122/drupal6-6.28-1.fc16 5 https://admin.fedoraproject.org/updates/FEDORA-2013-1092/drupal7-7.19-1.fc16 The following Fedora 16 Critical Path updates have yet to be approved: Age URL 2 https://admin.fedoraproject.org/updates/FEDORA-2013-1257/libexif-0.6.21-2.fc16 13 https://admin.fedoraproject.org/updates/FEDORA-2013-0723/thunderbird-17.0.2-1.fc16 13 https://admin.fedoraproject.org/updates/FEDORA-2013-0632/perl-5.14.3-204.fc16 269 https://admin.fedoraproject.org/updates/FEDORA-2012-6994/upower-0.9.16-1.fc16 The following builds have been pushed to Fedora 16 updates-testing OpenImageIO-1.0.11-2.fc16 Zim-0.59-1.fc16 gdal-1.7.3-15.fc16 libwebp-0.2.1-1.fc16 python-fedora-0.3.32.1-1.fc16 qjson-0.8.1-1.fc16 tomahawk-0.6.0-1.fc16 Details about builds: ================================================================================ OpenImageIO-1.0.11-2.fc16 (FEDORA-2013-1494) Library for reading and writing images -------------------------------------------------------------------------------- Update Information: Security libwebp release, where an integer overflow allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted WebP image. -------------------------------------------------------------------------------- ChangeLog: * Wed Jan 23 2013 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 1.0.11-2 - rebuild (libwebp) * Thu Jan 17 2013 Richard Shaw <hobbes1069@xxxxxxxxx> - 1.0.11-1 - Update to latest upstream patch release. -------------------------------------------------------------------------------- References: [ 1 ] Bug #875071 - CVE-2012-5127 libwebp: Integer overflow when processing crafted WebP image https://bugzilla.redhat.com/show_bug.cgi?id=875071 -------------------------------------------------------------------------------- ================================================================================ Zim-0.59-1.fc16 (FEDORA-2013-1485) Desktop wiki & notekeeper -------------------------------------------------------------------------------- Update Information: New upstream release -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 24 2013 Robin Lee <cheeselee@xxxxxxxxxxxxxxxxx> - 0.59-1 - Update to 0.59 (#903621, #841803, #857820, #858250, #871030, #875776) -------------------------------------------------------------------------------- ================================================================================ gdal-1.7.3-15.fc16 (FEDORA-2013-1494) GIS file format library -------------------------------------------------------------------------------- Update Information: Security libwebp release, where an integer overflow allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted WebP image. -------------------------------------------------------------------------------- ChangeLog: * Wed Jan 23 2013 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 1.7.3-15 - rebuild (libwebp) -------------------------------------------------------------------------------- References: [ 1 ] Bug #875071 - CVE-2012-5127 libwebp: Integer overflow when processing crafted WebP image https://bugzilla.redhat.com/show_bug.cgi?id=875071 -------------------------------------------------------------------------------- ================================================================================ libwebp-0.2.1-1.fc16 (FEDORA-2013-1494) Library and tools for the WebP graphics format -------------------------------------------------------------------------------- Update Information: Security libwebp release, where an integer overflow allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted WebP image. -------------------------------------------------------------------------------- ChangeLog: * Thu Dec 27 2012 Rahul Sundaram <sundaram@xxxxxxxxxxxxxxxxx> - 0.2.1-1 - new upstream release 0.2.1 * Fri Dec 21 2012 Adam Tkac <atkac redhat com> - 0.1.3-3 - rebuild against new libjpeg * Thu Jul 19 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.1.3-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #875071 - CVE-2012-5127 libwebp: Integer overflow when processing crafted WebP image https://bugzilla.redhat.com/show_bug.cgi?id=875071 -------------------------------------------------------------------------------- ================================================================================ python-fedora-0.3.32.1-1.fc16 (FEDORA-2013-1476) Python modules for talking to Fedora Infrastructure Services -------------------------------------------------------------------------------- Update Information: * Port from python-pycurl to python-requests to make the http connections to the servers. * Fixes a problem with soprovidercsrf if the database doesn't set an encoding * Fixes an issue with the login templates if the template is being translated. * Added a lookup_email parameter to fedora.client.AccountSystem.gravatar_url() to allow generating gravaar urls without looking up email addresses in fas. * Fixed a bug in fedora.tg.utils.tg_absolute_url() where it was still appending the csrf_token. * Add an auth adapter for flask web apps to authenticate to FAS * New minimum version of python: requires python-2.5 or higher * Fix localization of login templates (laxathom) * Fixes a problem with soprovidercsrf if the database doesn't set an encoding * Fixes an issue with the login templates if the template is being translated. * Added a lookup_email parameter to fedora.client.AccountSystem.gravatar_url() to allow generating gravaar urls without looking up email addresses in fas. * Fixed a bug in fedora.tg.utils.tg_absolute_url() where it was still appending the csrf_token. * Add an auth adapter for flask web apps to authenticate to FAS * New minimum version of python: requires python-2.5 or higher * Fix localization of login templates (laxathom) * Added a lookup_email parameter to fedora.client.AccountSystem.gravatar_url() to allow generating gravaar urls without looking up email addresses in fas. * Fixed a bug in fedora.tg.utils.tg_absolute_url() where it was still appending the csrf_token. * Add an auth adapter for flask web apps to authenticate to FAS * New minimum version of python: requires python-2.5 or higher * Fix localization of login templates (laxathom) * Fixes a problem with soprovidercsrf if the database doesn't set an encoding * Fixes an issue with the login templates if the template is being translated. * Added a lookup_email parameter to fedora.client.AccountSystem.gravatar_url() to allow generating gravaar urls without looking up email addresses in fas. * Fixed a bug in fedora.tg.utils.tg_absolute_url() where it was still appending the csrf_token. * Add an auth adapter for flask web apps to authenticate to FAS * New minimum version of python: requires python-2.5 or higher * Fix localization of login templates (laxathom) * Added a lookup_email parameter to fedora.client.AccountSystem.gravatar_url() to allow generating gravaar urls without looking up email addresses in fas. * Fixed a bug in fedora.tg.utils.tg_absolute_url() where it was still appending the csrf_token. * Add an auth adapter for flask web apps to authenticate to FAS * New minimum version of python: requires python-2.5 or higher * Fix localization of login templates (laxathom) * Fixes a problem with soprovidercsrf if the database doesn't set an encoding * Fixes an issue with the login templates if the template is being translated. * Added a lookup_email parameter to fedora.client.AccountSystem.gravatar_url() to allow generating gravaar urls without looking up email addresses in fas. * Fixed a bug in fedora.tg.utils.tg_absolute_url() where it was still appending the csrf_token. * Add an auth adapter for flask web apps to authenticate to FAS * New minimum version of python: requires python-2.5 or higher * Fix localization of login templates (laxathom) -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 24 2013 Toshio Kuratomi <toshio@xxxxxxxxxxxxxxxxx> - 0.3.32.1-1 - Fix a documentation bug that slipped through * Wed Jan 23 2013 Ralph Bean <rbean@xxxxxxxxxx> - 0.3.32-1 - Replace pyCurl with python-requests in ProxyClient. * Tue Jan 22 2013 Toshio Kuratomi <toshio@xxxxxxxxxxxxxxxxx> - 0.3.31-1 - Minor bugfix release * Thu Jan 10 2013 Toshio Kuratomi <toshio@xxxxxxxxxxxxxxxxx> - 0.3.30-1 - Make TG's loginForm and CSRF's text translated from tg-apps (laxathom). - Fix a bug in fedora.tg.utils.tg_absolute_url - Add a lookup email parameter to gravatar lookups - Add an auth provider for flask -------------------------------------------------------------------------------- ================================================================================ qjson-0.8.1-1.fc16 (FEDORA-2013-1461) A qt-based library that maps JSON data to QVariant objects -------------------------------------------------------------------------------- Update Information: New stable release, with many small improvements and bug fixes. See also: http://blog.tomahawk-player.org/post/40843077086/tomahawk-0-6-from-beta-to-gold -------------------------------------------------------------------------------- ChangeLog: * Tue Nov 27 2012 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 0.8.1-1 - 0.8.1 * Fri Nov 23 2012 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> - 0.8.0-2 - %files: track soname - -devel: own %_libdir/cmake * Thu Nov 22 2012 Jan Grulich <jgrulich@xxxxxxxxxx> - 0.8.0-1 - 0.8.0 * Thu Aug 9 2012 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> - 0.7.1-9 - rebuild * Sat Jul 21 2012 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> - 0.7.1-8 - skip stripping some compiler flags (undocumented) - %files: track files closer (lib soname in particular) - -devel: avoid dep on cmake - %check: +make test, pkgconfig check * Sat Jul 21 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.7.1-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild * Tue Feb 28 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.7.1-6 - Rebuilt for c++ ABI breakage * Sat Jan 14 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.7.1-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ tomahawk-0.6.0-1.fc16 (FEDORA-2013-1461) The Social Media Player -------------------------------------------------------------------------------- Update Information: New stable release, with many small improvements and bug fixes. See also: http://blog.tomahawk-player.org/post/40843077086/tomahawk-0-6-from-beta-to-gold -------------------------------------------------------------------------------- ChangeLog: * Sat Jan 19 2013 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 0.6.0-1 - 0.6.0 final * Wed Jan 9 2013 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 0.6.0-0.1.beta1 - 0.6.0beta1 * Sat Nov 24 2012 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 0.5.5-3 - rebuild (qjson) * Wed Sep 26 2012 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 0.5.5-2 - Requires: qca-cyrus-sasl -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test