The following Fedora 17 Security updates need testing: Age URL 252 https://admin.fedoraproject.org/updates/FEDORA-2012-10269/revelation-0.4.14-1.fc17 64 https://admin.fedoraproject.org/updates/FEDORA-2013-0455/fedora-business-cards-1-0.1.beta1.fc17 34 https://admin.fedoraproject.org/updates/FEDORA-2013-2143/rubygem-rdoc-3.12-5.fc17 30 https://admin.fedoraproject.org/updates/FEDORA-2013-2315/rubygem-rack-1.4.0-4.fc17 21 https://admin.fedoraproject.org/updates/FEDORA-2013-2789/yum-3.4.3-31.fc17 19 https://admin.fedoraproject.org/updates/FEDORA-2013-2845/bugzilla-4.0.10-1.fc17 12 https://admin.fedoraproject.org/updates/FEDORA-2013-3270/sudo-1.8.6p7-1.fc17 9 https://admin.fedoraproject.org/updates/FEDORA-2013-3437/euca2ools-2.1.3-1.fc17 7 https://admin.fedoraproject.org/updates/FEDORA-2013-3538/icu-4.8.1.1-5.fc17 2 https://admin.fedoraproject.org/updates/FEDORA-2013-3719/firebird-2.5.2.26539.0-2.fc17 2 https://admin.fedoraproject.org/updates/FEDORA-2013-3673/perl-5.14.4-224.fc17 2 https://admin.fedoraproject.org/updates/FEDORA-2013-3756/privoxy-3.0.21-1.fc17 2 https://admin.fedoraproject.org/updates/FEDORA-2013-3773/tor-0.2.3.25-1702.fc17 0 https://admin.fedoraproject.org/updates/FEDORA-2013-3227/mediawiki-1.19.4-2.fc17 0 https://admin.fedoraproject.org/updates/FEDORA-2013-3845/seamonkey-2.16.1-1.fc17 0 https://admin.fedoraproject.org/updates/FEDORA-2013-3881/puppet-2.7.21-1.fc17 The following Fedora 17 Critical Path updates have yet to be approved: Age URL 204 https://admin.fedoraproject.org/updates/FEDORA-2012-12509/PackageKit-0.7.6-1.fc17 34 https://admin.fedoraproject.org/updates/FEDORA-2013-2065/abrt-2.1.0-1.fc17,libreport-2.1.0-2.fc17 33 https://admin.fedoraproject.org/updates/FEDORA-2013-2163/policycoreutils-2.1.13-27.3.fc17 12 https://admin.fedoraproject.org/updates/FEDORA-2013-3304/libvpx-1.2.0-1.fc17 12 https://admin.fedoraproject.org/updates/FEDORA-2013-3276/createrepo-0.9.9-12.fc17 12 https://admin.fedoraproject.org/updates/FEDORA-2013-3270/sudo-1.8.6p7-1.fc17 11 https://admin.fedoraproject.org/updates/FEDORA-2013-3360/qt-4.8.4-14.fc17 9 https://admin.fedoraproject.org/updates/FEDORA-2013-3466/selinux-policy-3.10.0-168.fc17 9 https://admin.fedoraproject.org/updates/FEDORA-2013-3435/python-bugzilla-0.8.0-2.fc17 8 https://admin.fedoraproject.org/updates/FEDORA-2013-3494/iproute-3.3.0-6.fc17 6 https://admin.fedoraproject.org/updates/FEDORA-2013-3607/perl-libwww-perl-6.03-3.fc17 6 https://admin.fedoraproject.org/updates/FEDORA-2013-3598/xorg-x11-drv-intel-2.21.3-1.fc17 2 https://admin.fedoraproject.org/updates/FEDORA-2013-3757/curl-7.24.0-6.fc17 2 https://admin.fedoraproject.org/updates/FEDORA-2013-3673/perl-5.14.4-224.fc17 2 https://admin.fedoraproject.org/updates/FEDORA-2013-3676/perl-Net-HTTP-6.06-1.fc17 2 https://admin.fedoraproject.org/updates/FEDORA-2013-3677/dosfstools-3.0.16-2.fc17 2 https://admin.fedoraproject.org/updates/FEDORA-2013-3667/akonadi-1.9.1-1.fc17,analitza-4.10.1-2.fc17,ark-4.10.1-1.fc17,audiocd-kio-4.10.1-1.fc17,avogadro-1.0.3-12.fc17,blinken-4.10.1-1.fc17,bomber-4.10.1-1.fc17,bovo-4.10.1-1.fc17,calibre-0.9.6-2.fc17.1,calligra-2.6.1-1.fc17,calligra-l10n-2.6.1-1.fc17,cantor-4.10.1-1.fc17,dbusmenu-qt-0.9.2-1.fc17,digikam-3.0.0-1.fc17,dragon-4.10.1-1.fc17,filelight-4.10.1-1.fc17,granatier-4.10.1-1.fc17,gwenview-4.10.1-1.fc17,iris-1.0.0-0.12.20110904svn812.fc17,jovie-4.10.1-1.fc17,juk-4.10.1-1.fc17,kaccessible-4.10.1-1.fc17,kactivities-4.10.1-1.fc17,kajongg-4.10.1-1.fc17,kalgebra-4.10.1-1.fc17,kalzium-4.10.1-1.fc17,kamera-4.10.1-1.fc17,kamoso-2.0.2-10.fc17,kanagram-4.10.1-1.fc17,kapman-4.10.1-1.fc17,kate-4.10.1-1.fc17,katomic-4.10.1-1.fc17,kblackbox-4.10.1-1.fc17,kblocks-4.10.1-1.fc17,kbounce-4.10.1-1.fc17,kbreakout-4.10.1-1.fc17,kbruch-4.10.1-1.fc17,kcalc-4.10.1-1.fc17,kcharselect-4.10.1-1.fc17,kcolorchooser-4.10.1-1.fc17,kdeaccessibility-4.10.1-1.fc17,kdeadmin-4.10.1-1.fc17,kdeartwork-4.10.1-1.fc17,kde-baseapps-4.10.1-1.fc17,kde-base-artwork-4.10.1-1.fc17,kdebindings-4.10.1-1.fc17,kdeedu-4.10.1-1.fc17,kdegames-4.10.1-1.fc17,kdegraphics-4.10.1-1.fc17,kdegraphics-mobipocket-4.10.1-1.fc17,kdegraphics-strigi-analyzer-4.10.1-1.fc17,kdegraphics-thumbnailers-4.10.1-1.fc17,kde-l10n-4.10.1-1.fc17,kdelibs-4.10.1-1.fc17,kdemultimedia-4.10.1-1.fc17,kdenetwork-4.10.1-2.fc17,kdepim-4.10.1-1.fc17,kdepimlibs-4.10.1-1.fc17,kdepim-runtime-4.10.1-1.fc17,kdeplasma-addons-4.10.1-1.fc17,kde-print-manager-4.10.1-1.fc17.1,kde-runtime-4.10.1-1.fc17,kdesdk-4.10.1-1.fc17,kdetoys-4.10.1-1.fc17,kdeutils-4.10.1-1.fc17,kde-wallpapers-4.10.1-1.fc17,kde-workspace-4.10.1-1.fc17,kdf-4.10.1-1.fc17,kdiamond-4.10.1-1.fc17,kfloppy-4.10.1-1.fc17,kfourinline-4.10.1-1.fc17,kgamma-4.10.1-1.fc17,kgeography-4.10.1-1.fc17,kgoldrunner-4.10.1-1.fc17,kgpg-4.10.1-1.fc17,khangman-4.10.1-1.fc17,kig-4.10.1-1.fc17,kigo-4.10.1-1.fc17,killbots-4.10.1-1.fc17,kimono-4.10.1-1.fc17,kiriki-4.10.1-1.fc17,kiten-4.10.1-1.fc17,kjumpingcub e-4.10.1-1.fc17,klettres-4.10.1-1.fc17,klickety-4.10.1-1.fc17,klines-4.10.1-1.fc17,kmag-4.10.1-1.fc17,kmahjongg-4.10.1-1.fc17,kmines-4.10.1-1.fc17,kmix-4.10.1-1.fc17,kmousetool-4.10.1-1.fc17,kmouth-4.10.1-1.fc17,kmplot-4.10.1-1.fc17,kmymoney-4.6.2-2.fc17.2,knavalbattle-4.10.1-1.fc17,knetwalk-4.10.1-1.fc17,kolf-4.10.1-1.fc17,kollision-4.10.1-1.fc17,kolourpaint-4.10.1-1.fc17,konquest-4.10.1-1.fc17,konsole-4.10.1-1.fc17,kpat-4.10.1-1.fc17,kremotecontrol-4.10.1-1.fc17,kreversi-4.10.1-1.fc17,kross-interpreters-4.10.1-1.fc17,kruler-4.10.1-1.fc17,ksaneplugin-4.10.1-1.fc17,kscd-4.10.1-1.fc17,kshisen-4.10.1-1.fc17,ksirk-4.10.1-1.fc17,ksnakeduel-4.10.1-1.fc17,ksnapshot-4.10.1-1.fc17,kspaceduel-4.10.1-1.fc17,ksquares-4.10.1-1.fc17,kstars-4.10.1-1.fc17,ksudoku-4.10.1-1.fc17,ktimer-4.10.1-1.fc17,ktouch-4.10.1-1.fc17,ktuberling-4.10.1-1.fc17,kturtle-4.10.1-1.fc17,kubrick-4.10.1-1.fc17,kwallet-4.10.1-1.fc17,kwordquiz-4.10.1-1.fc17,libkcddb-4.10.1-1.fc17,libkcompactdisc-4.10.1-1.fc17,libkdcraw-4.10.1-1.fc17.1,libkdeedu-4.10.1-1.fc17,libkdegames-4.10.1-1.fc17,libkexiv2-4.10.1-1.fc17,libkipi-4.10.1-1.fc17,libkmahjongg-4.10.1-1.fc17,libksane-4.10.1-1.fc17,libmusicbrainz5-5.0.1-3.fc17,lskat-4.10.1-1.fc17,marble-4.10.1-1.fc17,nepomuk-core-4.10.1-1.fc17,nepomuk-widgets-4.10.1-1.fc17,okular-4.10.1-1.fc17,oxygen-icon-theme-4.10.1-1.fc17,pairs-4.10.1-1.fc17,palapeli-4.10.1-1.fc17,parley-4.10.1-1.fc17,picmi-4.10.1-1.fc17,PyKDE-3.16.6-11.fc17,pykde4-4.10.1-1.fc17,PyQt-3.18.1-14.fc17,PyQt4-4.10-1.fc17,PyQwt-5.2.0-20.fc17,qgis-1.8.0-8.fc17,qscintilla-2.6.1-2.fc17,qwt5-5.2.2-21.fc17,qwt-6.0.1-1.fc17,qwtpolar-1.0.1-1.fc17.1,qyoto-4.10.1-1.fc17,rekonq-2.2.1-2.fc17,rocs-4.10.1-1.fc17,ruby-korundum-4.10.1-1.fc17,ruby-qt-4.10.1-1.fc17,sems-1.4.3-4.fc17.1,sip-4.14.4-1.fc17,smokegen-4.10.1-1.fc17,smokekde-4.10.1-1.fc17,smokeqt-4.10.1-1.fc17,soprano-2.9.0-1.fc17,step-4.10.1-1.fc17,superkaramba-4.10.1-1.fc17,svgpart-4.10.1-1.fc17,sweeper-4.10.1-1.fc17,veusz-1.15-1.fc17.1 The following builds have been pushed to Fedora 17 updates-testing 389-dsgw-1.1.10-1.fc17 aeskulap-0.2.2-0.12beta1.fc17 bdii-5.2.17-2.fc17 crudini-0.3-2.fc17 drupal7-i18n-1.8-0.fc17 drupal7-jquery_update-2.3-1.fc17 drupal7-libraries-2.1-1.fc17 glue-schema-2.0.10-1.fc17 graphite-web-0.9.10-7.fc17 marisa-0.2.2-1.fc17 puppet-2.7.21-1.fc17 python-bucky-0.2.4-1.fc17 rubygem-foreigner-1.4.0-2.fc17 salt-0.13.2-1.fc17 Details about builds: ================================================================================ 389-dsgw-1.1.10-1.fc17 (FEDORA-2013-3867) 389 Directory Server Gateway (dsgw) -------------------------------------------------------------------------------- Update Information: Here is where you give an explanation of your update. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 13 2013 Mark Reynolds <mreynolds@xxxxxxxxxx> - 1.1.10-1 - ce71231 Bump version to 1.1.10 - Ticket 606 - DSGW - format string errors -------------------------------------------------------------------------------- ================================================================================ aeskulap-0.2.2-0.12beta1.fc17 (FEDORA-2013-3869) A full open source replacement for commercially available DICOM viewers -------------------------------------------------------------------------------- Update Information: - Correct the mimetype in the desktop file -------------------------------------------------------------------------------- ChangeLog: * Thu Mar 14 2013 Ankur Sinha <ankursinha AT fedoraproject DOT org> 0.2.2-0.12beta1 - Update patch command. Should build now. * Thu Mar 14 2013 Ankur Sinha <ankursinha AT fedoraproject DOT org> 0.2.2-0.11beta1 - Update desktop file patch to correct mimetype * Mon May 7 2012 Ankur Sinha <ankursinha AT fedoraproject DOT org> - 0.2.2-0.10beta1 - Spec bump for libtiff update and rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #904267 - Incorrect MimeType in desktop file https://bugzilla.redhat.com/show_bug.cgi?id=904267 -------------------------------------------------------------------------------- ================================================================================ bdii-5.2.17-2.fc17 (FEDORA-2013-3870) The Berkeley Database Information Index (BDII) -------------------------------------------------------------------------------- Update Information: Updated versions of bdii and glue-schema from the EMI 3 release. -------------------------------------------------------------------------------- ChangeLog: * Thu Mar 14 2013 Mattias Ellert <mattias.ellert@xxxxxxxxxxxx> - 5.2.17-2 - Don't use _libdir macro for noarch package * Thu Mar 14 2013 Mattias Ellert <mattias.ellert@xxxxxxxxxxxx> - 5.2.17-1 - New upstream version 5.2.17 * Wed Feb 13 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 5.2.13-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ crudini-0.3-2.fc17 (FEDORA-2013-3872) A utility for manipulating ini files -------------------------------------------------------------------------------- Update Information: Initial package release. -------------------------------------------------------------------------------- References: [ 1 ] Bug #919100 - Review Request: crudini - A utility for manipulating ini files https://bugzilla.redhat.com/show_bug.cgi?id=919100 -------------------------------------------------------------------------------- ================================================================================ drupal7-i18n-1.8-0.fc17 (FEDORA-2013-3860) Collection of modules to extend Drupal core multilingual capabilities -------------------------------------------------------------------------------- Update Information: New upstream release, http://drupal.org/node/1887374. -------------------------------------------------------------------------------- ChangeLog: * Sun Feb 10 2013 Scott Dodson <sdodson@xxxxxxxxxx> 1.8-0 - Update to 1.8 - Make sure drupal7-variable > 2.0 * Wed Jul 18 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.7-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #895024 - drupal7-i18n-1.8 is available https://bugzilla.redhat.com/show_bug.cgi?id=895024 -------------------------------------------------------------------------------- ================================================================================ drupal7-jquery_update-2.3-1.fc17 (FEDORA-2013-3877) Updates the version of jQuery to 1.5.2 and jQuery UI 1.8.11 -------------------------------------------------------------------------------- Update Information: New upstream release, http://drupal.org/node/1912546. -------------------------------------------------------------------------------- ChangeLog: * Thu Mar 14 2013 Peter Borsa <peter.borsa@xxxxxxxxx> - 2.3-1 - New upstream release * Wed Feb 13 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.2-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild * Wed Jul 18 2012 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.2-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #909894 - drupal7-jquery_update-2.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=909894 -------------------------------------------------------------------------------- ================================================================================ drupal7-libraries-2.1-1.fc17 (FEDORA-2013-3850) The common denominator for all Drupal components and external libraries -------------------------------------------------------------------------------- Update Information: New upstream release, http://drupal.org/node/1938254. -------------------------------------------------------------------------------- ChangeLog: * Thu Mar 14 2013 Peter Borsa <peter.borsa@xxxxxxxxx> - 2.1-1 - Update to 2.1 * Wed Feb 13 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.0-1 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ glue-schema-2.0.10-1.fc17 (FEDORA-2013-3870) LDAP schema files for the GLUE 1.3 and GLUE 2.0 Schema -------------------------------------------------------------------------------- Update Information: Updated versions of bdii and glue-schema from the EMI 3 release. -------------------------------------------------------------------------------- ChangeLog: * Thu Mar 14 2013 Mattias Ellert <mattias.ellert@xxxxxxxxxxxx> - 2.0.10-1 - Update to release 2.0.10 * Wed Feb 13 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.0.8-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ graphite-web-0.9.10-7.fc17 (FEDORA-2013-3878) A Django webapp for enterprise scalable realtime graphing -------------------------------------------------------------------------------- Update Information: Correctly pull in fonts. Initial package import. Initial package import. Initial package import. Initial package import. -------------------------------------------------------------------------------- ================================================================================ marisa-0.2.2-1.fc17 (FEDORA-2013-3864) Static and spece-efficient trie data structure library -------------------------------------------------------------------------------- Update Information: new upstream release -------------------------------------------------------------------------------- ChangeLog: * Thu Mar 14 2013 Daiki Ueno <dueno@xxxxxxxxxx> - 0.2.2-1 - new upstream release - for Fedora 19 or later, use 'ruby(release)' instead of 'ruby(abi)', and also update the required Ruby ABI/release version to 2.0.0 -------------------------------------------------------------------------------- ================================================================================ puppet-2.7.21-1.fc17 (FEDORA-2013-3881) A network tool for managing many disparate systems -------------------------------------------------------------------------------- Update Information: Updates for the security announcements from Puppet Labs on 12-Mar-2013. https://groups.google.com/group/puppet-announce/t/9200f268f8479e2c -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 13 2013 Michael Stahnke <stahnma@xxxxxxxxxxxxxx> - 2.7.21-1 - Fixes for CVE-2013-1640 CVE-2013-1652 CVE-2013-1653 CVE-2013-1654 - CVE-2013-1655 CVE-2013-2274 CVE-2013-2275 - Remove Ruby 1.9.3 load file patch. It's now upstream - Remove install permissions patch. It's now upstream -------------------------------------------------------------------------------- References: [ 1 ] Bug #919770 - CVE-2013-1654 Puppet: SSL protocol downgrade https://bugzilla.redhat.com/show_bug.cgi?id=919770 [ 2 ] Bug #919774 - CVE-2013-1653 Puppet: kick connection HTTP PUT request arbitrary code execution https://bugzilla.redhat.com/show_bug.cgi?id=919774 [ 3 ] Bug #919775 - CVE-2013-1655 Puppet: Master code loading Ruby symbols vulnerability https://bugzilla.redhat.com/show_bug.cgi?id=919775 [ 4 ] Bug #919783 - CVE-2013-1640 Puppet: catalog request code execution https://bugzilla.redhat.com/show_bug.cgi?id=919783 [ 5 ] Bug #919784 - CVE-2013-1652 Puppet: HTTP GET request catalog retrieval https://bugzilla.redhat.com/show_bug.cgi?id=919784 [ 6 ] Bug #919785 - CVE-2013-2275 Puppet: default auth.conf allows authenticated node to submit a report for any other node https://bugzilla.redhat.com/show_bug.cgi?id=919785 -------------------------------------------------------------------------------- ================================================================================ python-bucky-0.2.4-1.fc17 (FEDORA-2013-3855) CollectD and StatsD adapter for Graphite -------------------------------------------------------------------------------- Update Information: Update to 0.2.4 -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 13 2013 Jonathan Steffan <jsteffan@xxxxxxxxxxxxxxxxx> - 0.2.4-1 - Update to 0.2.4 * Thu Feb 14 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.2.3-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ rubygem-foreigner-1.4.0-2.fc17 (FEDORA-2013-3887) Foreign Keys for Rails -------------------------------------------------------------------------------- Update Information: Updated the specfile to meet current Ruby packaging guidelines. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 13 2013 Darryl L. Pierce <dpierce@xxxxxxxxxx> - 1.4.0-2 - Updated the specifle to meet current Ruby packaging guidelines. -------------------------------------------------------------------------------- ================================================================================ salt-0.13.2-1.fc17 (FEDORA-2013-3857) A parallel remote execution system -------------------------------------------------------------------------------- Update Information: Update to upstream patch release 0.13.2 -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 13 2013 Clint Savage <herlo1@xxxxxxxxx> - 0.13.2-1 - Update to upstream patch release 0.13.2 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test