The following Fedora 17 Security updates need testing: Age URL 302 https://admin.fedoraproject.org/updates/FEDORA-2012-10269/revelation-0.4.14-1.fc17 114 https://admin.fedoraproject.org/updates/FEDORA-2013-0455/fedora-business-cards-1-0.1.beta1.fc17 84 https://admin.fedoraproject.org/updates/FEDORA-2013-2143/rubygem-rdoc-3.12-5.fc17 80 https://admin.fedoraproject.org/updates/FEDORA-2013-2315/rubygem-rack-1.4.0-4.fc17 42 https://admin.fedoraproject.org/updates/FEDORA-2013-4234/stunnel-4.55-1.fc17 42 https://admin.fedoraproject.org/updates/FEDORA-2013-4174/glibc-2.15-59.fc17 41 https://admin.fedoraproject.org/updates/FEDORA-2013-4296/tomcat6-6.0.36-1.fc17 37 https://admin.fedoraproject.org/updates/FEDORA-2013-4501/libxslt-1.1.28-1.fc17 34 https://admin.fedoraproject.org/updates/FEDORA-2013-4581/libuser-0.57.6-2.fc17 22 https://admin.fedoraproject.org/updates/FEDORA-2013-5440/php-geshi-1.0.8.11-3.fc17 22 https://admin.fedoraproject.org/updates/FEDORA-2013-5349/389-ds-base-1.2.11.21-1.fc17 21 https://admin.fedoraproject.org/updates/FEDORA-2013-5546/plexus-archiver-2.3-1.fc17 15 https://admin.fedoraproject.org/updates/FEDORA-2013-5967/xorg-x11-server-1.12.4-7.fc17 7 https://admin.fedoraproject.org/updates/FEDORA-2013-6723/xen-4.1.5-1.fc17 7 https://admin.fedoraproject.org/updates/FEDORA-2013-6727/python-pip-1.3.1-1.fc17 7 https://admin.fedoraproject.org/updates/FEDORA-2013-6720/curl-7.24.0-8.fc17 3 https://admin.fedoraproject.org/updates/FEDORA-2013-7000/phpMyAdmin-3.5.8.1-1.fc17 2 https://admin.fedoraproject.org/updates/FEDORA-2013-7144/xmp-3.4.0-11.fc17 2 https://admin.fedoraproject.org/updates/FEDORA-2013-7128/tinc-1.0.21-1.fc17 0 https://admin.fedoraproject.org/updates/FEDORA-2013-7285/php-sabredav-Sabre_DAV-1.6.5-5.fc17 0 https://admin.fedoraproject.org/updates/FEDORA-2013-7305/gpsd-3.9-1.fc17 0 https://admin.fedoraproject.org/updates/FEDORA-2013-7361/libtiff-3.9.7-2.fc17 The following Fedora 17 Critical Path updates have yet to be approved: Age URL 254 https://admin.fedoraproject.org/updates/FEDORA-2012-12509/PackageKit-0.7.6-1.fc17 83 https://admin.fedoraproject.org/updates/FEDORA-2013-2163/policycoreutils-2.1.13-27.3.fc17 62 https://admin.fedoraproject.org/updates/FEDORA-2013-3304/libvpx-1.2.0-1.fc17 43 https://admin.fedoraproject.org/updates/FEDORA-2013-4140/audit-2.2.3-2.fc17 10 https://admin.fedoraproject.org/updates/FEDORA-2013-6278/nss-3.14.3-2.fc17 7 https://admin.fedoraproject.org/updates/FEDORA-2013-6720/curl-7.24.0-8.fc17 7 https://admin.fedoraproject.org/updates/FEDORA-2013-6750/xorg-x11-drv-synaptics-1.6.3-3.fc17 7 https://admin.fedoraproject.org/updates/FEDORA-2013-6636/kde-settings-4.8-25.fc17 0 https://admin.fedoraproject.org/updates/FEDORA-2013-7362/abrt-2.1.4-1.fc17,libreport-2.1.4-1.fc17 0 https://admin.fedoraproject.org/updates/FEDORA-2013-7364/qt-4.8.4-17.fc17 0 https://admin.fedoraproject.org/updates/FEDORA-2013-7361/libtiff-3.9.7-2.fc17 0 https://admin.fedoraproject.org/updates/FEDORA-2013-7291/dosfstools-3.0.16-3.fc17 The following builds have been pushed to Fedora 17 updates-testing abrt-2.1.4-1.fc17 babeld-1.3.6-1.fc17 ghc-data-memocombinators-0.4.4-4.fc17 ghc-show-0.4.1.2-5.fc17 kscreen-0.0.92-1.fc17 libkscreen-0.0.92-1.fc17 libreport-2.1.4-1.fc17 libtiff-3.9.7-2.fc17 perl-CPAN-Meta-Check-0.005-2.fc17 perl-ExtUtils-Helpers-0.020-1.fc17 perl-Module-Build-Tiny-0.019-1.fc17 php-aws-sdk-1.6.2-4.fc17 qt-4.8.4-17.fc17 zanata-api-2.2.0-7.fc17 Details about builds: ================================================================================ abrt-2.1.4-1.fc17 (FEDORA-2013-7362) Automatic bug detection and reporting tool -------------------------------------------------------------------------------- Update Information: - updated translation - added a console notification script to profile.d - abrt-cli: added 'status' command - abrt-dump-oops: add "Machine Check Exception" to the list of watched strings - abrtd: mark unprocessed dump directories as not-reportable - abrtd: update last occurrence dump dir file - ureport: save solutions in not-reportable item - report-gtk: make value column click-sortable too - report-gtk: fix clickability of the item list column header - debuginfo downloader should enable repos matching *debug* - report-gtk: handle user cancellation gracefully - logging: refine errors reporting - reporter-upload: create tarball with the name based on directory's name - reporter-rhtsupport: generate archive name from problem dir name - Add dependecies required for reporting to abrt-cli package - Record runlevel - Stop requiring root password if nonexisting dump directory is accessed - Install proper libreport workflows - Remove the abrt-gui - Send correct os release string to retrace server - Remove all smolt-related files and code bits - Recreate Dump Location directory if it is delete -------------------------------------------------------------------------------- ChangeLog: * Tue Apr 30 2013 Jakub Filak <jfilak@xxxxxxxxxx> 2.1.4-1 - build abrtd and setuided executables with full relro rhbz#812284 - added a console notification script to profile.d closes #641 - return the right exit code for user cancellation - add more examples to Problem API doc - updated translation Related: #951416 - Replace "THANKYOU" with EXIT_STOP_EVENT_RUN exit code (70) - abrt-action-ureport: rewrite in python, improve messages - abrt-cli: added 'status' command - abrt-cli: make "report -v[vv]" export correct $ABRT_VERBOSE value - bodhi, retrace: support /etc/os-release - abrt-action-generate-core-backtrace: be a bit more verbose - abrt-dump-oops: add "Machine Check Exception" to the list of watched strings rhbz#812537 - abrt-action-install-debuginfo: do not assume os.execvp never returns - abrtd: mark unprocessed dump directories as not-reportable - abrtd: update last occurrence dump dir file - spec: remove the commented macros rhbz#864851 - spec: added the versioned abrt-libs requires to silence rpmdiff rhbz#881123 - spec: create a new subpackage for the console notification #641 - spec: add deps. required for reporting to abrt-cli pkg - spec: inc required version of libreport * Mon Apr 8 2013 Jakub Filak <jfilak@xxxxxxxxxx> 2.1.3-2 - Require correct version of libreport - Add dependecies required for reporting to abrt-cli package * Wed Mar 27 2013 Jakub Filak <jfilak@xxxxxxxxxx> 2.1.3-1 - record runlevel - Integration with satyr - dbus: check correct errno after dump_dir_is_accessible_by_uid() - require libreport workflow package acc. to OS type - remove the abrt-gui closes #629 - retrace-client: do not allow space in os_release_id; closes #625 - Remove all smolt-related files and code bits - abrtd: recreate Dump Location directory if it is delete -------------------------------------------------------------------------------- ================================================================================ babeld-1.3.6-1.fc17 (FEDORA-2013-7371) Ad-hoc network routing daemon -------------------------------------------------------------------------------- Update Information: Latest upstream, minor bugfixes. -------------------------------------------------------------------------------- ChangeLog: * Fri May 3 2013 Jon Ciesla <limburgher@xxxxxxxxx> - 1.3.6-1 - 1.3.6, BZ 959103. * Mon Apr 15 2013 Jon Ciesla <limburgher@xxxxxxxxx> - 1.3.5-1 - 1.3.5, BZ 952151. * Wed Feb 13 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.3.4-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild * Tue Sep 4 2012 Jon Ciesla <limburgher@xxxxxxxxx> - 1.3.4-3 - Conflict with quagga and it's babeld. -------------------------------------------------------------------------------- References: [ 1 ] Bug #959103 - babeld-1.3.6 is available https://bugzilla.redhat.com/show_bug.cgi?id=959103 -------------------------------------------------------------------------------- ================================================================================ ghc-data-memocombinators-0.4.4-4.fc17 (FEDORA-2013-7378) Combinators for building memo tables -------------------------------------------------------------------------------- Update Information: Rebuild -------------------------------------------------------------------------------- ChangeLog: * Thu May 2 2013 Shakthi Kannan <shakthimaan [AT] fedoraproject dot org> - 0.4.4-4 - Rebuild * Wed Feb 13 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.4.4-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ ghc-show-0.4.1.2-5.fc17 (FEDORA-2013-7385) Show library that provides ShowQ, ShowFun, and SimpleReflect -------------------------------------------------------------------------------- Update Information: Disable mysmallcheck -------------------------------------------------------------------------------- ChangeLog: * Fri May 3 2013 Shakthi Kannan <shakthimaan [AT] fedoraproject dot org> - 0.4.1.2-5 - Disable mysmallcheck * Wed Feb 13 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.4.1.2-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild * Sun Nov 18 2012 Jens Petersen <petersen@xxxxxxxxxx> - 0.4.1.2-3 - update with cabal-rpm - change license tag to GPL+ since no version specified -------------------------------------------------------------------------------- ================================================================================ kscreen-0.0.92-1.fc17 (FEDORA-2013-7354) KDE Display Management software -------------------------------------------------------------------------------- Update Information: KScreen 0.0.92 -------------------------------------------------------------------------------- ChangeLog: * Thu May 2 2013 Dan Vrátil <dvratil@xxxxxxxxxx> 1:0.0.92-1 - update to 1:0.0.92-1 * Tue Apr 23 2013 Dan Vrátil <dvratil@xxxxxxxxxx> 1:0.0.82.git20130424-1 - dev git build -------------------------------------------------------------------------------- ================================================================================ libkscreen-0.0.92-1.fc17 (FEDORA-2013-7354) Display configuration library -------------------------------------------------------------------------------- Update Information: KScreen 0.0.92 -------------------------------------------------------------------------------- ChangeLog: * Thu May 2 2013 Dan Vrátil <dvratil@xxxxxxxxxx> - 1:0.0.92-1 - libkscreen 0.0.92 * Tue Apr 23 2013 Dan Vrátil <dvratil@xxxxxxxxxx> - 1:0.0.82.git20130423-1 - dev git build -------------------------------------------------------------------------------- ================================================================================ libreport-2.1.4-1.fc17 (FEDORA-2013-7362) Generic library for reporting various problems -------------------------------------------------------------------------------- Update Information: - updated translation - added a console notification script to profile.d - abrt-cli: added 'status' command - abrt-dump-oops: add "Machine Check Exception" to the list of watched strings - abrtd: mark unprocessed dump directories as not-reportable - abrtd: update last occurrence dump dir file - ureport: save solutions in not-reportable item - report-gtk: make value column click-sortable too - report-gtk: fix clickability of the item list column header - debuginfo downloader should enable repos matching *debug* - report-gtk: handle user cancellation gracefully - logging: refine errors reporting - reporter-upload: create tarball with the name based on directory's name - reporter-rhtsupport: generate archive name from problem dir name - Add dependecies required for reporting to abrt-cli package - Record runlevel - Stop requiring root password if nonexisting dump directory is accessed - Install proper libreport workflows - Remove the abrt-gui - Send correct os release string to retrace server - Remove all smolt-related files and code bits - Recreate Dump Location directory if it is delete -------------------------------------------------------------------------------- ChangeLog: * Mon Apr 29 2013 Jakub Filak <jfilak@xxxxxxxxxx> 2.1.4-1 - support /etc/os-release - added flag to not retry locking the incomplete problem dir - ureport: save solutions in not-reportable item - wizard: make value column click-sortable too - wizard: fix clickability of the item list column header - wizard: eliminate evd->error_msg member - wizard: remove a bunch of evd->foo members - debuginfo downloader should enable repos matching *debug* closes #138 - Replace "THANKYOU" with EXIT_STOP_EVENT_RUN exit code (70) - debuginfo downloader: fix DebugInfoDownload::download() error paths. - report-gtk: handle user cancellation gracefully - logging: refine errors reporting - emit a message when searching bugzilla for duplicates closes #151 - reporter-upload: create tarball with the name based on directory's name - reporter-rhtsupport: generate archive name from problem dir name - added report-cli event for anaconda should help with rhbz#950544 - ss: skip option holding NULL values - spec: added new event for anaconda reporting rhbz#926916 - fixed reporting from anaconda rhbz#926916 - distinguish the event configuration by problem type in the UI closes #149 - report-gtk: show Next Step btn at workflow start - curl upload helper: upload data with "application/octet-stream" content type - reporter-rhtsupport: fix hint query to use correct URL * Wed Mar 27 2013 Jakub Filak <jfilak@xxxxxxxxxx> 2.1.3-1 - rhbz: get id of duplicate from correct field - change the "exited with" message with something less technical closes #143 - Integration with satyr - dump_dir_accessible_by_uid(): clear errno if error didn't occur - reporter-rhtsupport: improve logging - reporter-rhtsupport: upload file to BigFileURL if it is large - dd: document used errno values in dump_dir_accessible_by_uid() - add rhel package with appropriate workflow definitions - add workflow definitions for RHEL - improve is_text_file() to not treat valid Unicode as bad_chars - reporter-rhtsupport: fix double-free error - reporter-upload: move file upload function to lib/ - reporter-upload: factor out HTTP PUT upload - reporter-rhtsupport: skip hints check if uploaded data is really large - reporter-rhtsupport: make -t[CASE_ID] work without FILEs. Closes #140 - reporter-rhtsupport: factor out tarball creation - RHTS support: regularize order of functions and comments - fread_with_reporting: make progress indicator less noisy - report-gtk: update excluded elements check boxes before emergency analysis event - Resolves: #921941 -------------------------------------------------------------------------------- ================================================================================ libtiff-3.9.7-2.fc17 (FEDORA-2013-7361) Library of functions for manipulating TIFF format image files -------------------------------------------------------------------------------- Update Information: Repair minor security issues CVE-2013-1960, CVE-2013-1961 -------------------------------------------------------------------------------- ChangeLog: * Thu May 2 2013 Tom Lane <tgl@xxxxxxxxxx> 3.9.7-2 - Add upstream patches for CVE-2013-1960, CVE-2013-1961 Resolves: #958609 -------------------------------------------------------------------------------- References: [ 1 ] Bug #952131 - CVE-2013-1961 libtiff (tiff2pdf): Stack-based buffer overflow with malformed image-length and resolution https://bugzilla.redhat.com/show_bug.cgi?id=952131 [ 2 ] Bug #952158 - CVE-2013-1960 libtiff (tiff2pdf): Heap-based buffer overflow in t2_process_jpeg_strip() https://bugzilla.redhat.com/show_bug.cgi?id=952158 -------------------------------------------------------------------------------- ================================================================================ perl-CPAN-Meta-Check-0.005-2.fc17 (FEDORA-2013-7355) Verify requirements in a CPAN::Meta object -------------------------------------------------------------------------------- Update Information: This is the first Fedora release of perl-CPAN-Meta-Check. -------------------------------------------------------------------------------- References: [ 1 ] Bug #958413 - Review Request: perl-CPAN-Meta-Check - Verify requirements in a CPAN::Meta object https://bugzilla.redhat.com/show_bug.cgi?id=958413 -------------------------------------------------------------------------------- ================================================================================ perl-ExtUtils-Helpers-0.020-1.fc17 (FEDORA-2013-7377) Various portability utilities for module builders -------------------------------------------------------------------------------- Update Information: This update fixes some permissions and location issues for installed files. -------------------------------------------------------------------------------- ChangeLog: * Mon Apr 29 2013 Paul Howarth <paul@xxxxxxxxxxxx> - 0.020-1 - Update to 0.020 - Fix man3_pagename for top level domains - Update patch for building with Test::More < 0.88 * Wed Apr 24 2013 Paul Howarth <paul@xxxxxxxxxxxx> - 0.019-1 - Update to 0.019 - Fix make_executable for '#!/usr/bin/perl' * Tue Apr 16 2013 Paul Howarth <paul@xxxxxxxxxxxx> - 0.018-1 - Update to 0.018 - Don't need Pod::Man - Drop BR: perl(Pod::Man), no longer used -------------------------------------------------------------------------------- ================================================================================ perl-Module-Build-Tiny-0.019-1.fc17 (FEDORA-2013-7377) A tiny replacement for Module::Build -------------------------------------------------------------------------------- Update Information: This update fixes some permissions and location issues for installed files. -------------------------------------------------------------------------------- ChangeLog: * Tue Apr 30 2013 Paul Howarth <paul@xxxxxxxxxxxx> - 0.019-1 - Update to 0.019 - Accept --pureperl-only - Bump perl(ExtUtils::Helpers) version requirement to 0.020 * Thu Apr 25 2013 Paul Howarth <paul@xxxxxxxxxxxx> - 0.018-1 - Update to 0.018 - Lazily load Pod::Man and TAP::Harness - Don't manify unless necessary - Bump perl(ExtUtils::Helpers) version requirement to 0.019 - Explicitly require perl(Pod::Man) and perl(TAP::Harness) ≥ 3.0 -------------------------------------------------------------------------------- ================================================================================ php-aws-sdk-1.6.2-4.fc17 (FEDORA-2013-7360) Amazon Web Services framework for PHP -------------------------------------------------------------------------------- Update Information: Amazon web services sdk for php version 1.6.2 -------------------------------------------------------------------------------- References: [ 1 ] Bug #957573 - Review Request: php-aws-sdk - amazon web services sdk for php https://bugzilla.redhat.com/show_bug.cgi?id=957573 -------------------------------------------------------------------------------- ================================================================================ qt-4.8.4-17.fc17 (FEDORA-2013-7364) Qt toolkit -------------------------------------------------------------------------------- Update Information: Pull in some upstream fixes, improve/sanitize included .desktop files. -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 25 2013 Than Ngo <than@xxxxxxxxxx> - 4.8.4-17 - Desktop file sanity, drop key "Encoding", it's deprecated * Fri Apr 19 2013 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 4.8.4-16 - update URL (#859286) - include qdbusviewer .desktop/icon - .desktop files: +mime scriptlets, +GenericName keys * Wed Mar 20 2013 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 4.8.4-15 - pull in a few more upstream fixes -------------------------------------------------------------------------------- References: [ 1 ] Bug #911295 - Wrong numerals in slovak locale https://bugzilla.redhat.com/show_bug.cgi?id=911295 -------------------------------------------------------------------------------- ================================================================================ zanata-api-2.2.0-7.fc17 (FEDORA-2013-7389) Zanata API modules -------------------------------------------------------------------------------- Update Information: Zanata API modules. Shared between client and server. Zanata API modules. Shared between client and server. Zanata API modules. Shared between client and server. -------------------------------------------------------------------------------- References: [ 1 ] Bug #924513 - Review Request: zanata-api - Zanata API modules https://bugzilla.redhat.com/show_bug.cgi?id=924513 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test