The following Fedora 18 Security updates need testing: Age URL 175 https://admin.fedoraproject.org/updates/FEDORA-2013-0416/fedora-business-cards-1-0.1.beta1.fc18 109 https://admin.fedoraproject.org/updates/FEDORA-2013-3935/puppet-3.1.1-1.fc18 102 https://admin.fedoraproject.org/updates/FEDORA-2013-4243/stunnel-4.55-1.fc18 89 https://admin.fedoraproject.org/updates/FEDORA-2013-4823/microcode_ctl-2.0-3.fc18 74 https://admin.fedoraproject.org/updates/FEDORA-2013-6117/eucalyptus-3.2.2-1.fc18 32 https://admin.fedoraproject.org/updates/FEDORA-2013-9707/livecd-tools-18.16-2.fc18 28 https://admin.fedoraproject.org/updates/FEDORA-2013-9962/subversion-1.7.10-1.fc18 11 https://admin.fedoraproject.org/updates/FEDORA-2013-11419/python-bugzilla-0.9.0-1.fc18 9 https://admin.fedoraproject.org/updates/FEDORA-2013-10713/openstack-keystone-2012.2.4-5.fc18 8 https://admin.fedoraproject.org/updates/FEDORA-2013-11574/curl-7.27.0-11.fc18 5 https://admin.fedoraproject.org/updates/FEDORA-2013-11768/xen-4.2.2-9.fc18 5 https://admin.fedoraproject.org/updates/FEDORA-2013-11396/glpi-0.83.9.1-1.fc18 4 https://admin.fedoraproject.org/updates/FEDORA-2013-11646/ReviewBoard-1.7.11-1.fc18 4 https://admin.fedoraproject.org/updates/FEDORA-2013-11874/xen-4.2.2-10.fc18 2 https://admin.fedoraproject.org/updates/FEDORA-2013-11998/php-pecl-radius-1.2.7-1.fc18 2 https://admin.fedoraproject.org/updates/FEDORA-2013-12032/autotrace-0.31.1-34.fc18 1 https://admin.fedoraproject.org/updates/FEDORA-2013-12123/ruby-1.9.3.448-31.fc18 1 https://admin.fedoraproject.org/updates/FEDORA-2013-12108/gegl-0.2.0-11.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-12156/dbus-glib-0.100-3.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-12193/lldpad-0.9.45-4.fc18 The following Fedora 18 Critical Path updates have yet to be approved: Age URL 143 https://admin.fedoraproject.org/updates/FEDORA-2013-2192/nautilus-3.6.3-5.fc18 23 https://admin.fedoraproject.org/updates/FEDORA-2013-10428/NetworkManager-0.9.8.2-1.fc18,network-manager-applet-0.9.8.2-1.fc18 12 https://admin.fedoraproject.org/updates/FEDORA-2013-11278/make-3.82-14.fc18 11 https://admin.fedoraproject.org/updates/FEDORA-2013-11419/python-bugzilla-0.9.0-1.fc18 9 https://admin.fedoraproject.org/updates/FEDORA-2013-11498/binutils-2.23.51.0.1-10.fc18 8 https://admin.fedoraproject.org/updates/FEDORA-2013-11574/curl-7.27.0-11.fc18 7 https://admin.fedoraproject.org/updates/FEDORA-2013-11629/unzip-6.0-10.fc18 5 https://admin.fedoraproject.org/updates/FEDORA-2013-11749/gnome-shell-3.6.3.1-2.fc18 5 https://admin.fedoraproject.org/updates/FEDORA-2013-11757/xorg-x11-drv-synaptics-1.6.4-2.fc18 4 https://admin.fedoraproject.org/updates/FEDORA-2013-11864/gnome-packagekit-3.6.2-2.fc18 2 https://admin.fedoraproject.org/updates/FEDORA-2013-11995/kernel-3.9.8-200.fc18 2 https://admin.fedoraproject.org/updates/FEDORA-2013-11959/procps-ng-3.3.3-6.20120807git.fc18 1 https://admin.fedoraproject.org/updates/FEDORA-2013-12117/lcms2-2.5-1.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-12193/lldpad-0.9.45-4.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-12155/libtdb-1.2.12-1.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-12151/dhcp-4.2.5-15.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-12195/xulrunner-22.0-4.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-12156/dbus-glib-0.100-3.fc18 The following builds have been pushed to Fedora 18 updates-testing cabal-rpm-0.8.2-1.fc18 dbus-glib-0.100-3.fc18 dhcp-4.2.5-15.fc18 dracut-029-1.fc18.2 eclipse-4.2.2-7.fc18 gcin-2.8.0-3.fc18 gfal2-2.3.0-0.fc18 lftp-4.4.8-1.fc18 libtdb-1.2.12-1.fc18 lldpad-0.9.45-4.fc18 mate-utils-1.6.0-4.fc18 mipv6-daemon-1.0-1.fc18 nodejs-hashish-0.0.4-1.fc18 perl-Log-Handler-0.78-1.fc18 perl-Tapper-4.1.1-2.fc18 pymol-1.6.0-1.20130620svn4032.fc18 python-libcloud-0.13.0-9.fc18 python-narcissus-app-0.9.1-1.fc18 python-pylibravatar-1.5-2.fc18 python-webassets-0.8-1.fc18 skrooge-1.7.1-1.fc18 srm-ifce-1.16.0-0.fc18 xulrunner-22.0-4.fc18 Details about builds: ================================================================================ cabal-rpm-0.8.2-1.fc18 (FEDORA-2013-12190) RPM package creator for Haskell Cabal-based packages -------------------------------------------------------------------------------- Update Information: - handle pkg-ver arg, and check cabal list is non-empty - sort all generated deps - use yum-builddep again to install deps - copy tarball into cwd for rpmbuild - wrap after end of sentence near end of line - use _isa in requires ghc-<pkg> - require rpm-build -------------------------------------------------------------------------------- ChangeLog: * Tue Jul 2 2013 Jens Petersen <petersen@xxxxxxxxxx> - 0.8.2-1 - handle pkg-ver arg, and check cabal list is non-empty - sort all generated deps - use yum-builddep again to install deps - copy tarball into cwd for rpmbuild - wrap after end of sentence near end of line - use _isa in requires ghc-<pkg> - require rpm-build * Fri Jun 21 2013 Jens Petersen <petersen@xxxxxxxxxx> - 0.8.1-2 - rebuild -------------------------------------------------------------------------------- ================================================================================ dbus-glib-0.100-3.fc18 (FEDORA-2013-12156) GLib bindings for D-Bus -------------------------------------------------------------------------------- Update Information: CVE-2013-0292 -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 1 2013 Colin Walters <walters@xxxxxxxxxx> - 0.100-3 - CVE-2013-0292 (previous patch was not actually applied) - Resolves: #911714 * Wed Feb 20 2013 Colin Walters <walters@xxxxxxxxxx> - 0.100-2 - CVE-2013-0292 Resolves: #911714 -------------------------------------------------------------------------------- References: [ 1 ] Bug #911714 - CVE-2013-0292 dbus-glib: Local privilege escalation due improper filtering of message sender when NameOwnerChanged signal received [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=911714 -------------------------------------------------------------------------------- ================================================================================ dhcp-4.2.5-15.fc18 (FEDORA-2013-12151) Dynamic host configuration protocol software -------------------------------------------------------------------------------- Update Information: This update fixes how dhclient sends DHCPRELEASE message. -------------------------------------------------------------------------------- ChangeLog: * Tue Jul 2 2013 Jiri Popelka <jpopelka@xxxxxxxxxx> - 12:4.2.5-15 - fix several memory leaks in omapi (#978420) - remove send_release.patch (#979510) * Tue Jun 18 2013 Jiri Popelka <jpopelka@xxxxxxxxxx> - 12:4.2.5-14 - rebuilt against bind once more * Fri Jun 14 2013 Jiri Popelka <jpopelka@xxxxxxxxxx> - 12:4.2.5-13 - return /etc/sysconfig/dhcpd back, but do NOT use it (#909733) -------------------------------------------------------------------------------- References: [ 1 ] Bug #979510 - dhclient: unable to release lease / DHCPRELEASE https://bugzilla.redhat.com/show_bug.cgi?id=979510 -------------------------------------------------------------------------------- ================================================================================ dracut-029-1.fc18.2 (FEDORA-2013-12170) Initramfs generator using udev -------------------------------------------------------------------------------- Update Information: * backport of dracut-029 * readded rd.auto=1 to the default kernel cmdline params -------------------------------------------------------------------------------- ChangeLog: * Tue Jul 2 2013 Harald Hoyer <harald@xxxxxxxxxx> 029-1.2 - add rd.auto=1 to the default kernel cmdline * Tue Jul 2 2013 Harald Hoyer <harald@xxxxxxxxxx> 029-1 - backport 029 to F18 * Wed Feb 27 2013 Harald Hoyer <harald@xxxxxxxxxx> 024-29.git20130227 - turn off globbing for curl Resolves: rhbz#907497 * Tue Feb 26 2013 Harald Hoyer <harald@xxxxxxxxxx> 024-28.git20130226 - turn off globbing for curl Resolves: rhbz#907497 - add proxy support for curl Resolves: rhbz#854029 -------------------------------------------------------------------------------- ================================================================================ eclipse-4.2.2-7.fc18 (FEDORA-2013-12144) An open, extensible IDE -------------------------------------------------------------------------------- Update Information: Rebuild to pick latest dependencies. -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 1 2013 Krzysztof Daniel <kdaniel@xxxxxxxxxx> 1:4.2.2-7 - Rebuild to include latest deps. -------------------------------------------------------------------------------- References: [ 1 ] Bug #979976 - Eclipse plugins does not start https://bugzilla.redhat.com/show_bug.cgi?id=979976 -------------------------------------------------------------------------------- ================================================================================ gcin-2.8.0-3.fc18 (FEDORA-2013-12192) An input method focused on Chinese users -------------------------------------------------------------------------------- Update Information: Major 2.8 upgrade. -------------------------------------------------------------------------------- ChangeLog: * Tue Jul 2 2013 Christopher Meng <rpm@xxxxxxxx> - 2.8.0-3 - Small fix. * Tue Jul 2 2013 Christopher Meng <rpm@xxxxxxxx> - 2.8.0-2 - Qt3 path fix. * Mon Jul 1 2013 Christopher Meng <rpm@xxxxxxxx> - 2.8.0-1 - Major upgrade. - SPEC rework. - XInput conf rework. * Mon Apr 8 2013 Jon Ciesla <limburgher@xxxxxxxxx> - 1.6.1-6 - Drop desktop vendor tag. * Wed Feb 13 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.6.1-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #895406 - gcin-2.8.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=895406 -------------------------------------------------------------------------------- ================================================================================ gfal2-2.3.0-0.fc18 (FEDORA-2013-12188) Grid file access library 2.0 -------------------------------------------------------------------------------- Update Information: Update gfal2.3, First post-EMI Update -------------------------------------------------------------------------------- ChangeLog: * Tue Jul 2 2013 Adrien Devresse <adevress at cern.ch> - 2.3.0-0 - Release 2.3.0 of GFAL 2.0 -------------------------------------------------------------------------------- ================================================================================ lftp-4.4.8-1.fc18 (FEDORA-2013-12152) A sophisticated file transfer program -------------------------------------------------------------------------------- Update Information: update to latest upstream 4.4.8 that fixes BZ#980396 -------------------------------------------------------------------------------- ChangeLog: * Tue Jul 2 2013 Jiri Skala <jskala@xxxxxxxxxx> - 4.4.8-1 - updated to latest upstream 4.4.8 -------------------------------------------------------------------------------- References: [ 1 ] Bug #980396 - sftp mirror command hangs lftp https://bugzilla.redhat.com/show_bug.cgi?id=980396 -------------------------------------------------------------------------------- ================================================================================ libtdb-1.2.12-1.fc18 (FEDORA-2013-12155) The tdb library -------------------------------------------------------------------------------- Update Information: New upstream bugfix release. -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 4 2013 Jakub Hrozek <jhrozek@xxxxxxxxxx> - 1.2.12-1 - New upstream release 1.2.12 -------------------------------------------------------------------------------- ================================================================================ lldpad-0.9.45-4.fc18 (FEDORA-2013-12193) Intel LLDP Agent -------------------------------------------------------------------------------- Update Information: Make a proper hardened build of liblldp_clif.so. -------------------------------------------------------------------------------- ChangeLog: * Tue Jul 2 2013 Petr Šabata <contyk@xxxxxxxxxx> - 0.9.45-4 - Fix the hardened build flags * Tue Aug 28 2012 Petr Šabata <contyk@xxxxxxxxxx> - 0.9.45-3 - Migrate to systemd scriptlets (#850192) -------------------------------------------------------------------------------- ================================================================================ mate-utils-1.6.0-4.fc18 (FEDORA-2013-12179) MATE utility programs -------------------------------------------------------------------------------- Update Information: fix rhbz #980434 -------------------------------------------------------------------------------- ChangeLog: * Tue Jul 2 2013 Wolfgang Ulbrich <chat-to-me@xxxxxxxxx> - 1.6.0-4 - add mate-dictionary binary to subpackage, rhbz #980434 - add mate-dictionary applet dbus file to subpackage, rhbz #980434 - move baobab docs to mate-disk-usage-analyzer subpackage - add missing copying files to some subpackages - move baobab icons to mate-disk-usage-analyzer subpackage - add baobab icons to main packackes - add rpm spriptlets for mate-disk-usage-analyzer - remove mime-types spriptlets, - because there are not mime-types in desktop files - remove icon-cache sriptlets from most subpackages, - only needed for main and mate-disk-usage-analyzer package - remove glib-compile-schemas from all %post sections - remove BR gsettings-desktop-schemas-devel - remove BR glib2-devel, already called by mate-common - add -devel subpackage for mate-dictionary - add mate-search-tool binary to main package - add /usr/share/mate-dictionary directory to main package -------------------------------------------------------------------------------- References: [ 1 ] Bug #980434 - missing binary and dbus applet service file in mate-dictionary subpackage https://bugzilla.redhat.com/show_bug.cgi?id=980434 -------------------------------------------------------------------------------- ================================================================================ mipv6-daemon-1.0-1.fc18 (FEDORA-2013-12163) Mobile IPv6 (MIPv6) Daemon -------------------------------------------------------------------------------- Update Information: Update to umip 1.0 -------------------------------------------------------------------------------- ================================================================================ nodejs-hashish-0.0.4-1.fc18 (FEDORA-2013-12182) Hash data structure manipulation functions -------------------------------------------------------------------------------- Update Information: Newpackage -------------------------------------------------------------------------------- ================================================================================ perl-Log-Handler-0.78-1.fc18 (FEDORA-2013-12175) Log messages to several outputs -------------------------------------------------------------------------------- Update Information: New RPM. -------------------------------------------------------------------------------- References: [ 1 ] Bug #979654 - Review Request: perl-Log-Handler - Log messages to several outputs https://bugzilla.redhat.com/show_bug.cgi?id=979654 -------------------------------------------------------------------------------- ================================================================================ perl-Tapper-4.1.1-2.fc18 (FEDORA-2013-12186) A flexible and open test infrastructure -------------------------------------------------------------------------------- Update Information: Here is where you give an explanation of your update. -------------------------------------------------------------------------------- References: [ 1 ] Bug #979648 - Review Request: perl-Tapper - A flexible and open test infrastructure https://bugzilla.redhat.com/show_bug.cgi?id=979648 -------------------------------------------------------------------------------- ================================================================================ pymol-1.6.0-1.20130620svn4032.fc18 (FEDORA-2013-12176) PyMOL Molecular Graphics System -------------------------------------------------------------------------------- Update Information: - update to 1.6 (SVN 4032) - update svn command to use export, use xz instead of gz compression (BZ 766206) - includes fixes for graphics/opengl code (BZ 955323) - include new pymol_web interface -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 20 2013 Tim Fenn <tim.fenn@xxxxxxxxx> - 1.6.0-1.20130620svn4032 - update to 1.6 (SVN 4032) - update svn command to use export, use xz instead of gz compression (BZ 766206) - includes fixes for graphics/opengl code (BZ 955323) - include new pymol_web interface * Thu Feb 14 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild * Thu Dec 13 2012 Adam Jackson <ajax@xxxxxxxxxx> - 1.5.0.2-6.20120218svn3982 - Rebuild for glew 1.9.0 -------------------------------------------------------------------------------- References: [ 1 ] Bug #955323 - [abrt] pymol-1.5.0.2-7.20120218svn3982.fc19: CShaderPrg_Enable: Process /usr/bin/python2.7 was killed by signal 11 (SIGSEGV) https://bugzilla.redhat.com/show_bug.cgi?id=955323 [ 2 ] Bug #979095 - Compress tarball with xz https://bugzilla.redhat.com/show_bug.cgi?id=979095 -------------------------------------------------------------------------------- ================================================================================ python-libcloud-0.13.0-9.fc18 (FEDORA-2013-12185) A Python library to address multiple cloud provider APIs -------------------------------------------------------------------------------- Update Information: Update to stable upstream relase 0.13.0 -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 1 2013 Daniel Bruno dbruno@xxxxxxxxxxxxxxxxx - 0.13.0-9 - Update to upstream release 0.13.0, more details on Release Notes. -------------------------------------------------------------------------------- ================================================================================ python-narcissus-app-0.9.1-1.fc18 (FEDORA-2013-12158) WSGI components for Narcissus, realtime log visualization -------------------------------------------------------------------------------- Update Information: Initial import. -------------------------------------------------------------------------------- References: [ 1 ] Bug #916436 - Review Request: python-narcissus-app - WSGI components for Narcissus, realtime log visualization https://bugzilla.redhat.com/show_bug.cgi?id=916436 -------------------------------------------------------------------------------- ================================================================================ python-pylibravatar-1.5-2.fc18 (FEDORA-2013-12173) Python module for Libravatar -------------------------------------------------------------------------------- Update Information: Initial import. -------------------------------------------------------------------------------- References: [ 1 ] Bug #957348 - Review Request: python-pylibravatar - Python module for Libravatar https://bugzilla.redhat.com/show_bug.cgi?id=957348 -------------------------------------------------------------------------------- ================================================================================ python-webassets-0.8-1.fc18 (FEDORA-2013-12169) Media asset management for python -------------------------------------------------------------------------------- Update Information: New Release. -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 1 2013 Praveen Kumar <kumarpraveen.nitdgp@xxxxxxxxx> - 0.8-1 - New Release * Thu Feb 14 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.7.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #978327 - webassets 0.8 is available https://bugzilla.redhat.com/show_bug.cgi?id=978327 -------------------------------------------------------------------------------- ================================================================================ skrooge-1.7.1-1.fc18 (FEDORA-2013-12181) Personal finances manager -------------------------------------------------------------------------------- Update Information: Here is where you give an explanation of your update. Here is where you give an explanation of your update. -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 1 2013 siddharth Sharma <siddharths@xxxxxxxxxxxxxxxxx> - 1.7.1-1 - new upstream release 1.7.1 * Sat Mar 16 2013 siddharth Sharma <siddharths@xxxxxxxxxxxxxxxxx> - 1.6.0-2 - Fixing Compiling Error because of missing build requires * Sat Mar 16 2013 Siddharth Sharma <siddharths@xxxxxxxxxxxxxxxxx> - 1.6.0-1 - new upstream release - Fix Packaging error for skrooge related akonadi resources * Fri Feb 15 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.3.3-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild * Sat Sep 8 2012 Sven Lankes <sven@xxxxxxx> - 1.3.3-1 - new upstream release -------------------------------------------------------------------------------- ================================================================================ srm-ifce-1.16.0-0.fc18 (FEDORA-2013-12165) SRM client side library -------------------------------------------------------------------------------- Update Information: Update to srm-ifce 1.16.0 -------------------------------------------------------------------------------- ChangeLog: * Tue Jul 2 2013 Adrien Devresse <adevress at cern.ch> - 1.16.0-0 - Release srm-ifce 1.16.0, first post-EMI release * Mon Jun 10 2013 Michail Salichos <msalicho at cern.ch> - 1.15.3-3 - fixing memory leaks * Fri Apr 26 2013 Michail Salichos <msalicho at cern.ch> - 1.15.3-2 - added srmmv implementation -------------------------------------------------------------------------------- ================================================================================ xulrunner-22.0-4.fc18 (FEDORA-2013-12195) XUL Runtime for Gecko Applications -------------------------------------------------------------------------------- Update Information: Fixing about:healthreport and problems with proxy settings. -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 1 2013 Jan Horak <jhorak@xxxxxxxxxx> - 22.0-4 - Added fix from mozbz#817533 - fix issues with proxy settings - Fixed missing about:healthreport * Mon Jun 24 2013 Martin Stransky <stransky@xxxxxxxxxx> - 22.0-2 - Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #978782 - firefox 22 tries to use user configured proxy even if system proxy settings is selected https://bugzilla.redhat.com/show_bug.cgi?id=978782 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test