The following Fedora 19 Security updates need testing: Age URL 90 https://admin.fedoraproject.org/updates/FEDORA-2013-5801/mantis-1.2.15-1.fc19 45 https://admin.fedoraproject.org/updates/FEDORA-2013-9715/heat-jeos-9-1.fc19 33 https://admin.fedoraproject.org/updates/FEDORA-2013-10678/python-keystoneclient-0.2.3-4.fc19 21 https://admin.fedoraproject.org/updates/FEDORA-2013-10467/openstack-keystone-2013.1.2-3.fc19 10 https://admin.fedoraproject.org/updates/FEDORA-2013-12321/gpm-1.20.6-33.fc19 7 https://admin.fedoraproject.org/updates/FEDORA-2013-12593/libXvMC-1.0.8-1.fc19 4 https://admin.fedoraproject.org/updates/FEDORA-2013-12698/seamonkey-2.19-1.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2013-12948/openjpa-2.2.1-6.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2013-12908/nodejs-fstream-0.1.23-1.fc19,nodejs-glob-3.2.3-1.fc19,nodejs-graceful-fs-2.0.0-2.fc19,node-gyp-0.10.6-1.fc19,nodejs-lockfile-0.4.0-1.fc19,nodejs-npm-registry-client-0.2.27-1.fc19,nodejs-semver-2.0.10-1.fc19,nodejs-sha-1.0.1-4.fc19,npm-1.3.3-1.fc19,nodejs-npmlog-0.0.4-1.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2013-12977/php-5.5.0-2.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2013-13038/libkdcraw-4.10.5-2.fc19 The following builds have been pushed to Fedora 19 updates-testing cacti-0.8.8a-8.fc19 eclipse-packagekit-0.1.0-1.fc19 emacs-24.2-20.fc19 emacs-rpm-spec-mode-0.12-5.fc19 espeak-1.47.11-2.fc19 fedora-upgrade-19.3-1.fc19 grizzly-2.3.3-1.fc19 jpanoramamaker-5.5-0.fc19 kexec-tools-2.0.4-6.fc19 kmod-14-1.fc19 labyrinth-0.6-1.fc19 libbsd-0.6.0-1.fc19 libkdcraw-4.10.5-2.fc19 librime-0.9.8-3.fc19 mmapper-2.2.1-1.fc19 nomacs-1.4.0-1.fc19 openscap-0.9.10-1.fc19 opus-1.0.3-1.fc19 perl-File-Find-Object-Rule-0.0303-1.fc19 perl-qpid-0.22-3.fc19 quotatool-1.6.2-1.fc19 rear-1.14-1.fc19 rpm-compare-req-0.1.0-2.fc19 rubygem-qpid_messaging-0.22.0-2.fc19 tomcat-7.0.42-1.fc19 transmission-2.80-2.fc19 vim-javabrowser-2.03-3.fc19 wayland-1.2.0-1.fc19 weston-1.2.0-1.fc19 wget-1.14-8.fc19 xorg-x11-server-1.14.2-5.fc19 yum-langpacks-0.3.4-1.fc19 Details about builds: ================================================================================ cacti-0.8.8a-8.fc19 (FEDORA-2013-13037) An rrd based graphing tool -------------------------------------------------------------------------------- Update Information: * Adjust jQuery tree implementation to correctly support multi-level trees. * Move "README.cacti" to "README.fedora". * Improve httpd configuration guidance (cacti.conf). * Adjust package requirements so cacti will now pull in net-snmp-utils. -------------------------------------------------------------------------------- ChangeLog: * Sun Jul 14 2013 Ken Dreyer <ktdreyer@xxxxxxxxxxxx> - 0.8.8a-8 - Improve security description in cacti's httpd conf (RHBZ #895823) - Use improved treeview replacement patch (RHBZ #888207) - rpmlint fixes - trim RPM changelog -------------------------------------------------------------------------------- References: [ 1 ] Bug #893122 - documentation file: README.cacti points to missing file: docs/INSTALL https://bugzilla.redhat.com/show_bug.cgi?id=893122 [ 2 ] Bug #888207 - Cacti included non-free Java Scripts files. https://bugzilla.redhat.com/show_bug.cgi?id=888207 [ 3 ] Bug #893150 - missing Requires: net-snmp-utils https://bugzilla.redhat.com/show_bug.cgi?id=893150 [ 4 ] Bug #895823 - [RFE] improve httpd config guidance https://bugzilla.redhat.com/show_bug.cgi?id=895823 -------------------------------------------------------------------------------- ================================================================================ eclipse-packagekit-0.1.0-1.fc19 (FEDORA-2013-13027) PackageKit integration tools for Eclipse (Incubation) -------------------------------------------------------------------------------- Update Information: Updates to upstream eclipse-packagekit 0.1.0 which restores compatibility with PackageKit 0.8. Changelog available at https://fedorahosted.org/eclipse-packagekit/wiki/new/0.1 . -------------------------------------------------------------------------------- ChangeLog: * Fri Jul 5 2013 Alexander Kurtakov <akurtako@xxxxxxxxxx> 0.1.0-1 - Update to upstream release 0.1.0. -------------------------------------------------------------------------------- ================================================================================ emacs-24.2-20.fc19 (FEDORA-2013-13022) GNU Emacs text editor -------------------------------------------------------------------------------- Update Information: Here is where you give an explanation of your update. -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 15 2013 Petr Hracek <phracek@xxxxxxxxxx> - 1:24.2-20 - Bump the version (#981135) to 20 -------------------------------------------------------------------------------- References: [ 1 ] Bug #981135 - After updating from Fedora 18 to Fedora 19, emacs does not work and some Fedora 18 emacs packages are not updated https://bugzilla.redhat.com/show_bug.cgi?id=981135 -------------------------------------------------------------------------------- ================================================================================ emacs-rpm-spec-mode-0.12-5.fc19 (FEDORA-2013-13040) Major GNU Emacs mode for editing RPM spec files -------------------------------------------------------------------------------- Update Information: This fixes the "rpm-goto-add-change-log-entry" command to append a line to an existing changelog entry section instead of inserting it between the first two existing lines (if any). -------------------------------------------------------------------------------- ChangeLog: * Sun Jul 14 2013 Michael Schwendt <mschwendt@xxxxxxxxxxxxxxxxx> - 0.12-5 - Fix and apply patch for rpm-goto-add-change-log-entry (#970924) -------------------------------------------------------------------------------- References: [ 1 ] Bug #973082 - rpm-goto-add-change-log-entry is not working as expected https://bugzilla.redhat.com/show_bug.cgi?id=973082 -------------------------------------------------------------------------------- ================================================================================ espeak-1.47.11-2.fc19 (FEDORA-2013-13005) Software speech synthesizer (text-to-speech) -------------------------------------------------------------------------------- Update Information: This is an update that fixes manual page and built-in help. -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 15 2013 Jaroslav Škarvada <jskarvad@xxxxxxxxxx> - 1.47.11-2 - Fixed manual page and built-in help to be up-to-date -------------------------------------------------------------------------------- ================================================================================ fedora-upgrade-19.3-1.fc19 (FEDORA-2013-12999) Upgrade Fedora to next version using yum upgrade (unofficial tool) -------------------------------------------------------------------------------- Update Information: - 983082 - clarify that fedora-upgrade is not an official upgrade tool - 982627 - set up differ for rpmconf - warn about loosing session (bug 962983) - update README -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 15 2013 Miroslav Suchý <msuchy@xxxxxxxxxx> 19.3-1 - 983082 - clarify that fedora-upgrade is not an official upgrade tool - set up differ for rpmconf - warn about loosing session (bug 962983) - update README -------------------------------------------------------------------------------- References: [ 1 ] Bug #983082 - clarify that fedora-upgrade is not an official upgrade tool https://bugzilla.redhat.com/show_bug.cgi?id=983082 [ 2 ] Bug #982627 - missing merge backend for rpmconf causes fedora-upgrade to exit https://bugzilla.redhat.com/show_bug.cgi?id=982627 -------------------------------------------------------------------------------- ================================================================================ grizzly-2.3.3-1.fc19 (FEDORA-2013-13028) Java NIO Server Framework -------------------------------------------------------------------------------- Update Information: Initial import(#859114), update to 2.3.3. -------------------------------------------------------------------------------- References: [ 1 ] Bug #859114 - Review Request: grizzly - Java NIO Server Framework https://bugzilla.redhat.com/show_bug.cgi?id=859114 -------------------------------------------------------------------------------- ================================================================================ jpanoramamaker-5.5-0.fc19 (FEDORA-2013-12998) Tool for stitching photos to panorama in linear curved space -------------------------------------------------------------------------------- Update Information: Udpated to altest upstream Minor fixes: - fixed classpath - fixed loading of more then 9 files in time -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 15 2013 Jiri Vanek <jvanek@xxxxxxxxxx> - 5.5-0 - folowing changes in jutils, version for classpath setup fixed - unlimited number of arguments now supported -------------------------------------------------------------------------------- ================================================================================ kexec-tools-2.0.4-6.fc19 (FEDORA-2013-13010) The kexec/kdump userspace component. -------------------------------------------------------------------------------- Update Information: Pull makedumpfile-1.5.4 and add lzo, snappy build -------------------------------------------------------------------------------- ChangeLog: * Fri Jul 12 2013 Baoquan He <bhe@xxxxxxxxxx> - 2.0.4-6 - add snappy build - add lzo build - pull makedumpfile-1.5.4 - mkdumprd: check return value of subshell - mkdumprd: get_persistent_dev() return original dev if no persistent dev exists. - dracut-kdump.sh: Merge dump_to_rootfs() to dump_fs() - dracut-kdump.sh: explicitly sync after each dump - Correct wrong weekday of changelog - kexec-tools.spec: Remove incorrect description in changelog -------------------------------------------------------------------------------- ================================================================================ kmod-14-1.fc19 (FEDORA-2013-13003) Linux kernel module management utilities -------------------------------------------------------------------------------- Update Information: New upstream version -------------------------------------------------------------------------------- ChangeLog: * Fri Jul 5 2013 Josh Boyer <jwboyer@xxxxxxxxxx> - 14-1 - Update to version 14 -------------------------------------------------------------------------------- ================================================================================ labyrinth-0.6-1.fc19 (FEDORA-2013-13035) A light weight mind mapping tool -------------------------------------------------------------------------------- Update Information: Un-retired package! -------------------------------------------------------------------------------- References: [ 1 ] Bug #982255 - Re-Review Request: labyrinth - A light weight mind mapping tool https://bugzilla.redhat.com/show_bug.cgi?id=982255 -------------------------------------------------------------------------------- ================================================================================ libbsd-0.6.0-1.fc19 (FEDORA-2013-13006) Library providing BSD-compatible functions for portability -------------------------------------------------------------------------------- Update Information: Update to latest upstream, to fix crash in setproctitle() when libbsd is dynamically loaded in a threaded program. -------------------------------------------------------------------------------- ChangeLog: * Sun Jul 14 2013 Eric Smith <brouhaha@xxxxxxxxxxxxxxxxx> - 0.6.0-1 - Update to latest upstream release. Remove patch 0. - Added ctor-static subpackage. * Sun Jul 7 2013 Eric Smith <brouhaha@xxxxxxxxxxxxxxxxx> - 0.5.2-3 - Still having problems with setproctitle(), bug #981799, upstream freedesktop.org bug #66679. Added patch to noop out setproctitle(). * Tue Jun 11 2013 Eric Smith <brouhaha@xxxxxxxxxxxxxxxxx> - 0.5.2-2 - Added check section. - Add BuildRoot for EL5. -------------------------------------------------------------------------------- References: [ 1 ] Bug #981799 - [abrt] claws-mail-3.9.2-1.fc19: spt_copyenv: Process /usr/bin/claws-mail was killed by signal 11 (SIGSEGV) https://bugzilla.redhat.com/show_bug.cgi?id=981799 -------------------------------------------------------------------------------- ================================================================================ libkdcraw-4.10.5-2.fc19 (FEDORA-2013-13038) A C++ interface around LibRaw library -------------------------------------------------------------------------------- Update Information: Fix for CVE-2013-2126, double-free flaw when handling damaged full-color in Foveon and sRAW files -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 15 2013 Than Ngo <than@xxxxxxxxxx> - 4.10.5-2 - bz#970713, CVE-2013-2126, double-free flaw when handling damaged full-color in Foveon and sRAW files -------------------------------------------------------------------------------- References: [ 1 ] Bug #970713 - CVE-2013-2126 LibRaw: double-free flaw when handling damaged full-color in Foveon and sRAW files [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=970713 -------------------------------------------------------------------------------- ================================================================================ librime-0.9.8-3.fc19 (FEDORA-2013-12994) Rime Input Method Engine Library -------------------------------------------------------------------------------- Update Information: Fixes arm build -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 15 2013 Peng Wu <pwu@xxxxxxxxxx> - 0.9.8-3 - Fixes arm build -------------------------------------------------------------------------------- ================================================================================ mmapper-2.2.1-1.fc19 (FEDORA-2013-12974) Graphical MUME mapper -------------------------------------------------------------------------------- Update Information: MMapper 2.2.1 release with compatibility fixes with latest MUME changes. -------------------------------------------------------------------------------- ChangeLog: * Sun Jul 14 2013 Kalev Lember <kalevlember@xxxxxxxxx> - 2.2.1-1 - Update to 2.2.1 * Sat Jul 13 2013 Kalev Lember <kalevlember@xxxxxxxxx> - 2.2.0-1 - Update to 2.2.0 -------------------------------------------------------------------------------- ================================================================================ nomacs-1.4.0-1.fc19 (FEDORA-2013-13007) Lightweight image viewer -------------------------------------------------------------------------------- Update Information: Version bump. -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 15 2013 TI_Eugene <ti.eugene@xxxxxxxxx> 1.4.0-1 - Version bump. - BR libtiff-devel added -------------------------------------------------------------------------------- ================================================================================ openscap-0.9.10-1.fc19 (FEDORA-2013-13025) Set of open source libraries enabling integration of the SCAP line of standards -------------------------------------------------------------------------------- Update Information: This is a new openscap release, see https://git.fedorahosted.org/cgit/openscap.git/tree/NEWS?id=91a5412b314219bc3d85a7f812a86acb8b0996f0 -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 15 2013 Petr Lautrbach <plautrba@xxxxxxxxxx> 0.9.10-1 - upgrade -------------------------------------------------------------------------------- ================================================================================ opus-1.0.3-1.fc19 (FEDORA-2013-13029) An audio codec for use in low-delay speech and audio communication -------------------------------------------------------------------------------- Update Information: Opus 1.0.3 includes a backport of the new 1.1 surround API. Aside from that, it includes fixes for a few minor glitches during mode switching, some minor fixed-point fixes, and fixes a regression in the FEC code introduced in 1.0.2. -------------------------------------------------------------------------------- ChangeLog: * Sun Jul 14 2013 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> 1.0.3-1 - 1.0.3 release -------------------------------------------------------------------------------- ================================================================================ perl-File-Find-Object-Rule-0.0303-1.fc19 (FEDORA-2013-13020) Alternative interface to File::Find::Object -------------------------------------------------------------------------------- Update Information: New RPM. -------------------------------------------------------------------------------- References: [ 1 ] Bug #979674 - Review Request: perl-File-Find-Object-Rule - Alternative interface to File::Find::Object https://bugzilla.redhat.com/show_bug.cgi?id=979674 -------------------------------------------------------------------------------- ================================================================================ perl-qpid-0.22-3.fc19 (FEDORA-2013-13034) Perl bindings for the Qpid messaging framework -------------------------------------------------------------------------------- Update Information: Fixes the depending on qpid-cpp libraries. Installs using Makefile.PL - QPID-4939 -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 15 2013 Darryl L. Pierce <dpierce@xxxxxxxxxx> - 0.22-3 - Updated build to fix dependency issues on qpid-cpp. * Tue Jun 25 2013 Darryl L. Pierce <dpierce@xxxxxxxxxx> - 0.22-2 - Perl Makefile.PL now generates the Swig bindings source. - Resolves: QPID-4939 -------------------------------------------------------------------------------- ================================================================================ quotatool-1.6.2-1.fc19 (FEDORA-2013-13012) Command-line utility for filesystem quotas -------------------------------------------------------------------------------- Update Information: New RPM -------------------------------------------------------------------------------- References: [ 1 ] Bug #981839 - Review Request: quotatool - Command-line utility for filesystem quotas https://bugzilla.redhat.com/show_bug.cgi?id=981839 -------------------------------------------------------------------------------- ================================================================================ rear-1.14-1.fc19 (FEDORA-2013-13000) Relax-and-Recover is a Linux disaster recovery and system migration tool -------------------------------------------------------------------------------- Update Information: releasing rear-1.14 for fedora 19 -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 11 2013 Gratien D'haese <gratien.dhaese@xxxxxxxxx> - changes Source -------------------------------------------------------------------------------- References: [ 1 ] Bug #984252 - New version please https://bugzilla.redhat.com/show_bug.cgi?id=984252 -------------------------------------------------------------------------------- ================================================================================ rpm-compare-req-0.1.0-2.fc19 (FEDORA-2013-13021) Tool for comparing RPM dependencies against a set of repositories -------------------------------------------------------------------------------- Update Information: Tool for comparing RPM dependencies against a set of repositories -------------------------------------------------------------------------------- References: [ 1 ] Bug #978731 - Review Request: rpm-compare-req - tool for comparing dependencies of an RPM against a set of repositories https://bugzilla.redhat.com/show_bug.cgi?id=978731 -------------------------------------------------------------------------------- ================================================================================ rubygem-qpid_messaging-0.22.0-2.fc19 (FEDORA-2013-13001) Ruby bindings for the Qpid messaging framework -------------------------------------------------------------------------------- Update Information: Fixed the dependency on shared libraries from qpid-cpp. -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 15 2013 Darryl L. Pierce <dpierce@xxxxxxxxxx> - 0.22-2 - Updated build to fix dependency issues on qpid-cpp. -------------------------------------------------------------------------------- ================================================================================ tomcat-7.0.42-1.fc19 (FEDORA-2013-13015) Apache Servlet/JSP Engine, RI for Servlet 3.0/JSP 2.2 API -------------------------------------------------------------------------------- Update Information: update to 7.0.42 -------------------------------------------------------------------------------- ChangeLog: * Thu Jul 11 2013 Dmitry Tikhonov <squall.sama@xxxxxxxxx> 0:7.0.42-1 - Updated to 7.0.42 -------------------------------------------------------------------------------- References: [ 1 ] Bug #973077 - tomcat-7.0.42 is available https://bugzilla.redhat.com/show_bug.cgi?id=973077 -------------------------------------------------------------------------------- ================================================================================ transmission-2.80-2.fc19 (FEDORA-2013-13033) A lightweight GTK+ BitTorrent client -------------------------------------------------------------------------------- Update Information: Simple spec fixes to fix systemd related bugs. -------------------------------------------------------------------------------- ChangeLog: * Sun Jul 14 2013 Ankur Sinha <ankursinha AT fedoraproject DOT org> 2.80-2 - systemd-units -> systemd. rhbz:981647 - Add systemd-devel as BR. rhbz:984220 -------------------------------------------------------------------------------- References: [ 1 ] Bug #984220 - transmission daemon built without systemd-support, won't start https://bugzilla.redhat.com/show_bug.cgi?id=984220 [ 2 ] Bug #981647 - systemd instead of systemd-units in spec file https://bugzilla.redhat.com/show_bug.cgi?id=981647 -------------------------------------------------------------------------------- ================================================================================ vim-javabrowser-2.03-3.fc19 (FEDORA-2013-12997) The javabrowser plugin for VIM editor -------------------------------------------------------------------------------- Update Information: Here is where you give an explanation of your update. -------------------------------------------------------------------------------- References: [ 1 ] Bug #961384 - Review Request: vim-javabrowser - JavaBrowser plugin for VIM https://bugzilla.redhat.com/show_bug.cgi?id=961384 -------------------------------------------------------------------------------- ================================================================================ wayland-1.2.0-1.fc19 (FEDORA-2013-13014) Wayland Compositor Infrastructure -------------------------------------------------------------------------------- Update Information: Update to the latest official release, 1.2.0 -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 15 2013 Richard Hughes <rhughes@xxxxxxxxxx> - 1.2.0-1 - wayland 1.2.0 -------------------------------------------------------------------------------- ================================================================================ weston-1.2.0-1.fc19 (FEDORA-2013-13014) Reference compositor for Wayland -------------------------------------------------------------------------------- Update Information: Update to the latest official release, 1.2.0 -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- ================================================================================ wget-1.14-8.fc19 (FEDORA-2013-13041) A utility for retrieving files using the HTTP or FTP protocols -------------------------------------------------------------------------------- Update Information: - fixes for several bugs - documented missing options -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 15 2013 Tomas Hozza <thozza@xxxxxxxxxx> - 1.14-8 - Fix deadcode and possible use of NULL in vprintf (#913153) - Add documentation for --regex-type and --preserve-permissions - Fix --preserve-permissions to work as documented (and expected) - Fix bug when authenticating using user:password@url syntax (#912358) - Document and fix --backups option * Wed Jul 10 2013 Tomas Hozza <thozza@xxxxxxxxxx> - 1.14-7 - Fix double free of iri->orig_url (#981778) * Mon Jun 24 2013 Tomas Hozza <thozza@xxxxxxxxxx> - 1.14-6 - add missing options accept-regex and reject-regex to man page -------------------------------------------------------------------------------- References: [ 1 ] Bug #981778 - *** glibc detected *** wget: double free or corruption (!prev): 0x0979df90 *** https://bugzilla.redhat.com/show_bug.cgi?id=981778 [ 2 ] Bug #912358 - wget syntax to login to protected site using http://username:password@server/ stopped working https://bugzilla.redhat.com/show_bug.cgi?id=912358 [ 3 ] Bug #913153 - [abrt] wget-1.14-3.fc18: _IO_vfprintf_internal: Process /usr/bin/wget was killed by signal 11 (SIGSEGV) https://bugzilla.redhat.com/show_bug.cgi?id=913153 -------------------------------------------------------------------------------- ================================================================================ xorg-x11-server-1.14.2-5.fc19 (FEDORA-2013-12995) X.Org X11 X server -------------------------------------------------------------------------------- Update Information: Fix logspam on multi-touch, re-add Xephyr -resizeable option that got lost earlier, update the recent touch crasher fix to the upstream version. -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 15 2013 Peter Hutterer <peter.hutterer@xxxxxxxxxx> 1.14.2-5 - Fix logspam when trying to free a non-existant grab. - Update touch patch to upstream version (from fdo #66720) - re-add xephyr resizable patch, got lost in rebase (#976995) -------------------------------------------------------------------------------- References: [ 1 ] Bug #976995 - cannot use anymore a web browser in a sandbox https://bugzilla.redhat.com/show_bug.cgi?id=976995 -------------------------------------------------------------------------------- ================================================================================ yum-langpacks-0.3.4-1.fc19 (FEDORA-2013-13039) Langpacks plugin for yum -------------------------------------------------------------------------------- Update Information: New upstream release which added new commands langinfo and langavailable -------------------------------------------------------------------------------- ChangeLog: * Wed Jul 3 2013 Parag Nemade <pnemade AT redhat DOT com> - 0.3.4-1 - update to 0.3.4 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test