The following Fedora 18 Security updates need testing: Age URL 227 https://admin.fedoraproject.org/updates/FEDORA-2013-0416/fedora-business-cards-1-0.1.beta1.fc18 141 https://admin.fedoraproject.org/updates/FEDORA-2013-4823/microcode_ctl-2.0-3.fc18 125 https://admin.fedoraproject.org/updates/FEDORA-2013-6117/eucalyptus-3.2.2-1.fc18 37 https://admin.fedoraproject.org/updates/FEDORA-2013-13131/livecd-tools-18.17-1.fc18 21 https://admin.fedoraproject.org/updates/FEDORA-2013-14005/zabbix-2.0.6-3.fc18 8 https://admin.fedoraproject.org/updates/FEDORA-2013-14786/nmap-6.40-1.fc18 8 https://admin.fedoraproject.org/updates/FEDORA-2013-14794/filezilla-3.7.3-1.fc18 7 https://admin.fedoraproject.org/updates/FEDORA-2013-14902/python-virtualenv-1.10.1-1.fc18 5 https://admin.fedoraproject.org/updates/FEDORA-2013-14930/drupal7-entity-1.2-1.fc18 4 https://admin.fedoraproject.org/updates/FEDORA-2013-15013/poppler-0.20.2-16.fc18 3 https://admin.fedoraproject.org/updates/FEDORA-2013-15036/ssmtp-2.64-9.fc18 2 https://admin.fedoraproject.org/updates/FEDORA-2013-15072/glibc-2.16-34.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-15142/drupal7-theme-zen-5.4-1.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-14985/php-5.4.19-1.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-15181/ansible-1.2.3-2.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-15223/roundcubemail-0.9.3-1.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-15157/perl-Module-Metadata-1.000015-1.fc18 The following Fedora 18 Critical Path updates have yet to be approved: Age URL 195 https://admin.fedoraproject.org/updates/FEDORA-2013-2192/nautilus-3.6.3-5.fc18 11 https://admin.fedoraproject.org/updates/FEDORA-2013-14660/gdisk-0.8.7-1.fc18 11 https://admin.fedoraproject.org/updates/FEDORA-2013-14661/libfm-1.1.1-2.fc18,pcmanfm-1.1.1-2.fc18 8 https://admin.fedoraproject.org/updates/FEDORA-2013-14827/pcmanfm-1.1.2-1.fc18 8 https://admin.fedoraproject.org/updates/FEDORA-2013-14695/mdadm-3.2.6-21.fc18 8 https://admin.fedoraproject.org/updates/FEDORA-2013-14691/libtiff-4.0.3-7.fc18 3 https://admin.fedoraproject.org/updates/FEDORA-2013-15035/libvdpau-0.7-1.fc18 2 https://admin.fedoraproject.org/updates/FEDORA-2013-15085/system-config-date-1.10.6-1.fc18 2 https://admin.fedoraproject.org/updates/FEDORA-2013-15072/glibc-2.16-34.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-15226/libfm-1.1.2.2-1.fc18 The following builds have been pushed to Fedora 18 updates-testing asterisk-sounds-core-1.4.24-1.fc18 freediams-0.9.0-0.1.beta1.fc18 freemedforms-0.9.0-0.1.beta1.fc18 inxi-1.9.14-2.fc18 jmol-13.2.4-1.fc18 libfm-1.1.2.2-1.fc18 libvisio-0.0.30-1.fc18 mingw-postgresql-9.2.4-3.fc18 nodejs-uid2-0.0.3-1.fc18 owncloud-4.5.13-3.fc18 perl-Carp-Fix-1_25-1.000001-3.fc18 perl-Time-y2038-20100403-3.fc18 php-PHP-CSS-Parser-5.0.8-1.fc18 python-sparklines-0.9-1.fc18 roundcubemail-0.9.3-1.fc18 xapian-bindings-1.2.15-1.fc18 xapian-core-1.2.15-1.fc18 Details about builds: ================================================================================ asterisk-sounds-core-1.4.24-1.fc18 (FEDORA-2013-15222) Core sounds for Asterisk -------------------------------------------------------------------------------- Update Information: Update to 1.4.24 Fix incorrect summary on Russian subpackage Add Italian sounds -------------------------------------------------------------------------------- ChangeLog: * Wed Aug 21 2013 Jeffrey Ollie <jeff@xxxxxxxxxx> - 1.4.24-1 - Add Italian (it) sounds - Fix BZ999376 fix summary for asterisk-sounds-core-ru * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.4.23-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #999376 - Bad name of field Summary for package asterisk-sounds-core-ru https://bugzilla.redhat.com/show_bug.cgi?id=999376 -------------------------------------------------------------------------------- ================================================================================ freediams-0.9.0-0.1.beta1.fc18 (FEDORA-2013-15213) The pharmaceutical prescription assistant -------------------------------------------------------------------------------- Update Information: Updated to latest upstream release! -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 16 2013 Ankur Sinha <ankursinha AT fedoraproject DOT org> 0.9.0-0.1.beta1 - Update to 0.9.0.beta1 * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.7.5-9 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Wed Feb 13 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.7.5-8 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #974508 - freemedforms-0.9.0%7Ebeta1 is available https://bugzilla.redhat.com/show_bug.cgi?id=974508 -------------------------------------------------------------------------------- ================================================================================ freemedforms-0.9.0-0.1.beta1.fc18 (FEDORA-2013-15213) The freemedforms application suite metapackage -------------------------------------------------------------------------------- Update Information: Updated to latest upstream release! -------------------------------------------------------------------------------- ChangeLog: * Thu Aug 15 2013 Ankur Sinha <ankursinha AT fedoraproject DOT org> 0.9.0-0.1.beta1 - Based on Eric's spec - Update to 0.9.0~beta1 - Update build system 0.9.0 - Adding some comments - Correcting some package content - Rpaths, but internal libraries so OK * Sun May 19 2013 Ankur Sinha <ankursinha AT fedoraproject DOT org> 0.8.2.1-1 - Update to 0.8.2.1 * Wed Feb 13 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.7.5-8 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #974508 - freemedforms-0.9.0%7Ebeta1 is available https://bugzilla.redhat.com/show_bug.cgi?id=974508 -------------------------------------------------------------------------------- ================================================================================ inxi-1.9.14-2.fc18 (FEDORA-2013-15225) A full featured system information script -------------------------------------------------------------------------------- Update Information: Update to new version with correct sources. Update to new version, disable builtin update.. Here is where you give an explanation of your update. -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 23 2013 Vasiliy N. Glazov <vascom2@xxxxxxxxx> 1.9.14-2 - Correct sources * Thu Aug 22 2013 Vasiliy N. Glazov <vascom2@xxxxxxxxx> 1.9.14-1 - Update to new version - Disable builtin update * Mon Aug 19 2013 Vasiliy N. Glazov <vascom2@xxxxxxxxx> 1.9.13-1 - Update to new version -------------------------------------------------------------------------------- ================================================================================ jmol-13.2.4-1.fc18 (FEDORA-2013-15216) An open-source Java viewer for chemical structures in 3D -------------------------------------------------------------------------------- Update Information: Update to 13.2.4. -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 23 2013 Susi Lehtola <jussilehtola@xxxxxxxxxxxxxxxxx> - 13.2.4-1 - Update to 13.2.4. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1000492 - jmol-13.2.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=1000492 -------------------------------------------------------------------------------- ================================================================================ libfm-1.1.2.2-1.fc18 (FEDORA-2013-15226) GIO-based library for file manager-like programs -------------------------------------------------------------------------------- Update Information: New version 1.1.2.2 is released. -------------------------------------------------------------------------------- ChangeLog: * Wed Aug 21 2013 Mamoru TASAKA <mtasaka@xxxxxxxxxxxxxxxxx> - 1.1.2.2-1 - 1.1.2.2 * Wed Aug 21 2013 Mamoru TASAKA <mtasaka@xxxxxxxxxxxxxxxxx> - 1.1.2.1-1 - 1.1.2.1 * Thu Aug 15 2013 Mamoru TASAKA <mtasaka@xxxxxxxxxxxxxxxxx> - 1.1.2-1 - 1.1.2 * Sun Aug 11 2013 Mamoru TASAKA <mtasaka@xxxxxxxxxxxxxxxxx> - 1.1.1-2 - Regenerate desktop file from .in file using intltool * Thu Aug 8 2013 Mamoru TASAKA <mtasaka@xxxxxxxxxxxxxxxxx> - 1.1.1-1 - 1.1.1 * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.1.0-2.2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Thu Feb 14 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.1.0-2.1 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild * Sun Nov 25 2012 Christoph Wickert <cwickert@xxxxxxxxxxxxxxxxx> - 1.1.0-2 - Rebuild against menu-cache 0.4.x -------------------------------------------------------------------------------- ================================================================================ libvisio-0.0.30-1.fc18 (FEDORA-2013-15249) A library providing ability to interpret and import visio diagrams -------------------------------------------------------------------------------- Update Information: New release -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 15 2013 David Tardon <dtardon@xxxxxxxxxx> - 0.0.30-1 - new release * Tue Jul 2 2013 David Tardon <dtardon@xxxxxxxxxx> - 0.0.29-1 - new release -------------------------------------------------------------------------------- ================================================================================ mingw-postgresql-9.2.4-3.fc18 (FEDORA-2013-14903) MinGW Windows PostgreSQL library -------------------------------------------------------------------------------- Update Information: * Enable NLS, LDAP, XML, and TCL * Fix connection error checking for Windows. -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- References: [ 1 ] Bug #996529 - Connections fail with provided libpq.dll. Message: "Operation would block" https://bugzilla.redhat.com/show_bug.cgi?id=996529 -------------------------------------------------------------------------------- ================================================================================ nodejs-uid2-0.0.3-1.fc18 (FEDORA-2013-15238) Node.js module to generate strong unique IDs -------------------------------------------------------------------------------- Update Information: Initial build of nodejs-uid2 -------------------------------------------------------------------------------- ================================================================================ owncloud-4.5.13-3.fc18 (FEDORA-2013-15233) Private file sync and share server -------------------------------------------------------------------------------- Update Information: This update removes some Flash and Silverlight plugins which were included as pre-built binaries. This goes against Fedora policy. The effect of this removal will be that fallback from HTML5 to these plugins in the 'media' and 'videoviewer' Owncloud plugins will not function. See bugs #1000257 and #1000236, and https://fedoraproject.org/wiki/Packaging:Guidelines#No_inclusion_of_pre-built_binaries_or_libraries , for more details. -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 23 2013 Adam Williamson <awilliam@xxxxxxxxxx> - 4.5.13-3 - drop binary Flash and Silverlight blobs: #1000257 - don't ship source of jplayer in the binary package * Thu Aug 15 2013 Gregor Tätzner <brummbq@xxxxxxxxxxxxxxxxx> - 4.5.13-2 - RBZ #962082 keep 3rdparty pqsql mdb2 driver -------------------------------------------------------------------------------- References: [ 1 ] Bug #1000257 - owncloud bundles Flash and Silverlight files https://bugzilla.redhat.com/show_bug.cgi?id=1000257 -------------------------------------------------------------------------------- ================================================================================ perl-Carp-Fix-1_25-1.000001-3.fc18 (FEDORA-2013-15232) Smooth over incompatible changes in Carp 1.25 -------------------------------------------------------------------------------- Update Information: This is the first Fedora/EPEL release of perl-Carp-Fix-1_25. -------------------------------------------------------------------------------- References: [ 1 ] Bug #998410 - Review Request: perl-Carp-Fix-1_25 - Smooth over incompatible changes in Carp 1.25 https://bugzilla.redhat.com/show_bug.cgi?id=998410 -------------------------------------------------------------------------------- ================================================================================ perl-Time-y2038-20100403-3.fc18 (FEDORA-2013-15234) Versions of Perl's time functions which work beyond 2038 -------------------------------------------------------------------------------- Update Information: This is the first Fedora/EPEL release of perl-Time-y2038. -------------------------------------------------------------------------------- References: [ 1 ] Bug #998269 - Review Request: perl-Time-y2038 - Versions of Perl's time functions which work beyond 2038 https://bugzilla.redhat.com/show_bug.cgi?id=998269 -------------------------------------------------------------------------------- ================================================================================ php-PHP-CSS-Parser-5.0.8-1.fc18 (FEDORA-2013-15212) A Parser for CSS Files -------------------------------------------------------------------------------- Update Information: Version 5.0.8: * vladkens/feature: Uses multibyte string only if loaded mbstring extension. -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 23 2013 Remi Collet <remi@xxxxxxxxxxxxxxxxx> - 5.0.8-1 - update to 5.0.8 -------------------------------------------------------------------------------- ================================================================================ python-sparklines-0.9-1.fc18 (FEDORA-2013-15229) A unicode sparkline generation library -------------------------------------------------------------------------------- Update Information: Initial packaging. -------------------------------------------------------------------------------- References: [ 1 ] Bug #999596 - Review Request: python-sparklines - python-sparklines is a unicode sparkline generation library https://bugzilla.redhat.com/show_bug.cgi?id=999596 -------------------------------------------------------------------------------- ================================================================================ roundcubemail-0.9.3-1.fc18 (FEDORA-2013-15223) Round Cube Webmail is a browser-based multilingual IMAP client -------------------------------------------------------------------------------- Update Information: Two XSS flaws were fixed in roundcube 0.9.3 [1]: * Fix XSS vulnerability when saving HTML signatures [2],[3] * Fix XSS vulnerability when editing a message "as new" or draft [2],[4] [1] http://trac.roundcube.net/wiki/Changelog#RELEASE0.9.3 [2] http://trac.roundcube.net/ticket/1489251 [3] http://trac.roundcube.net/changeset/ce5a6496fd6039962ba7424d153278e41ae8761b/github [4] http://trac.roundcube.net/changeset/93b0a30c1c8aa29d862b587b31e52bcc344b8d16/github -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 23 2013 Jon Ciesla <limburgher@xxxxxxxxx> - 0.9.3-1 - Fix two XSS vulnerabilities: - http://trac.roundcube.net/ticket/1489251 * Fri Aug 16 2013 Jon Ciesla <limburgher@xxxxxxxxx> - 0.9.2-3 - Drop precompiled flash. * Sun Aug 4 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.9.2-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Mon Jun 17 2013 Adam Williamson <awilliam@xxxxxxxxxx> - 0.9.2-1 - latest upstream - correct License field, add comment on complex licensing case * Wed May 1 2013 Adam Williamson <awilliam@xxxxxxxxxx> - 0.9.0-1 - latest upstream - drop MDB2 dependencies, add php-pdo dependency (upstream now using pdo not MDB2) - drop the update.sh script as it requires the installer framework we don't ship - update the Fedora README for changes to sqlite and update process - drop strict.patch, upstream actually merged it years ago, just in a slightly different format, and we kept dumbly diffing it - drop references to obsolete patches (all merged upstream long ago) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1000511 - roundcubemail: two XSS flaws fixed in 0.9.3 [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1000511 [ 2 ] Bug #1000512 - roundcubemail: two XSS flaws fixed in 0.9.3 [epel-6] https://bugzilla.redhat.com/show_bug.cgi?id=1000512 -------------------------------------------------------------------------------- ================================================================================ xapian-bindings-1.2.15-1.fc18 (FEDORA-2013-15231) Bindings for the Xapian Probabilistic Information Retrieval Library -------------------------------------------------------------------------------- Update Information: New upstream 1.2.15 bugfix release -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 23 2013 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> 1.2.15-1 - Update to 1.2.15 * Sun Aug 4 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.2.14-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ xapian-core-1.2.15-1.fc18 (FEDORA-2013-15231) The Xapian Probabilistic Information Retrieval Library -------------------------------------------------------------------------------- Update Information: New upstream 1.2.15 bugfix release -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 23 2013 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> 1.2.15-1 - Update to 1.2.15 * Sun Aug 4 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.2.14-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test