The following Fedora 18 Security updates need testing: Age URL 234 https://admin.fedoraproject.org/updates/FEDORA-2013-0416/fedora-business-cards-1-0.1.beta1.fc18 147 https://admin.fedoraproject.org/updates/FEDORA-2013-4823/microcode_ctl-2.0-3.fc18 132 https://admin.fedoraproject.org/updates/FEDORA-2013-6117/eucalyptus-3.2.2-1.fc18 44 https://admin.fedoraproject.org/updates/FEDORA-2013-13131/livecd-tools-18.17-1.fc18 28 https://admin.fedoraproject.org/updates/FEDORA-2013-14005/zabbix-2.0.6-3.fc18 15 https://admin.fedoraproject.org/updates/FEDORA-2013-14794/filezilla-3.7.3-1.fc18 14 https://admin.fedoraproject.org/updates/FEDORA-2013-14902/python-virtualenv-1.10.1-1.fc18 12 https://admin.fedoraproject.org/updates/FEDORA-2013-14930/drupal7-entity-1.2-1.fc18 11 https://admin.fedoraproject.org/updates/FEDORA-2013-15013/poppler-0.20.2-16.fc18 9 https://admin.fedoraproject.org/updates/FEDORA-2013-15072/glibc-2.16-34.fc18 7 https://admin.fedoraproject.org/updates/FEDORA-2013-15142/drupal7-theme-zen-5.4-1.fc18 7 https://admin.fedoraproject.org/updates/FEDORA-2013-14985/php-5.4.19-1.fc18 6 https://admin.fedoraproject.org/updates/FEDORA-2013-15253/php-pear-Auth-OpenID-2.2.2-7.fc18 5 https://admin.fedoraproject.org/updates/FEDORA-2013-15290/ngircd-20.3-1.fc18 4 https://admin.fedoraproject.org/updates/FEDORA-2013-15223/roundcubemail-0.9.3-2.fc18 4 https://admin.fedoraproject.org/updates/FEDORA-2013-15344/lighttpd-1.4.32-1.fc18 2 https://admin.fedoraproject.org/updates/FEDORA-2013-15444/cacti-0.8.8b-2.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-15567/asterisk-11.5.1-2.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-15576/LibRaw-0.14.8-3.fc18.20120830git98d925 The following Fedora 18 Critical Path updates have yet to be approved: Age URL 202 https://admin.fedoraproject.org/updates/FEDORA-2013-2192/nautilus-3.6.3-5.fc18 9 https://admin.fedoraproject.org/updates/FEDORA-2013-15035/libvdpau-0.7-1.fc18 9 https://admin.fedoraproject.org/updates/FEDORA-2013-15085/system-config-date-1.10.6-1.fc18 9 https://admin.fedoraproject.org/updates/FEDORA-2013-15072/glibc-2.16-34.fc18 6 https://admin.fedoraproject.org/updates/FEDORA-2013-15226/libfm-1.1.2.2-1.fc18 4 https://admin.fedoraproject.org/updates/FEDORA-2013-15331/rpm-4.10.3.1-2.fc18 4 https://admin.fedoraproject.org/updates/FEDORA-2013-15342/redhat-rpm-config-9.1.0-37.2.fc18 1 https://admin.fedoraproject.org/updates/FEDORA-2013-15519/xulrunner-23.0.1-1.fc18,firefox-23.0.1-1.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-15579/kernel-3.10.10-100.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-15553/keyutils-1.5.6-1.fc18 The following builds have been pushed to Fedora 18 updates-testing LibRaw-0.14.8-3.fc18.20120830git98d925 asterisk-11.5.1-2.fc18 bluebird-0.8-1.fc18 elementary-icon-theme-3.1-1.fc18 ghc-shakespeare-i18n-1.0.0.3-1.fc18 ino-0.3.5-5.fc18 kernel-3.10.10-100.fc18 keyutils-1.5.6-1.fc18 kte-collaborative-0.0.95-5.fc18 libqinfinity-0.5.0-1.fc18 libyui-3.0.10-1.fc18 libyui-bindings-1.0.2-7.fc18 libyui-gtk-2.43.7-1.fc18 libyui-ncurses-2.44.1-1.fc18 libyui-qt-2.43.5-1.fc18 nodejs-commander-1.2.0-6.fc18 nodejs-connect-2.8.5-1.fc18 nodejs-express-3.3.5-1.fc18 nodejs-fresh-0.2.0-1.fc18 nodejs-keypress-0.2.1-1.fc18 nodejs-send-0.1.4-1.fc18 perl-qpid_proton-0.5-1.fc18 rubygem-qpid_proton-0.5-1.fc18 sugar-fractionbounce-19-1.fc18 youtube-dl-2013.08.29-1.fc18 Details about builds: ================================================================================ LibRaw-0.14.8-3.fc18.20120830git98d925 (FEDORA-2013-15576) Library for reading RAW files obtained from digital photo cameras -------------------------------------------------------------------------------- Update Information: Raphael Geissert reported two denial of service flaws in LibRaw [1]: CVE-2013-1438: Specially crafted photo files may trigger a division by zero, an infinite loop, or a null pointer dereference in libraw leading to denial of service in applications using the library. These vulnerabilities appear to originate in dcraw and as such any program or library based on it is affected. To name a few confirmed applications: dcraw, ufraw. Other affected software: shotwell, darktable, and libkdcraw (Qt-style interface to libraw, using embedded copy) which is used by digikam. Google Picasa apparently uses dcraw/ufraw so it might be affected. dcraw's homepage has a list of applications that possibly still use it: http://cybercom.net/~dcoffin/dcraw/ Affected versions of libraw: confirmed: 0.8-0.15.3; but it is likely that all versions are affected. Fixed in: libraw 0.15.4 CVE-2013-1439: Specially crafted photo files may trigger a series of conditions in which a null pointer is dereferenced leading to denial of service in applications using the library. These three vulnerabilities are in/related to the 'faster LJPEG decoder', which upstream states was introduced in LibRaw 0.13 and support for which is going to be dropped in 0.16. Affected versions of libraw: 0.13.x-0.15.x -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 30 2013 Jon Ciesla <limburgher@xxxxxxxxx> - 0.14.8-3 - Update to snapshot 98d925 to fix CVE-2013-1438,9, BZ 1002717. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1002717 - CVE-2013-1439 CVE-2013-1438 LibRaw: multiple denial of service flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1002717 -------------------------------------------------------------------------------- ================================================================================ asterisk-11.5.1-2.fc18 (FEDORA-2013-15567) The Open Source PBX -------------------------------------------------------------------------------- Update Information: * Thu Aug 29 2013 Jeffrey Ollie <jeff@xxxxxxxxxx> - 11.5.1-2: - Enable hardened build BZ#954338 - Significant clean ups * Thu Aug 29 2013 Jeffrey Ollie <jeff@xxxxxxxxxx> - 11.5.1-1: - The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.15, 11.2, and Asterisk 1.8, 10, and 11. The available security releases - are released as versions 1.8.15-cert2, 11.2-cert2, 1.8.23.1, 10.12.3, 10.12.3-digiumphones, - and 11.5.1. - - These releases are available for immediate download at - http://downloads.asterisk.org/pub/telephony/asterisk/releases - - The release of these versions resolve the following issues: - - * A remotely exploitable crash vulnerability exists in the SIP channel driver if - an ACK with SDP is received after the channel has been terminated. The - handling code incorrectly assumes that the channel will always be present. - - * A remotely exploitable crash vulnerability exists in the SIP channel driver if - an invalid SDP is sent in a SIP request that defines media descriptions before - connection information. The handling code incorrectly attempts to reference - the socket address information even though that information has not yet been - set. - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2013-004 and AST-2013-005, which were - released at the same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - http://downloads.asterisk.org/pub/telephony/certified-asterisk/releases/ChangeLog-1.8.15-cert3 - http://downloads.asterisk.org/pub/telephony/certified-asterisk/releases/ChangeLog-11.2-cert2 - http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-1.8.23.1 - http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-10.12.3 - http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-10.12.3-digiumphones - http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-11.5.1 - - The security advisories are available at: - - * http://downloads.asterisk.org/pub/security/AST-2013-004.pdf - * http://downloads.asterisk.org/pub/security/AST-2013-005.pdf - - The Asterisk Development Team has announced the release of Asterisk 11.5.0. - This release is available for immediate download at - http://downloads.asterisk.org/pub/telephony/asterisk - - The release of Asterisk 11.5.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Fix Segfault In app_queue When "persistentmembers" Is Enabled - And Using Realtime - (Closes issue ASTERISK-21738. Reported by JoshE) - - * --- IAX2: fix race condition with nativebridge transfers. - (Closes issue ASTERISK-21409. Reported by alecdavis) - - * --- Fix The Payload Being Set On CN Packets And Do Not Set Marker - Bit - (Closes issue ASTERISK-21246. Reported by Peter Katzmann) - - * --- Fix One-Way Audio With auto_* NAT Settings When SIP Calls - Initiated By PBX - (Closes issue ASTERISK-21374. Reported by Michael L. Young) - - * --- chan_sip: NOTIFYs for BLF start queuing up and fail to be sent - out after retries fail - (Closes issue ASTERISK-21677. Reported by Dan Martens) - - For a full list of changes in this release, please see the ChangeLog: - - http://downloads.asterisk.org/pub/telephony/asterisk/ChangeLog-11.5.0 -------------------------------------------------------------------------------- ChangeLog: * Thu Aug 29 2013 Jeffrey Ollie <jeff@xxxxxxxxxx> - 11.5.1-2: - Enable hardened build BZ#954338 - Significant clean ups * Thu Aug 29 2013 Jeffrey Ollie <jeff@xxxxxxxxxx> - 11.5.1-1: - The Asterisk Development Team has announced security releases for Certified - Asterisk 1.8.15, 11.2, and Asterisk 1.8, 10, and 11. The available security releases - are released as versions 1.8.15-cert2, 11.2-cert2, 1.8.23.1, 10.12.3, 10.12.3-digiumphones, - and 11.5.1. - - These releases are available for immediate download at - http://downloads.asterisk.org/pub/telephony/asterisk/releases - - The release of these versions resolve the following issues: - - * A remotely exploitable crash vulnerability exists in the SIP channel driver if - an ACK with SDP is received after the channel has been terminated. The - handling code incorrectly assumes that the channel will always be present. - - * A remotely exploitable crash vulnerability exists in the SIP channel driver if - an invalid SDP is sent in a SIP request that defines media descriptions before - connection information. The handling code incorrectly attempts to reference - the socket address information even though that information has not yet been - set. - - These issues and their resolutions are described in the security advisories. - - For more information about the details of these vulnerabilities, please read - security advisories AST-2013-004 and AST-2013-005, which were - released at the same time as this announcement. - - For a full list of changes in the current releases, please see the ChangeLogs: - - http://downloads.asterisk.org/pub/telephony/certified-asterisk/releases/ChangeLog-1.8.15-cert3 - http://downloads.asterisk.org/pub/telephony/certified-asterisk/releases/ChangeLog-11.2-cert2 - http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-1.8.23.1 - http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-10.12.3 - http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-10.12.3-digiumphones - http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-11.5.1 - - The security advisories are available at: - - * http://downloads.asterisk.org/pub/security/AST-2013-004.pdf - * http://downloads.asterisk.org/pub/security/AST-2013-005.pdf - - The Asterisk Development Team has announced the release of Asterisk 11.5.0. - This release is available for immediate download at - http://downloads.asterisk.org/pub/telephony/asterisk - - The release of Asterisk 11.5.0 resolves several issues reported by the - community and would have not been possible without your participation. - Thank you! - - The following is a sample of the issues resolved in this release: - - * --- Fix Segfault In app_queue When "persistentmembers" Is Enabled - And Using Realtime - (Closes issue ASTERISK-21738. Reported by JoshE) - - * --- IAX2: fix race condition with nativebridge transfers. - (Closes issue ASTERISK-21409. Reported by alecdavis) - - * --- Fix The Payload Being Set On CN Packets And Do Not Set Marker - Bit - (Closes issue ASTERISK-21246. Reported by Peter Katzmann) - - * --- Fix One-Way Audio With auto_* NAT Settings When SIP Calls - Initiated By PBX - (Closes issue ASTERISK-21374. Reported by Michael L. Young) - - * --- chan_sip: NOTIFYs for BLF start queuing up and fail to be sent - out after retries fail - (Closes issue ASTERISK-21677. Reported by Dan Martens) - - For a full list of changes in this release, please see the ChangeLog: - - http://downloads.asterisk.org/pub/telephony/asterisk/ChangeLog-11.5.0 * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 11.4.0-2.2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Wed Jul 17 2013 Petr Pisar <ppisar@xxxxxxxxxx> - 11.4.0-2.1 - Perl 5.18 rebuild * Fri May 24 2013 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 11.4.0-2 - rebuild (libical) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1002044 - CVE-2013-5641 CVE-2013-5642 asterisk: two denial of service flaws in the SIP channel driver (AST-2013-004, AST-2013-005) https://bugzilla.redhat.com/show_bug.cgi?id=1002044 -------------------------------------------------------------------------------- ================================================================================ bluebird-0.8-1.fc18 (FEDORA-2013-15549) A clean minimalistic theme for Xfce, GTK+ 2 and 3 -------------------------------------------------------------------------------- Update Information: Release 0.8 that fixes bugs related to gtk3 theme -------------------------------------------------------------------------------- ChangeLog: * Wed Aug 28 2013 Miro Hrončok <mhroncok@xxxxxxxxxx> - 0.8-1 - Update to 0.8 - Split description to 2 lines (it was too long) * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.7.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #891354 - Bluebird looks wierd on GTK3 apps (in Xfce) https://bugzilla.redhat.com/show_bug.cgi?id=891354 -------------------------------------------------------------------------------- ================================================================================ elementary-icon-theme-3.1-1.fc18 (FEDORA-2013-15552) Icons from the Elementary Project -------------------------------------------------------------------------------- Update Information: A small bug fix release of elementary icons has been made including small size toolbar arrows, a couple of new network icons, and a more abstract power settings icon. -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 30 2013 Christopher Meng <rpm@xxxxxxxx> - 3.1-1 - Update to 3.1 * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 3.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ ghc-shakespeare-i18n-1.0.0.3-1.fc18 (FEDORA-2013-15583) Type-based internationalization -------------------------------------------------------------------------------- Update Information: Type-based internationalization -------------------------------------------------------------------------------- References: [ 1 ] Bug #986638 - Review Request: ghc-shakespeare-i18n - Type-based internationalization https://bugzilla.redhat.com/show_bug.cgi?id=986638 -------------------------------------------------------------------------------- ================================================================================ ino-0.3.5-5.fc18 (FEDORA-2013-15581) Command line toolkit for working with Arduino hardware -------------------------------------------------------------------------------- Update Information: Fixes #985904, #995489 and #985908 Added picocom as a dependency, fixes #985908 -------------------------------------------------------------------------------- ChangeLog: * Thu Aug 29 2013 Alberto Ruiz <aruiz@xxxxxxxxxx> - 0.3.5-5 - Added patch to support Fedora specific location for avrdude.conf file, fixes #985904 * Thu Aug 29 2013 Alberto Ruiz <aruiz@xxxxxxxxxx> - 0.3.5-4 - Fixed spec file to keep lib subdirs in the templates, fixes #995489 * Wed Aug 28 2013 Alberto Ruiz <aruiz@xxxxxxxxx> - 0.3.5-3 - Added picocom as a dependency, fixes #985908 * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.3.5-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #985904 - avrdude.conf not founded https://bugzilla.redhat.com/show_bug.cgi?id=985904 [ 2 ] Bug #995489 - `ino init' doesn't create lib/ https://bugzilla.redhat.com/show_bug.cgi?id=995489 [ 3 ] Bug #985908 - Missing dependency https://bugzilla.redhat.com/show_bug.cgi?id=985908 -------------------------------------------------------------------------------- ================================================================================ kernel-3.10.10-100.fc18 (FEDORA-2013-15579) The Linux kernel -------------------------------------------------------------------------------- Update Information: The 3.10.10 stable update contains a number of important fixes across the tree. -------------------------------------------------------------------------------- ChangeLog: * Thu Aug 29 2013 Justin M. Forbes <jforbes@xxxxxxxxxxxxxxxxx> 3.10.10-100 - Linux v3.10.10 * Wed Aug 28 2013 Josh Boyer <jwboyer@xxxxxxxxxxxxxxxxx> - Add mei patches that fix various s/r issues (rhbz 994824 989373) -------------------------------------------------------------------------------- References: [ 1 ] Bug #994824 - Hang on resume regression on Lenovo X200 https://bugzilla.redhat.com/show_bug.cgi?id=994824 [ 2 ] Bug #989373 - suspend to RAM broken with 3.10 kernel update on T500 https://bugzilla.redhat.com/show_bug.cgi?id=989373 -------------------------------------------------------------------------------- ================================================================================ keyutils-1.5.6-1.fc18 (FEDORA-2013-15553) Linux Key Management Utilities -------------------------------------------------------------------------------- Update Information: Fix 'keyctl show' depth and 'keyctl padd/pinstantiate' input buffer size. Provide access to the keyctl_invalidate function. Add and update manpages. -------------------------------------------------------------------------------- ChangeLog: * Thu Aug 29 2013 David Howells <dhowells@xxxxxxxxxx> - 1.5.6-1 - Fix the request-key.conf.5 manpage. - Fix the max depth of key tree dump (keyctl show). - The input buffer size for keyctl padd and pinstantiate should be larger. - Add keyctl_invalidate.3 manpage. -------------------------------------------------------------------------------- ================================================================================ kte-collaborative-0.0.95-5.fc18 (FEDORA-2013-15551) Collaborative text editing in KTextEditor via KDE Telepathy -------------------------------------------------------------------------------- Update Information: Collaborative text editing in KTextEditor via KDE Telepathy -------------------------------------------------------------------------------- References: [ 1 ] Bug #1001189 - Review Request: libqinfinity - Qt bindings for libinfinity https://bugzilla.redhat.com/show_bug.cgi?id=1001189 [ 2 ] Bug #1001716 - Review Request: kte-collaborative - Collaborative text editing in KTextEditor via KDE Telepathy https://bugzilla.redhat.com/show_bug.cgi?id=1001716 -------------------------------------------------------------------------------- ================================================================================ libqinfinity-0.5.0-1.fc18 (FEDORA-2013-15551) Qt bindings for libinfinity -------------------------------------------------------------------------------- Update Information: Collaborative text editing in KTextEditor via KDE Telepathy -------------------------------------------------------------------------------- References: [ 1 ] Bug #1001189 - Review Request: libqinfinity - Qt bindings for libinfinity https://bugzilla.redhat.com/show_bug.cgi?id=1001189 [ 2 ] Bug #1001716 - Review Request: kte-collaborative - Collaborative text editing in KTextEditor via KDE Telepathy https://bugzilla.redhat.com/show_bug.cgi?id=1001716 -------------------------------------------------------------------------------- ================================================================================ libyui-3.0.10-1.fc18 (FEDORA-2013-15544) GUI-abstraction library -------------------------------------------------------------------------------- Update Information: updated/rebuild whole libyui-stack to newest upstream releases, fixed docdir issues with F20+ -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 30 2013 Björn Esser <bjoern.esser@xxxxxxxxx> - 3.0.10-1 - new upstream version * Tue Jul 30 2013 Petr Machata <pmachata@xxxxxxxxxx> - 3.0.9-2 - Rebuild for boost 1.54.0 * Sat Jul 27 2013 Björn Esser <bjoern.esser@xxxxxxxxx> - 3.0.9-1 - new upstream version - restructured spec for better readability - removed %commit, using direct github-tarball - removed hardening flags and Group-tag - removed CMake-Requires from devel-pkg - added devel-common-pkg - fixed License - installing docs manually, adding PDF to doc-pkg -------------------------------------------------------------------------------- References: [ 1 ] Bug #976532 - libyui-3.0.10 is available https://bugzilla.redhat.com/show_bug.cgi?id=976532 [ 2 ] Bug #979574 - libyui-gtk-2.43.7 is available https://bugzilla.redhat.com/show_bug.cgi?id=979574 [ 3 ] Bug #979575 - libyui-ncurses-2.44.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=979575 [ 4 ] Bug #985311 - libyui-qt-2.43.5 is available https://bugzilla.redhat.com/show_bug.cgi?id=985311 [ 5 ] Bug #992135 - libyui-gtk: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=992135 [ 6 ] Bug #992136 - libyui-ncurses: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=992136 [ 7 ] Bug #992137 - libyui-qt: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=992137 [ 8 ] Bug #993833 - libyui-ncurses possibly affected by F-20 unversioned docdir change https://bugzilla.redhat.com/show_bug.cgi?id=993833 [ 9 ] Bug #993834 - libyui-gtk possibly affected by F-20 unversioned docdir change https://bugzilla.redhat.com/show_bug.cgi?id=993834 [ 10 ] Bug #993835 - libyui-qt possibly affected by F-20 unversioned docdir change https://bugzilla.redhat.com/show_bug.cgi?id=993835 -------------------------------------------------------------------------------- ================================================================================ libyui-bindings-1.0.2-7.fc18 (FEDORA-2013-15544) Language bindings for libyui -------------------------------------------------------------------------------- Update Information: updated/rebuild whole libyui-stack to newest upstream releases, fixed docdir issues with F20+ -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 30 2013 Björn Esser <bjoern.esser@xxxxxxxxx> - 1.0.2-7 - libyui 3.0.10 rebuilt * Sat Aug 3 2013 Petr Pisar <ppisar@xxxxxxxxxx> - 1.0.2-6 - Perl 5.18 rebuild * Sat Jul 27 2013 Björn Esser <bjoern.esser@xxxxxxxxx> - 1.0.2-5 - include examples in own subdir - removed hardening flags * Sat Jul 27 2013 Björn Esser <bjoern.esser@xxxxxxxxx> - 1.0.2-4 - fix build, removed trailing backslash * Sat Jul 27 2013 Björn Esser <bjoern.esser@xxxxxxxxx> - 1.0.2-3 - libyui-3.0.9 rebuilt on all branches - removed Group-tag * Wed Jul 17 2013 Petr Pisar <ppisar@xxxxxxxxxx> - 1.0.2-2 - Perl 5.18 rebuild on F20 / rawhide -------------------------------------------------------------------------------- References: [ 1 ] Bug #976532 - libyui-3.0.10 is available https://bugzilla.redhat.com/show_bug.cgi?id=976532 [ 2 ] Bug #979574 - libyui-gtk-2.43.7 is available https://bugzilla.redhat.com/show_bug.cgi?id=979574 [ 3 ] Bug #979575 - libyui-ncurses-2.44.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=979575 [ 4 ] Bug #985311 - libyui-qt-2.43.5 is available https://bugzilla.redhat.com/show_bug.cgi?id=985311 [ 5 ] Bug #992135 - libyui-gtk: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=992135 [ 6 ] Bug #992136 - libyui-ncurses: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=992136 [ 7 ] Bug #992137 - libyui-qt: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=992137 [ 8 ] Bug #993833 - libyui-ncurses possibly affected by F-20 unversioned docdir change https://bugzilla.redhat.com/show_bug.cgi?id=993833 [ 9 ] Bug #993834 - libyui-gtk possibly affected by F-20 unversioned docdir change https://bugzilla.redhat.com/show_bug.cgi?id=993834 [ 10 ] Bug #993835 - libyui-qt possibly affected by F-20 unversioned docdir change https://bugzilla.redhat.com/show_bug.cgi?id=993835 -------------------------------------------------------------------------------- ================================================================================ libyui-gtk-2.43.7-1.fc18 (FEDORA-2013-15544) Gtk3 User Interface for libyui -------------------------------------------------------------------------------- Update Information: updated/rebuild whole libyui-stack to newest upstream releases, fixed docdir issues with F20+ -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 30 2013 Björn Esser <bjoern.esser@xxxxxxxxx> - 2.43.7-1 - new upstream version - restructured spec to match with libyui * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.43.3-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #976532 - libyui-3.0.10 is available https://bugzilla.redhat.com/show_bug.cgi?id=976532 [ 2 ] Bug #979574 - libyui-gtk-2.43.7 is available https://bugzilla.redhat.com/show_bug.cgi?id=979574 [ 3 ] Bug #979575 - libyui-ncurses-2.44.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=979575 [ 4 ] Bug #985311 - libyui-qt-2.43.5 is available https://bugzilla.redhat.com/show_bug.cgi?id=985311 [ 5 ] Bug #992135 - libyui-gtk: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=992135 [ 6 ] Bug #992136 - libyui-ncurses: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=992136 [ 7 ] Bug #992137 - libyui-qt: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=992137 [ 8 ] Bug #993833 - libyui-ncurses possibly affected by F-20 unversioned docdir change https://bugzilla.redhat.com/show_bug.cgi?id=993833 [ 9 ] Bug #993834 - libyui-gtk possibly affected by F-20 unversioned docdir change https://bugzilla.redhat.com/show_bug.cgi?id=993834 [ 10 ] Bug #993835 - libyui-qt possibly affected by F-20 unversioned docdir change https://bugzilla.redhat.com/show_bug.cgi?id=993835 -------------------------------------------------------------------------------- ================================================================================ libyui-ncurses-2.44.1-1.fc18 (FEDORA-2013-15544) Character Based User Interface for libyui -------------------------------------------------------------------------------- Update Information: updated/rebuild whole libyui-stack to newest upstream releases, fixed docdir issues with F20+ -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 30 2013 Björn Esser <bjoern.esser@xxxxxxxxx> - 2.44.1-1 - new upstream version - restructured spec to match with libyui * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.43.9-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #976532 - libyui-3.0.10 is available https://bugzilla.redhat.com/show_bug.cgi?id=976532 [ 2 ] Bug #979574 - libyui-gtk-2.43.7 is available https://bugzilla.redhat.com/show_bug.cgi?id=979574 [ 3 ] Bug #979575 - libyui-ncurses-2.44.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=979575 [ 4 ] Bug #985311 - libyui-qt-2.43.5 is available https://bugzilla.redhat.com/show_bug.cgi?id=985311 [ 5 ] Bug #992135 - libyui-gtk: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=992135 [ 6 ] Bug #992136 - libyui-ncurses: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=992136 [ 7 ] Bug #992137 - libyui-qt: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=992137 [ 8 ] Bug #993833 - libyui-ncurses possibly affected by F-20 unversioned docdir change https://bugzilla.redhat.com/show_bug.cgi?id=993833 [ 9 ] Bug #993834 - libyui-gtk possibly affected by F-20 unversioned docdir change https://bugzilla.redhat.com/show_bug.cgi?id=993834 [ 10 ] Bug #993835 - libyui-qt possibly affected by F-20 unversioned docdir change https://bugzilla.redhat.com/show_bug.cgi?id=993835 -------------------------------------------------------------------------------- ================================================================================ libyui-qt-2.43.5-1.fc18 (FEDORA-2013-15544) Qt User Interface for libyui -------------------------------------------------------------------------------- Update Information: updated/rebuild whole libyui-stack to newest upstream releases, fixed docdir issues with F20+ -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 30 2013 Björn Esser <bjoern.esser@xxxxxxxxx> - 2.43.5-1 - new upstream version - restructured spec to match with libyui * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.43.3-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #976532 - libyui-3.0.10 is available https://bugzilla.redhat.com/show_bug.cgi?id=976532 [ 2 ] Bug #979574 - libyui-gtk-2.43.7 is available https://bugzilla.redhat.com/show_bug.cgi?id=979574 [ 3 ] Bug #979575 - libyui-ncurses-2.44.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=979575 [ 4 ] Bug #985311 - libyui-qt-2.43.5 is available https://bugzilla.redhat.com/show_bug.cgi?id=985311 [ 5 ] Bug #992135 - libyui-gtk: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=992135 [ 6 ] Bug #992136 - libyui-ncurses: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=992136 [ 7 ] Bug #992137 - libyui-qt: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=992137 [ 8 ] Bug #993833 - libyui-ncurses possibly affected by F-20 unversioned docdir change https://bugzilla.redhat.com/show_bug.cgi?id=993833 [ 9 ] Bug #993834 - libyui-gtk possibly affected by F-20 unversioned docdir change https://bugzilla.redhat.com/show_bug.cgi?id=993834 [ 10 ] Bug #993835 - libyui-qt possibly affected by F-20 unversioned docdir change https://bugzilla.redhat.com/show_bug.cgi?id=993835 -------------------------------------------------------------------------------- ================================================================================ nodejs-commander-1.2.0-6.fc18 (FEDORA-2013-15416) Node.js command-line interfaces made easy -------------------------------------------------------------------------------- Update Information: Update nodejs-connect from 2.7.10 to 2.8.5. Upstream changelog: https://raw.github.com/senchalabs/connect/2.8.5/History.md Update nodejs-express from 3.2.5 to 3.3.5. Upstream changelog: https://raw.github.com/visionmedia/express/3.3.5/History.md Update nodejs-fresh from 0.1.0 to 0.2.0. Upstream commits: https://github.com/visionmedia/node-fresh/commits/0.2.0 Update nodejs-send from 0.1.0 to 0.1.4. Upstream changelog: https://raw.github.com/visionmedia/send/0.1.4/History.md Update nodejs-commander from 1.1.1 to 1.2.0. Upstream changelog: https://raw.github.com/visionmedia/commander.js/2.0.0/History.md Update nodejs-keypress from 1.0.0 to 1.2.1. This is a minor bugfix release. -------------------------------------------------------------------------------- ChangeLog: * Thu Aug 29 2013 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 1.2.0-6 - fix version of dependency on nodejs-keypress again * Wed Aug 28 2013 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 1.2.0-5 - fix version of dependency on nodejs-keypress * Mon Aug 26 2013 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 1.2.0-4 - rebuild to enable tests * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.2.0-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Sat Jul 6 2013 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 1.2.0-2 - fix compatible arches for f18/el6 * Fri Jul 5 2013 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 1.2.0-1 - restrict to compatible arches - update to upstream release 1.2.0 * Wed Jun 19 2013 T.C. Hollingsworth <tchollingsworth@xxxxxxxxx> - 1.1.1-2 - rebuild for missing npm(commander) provides on EL6 -------------------------------------------------------------------------------- ================================================================================ nodejs-connect-2.8.5-1.fc18 (FEDORA-2013-15416) High performance middleware framework for Node.js -------------------------------------------------------------------------------- Update Information: Update nodejs-connect from 2.7.10 to 2.8.5. Upstream changelog: https://raw.github.com/senchalabs/connect/2.8.5/History.md Update nodejs-express from 3.2.5 to 3.3.5. Upstream changelog: https://raw.github.com/visionmedia/express/3.3.5/History.md Update nodejs-fresh from 0.1.0 to 0.2.0. Upstream commits: https://github.com/visionmedia/node-fresh/commits/0.2.0 Update nodejs-send from 0.1.0 to 0.1.4. Upstream changelog: https://raw.github.com/visionmedia/send/0.1.4/History.md Update nodejs-commander from 1.1.1 to 1.2.0. Upstream changelog: https://raw.github.com/visionmedia/commander.js/2.0.0/History.md Update nodejs-keypress from 1.0.0 to 1.2.1. This is a minor bugfix release. -------------------------------------------------------------------------------- ChangeLog: * Mon Aug 26 2013 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 2.8.5-1 - update to upstream release 2.8.5 * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.7.10-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ nodejs-express-3.3.5-1.fc18 (FEDORA-2013-15416) Sinatra inspired web development framework for Node.js -------------------------------------------------------------------------------- Update Information: Update nodejs-connect from 2.7.10 to 2.8.5. Upstream changelog: https://raw.github.com/senchalabs/connect/2.8.5/History.md Update nodejs-express from 3.2.5 to 3.3.5. Upstream changelog: https://raw.github.com/visionmedia/express/3.3.5/History.md Update nodejs-fresh from 0.1.0 to 0.2.0. Upstream commits: https://github.com/visionmedia/node-fresh/commits/0.2.0 Update nodejs-send from 0.1.0 to 0.1.4. Upstream changelog: https://raw.github.com/visionmedia/send/0.1.4/History.md Update nodejs-commander from 1.1.1 to 1.2.0. Upstream changelog: https://raw.github.com/visionmedia/commander.js/2.0.0/History.md Update nodejs-keypress from 1.0.0 to 1.2.1. This is a minor bugfix release. -------------------------------------------------------------------------------- ChangeLog: * Mon Aug 26 2013 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 3.3.5-1 - update to upstream release 3.3.5 - add ExclusiveArch logic * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 3.3.3-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Fri Jul 5 2013 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 3.3.3-1 - update to upstream release 3.3.3 - restrict to compatible arches -------------------------------------------------------------------------------- ================================================================================ nodejs-fresh-0.2.0-1.fc18 (FEDORA-2013-15416) HTTP response freshness testing for Node.js -------------------------------------------------------------------------------- Update Information: Update nodejs-connect from 2.7.10 to 2.8.5. Upstream changelog: https://raw.github.com/senchalabs/connect/2.8.5/History.md Update nodejs-express from 3.2.5 to 3.3.5. Upstream changelog: https://raw.github.com/visionmedia/express/3.3.5/History.md Update nodejs-fresh from 0.1.0 to 0.2.0. Upstream commits: https://github.com/visionmedia/node-fresh/commits/0.2.0 Update nodejs-send from 0.1.0 to 0.1.4. Upstream changelog: https://raw.github.com/visionmedia/send/0.1.4/History.md Update nodejs-commander from 1.1.1 to 1.2.0. Upstream changelog: https://raw.github.com/visionmedia/commander.js/2.0.0/History.md Update nodejs-keypress from 1.0.0 to 1.2.1. This is a minor bugfix release. -------------------------------------------------------------------------------- ChangeLog: * Mon Aug 26 2013 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 0.2.0-1 - update to upstream release 0.2.0 * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.1.0-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ nodejs-keypress-0.2.1-1.fc18 (FEDORA-2013-15416) Make any Node ReadableStream emit "keypress" events -------------------------------------------------------------------------------- Update Information: Update nodejs-connect from 2.7.10 to 2.8.5. Upstream changelog: https://raw.github.com/senchalabs/connect/2.8.5/History.md Update nodejs-express from 3.2.5 to 3.3.5. Upstream changelog: https://raw.github.com/visionmedia/express/3.3.5/History.md Update nodejs-fresh from 0.1.0 to 0.2.0. Upstream commits: https://github.com/visionmedia/node-fresh/commits/0.2.0 Update nodejs-send from 0.1.0 to 0.1.4. Upstream changelog: https://raw.github.com/visionmedia/send/0.1.4/History.md Update nodejs-commander from 1.1.1 to 1.2.0. Upstream changelog: https://raw.github.com/visionmedia/commander.js/2.0.0/History.md Update nodejs-keypress from 1.0.0 to 1.2.1. This is a minor bugfix release. -------------------------------------------------------------------------------- ChangeLog: * Wed Aug 28 2013 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 0.2.1-1 - update to upstream release 0.2.1 -------------------------------------------------------------------------------- ================================================================================ nodejs-send-0.1.4-1.fc18 (FEDORA-2013-15416) Better streaming static file server with Range and conditional-GET support -------------------------------------------------------------------------------- Update Information: Update nodejs-connect from 2.7.10 to 2.8.5. Upstream changelog: https://raw.github.com/senchalabs/connect/2.8.5/History.md Update nodejs-express from 3.2.5 to 3.3.5. Upstream changelog: https://raw.github.com/visionmedia/express/3.3.5/History.md Update nodejs-fresh from 0.1.0 to 0.2.0. Upstream commits: https://github.com/visionmedia/node-fresh/commits/0.2.0 Update nodejs-send from 0.1.0 to 0.1.4. Upstream changelog: https://raw.github.com/visionmedia/send/0.1.4/History.md Update nodejs-commander from 1.1.1 to 1.2.0. Upstream changelog: https://raw.github.com/visionmedia/commander.js/2.0.0/History.md Update nodejs-keypress from 1.0.0 to 1.2.1. This is a minor bugfix release. -------------------------------------------------------------------------------- ChangeLog: * Mon Aug 26 2013 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 0.1.4-1 - update to upstream release 0.1.4 - add ExclusiveArch logic * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.1.2-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Fri Jul 5 2013 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 0.1.2-1 - update to upstream release 0.1.2 - restrict to compatible arches -------------------------------------------------------------------------------- ================================================================================ perl-qpid_proton-0.5-1.fc18 (FEDORA-2013-15585) Perl language bindings for Qpid Proton -------------------------------------------------------------------------------- Update Information: Rebased on Proton 0.5. -------------------------------------------------------------------------------- ChangeLog: * Thu Aug 29 2013 Darryl L. Pierce <dpierce@xxxxxxxxxx> - 0.5-1 - Rebased on Proton 0.5. - Changed package to use the single upstream source rather than separate Perl sources. -------------------------------------------------------------------------------- ================================================================================ rubygem-qpid_proton-0.5-1.fc18 (FEDORA-2013-15559) Ruby language bindings for the Qpid Proton messaging framework -------------------------------------------------------------------------------- Update Information: Rebased on Proton 0.5. -------------------------------------------------------------------------------- ChangeLog: * Thu Aug 29 2013 Darryl L. Pierce <dpierce@xxxxxxxxxx> - 0.5-1 - Rebased on Proton 0.5. -------------------------------------------------------------------------------- ================================================================================ sugar-fractionbounce-19-1.fc18 (FEDORA-2013-15558) A game which teaches fractions and estimations -------------------------------------------------------------------------------- Update Information: Version 19 release -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 30 2013 Kalpa Welivitigoda <callkalpa@xxxxxxxxx> - 19-1 - version 19 release * Sun Aug 4 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 17-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ youtube-dl-2013.08.29-1.fc18 (FEDORA-2013-15574) A small command-line program to download online videos -------------------------------------------------------------------------------- Update Information: New version. Update. New version. -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 30 2013 Christopher Meng <rpm@xxxxxxxx> - 2013.08.29-1 - Update to new release. * Tue Aug 27 2013 Christopher Meng <rpm@xxxxxxxx> - 2013.08.27-1 - Update to new release. * Sat Aug 24 2013 Christopher Meng <rpm@xxxxxxxx> - 2013.08.23-1 - Update to new release. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1001532 - youtube-dl-2013.08.27 is available https://bugzilla.redhat.com/show_bug.cgi?id=1001532 [ 2 ] Bug #1000544 - youtube-dl-2013.08.23 is available https://bugzilla.redhat.com/show_bug.cgi?id=1000544 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test