The following Fedora 18 Security updates need testing: Age URL 241 https://admin.fedoraproject.org/updates/FEDORA-2013-0416/fedora-business-cards-1-0.1.beta1.fc18 155 https://admin.fedoraproject.org/updates/FEDORA-2013-4823/microcode_ctl-2.0-3.fc18 140 https://admin.fedoraproject.org/updates/FEDORA-2013-6117/eucalyptus-3.2.2-1.fc18 51 https://admin.fedoraproject.org/updates/FEDORA-2013-13131/livecd-tools-18.17-1.fc18 35 https://admin.fedoraproject.org/updates/FEDORA-2013-14005/zabbix-2.0.6-3.fc18 22 https://admin.fedoraproject.org/updates/FEDORA-2013-14794/filezilla-3.7.3-1.fc18 15 https://admin.fedoraproject.org/updates/FEDORA-2013-14985/php-5.4.19-1.fc18 7 https://admin.fedoraproject.org/updates/FEDORA-2013-15567/asterisk-11.5.1-2.fc18 7 https://admin.fedoraproject.org/updates/FEDORA-2013-15576/LibRaw-0.14.8-3.fc18.20120830git98d925 4 https://admin.fedoraproject.org/updates/FEDORA-2013-15673/libtiff-4.0.3-9.fc18 3 https://admin.fedoraproject.org/updates/FEDORA-2013-15713/graphite-web-0.9.12-1.fc18 2 https://admin.fedoraproject.org/updates/FEDORA-2013-15755/perl-Crypt-DSA-1.17-10.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-15994/mediawiki-1.19.8-1.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-15881/pyOpenSSL-0.13.1-1.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-15877/python-pyrad-2.0-3.fc18 The following Fedora 18 Critical Path updates have yet to be approved: Age URL 209 https://admin.fedoraproject.org/updates/FEDORA-2013-2192/nautilus-3.6.3-5.fc18 11 https://admin.fedoraproject.org/updates/FEDORA-2013-15342/redhat-rpm-config-9.1.0-37.2.fc18 7 https://admin.fedoraproject.org/updates/FEDORA-2013-15553/keyutils-1.5.6-1.fc18 6 https://admin.fedoraproject.org/updates/FEDORA-2013-15605/gdb-7.5.1-41.fc18 5 https://admin.fedoraproject.org/updates/FEDORA-2013-15622/libfm-1.1.2.2-2.fc18,pcmanfm-1.1.2-2.D20130830gitfc8adaab77.fc18 4 https://admin.fedoraproject.org/updates/FEDORA-2013-15645/selinux-policy-3.11.1-101.fc18 4 https://admin.fedoraproject.org/updates/FEDORA-2013-15653/libdrm-2.4.46-1.fc18 2 https://admin.fedoraproject.org/updates/FEDORA-2013-15766/linux-firmware-20130724-0.3.git31f6b30.fc18 2 https://admin.fedoraproject.org/updates/FEDORA-2013-15756/xulrunner-23.0.1-4.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-15912/firefox-23.0.1-4.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2013-15881/pyOpenSSL-0.13.1-1.fc18 The following builds have been pushed to Fedora 18 updates-testing desktopcouch-1.0.8-1.fc18 git-cola-1.8.4-1.fc18 glite-lbjp-common-db-3.2.8-2.fc18 jfsutils-1.1.15-2.fc18 mate-utils-1.6.0-8.fc18 mediawiki-1.19.8-1.fc18 mldonkey-3.1.3-3.fc18 nodejs-ansi-0.2.1-1.fc18 nodejs-couch-login-0.1.18-1.fc18 nodejs-npm-registry-client-0.2.28-1.fc18 printrun-0.0-32.20130711gitb8f549b.fc18 pybliographer-1.2.16-1.fc18 qpdfview-0.4.5-1.fc18 redis-2.6.16-1.fc18 se-sandbox-runner-1.3.2-2.fc18 uriparser-0.7.9-1.fc18 Details about builds: ================================================================================ desktopcouch-1.0.8-1.fc18 (FEDORA-2013-15982) A CouchDB instance on every desktop -------------------------------------------------------------------------------- Update Information: Last version. -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 5 2013 Christopher Meng <rpm@xxxxxxxx> - 1.0.8-1 - Update to new version. * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.0.7-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Wed Feb 13 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.0.7-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #720139 - [abrt] desktopcouch-tools-0.6.9b-2.fc15: ubuntuone.py:6:<module>:ImportError: No module named ubuntu_sso https://bugzilla.redhat.com/show_bug.cgi?id=720139 [ 2 ] Bug #1003446 - [abrt] desktopcouch-1.0.7-4.fc19: connection.py:651:call_blocking:DBusException: org.freedesktop.DBus.Error.Spawn.ChildExited: Process /usr/bin/desktopcouch-service exited with status 1 https://bugzilla.redhat.com/show_bug.cgi?id=1003446 -------------------------------------------------------------------------------- ================================================================================ git-cola-1.8.4-1.fc18 (FEDORA-2013-15979) A sleek and powerful git GUI -------------------------------------------------------------------------------- Update Information: Fix list out of range issue. -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 5 2013 Christopher Meng <rpm@xxxxxxxx> - 1.8.4-1 - Update to 1.8.4(BZ#1003317) with fix for BZ#1001200/BZ#1001200. * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.8.3-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1003317 - git-cola-1.8.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=1003317 [ 2 ] Bug #1001200 - [abrt] git-cola-1.8.3-1.fc19: cmds.py:862:prepare:IndexError: list index out of range https://bugzilla.redhat.com/show_bug.cgi?id=1001200 -------------------------------------------------------------------------------- ================================================================================ glite-lbjp-common-db-3.2.8-2.fc18 (FEDORA-2013-16020) Database engine abstraction wrapper used in L&B and JP services -------------------------------------------------------------------------------- Update Information: Database engine abstraction wrapper used in gLite L&B and JP services. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1001351 - Review Request: glite-lbjp-common-db - Database engine abstraction wrapper https://bugzilla.redhat.com/show_bug.cgi?id=1001351 -------------------------------------------------------------------------------- ================================================================================ jfsutils-1.1.15-2.fc18 (FEDORA-2013-16000) Utilities for managing the JFS filesystem -------------------------------------------------------------------------------- Update Information: Fix install path. Fix FTBFS + update to latest upstream -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 5 2013 François Cami <fcami@xxxxxxxxxxxxxxxxx> - 1.1.15-2 - Install in /usr * Mon Sep 2 2013 François Cami <fcami@xxxxxxxxxxxxxxxxx> - 1.1.15-1 - Update to latest upstream. * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.1.13-12 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Thu Feb 14 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.1.13-11 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1003457 - FTBFS + update to latest upstream https://bugzilla.redhat.com/show_bug.cgi?id=1003457 [ 2 ] Bug #992623 - jfsutils: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=992623 [ 3 ] Bug #975996 - jfsutils-1.1.15 is available https://bugzilla.redhat.com/show_bug.cgi?id=975996 [ 4 ] Bug #914103 - jfsutils: FTBFS in Fedora 19 https://bugzilla.redhat.com/show_bug.cgi?id=914103 -------------------------------------------------------------------------------- ================================================================================ mate-utils-1.6.0-8.fc18 (FEDORA-2013-16013) MATE utility programs -------------------------------------------------------------------------------- Update Information: Files and libs duplicated in mate-dictionary and mate-utils (#1003196) -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 5 2013 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> - 1.6.0-8 - Files and libs duplicated in mate-dictionary and mate-utils (#1003196) - drop mate-dictionary-devel - add -common subpkg (for licenses, translations) - make main empty metapackage, that pulls all subpkgs - only mate-system log uses usermode (consolehelper) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1003196 - Files and libs duplicated in mate-dictionary and mate-utils https://bugzilla.redhat.com/show_bug.cgi?id=1003196 -------------------------------------------------------------------------------- ================================================================================ mediawiki-1.19.8-1.fc18 (FEDORA-2013-15994) A wiki engine -------------------------------------------------------------------------------- Update Information: * SECURITY: Sanitize ResourceLoader exception messages * SECURITY: Token-getting functions will fail when using jsonp callbacks. * SECURITY: Fix extension detection with 2 .'s * Allow a string other than '*' as condition for DatabaseBase::delete() * Purge upstream caches when deleting file assets. * jquery.tablesorter: Add missing dependency on jquery.mwExtension -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 5 2013 Michael Cronenworth <mike@xxxxxxxxxx> - 1.19.8-1 - New upstream release. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1004538 - CVE-2013-4301 CVE-2013-4302 CVE-2013-4303 mediawiki: security releases 1.21.2, 1.20.7, and 1.19.8 https://bugzilla.redhat.com/show_bug.cgi?id=1004538 -------------------------------------------------------------------------------- ================================================================================ mldonkey-3.1.3-3.fc18 (FEDORA-2013-15978) Multiple P2P Network Client -------------------------------------------------------------------------------- Update Information: * Marked directory in tmpfs as ghost * Add tmpfiles.d entry * Restore optional support for sysconfig files -------------------------------------------------------------------------------- ChangeLog: * Fri Sep 6 2013 Peter Lemenkov <lemenkov@xxxxxxxxx> - 3.1.3-3 - Marked directory in tmpfs as ghost * Fri Sep 6 2013 Peter Lemenkov <lemenkov@xxxxxxxxx> - 3.1.3-2 - Add tmpfiles.d entry - Restore optional support for sysconfig files -------------------------------------------------------------------------------- References: [ 1 ] Bug #656624 - Please Update Spec File to use %ghost on files in /var/run and /var/lock https://bugzilla.redhat.com/show_bug.cgi?id=656624 [ 2 ] Bug #718524 - mldonkey & mldonkey-server dont create the required directory in /var/run/ https://bugzilla.redhat.com/show_bug.cgi?id=718524 [ 3 ] Bug #826297 - mldonkey systemd service file does not respect /etc/sysconfig/mldonkey https://bugzilla.redhat.com/show_bug.cgi?id=826297 [ 4 ] Bug #826301 - /etc/sysconfig/mldonkey setting wrong environment variable https://bugzilla.redhat.com/show_bug.cgi?id=826301 -------------------------------------------------------------------------------- ================================================================================ nodejs-ansi-0.2.1-1.fc18 (FEDORA-2013-15988) ANSI escape codes for Node.js -------------------------------------------------------------------------------- Update Information: * Update to upstream release 0.2.1, which is a minor bugfix release. * Upstream changelog: - Octals are deprecated in ECMA 5 so we should use hexadecimal notation instead -------------------------------------------------------------------------------- ChangeLog: * Fri Sep 6 2013 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 0.2.1-1 - update to upstream release 0.2.1 * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.2.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ nodejs-couch-login-0.1.18-1.fc18 (FEDORA-2013-16016) A module for doing logged-in requests to a couchdb server -------------------------------------------------------------------------------- Update Information: * nodejs-couch-login: Update to upstream release 0.1.18, which is a minor bugfix release. * nodejs-npm-registry-client: Update to upstream release 0.2.28, which just updates some of the dependency versions -------------------------------------------------------------------------------- ChangeLog: * Fri Sep 6 2013 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 0.1.18-1 - update to upstream release 0.1.18 - add ExclusiveArch logic * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.1.17-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ nodejs-npm-registry-client-0.2.28-1.fc18 (FEDORA-2013-16016) Client for the npm registry -------------------------------------------------------------------------------- Update Information: * nodejs-couch-login: Update to upstream release 0.1.18, which is a minor bugfix release. * nodejs-npm-registry-client: Update to upstream release 0.2.28, which just updates some of the dependency versions -------------------------------------------------------------------------------- ChangeLog: * Fri Sep 6 2013 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 0.2.28-1 - update to upstream release 0.2.28 - add ExclusiveArch logic -------------------------------------------------------------------------------- ================================================================================ printrun-0.0-32.20130711gitb8f549b.fc18 (FEDORA-2013-15986) RepRap printer interface and tools -------------------------------------------------------------------------------- Update Information: Bugfix for plater (was throwing exceptions when started) -------------------------------------------------------------------------------- ChangeLog: * Fri Sep 6 2013 Miro Hrončok <mhroncok@xxxxxxxxxx> - 0.0-32.20130711gitb8f549b - Fixed #1004973 (%{name}-missing-plater-import.patch) - In F <= 19 added backwards compatibility .py symlinks to bindir - Added asterisk at the end of bindir content in %files to also match those symlinkss * Sun Aug 11 2013 Miro Hrončok <mhroncok@xxxxxxxxxx> - 0.0-31.20130711gitb8f549b - No longer have .py named scripts in bindir -------------------------------------------------------------------------------- References: [ 1 ] Bug #1004973 - [abrt] plater-0.0-30.20130711gitb8f549b.fc19: stlview.py:97:OnInitGL:AttributeError: 'module' object has no attribute 'Context' https://bugzilla.redhat.com/show_bug.cgi?id=1004973 -------------------------------------------------------------------------------- ================================================================================ pybliographer-1.2.16-1.fc18 (FEDORA-2013-16002) Framework for working with bibliographic databases -------------------------------------------------------------------------------- Update Information: Update to 1.2.16. It fixes collision with pybtex program. -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 5 2013 Zoltan Kota <zoltank at gmail.com> - 1.2.16-1 - update to 1.2.16 - spec file cleanup -------------------------------------------------------------------------------- ================================================================================ qpdfview-0.4.5-1.fc18 (FEDORA-2013-16011) Tabbed PDF Viewer -------------------------------------------------------------------------------- Update Information: Version bump. -------------------------------------------------------------------------------- ChangeLog: * Fri Sep 6 2013 TI_Eugene <ti.eugene@xxxxxxxxx> 0.4.5-1 - Version bump -------------------------------------------------------------------------------- ================================================================================ redis-2.6.16-1.fc18 (FEDORA-2013-16018) A persistent key-value database -------------------------------------------------------------------------------- Update Information: Fix a couple of packaging problems and update to the latest upstream 2.6.16. In detail: * Remove non-existent pidfile from service file * And tmpfilesd configuration Redis is updated to 2.6.13 and using the PIE buildflag to hardne the build. Additionally jemalloc has been unbundled. Update to the 2.6 series. The redis.conf configuration file from 2.4 doesn't upgrade to 2.6 gracefully. Redis is updated to 2.6.13 and using the PIE buildflag to hardne the build. Additionally jemalloc has been unbundled. Update to the 2.6 series. The redis.conf configuration file from 2.4 doesn't upgrade to 2.6 gracefully. -------------------------------------------------------------------------------- ChangeLog: * Fri Sep 6 2013 Fabian Deutsch <fabian.deutsch@xxxxxx> - 2.6.16-1 - Update to 2.6.16 - Fix rhbz#973151 - Fix rhbz#656683 - Fix rhbz#977357 (Jan Vcelak <jvcelak@xxxxxxxxxxxxxxxxx>) * Sun Aug 4 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.6.13-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Tue Jul 23 2013 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> 2.6.13-4 - ARM has gperftools * Wed Jun 19 2013 Fabian Deutsch <fabiand@xxxxxxxxxxxxxxxxx> - 2.6.13-3 - Modify jemalloc patch for s390 compatibility (Thanks sharkcz) * Fri Jun 7 2013 Fabian Deutsch <fabiand@xxxxxxxxxxxxxxxxx> - 2.6.13-2 - Unbundle jemalloc * Fri Jun 7 2013 Fabian Deutsch <fabiand@xxxxxxxxxxxxxxxxx> - 2.6.13-1 - Add compile PIE flag (rhbz#955459) - Update to redis 2.6.13 (rhbz#820919) * Thu Feb 14 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.6.7-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild * Thu Dec 27 2012 Silas Sewell <silas@xxxxxxxxxx> - 2.6.7-1 - Update to redis 2.6.7 -------------------------------------------------------------------------------- References: [ 1 ] Bug #977357 - redis does not provide tmpfiles configuration file https://bugzilla.redhat.com/show_bug.cgi?id=977357 [ 2 ] Bug #656683 - Please Update Spec File to use %ghost on files in /var/run and /var/lock https://bugzilla.redhat.com/show_bug.cgi?id=656683 [ 3 ] Bug #973151 - inconsistent redis's systemd unit https://bugzilla.redhat.com/show_bug.cgi?id=973151 [ 4 ] Bug #955459 - redis package should be built with PIE flags https://bugzilla.redhat.com/show_bug.cgi?id=955459 [ 5 ] Bug #820919 - redis-2.6.13 is available https://bugzilla.redhat.com/show_bug.cgi?id=820919 [ 6 ] Bug #971543 - Outstanding issues with redis https://bugzilla.redhat.com/show_bug.cgi?id=971543 -------------------------------------------------------------------------------- ================================================================================ se-sandbox-runner-1.3.2-2.fc18 (FEDORA-2013-15992) Qt wrapper for SELinux Sandbox -------------------------------------------------------------------------------- Update Information: se-sandbox-runner: Qt wrapper for SELinux Sandbox. This application runs and controls the configured jobs, running in a sandbox. Job settings are saved in the application's configuration. -------------------------------------------------------------------------------- References: [ 1 ] Bug #999366 - Review Request: se-sandbox-runner -- Qt wrapper for SELinux Sandbox https://bugzilla.redhat.com/show_bug.cgi?id=999366 -------------------------------------------------------------------------------- ================================================================================ uriparser-0.7.9-1.fc18 (FEDORA-2013-15989) URI parsing library - RFC 3986 -------------------------------------------------------------------------------- Update Information: New upstream. -------------------------------------------------------------------------------- ChangeLog: * Fri Sep 6 2013 François Cami <fcami@xxxxxxxxxxxxxxxxx> - 0.7.9-1 - Update to latest upstream. * Tue Aug 6 2013 François Cami <fcami@xxxxxxxxxxxxxxxxx> - 0.7.8-2 - Fix FTBS due to https://fedoraproject.org/wiki/Changes/UnversionedDocdirs * Tue Jul 30 2013 François Cami <fcami@xxxxxxxxxxxxxxxxx> - 0.7.8-1 - Update to 0.7.8 * Fri Feb 15 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.7.5-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test