The following Fedora 19 Security updates need testing: Age URL 41 https://admin.fedoraproject.org/updates/FEDORA-2013-14029/zabbix-2.0.6-3.fc19 28 https://admin.fedoraproject.org/updates/FEDORA-2013-14814/python-glanceclient-0.9.0-3.fc19 13 https://admin.fedoraproject.org/updates/FEDORA-2013-15560/asterisk-11.5.1-2.fc19 9 https://admin.fedoraproject.org/updates/FEDORA-2013-15710/graphite-web-0.9.12-1.fc19 6 https://admin.fedoraproject.org/updates/FEDORA-2013-15925/pyOpenSSL-0.13.1-1.fc19 6 https://admin.fedoraproject.org/updates/FEDORA-2013-15891/python-pyrad-2.0-3.fc19 5 https://admin.fedoraproject.org/updates/FEDORA-2013-15984/mediawiki-1.21.2-1.fc19 3 https://admin.fedoraproject.org/updates/FEDORA-2013-16225/tinyproxy-1.8.3-1.fc19 3 https://admin.fedoraproject.org/updates/FEDORA-2013-16232/roundcubemail-0.9.4-1.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2013-16357/xen-4.2.3-1.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2013-16317/polarssl-1.2.8-1.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2013-16376/rubygems-2.0.8-104.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2013-16505/python-django-1.5.3-1.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2013-16475/python-django14-1.4.7-1.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2013-16476/moodle-2.4.6-1.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2013-16574/wireshark-1.10.2-2.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2013-16601/glpi-0.83.9.1-4.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2013-16577/wireshark-1.10.2-4.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2013-16388/lightdm-1.6.2-1.fc19 The following Fedora 19 Critical Path updates have yet to be approved: Age URL 15 https://admin.fedoraproject.org/updates/FEDORA-2013-15459/kbd-1.15.5-7.fc19 13 https://admin.fedoraproject.org/updates/FEDORA-2013-15573/keyutils-1.5.6-1.fc19 11 https://admin.fedoraproject.org/updates/FEDORA-2013-15621/libfm-1.1.2.2-2.fc19,pcmanfm-1.1.2-2.D20130830gitfc8adaab77.fc19 10 https://admin.fedoraproject.org/updates/FEDORA-2013-15666/perl-Encode-2.54-1.fc19 7 https://admin.fedoraproject.org/updates/FEDORA-2013-15788/policycoreutils-2.1.14-46.5.fc19 6 https://admin.fedoraproject.org/updates/FEDORA-2013-15925/pyOpenSSL-0.13.1-1.fc19 3 https://admin.fedoraproject.org/updates/FEDORA-2013-16224/gdb-7.6.1-41.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2013-16332/util-linux-2.23.2-4.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2013-16353/gupnp-0.20.6-1.fc19,gssdp-0.14.5-1.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2013-16354/iproute-3.9.0-2.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2013-16621/dhcp-4.2.5-20.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2013-16600/gnome-shell-extensions-3.8.4-1.fc19,gnome-themes-standard-3.8.4-1.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2013-16580/selinux-policy-3.12.1-74.3.fc19 The following builds have been pushed to Fedora 19 updates-testing aoetools-36-3.fc19 audacious-3.4.1-1.fc19 audacious-plugins-3.4.1-1.fc19 backintime-1.0.26-2.fc19 check_postgres-2.20.1-1.fc19 clipit-1.4.2-5.fc19 cups-pdf-2.6.1-6.fc19 dayplanner-0.11-1.fc19 dhcp-4.2.5-20.fc19 ghc-indents-0.3.3-1.fc19 glpi-0.83.9.1-4.fc19 gnome-shell-extensions-3.8.4-1.fc19 gnome-themes-standard-3.8.4-1.fc19 gnomeradio-1.8-22.fc19 ldapvi-1.7-17.fc19 libreoffice-4.1.1.2-4.fc19 libscrypt-1.14-1.fc19 licq-1.8.0-1.fc19 lightdm-1.6.2-1.fc19 mate-icon-theme-faenza-1.6.1-0.1.gitc147867.fc19 mate-panel-1.6.1-4.fc19 maven-patch-plugin-1.1.1-8.fc19 nf3d-0.8-1.fc19 openscap-0.9.12-1.fc19 openvpn-2.3.2-4.fc19 osm2pgsql-0.82.0-1.fc19 perl-File-KeePass-2.03-3.fc19 perl-Hash-MoreUtils-0.03-1.fc19 perl-Parallel-Scoreboard-0.04-1.fc19 perl-perl5i-2.12.0-3.fc19 pgadmin3-1.18.0-1.fc19 php-htmLawed-1.1.16-1.fc19 python-queuelib-1.0-2.fc19 python-rtslib-2.1.fb39-1.fc19 qt5-qttools-5.1.1-3.fc19 qtbrowserplugin-2.4-2.fc19 rubygem-mini_portile-0.5.1-1.fc19 rubygem-mysql2-0.3.13-1.fc19 rubygem-text-1.2.3-2.fc19 selinux-policy-3.12.1-74.3.fc19 vicious-2.1.1-4.fc19 wireshark-1.10.2-2.fc19 wireshark-1.10.2-4.fc19 Details about builds: ================================================================================ aoetools-36-3.fc19 (FEDORA-2013-16610) ATA over Ethernet Tools -------------------------------------------------------------------------------- Update Information: Update to upstream version -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 10 2013 Ed Cashin <ecashin@xxxxxxxxxx> - 36-3 - Do not store udev rules in lookaside cache - Revert accidental change to spec file changelog * Tue Sep 10 2013 Christopher Meng <rpm@xxxxxxxx> - 36-2 - Cleanup the spec. - Add noreplace flag for udev rules file. - Preserve the timestamp. * Mon Sep 9 2013 Ed Cashin <ecashin@xxxxxxxxxx> - 36-1 - New upstream release (aoe-sancheck and bugfixes) - Update package description: aoetools supports 2.6+ kernels - Include udev rules needed for creation of aoe character devices * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 30-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ audacious-3.4.1-1.fc19 (FEDORA-2013-16602) Advanced audio player -------------------------------------------------------------------------------- Update Information: Updated to version 3.4.1 -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 9 2013 Dan Fruehauf <malkodan@xxxxxxxxx> - 3.4.1-1 - Update to 3.4.1 final (a few bug fixes). * Sat Aug 31 2013 Michael Schwendt <mschwendt@xxxxxxxxxxxxxxxxx> - 3.4-4 - Merge fix for upstream bug 332: Increase maximum file-probing buffer to 256 KB to handle Vorbis files that put high-res album art before the audio stream. * Mon Aug 26 2013 Michael Schwendt <mschwendt@xxxxxxxxxxxxxxxxx> - 3.4-3 - Add absolute paths to commands in scriptlets. - Move developer HTML documentation into new noarch audacious-doc subpackage. * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 3.4-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1005665 - New version available: audacious-3.4.1 https://bugzilla.redhat.com/show_bug.cgi?id=1005665 -------------------------------------------------------------------------------- ================================================================================ audacious-plugins-3.4.1-1.fc19 (FEDORA-2013-16602) Plugins for the Audacious audio player -------------------------------------------------------------------------------- Update Information: Updated to version 3.4.1 -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 9 2013 Dan Fruehauf <malkodan@xxxxxxxxx> - 3.4.1-1 - Update to 3.4.1 final (a few bug fixes, fixes gtk ui - #336). * Tue Aug 27 2013 Hans de Goede <hdegoede@xxxxxxxxxx> - 3.4-3 - Fix the skinned ui drawing only the skin background on F20+ * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 3.4-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1005665 - New version available: audacious-3.4.1 https://bugzilla.redhat.com/show_bug.cgi?id=1005665 -------------------------------------------------------------------------------- ================================================================================ backintime-1.0.26-2.fc19 (FEDORA-2013-16573) Simple backup tool inspired from the Flyback project and TimeVault -------------------------------------------------------------------------------- Update Information: Add missing Requires. New version. -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Christopher Meng <rpm@xxxxxxxx> - 1.0.26-2 - Ad missing python-keyring dependency(BZ#1007315). * Wed Sep 11 2013 Christopher Meng <rpm@xxxxxxxx> - 1.0.26-1 - Update to new release(BZ#1003304),(BZ#951248). - Fix Bugs(BZ#999935),(BZ#922534). * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.0.8-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1007315 - [abrt] backintime-kde-1.0.26-1.fc19: tools.py:27:<module>:ImportError: No module named keyring https://bugzilla.redhat.com/show_bug.cgi?id=1007315 [ 2 ] Bug #1003304 - backintime-1.0.26 is available https://bugzilla.redhat.com/show_bug.cgi?id=1003304 [ 3 ] Bug #951248 - Old version of backintime in repository / Backintime in repository has no support for ssh https://bugzilla.redhat.com/show_bug.cgi?id=951248 [ 4 ] Bug #999935 - [abrt] backintime-gnome-1.0.8-5.fc19: __init__.py:52:_init:RuntimeError: could not open display https://bugzilla.redhat.com/show_bug.cgi?id=999935 [ 5 ] Bug #922534 - [abrt] backintime-kde-1.0.8-4.fc18: kde4systrayicon.py:106:show_popup:NameError: global name 'KPassivePopup' is not defined https://bugzilla.redhat.com/show_bug.cgi?id=922534 -------------------------------------------------------------------------------- ================================================================================ check_postgres-2.20.1-1.fc19 (FEDORA-2013-16583) PostgreSQL monitoring script -------------------------------------------------------------------------------- Update Information: Update to 2.20.1 -------------------------------------------------------------------------------- ChangeLog: * Wed Sep 11 2013 - Devrim GUNDUZ <devrim@xxxxxxxxxx> 2.20.1-1 - Update to 2.20.1, per changes described at https://mail.endcrypt.com/pipermail/check_postgres-announce/2013-June/000033.html -------------------------------------------------------------------------------- ================================================================================ clipit-1.4.2-5.fc19 (FEDORA-2013-16615) A lightweight, fully featured GTK+ clipboard manager -------------------------------------------------------------------------------- Update Information: Fix MATE autostart. Add appdata. -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Nikos Roussos <nikos@xxxxxxxxxxxxx> 1.4.2-5 - Fix MATE autostart. Add appdata * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.4.2-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1007103 - clipit doesn't autostart in MATE https://bugzilla.redhat.com/show_bug.cgi?id=1007103 -------------------------------------------------------------------------------- ================================================================================ cups-pdf-2.6.1-6.fc19 (FEDORA-2013-16594) Extension for creating pdf-Files with CUPS -------------------------------------------------------------------------------- Update Information: Log the generated PDF path to cups-pdf_log. -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Remi Collet <remi@xxxxxxxxxxxxxxxxx> 2.6.1-6 - log path of generated PDF #1007143 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1007143 - cups-pdf should lot location of each output PDF generated https://bugzilla.redhat.com/show_bug.cgi?id=1007143 -------------------------------------------------------------------------------- ================================================================================ dayplanner-0.11-1.fc19 (FEDORA-2013-16624) An easy and clean Day Planner -------------------------------------------------------------------------------- Update Information: New version. -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 3 2013 Christopher Meng <rpm@xxxxxxxx> - 0.11-1 - New version. * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.10-9 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Thu Jul 18 2013 Petr Pisar <ppisar@xxxxxxxxxx> - 0.10-8 - Perl 5.18 rebuild -------------------------------------------------------------------------------- ================================================================================ dhcp-4.2.5-20.fc19 (FEDORA-2013-16621) Dynamic host configuration protocol software -------------------------------------------------------------------------------- Update Information: This update (besides other fixes) enables to run more 'dhclient -6' instances. -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Jiri Popelka <jpopelka@xxxxxxxxxx> - 12:4.2.5-20 - bind DHCPv6 client to link-local address instead of 0 address (#1001742) * Mon Aug 26 2013 Jiri Popelka <jpopelka@xxxxxxxxxx> - 12:4.2.5-19 - don't crash on aliased infiniband interface (#996518) * Sun Aug 4 2013 Jiri Popelka <jpopelka@xxxxxxxxxx> - 12:4.2.5-18 - BuildRequires: systemd due to %{_unitdir} * Mon Jul 29 2013 Jiri Popelka <jpopelka@xxxxxxxxxx> - 12:4.2.5-17 - 12-dhcpd previously exited with error status 1 (#989207) * Mon Jul 15 2013 Tomas Hozza <thozza@xxxxxxxxxx> - 12:4.2.5-16 - rebuild against new bind -------------------------------------------------------------------------------- References: [ 1 ] Bug #989207 - NM dispatcher script leaks error exit code https://bugzilla.redhat.com/show_bug.cgi?id=989207 -------------------------------------------------------------------------------- ================================================================================ ghc-indents-0.3.3-1.fc19 (FEDORA-2013-16592) Indentation sensitive parser-combinators for parsec -------------------------------------------------------------------------------- Update Information: - Indentation sensitive parser-combinators for parsec - http://hackage.haskell.org/package/indents -------------------------------------------------------------------------------- References: [ 1 ] Bug #982192 - Review Request: ghc-indents - Indentation sensitive parser-combinators for parsec https://bugzilla.redhat.com/show_bug.cgi?id=982192 -------------------------------------------------------------------------------- ================================================================================ glpi-0.83.9.1-4.fc19 (FEDORA-2013-16601) Free IT asset management software -------------------------------------------------------------------------------- Update Information: Security improvement: restrict access to installation wizard from local server only. Remote access need to be explicitly allowed in configuration (/etc/httpd/conf.d/glpi.conf). -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Remi Collet <remi@xxxxxxxxxxxxxxxxx> - 0.83.9.1-4 - restrict access for install to local for security - drop bundled Flash files files, #1000251 - Add a missing requirement on crontabs to spec file -------------------------------------------------------------------------------- ================================================================================ gnome-shell-extensions-3.8.4-1.fc19 (FEDORA-2013-16600) Modify and extend GNOME Shell functionality and behavior -------------------------------------------------------------------------------- Update Information: Bugfixes for GNOME 3.8.x -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Debarshi Ray <rishi@xxxxxxxxxxxxxxxxx> - 3.8.4-1 - Update to 3.8.4 -------------------------------------------------------------------------------- ================================================================================ gnome-themes-standard-3.8.4-1.fc19 (FEDORA-2013-16600) Standard themes for GNOME applications -------------------------------------------------------------------------------- Update Information: Bugfixes for GNOME 3.8.x -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Debarshi Ray <rishi@xxxxxxxxxxxxxxxxx> - 3.8.4-1 - Update to 3.8.4 -------------------------------------------------------------------------------- ================================================================================ gnomeradio-1.8-22.fc19 (FEDORA-2013-16572) Graphical FM-Tuner program for GNOME -------------------------------------------------------------------------------- Update Information: This is an update that fixes the "no window" bug, which prevented the gui to appear on screen. -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Paulo Roma <roma@xxxxxxxxxxx> - 1.8-22 - Applied gnomeradio-1.8-expose-event.patch and gnomeradio-1.8-gui.patch * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.8-21 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #826690 - Gnomeradio problem - no window! https://bugzilla.redhat.com/show_bug.cgi?id=826690 -------------------------------------------------------------------------------- ================================================================================ ldapvi-1.7-17.fc19 (FEDORA-2013-16570) An interactive LDAP client -------------------------------------------------------------------------------- Update Information: Add fix of double free() crash (#949157), also fix old FSF address -------------------------------------------------------------------------------- ChangeLog: * Wed Sep 11 2013 Matěj Cepl <mcepl@xxxxxxxxxx> - 1.7-17 - Add fix of double free() crash (#949157) - Fix old FSF address * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.7-16 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #949157 - [PATCH] fix use-after-free in sasl code https://bugzilla.redhat.com/show_bug.cgi?id=949157 -------------------------------------------------------------------------------- ================================================================================ libreoffice-4.1.1.2-4.fc19 (FEDORA-2013-16606) Free Software Productivity Suite -------------------------------------------------------------------------------- Update Information: crash in SwCommentRuler on large documents -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Caolán McNamara <caolanm@xxxxxxxxxx> - 1:4.1.1.2-4 - Resolves: rhbz#1006850 crash in SwCommentRuler Tue Sep 03 2013 Caolán McNamara <caolanm@xxxxxxxxxx> - 1:4.1.1.2-3 - Resolves: rhbz#993963 NULL m_pWindow on firefox close plugin window -------------------------------------------------------------------------------- References: [ 1 ] Bug #1006850 - writer crash at SwPostItMgr::GetSidebarWidth (this=this@entry=0x0, bPx=bPx@entry=true) https://bugzilla.redhat.com/show_bug.cgi?id=1006850 -------------------------------------------------------------------------------- ================================================================================ libscrypt-1.14-1.fc19 (FEDORA-2013-16614) Library that implements the secure password hashing function "scrypt" -------------------------------------------------------------------------------- Update Information: Update to v1.14 fixes a truncation bug -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- ================================================================================ licq-1.8.0-1.fc19 (FEDORA-2013-16619) A graphical ICQ client with multiple protocols support -------------------------------------------------------------------------------- Update Information: New version with Obsolete -console as no longer maintained by upstream. -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Christopher Meng <rpm@xxxxxxxx> - 1.8.0-1 - New bugfix release introduces support for multiple accounts per protocol. - Removed console plugin (no longer maintained) -------------------------------------------------------------------------------- ================================================================================ lightdm-1.6.2-1.fc19 (FEDORA-2013-16388) Lightweight Display Manager -------------------------------------------------------------------------------- Update Information: New stable bugfix, security release: include: * Correctly set permissions on Xauthority file. * Fix bug where seat failure before D-Bus acquired would not stop daemon * Stop using g_file_set_contents - it can leave intermediate files around See also: http://lists.freedesktop.org/archives/lightdm/2013-September/000439.html http://lists.freedesktop.org/archives/lightdm/2013-September/000447.html -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> - 1.6.2-1 - lightdm-1.6.2 - Word-readable .Xauthority (#1007187, CVE-2013-4331) * Fri Sep 6 2013 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 1.6.1-1 - lightdm-1.6.1 * Tue Aug 20 2013 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 1.6.0-11 - remove systemd preset (#963899) -------------------------------------------------------------------------------- References: [ 1 ] Bug #985861 - [abrt] lightdm-gtk-1.5.1-3.fc19: g_malloc: Process /usr/sbin/lightdm-gtk-greeter was killed by signal 11 (SIGSEGV) https://bugzilla.redhat.com/show_bug.cgi?id=985861 [ 2 ] Bug #1007187 - lightdm: lightdm : Word-readable .Xauthority : [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1007187 -------------------------------------------------------------------------------- ================================================================================ mate-icon-theme-faenza-1.6.1-0.1.gitc147867.fc19 (FEDORA-2013-16623) Extra set of icon themes for MATE Desktop -------------------------------------------------------------------------------- Update Information: - update to latest git snapshot - fix mate-icon-theme-faenza included Trademark and non-free logo, rhbz (#1005464) -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- References: [ 1 ] Bug #1005464 - mate-icon-theme-faenza included Trademark and non-free logo. https://bugzilla.redhat.com/show_bug.cgi?id=1005464 -------------------------------------------------------------------------------- ================================================================================ mate-panel-1.6.1-4.fc19 (FEDORA-2013-16599) MATE Desktop panel applets -------------------------------------------------------------------------------- Update Information: - add runtime require mate-file-manager-schemas, fix rhbz (#1007219) -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Wolfgang Ulbrich <chat-to-me@xxxxxxxxx> - 1.6.1-4 - add runtime require mate-file-manager-schemas, fix rhbz (#1007219) * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.6.1-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1007219 - mate-panel needs mate-file-manager-schemas to run https://bugzilla.redhat.com/show_bug.cgi?id=1007219 -------------------------------------------------------------------------------- ================================================================================ maven-patch-plugin-1.1.1-8.fc19 (FEDORA-2013-16593) Maven Patch Plugin -------------------------------------------------------------------------------- Update Information: Implement new packaging guidelines (mvn-rpmbuild → mvn-build) -------------------------------------------------------------------------------- ChangeLog: * Wed Sep 11 2013 Mattias Ellert <mattias.ellert@xxxxxxxxxxxx> - 1.1.1-8 - Use mvn-build instead of mvn-rpmbuild * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.1.1-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ nf3d-0.8-1.fc19 (FEDORA-2013-16616) GANTT-style visualization for netfilter connections and logged packets -------------------------------------------------------------------------------- Update Information: New RPM. -------------------------------------------------------------------------------- References: [ 1 ] Bug #967485 - Review Request: nf3d - GANTT-style visualization for Netfilter connections and logged packets https://bugzilla.redhat.com/show_bug.cgi?id=967485 -------------------------------------------------------------------------------- ================================================================================ openscap-0.9.12-1.fc19 (FEDORA-2013-16581) Set of open source libraries enabling integration of the SCAP line of standards -------------------------------------------------------------------------------- Update Information: Update to new upstream release. Bug fixes and smaller improvements. -------------------------------------------------------------------------------- ChangeLog: * Wed Sep 11 2013 Šimon Lukašík <slukasik@xxxxxxxxxx> 0.9.12-1 - upgrade -------------------------------------------------------------------------------- ================================================================================ openvpn-2.3.2-4.fc19 (FEDORA-2013-16586) A full-featured SSL VPN solution -------------------------------------------------------------------------------- Update Information: Enable --enable-x509-alt-username. -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Jon Ciesla <limburgher@xxxxxxxxx> 2.3.2-4 - Enable --enable-x509-alt-username, BZ 1007184. * Wed Aug 7 2013 Jon Ciesla <limburgher@xxxxxxxxx> 2.3.2-3 - Fix find syntax to fix FTBFS, BZ 992411. * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.3.2-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1007184 - Request to enable the "--enable-x509-alt-username" compile-time option https://bugzilla.redhat.com/show_bug.cgi?id=1007184 -------------------------------------------------------------------------------- ================================================================================ osm2pgsql-0.82.0-1.fc19 (FEDORA-2013-16591) Imports map data from OpenStreetMap to a PostgreSQL database -------------------------------------------------------------------------------- Update Information: * Thu Sep 12 2013 Fabian Affolter <mail@xxxxxxxxxxxxxxxxxx> - 0.82.0-1 - Updated to latest upstream version 0.82.0 - Spec file updated -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Fabian Affolter <mail@xxxxxxxxxxxxxxxxxx> - 0.82.0-1 - Updated to latest upstream version 0.82.0 - Spec file updated * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.70.5-0.14.20121021svn - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ perl-File-KeePass-2.03-3.fc19 (FEDORA-2013-16589) Interface to KeePass V1 and V2 database files -------------------------------------------------------------------------------- Update Information: Interface to KeePass V1 and V2 database files -------------------------------------------------------------------------------- References: [ 1 ] Bug #1002321 - Review Request: perl-File-KeePass - Interface to KeePass V1 and V2 database files https://bugzilla.redhat.com/show_bug.cgi?id=1002321 -------------------------------------------------------------------------------- ================================================================================ perl-Hash-MoreUtils-0.03-1.fc19 (FEDORA-2013-16585) Provide the stuff missing in Hash::Util -------------------------------------------------------------------------------- Update Information: -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Ralf Corsépius <corsepiu@xxxxxxxxxxxxxxxxx> - 0.03-1 - Upstream update. - Reflect upstream having abandoned pod-, manifest-testing and RELEASE_TESTING. - Modernize spec. -------------------------------------------------------------------------------- ================================================================================ perl-Parallel-Scoreboard-0.04-1.fc19 (FEDORA-2013-16576) Scoreboard for monitoring status of many processes -------------------------------------------------------------------------------- Update Information: -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Ralf Corsépius <corsepiu@xxxxxxxxxxxxxxxxx> - 0.04-1 - Upstream update. - Modernize spec. * Mon Jul 22 2013 Petr Pisar <ppisar@xxxxxxxxxx> - 0.03-9 - Perl 5.18 rebuild - Remove bundled modules Test::Builder and Test::Builder::Module because they have to match Test::More (CPAN RT#87136) -------------------------------------------------------------------------------- ================================================================================ perl-perl5i-2.12.0-3.fc19 (FEDORA-2013-16608) Fix as much of Perl 5 as possible in one pragma -------------------------------------------------------------------------------- Update Information: This is the first Fedora release of perl-perl5i. -------------------------------------------------------------------------------- References: [ 1 ] Bug #998496 - Review Request: perl-perl5i - Fix as much of Perl 5 as possible in one pragma https://bugzilla.redhat.com/show_bug.cgi?id=998496 -------------------------------------------------------------------------------- ================================================================================ pgadmin3-1.18.0-1.fc19 (FEDORA-2013-16611) Graphical client for PostgreSQL -------------------------------------------------------------------------------- Update Information: Update to 1.18.0 -------------------------------------------------------------------------------- ChangeLog: * Wed Sep 11 2013 Devrim GUNDUZ <devrim@xxxxxxxxxx> 1.18.0-1 - Update to 1.18.0 - Trim changelog -------------------------------------------------------------------------------- ================================================================================ php-htmLawed-1.1.16-1.fc19 (FEDORA-2013-16603) PHP code to purify and filter HTML -------------------------------------------------------------------------------- Update Information: htmLawed 1.1.16, 29 August 2013: - fix for a potential security vulnerability arising from specialy encoded space characters in URL schemes/protocols -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Remi Collet <remi@xxxxxxxxxxxxxxxxx> - 1.1.16-1 - update to 1.1.16, fix for a potential security vulnerability arising from specialy encoded space characters in URL schemes/protocols -------------------------------------------------------------------------------- ================================================================================ python-queuelib-1.0-2.fc19 (FEDORA-2013-16579) A collection of persistent (disk-based) queues -------------------------------------------------------------------------------- Update Information: * Mon Sep 09 2013 Fabian Affolter <mail@xxxxxxxxxxxxxxxxxx> - 1.0-2 - Python macro updated * Wed Sep 04 2013 Fabian Affolter <mail@xxxxxxxxxxxxxxxxxx> - 1.0-1 - Initial spec file for Fedora -------------------------------------------------------------------------------- References: [ 1 ] Bug #1004192 - Review Request: python-queuelib - A collection of persistent (disk-based) queues https://bugzilla.redhat.com/show_bug.cgi?id=1004192 -------------------------------------------------------------------------------- ================================================================================ python-rtslib-2.1.fb39-1.fc19 (FEDORA-2013-16571) API for Linux kernel LIO SCSI target -------------------------------------------------------------------------------- Update Information: fix fcoe Fix disk partition size issue. Fix disk partition size issue. Fix disk partition size issue. -------------------------------------------------------------------------------- ChangeLog: * Wed Sep 11 2013 Andy Grover <agrover@xxxxxxxxxx> - 2.1.fb39-1 - New upstream version, fixes fcoe * Tue Sep 10 2013 Andy Grover <agrover@xxxxxxxxxx> - 2.1.fb38-1 - New upstream version * Sun Aug 4 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.1.fb37-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1006077 - targetcli fails when attempt to list non standard block device partitions https://bugzilla.redhat.com/show_bug.cgi?id=1006077 -------------------------------------------------------------------------------- ================================================================================ qt5-qttools-5.1.1-3.fc19 (FEDORA-2013-16588) Qt5 - QtTool components -------------------------------------------------------------------------------- Update Information: Fix lrelease for cmake projects. -------------------------------------------------------------------------------- ChangeLog: * Wed Sep 11 2013 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 5.1.1-3 - wrong path to lrelease (#1006254) - %check: first try * Tue Sep 10 2013 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 5.1.1-2 - ExclusiveArch: i386 i486 i586 i686 pentium3 pentium4 athlon geode x86_64 armv3l armv4b armv4l armv4tl armv5tel armv5tejl armv6l armv7l armv7hl armv7hnl - epel-6 love -------------------------------------------------------------------------------- References: [ 1 ] Bug #1006254 - wrong path to lrelease https://bugzilla.redhat.com/show_bug.cgi?id=1006254 -------------------------------------------------------------------------------- ================================================================================ qtbrowserplugin-2.4-2.fc19 (FEDORA-2013-16596) Qt Solutions Component: Browser Plugin -------------------------------------------------------------------------------- Update Information: The QtBrowserPlugin solution is useful for implementing plugins for web browser. -------------------------------------------------------------------------------- ================================================================================ rubygem-mini_portile-0.5.1-1.fc19 (FEDORA-2013-16622) Simplistic port-like solution for developers -------------------------------------------------------------------------------- Update Information: This is a new package. -------------------------------------------------------------------------------- ================================================================================ rubygem-mysql2-0.3.13-1.fc19 (FEDORA-2013-16612) A simple, fast Mysql library for Ruby, binding to libmysql -------------------------------------------------------------------------------- Update Information: Initial upload of rubygem-mysql2 -------------------------------------------------------------------------------- References: [ 1 ] Bug #974889 - Review Request: rubygem-mysql2 - A simple, fast Mysql library for Ruby, binding to libmysql https://bugzilla.redhat.com/show_bug.cgi?id=974889 -------------------------------------------------------------------------------- ================================================================================ rubygem-text-1.2.3-2.fc19 (FEDORA-2013-16609) Collection of text algorithms -------------------------------------------------------------------------------- Update Information: This is a new package. -------------------------------------------------------------------------------- ================================================================================ selinux-policy-3.12.1-74.3.fc19 (FEDORA-2013-16580) SELinux policy configuration -------------------------------------------------------------------------------- Update Information: Here is where you give an explanation of your update. -------------------------------------------------------------------------------- ChangeLog: * Wed Sep 11 2013 Lukas Vrabec <lvrabec@xxxxxxxxxx> 3.12.1-74.3 - Treat usr_t just like bin_t for transitions and executions - Allow memcache to read sysfs data - openct needs to be able to create netlink_object_uevent_sockets - Allow nslcd to read /sys/devices/system/cpu - Allow mdadm to read /dev/mei - amanda_exec_t needs to be executable file - Add additional labeling for qemu-ga/fsfreeze-hook.d scripts - Allow setpgid and r/w cluster tmpfs for fenced_t - Allow block_suspend cap for samba-net - Allow mpd setcap which is needed by pulseaudio - Add antivirus_home_t type for antivirus date in HOMEDIRS - Allow glance-api to connect to amqp port - Fix wrong capabilities in rhcs policy -------------------------------------------------------------------------------- References: [ 1 ] Bug #997142 - SELinux is preventing /usr/libexec/accounts-daemon from using the 'net_bind_service' capabilities. https://bugzilla.redhat.com/show_bug.cgi?id=997142 [ 2 ] Bug #1004312 - SELinux is preventing /usr/sbin/openct-control from 'create' accesses on the netlink_kobject_uevent_socket . https://bugzilla.redhat.com/show_bug.cgi?id=1004312 [ 3 ] Bug #1005453 - SELinux is preventing /usr/bin/pulseaudio from using the 'setcap' accesses on a process. https://bugzilla.redhat.com/show_bug.cgi?id=1005453 [ 4 ] Bug #1006484 - openstack-glance needs access to amqp https://bugzilla.redhat.com/show_bug.cgi?id=1006484 [ 5 ] Bug #1003289 - switching to root from a confined user generates a lot of AVC https://bugzilla.redhat.com/show_bug.cgi?id=1003289 [ 6 ] Bug #1005509 - AVC for mdadm https://bugzilla.redhat.com/show_bug.cgi?id=1005509 -------------------------------------------------------------------------------- ================================================================================ vicious-2.1.1-4.fc19 (FEDORA-2013-16618) Modular widget library for awesome -------------------------------------------------------------------------------- Update Information: Vicious widget types are a framework for creating your own awesome widgets. Vicious contains modules that gather data about your system, and a few helper functions that make it easier to register timers, suspend widgets and so on. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1004053 - Package Review: vicious - Framework for Awesome to create widgets based on LUA https://bugzilla.redhat.com/show_bug.cgi?id=1004053 -------------------------------------------------------------------------------- ================================================================================ wireshark-1.10.2-2.fc19 (FEDORA-2013-16574) Network traffic analyzer -------------------------------------------------------------------------------- Update Information: * Add basic OpenFlow dissector * Ver. 1.10.2 * Ver. 1.10.1 fix missing ws_symbol_export.h * Ver. 1.10.2 * Ver. 1.10.1 fix missing ws_symbol_export.h -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Peter Lemenkov <lemenkov@xxxxxxxxx> - 1.10.2-2 - Add an OpenFlow dissector * Wed Sep 11 2013 Peter Lemenkov <lemenkov@xxxxxxxxx> - 1.10-2-1 - Ver. 1.10.2 - Actually remove the console helper -------------------------------------------------------------------------------- References: [ 1 ] Bug #990155 - CVE-2013-4920 wireshark: DoS (application crash) in the P1 dissector (wnpa-sec-2013-42) https://bugzilla.redhat.com/show_bug.cgi?id=990155 [ 2 ] Bug #990156 - CVE-2013-4921 wireshark: Off-by-one (application crash) in the Radiotap dissector (wnpa-sec-2013-43) https://bugzilla.redhat.com/show_bug.cgi?id=990156 [ 3 ] Bug #990157 - CVE-2013-4922 wireshark: Double-free in the DCOM ISystemActivator dissector (wnpa-sec-2013-44) https://bugzilla.redhat.com/show_bug.cgi?id=990157 [ 4 ] Bug #990160 - CVE-2013-4923 wireshark: Memory leak (DoS, memory consumption) in the DCOM ISystemActivator dissector (wnpa-sec-2013-44) https://bugzilla.redhat.com/show_bug.cgi?id=990160 [ 5 ] Bug #990163 - CVE-2013-4924 wireshark: Assertion failure in the DCOM ISystemActivator dissector (wnpa-sec-2013-44) https://bugzilla.redhat.com/show_bug.cgi?id=990163 [ 6 ] Bug #990164 - CVE-2013-4925 wireshark: Integer signedness error in the DCOM ISystemActivator dissector (wnpa-sec-2013-44) https://bugzilla.redhat.com/show_bug.cgi?id=990164 [ 7 ] Bug #990165 - CVE-2013-4926 wireshark: DoS in the DCOM ISystemActivator dissector due improper remaining data to process presence check (wnpa-sec-2013-44) https://bugzilla.redhat.com/show_bug.cgi?id=990165 [ 8 ] Bug #990166 - CVE-2013-4927 wireshark: Integer signedness error in the Bluetooth SDP dissector (wnpa-sec-2013-45) https://bugzilla.redhat.com/show_bug.cgi?id=990166 -------------------------------------------------------------------------------- ================================================================================ wireshark-1.10.2-4.fc19 (FEDORA-2013-16577) Network traffic analyzer -------------------------------------------------------------------------------- Update Information: * Enhance desktop integration (*.desktop and MIME-related files) * Add basic OpenFlow dissector * Ver. 1.10.2 * Ver. 1.10.1 fix missing ws_symbol_export.h * Ver. 1.10.2 * Ver. 1.10.1 fix missing ws_symbol_export.h -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 12 2013 Peter Lemenkov <lemenkov@xxxxxxxxx> - 1.10.2-4 - Enhance desktop integration (*.desktop and MIME-related files) * Thu Sep 12 2013 Peter Lemenkov <lemenkov@xxxxxxxxx> - 1.10.2-3 - Fix building on Fedora 18 (no perl-podlators) * Thu Sep 12 2013 Peter Lemenkov <lemenkov@xxxxxxxxx> - 1.10.2-2 - Add an OpenFlow dissector * Wed Sep 11 2013 Peter Lemenkov <lemenkov@xxxxxxxxx> - 1.10-2-1 - Ver. 1.10.2 - Actually remove the console helper -------------------------------------------------------------------------------- References: [ 1 ] Bug #990155 - CVE-2013-4920 wireshark: DoS (application crash) in the P1 dissector (wnpa-sec-2013-42) https://bugzilla.redhat.com/show_bug.cgi?id=990155 [ 2 ] Bug #990156 - CVE-2013-4921 wireshark: Off-by-one (application crash) in the Radiotap dissector (wnpa-sec-2013-43) https://bugzilla.redhat.com/show_bug.cgi?id=990156 [ 3 ] Bug #990157 - CVE-2013-4922 wireshark: Double-free in the DCOM ISystemActivator dissector (wnpa-sec-2013-44) https://bugzilla.redhat.com/show_bug.cgi?id=990157 [ 4 ] Bug #990160 - CVE-2013-4923 wireshark: Memory leak (DoS, memory consumption) in the DCOM ISystemActivator dissector (wnpa-sec-2013-44) https://bugzilla.redhat.com/show_bug.cgi?id=990160 [ 5 ] Bug #990163 - CVE-2013-4924 wireshark: Assertion failure in the DCOM ISystemActivator dissector (wnpa-sec-2013-44) https://bugzilla.redhat.com/show_bug.cgi?id=990163 [ 6 ] Bug #990164 - CVE-2013-4925 wireshark: Integer signedness error in the DCOM ISystemActivator dissector (wnpa-sec-2013-44) https://bugzilla.redhat.com/show_bug.cgi?id=990164 [ 7 ] Bug #990165 - CVE-2013-4926 wireshark: DoS in the DCOM ISystemActivator dissector due improper remaining data to process presence check (wnpa-sec-2013-44) https://bugzilla.redhat.com/show_bug.cgi?id=990165 [ 8 ] Bug #990166 - CVE-2013-4927 wireshark: Integer signedness error in the Bluetooth SDP dissector (wnpa-sec-2013-45) https://bugzilla.redhat.com/show_bug.cgi?id=990166 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test