The following Fedora 18 Security updates need testing: Age URL 48 https://admin.fedoraproject.org/updates/FEDORA-2013-21875/389-ds-base-1.3.0.9-1.fc18 22 https://admin.fedoraproject.org/updates/FEDORA-2013-23662/rubygem-actionpack-3.2.8-4.fc18 22 https://admin.fedoraproject.org/updates/FEDORA-2013-23663/ibus-chewing-1.4.4-1.fc18 14 https://admin.fedoraproject.org/updates/FEDORA-2013-23988/varnish-3.0.5-1.fc18 1 https://admin.fedoraproject.org/updates/FEDORA-2014-0513/strongswan-5.1.1-4.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2014-0085/rubygem-will_paginate-3.0.2-6.fc18 The following Fedora 18 Critical Path updates have yet to be approved: Age URL 335 https://admin.fedoraproject.org/updates/FEDORA-2013-2192/nautilus-3.6.3-5.fc18 1 https://admin.fedoraproject.org/updates/FEDORA-2014-0515/selinux-policy-3.11.1-109.fc18 0 https://admin.fedoraproject.org/updates/FEDORA-2014-0673/system-config-date-1.10.7-1.fc18 The following builds have been pushed to Fedora 18 updates-testing cmake-fedora-1.2.3-1.fc18 rubygem-will_paginate-3.0.2-6.fc18 subsurface-4.0.2-1.fc18 system-config-date-1.10.7-1.fc18 Details about builds: ================================================================================ cmake-fedora-1.2.3-1.fc18 (FEDORA-2014-0596) CMake helper modules for fedora developers -------------------------------------------------------------------------------- Update Information: - Resolves Bug 1040333 - RFE: Suiport .gitignore file as source of CPACK_SOURCE_IGNORE_FILES - Resolves Bug 1046213 - RFE: RPM ChangeLog should be generated by newest build from koji - Enhancement: + ChangeLog.prev is no longer required. + RPM-ChangeLog.prev is provide by koji now. + cmake-fedora-koji: - new subcommand: newest-build and newest-changelog. + cmake-fedora-changelog: new script. + New targets: - tag_push: Push to git. + ManageFile: - Add absolute file support - MANAGE_FILE_INSTALL: Add TARGETS support. - MANAGE_FILE_INSTALL: Add RENAME support. - GIT_GLOB_TO_CMAKE_REGEX: Convert git glob to cmake regex + ManageArchive: - PACK_SOURCE_CPACK: Pack with CPack - PACK_SOURCE_ARCHIVE: Now can specify OUTPUT_FILE. - SOURCE_ARCHIVE_CONTENTS_ADD: Add file to source archive. - SOURCE_ARCHIVE_CONTENTS_ADD_NO_CHECK: Add file to source archive without checking. + ManageDependency: Manage dependencies. + ManageRPM: - PACK_RPM: New options: SPEC_IN and SPEC. - RPM_SPEC_STRING_ADD: Add a string to SPEC string. - RPM_SPEC_STRING_ADD_DIRECTIVE: Add a directive to SPEC string. - RPM_SPEC_STRING_ADD_TAG: Add a string to SPEC string. + ManageString: - STRING_APPEND: Append a string to a variable. - STRING_PADDING: Padding the string to specified length - STRING_PREPEND: Prepend a string to a variable. + ManageTranslation: - MANAGE_GETTEXT: + Can specify MSGFMT_OPTIONS and MSGMERGE_OPTIONS + Add gettext-devel to BUILD_REQUIRES. + ManageVariable: - VARIABLE_TO_ARGN: Merge the variable and options to the form of ARGN. + Cached variables: - RPM_SPEC_CMAKE_FLAG: cmake flags in rpm build. - RPM_SPEC_MAKE_FLAG: make flags in rpm build. - Changed Modules: + ManageArchive: - PACK_SOURCE_ARCHIVE: Can now pass either empty, outputDir, or source File. + ManageGConf2: Fixed. + ManageString: STRING_SPLIT: New Option: ALLOW_EMPTY + ManageRPM - Add support of pre, post, and preun + ManageVariable: - VARIABLE_PARSE_ARGN can now handle multiple-appeared options. - Changed: + CMake policy no longer enforced by default. + ManageString: STRING_SPLIT is changed from macro to function, so no need to put excessive backslashes. - Removed: + Target after_release_commit and related are no longer required and thus removed. -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 9 2014 Ding-Yi Chen <dchen at redhat.com> - 1.2.3-1 - Resolves Bug 1040333 - RFE: Suiport .gitignore file as source of CPACK_SOURCE_IGNORE_FILES - Resolves Bug 1046213 - RFE: RPM ChangeLog should be generated by newest build from koji - Enhancement: + ChangeLog.prev is no longer required. + RPM-ChangeLog.prev is provide by koji now. + cmake-fedora-koji: - new subcommand: newest-build and newest-changelog. + cmake-fedora-changelog: new script. + New targets: - tag_push: Push to git. + ManageFile: - Add absolute file support - MANAGE_FILE_INSTALL: Add TARGETS support. - MANAGE_FILE_INSTALL: Add RENAME support. - GIT_GLOB_TO_CMAKE_REGEX: Convert git glob to cmake regex + ManageArchive: - PACK_SOURCE_CPACK: Pack with CPack - PACK_SOURCE_ARCHIVE: Now can specify OUTPUT_FILE. - SOURCE_ARCHIVE_CONTENTS_ADD: Add file to source archive. - SOURCE_ARCHIVE_CONTENTS_ADD_NO_CHECK: Add file to source archive without checking. + ManageDependency: Manage dependencies. + ManageRPM: - PACK_RPM: New options: SPEC_IN and SPEC. - RPM_SPEC_STRING_ADD: Add a string to SPEC string. - RPM_SPEC_STRING_ADD_DIRECTIVE: Add a directive to SPEC string. - RPM_SPEC_STRING_ADD_TAG: Add a string to SPEC string. + ManageString: - STRING_APPEND: Append a string to a variable. - STRING_PADDING: Padding the string to specified length - STRING_PREPEND: Prepend a string to a variable. + ManageTranslation: - MANAGE_GETTEXT: + Can specify MSGFMT_OPTIONS and MSGMERGE_OPTIONS + Add gettext-devel to BUILD_REQUIRES. + ManageVariable: - VARIABLE_TO_ARGN: Merge the variable and options to the form of ARGN. + Cached variables: - RPM_SPEC_CMAKE_FLAG: cmake flags in rpm build. - RPM_SPEC_MAKE_FLAG: make flags in rpm build. - Changed Modules: + ManageArchive: - PACK_SOURCE_ARCHIVE: Can now pass either empty, outputDir, or source File. + ManageGConf2: Fixed. + ManageString: STRING_SPLIT: New Option: ALLOW_EMPTY + ManageRPM - Add support of pre, post, and preun + ManageVariable: - VARIABLE_PARSE_ARGN can now handle multiple-appeared options. - Changed: + CMake policy no longer enforced by default. + ManageString: STRING_SPLIT is changed from macro to function, so no need to put excessive backslashes. - Removed: + Target after_release_commit and related are no longer required and thus removed. -------------------------------------------------------------------------------- ================================================================================ rubygem-will_paginate-3.0.2-6.fc18 (FEDORA-2014-0085) Most awesome pagination solution for Rails -------------------------------------------------------------------------------- Update Information: Fix XSS vulnerabilities (CVE-2013-6459). -------------------------------------------------------------------------------- ChangeLog: * Fri Jan 10 2014 Vít Ondruch <vondruch@xxxxxxxxxx> - 3.0.2-6 - Fix XSS vulnerabilities (CVE-2013-6459) (add one more patch pointed out in the associated bug). * Thu Jan 2 2014 Vít Ondruch <vondruch@xxxxxxxxxx> - 3.0.2-5 - Fix XSS vulnerabilities (CVE-2013-6459). - Disable Sequel test, since Sequel 4.x does not seem to be supported by will_paginate yet. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1046642 - CVE-2013-6459 rubygem-will_paginate: XSS vulnerabilities https://bugzilla.redhat.com/show_bug.cgi?id=1046642 -------------------------------------------------------------------------------- ================================================================================ subsurface-4.0.2-1.fc18 (FEDORA-2014-0595) A feature-full divelog in Qt -------------------------------------------------------------------------------- Update Information: Update to 4.0.2 -------------------------------------------------------------------------------- ChangeLog: * Fri Jan 10 2014 Pierre-Yves Chibon <pingou@xxxxxxxxxxxx> - 4.0.2-1 - Update to release 4.0.2 * Sun Dec 15 2013 Pierre-Yves Chibon <pingou@xxxxxxxxxxxx> - 4.0-1 - Update to release 4.0 * Mon Dec 9 2013 Pierre-Yves Chibon <pingou@xxxxxxxxxxxx> - 3.9.2-1 - Update to 3.9.2 which is the second beta release before 4.0 * Wed Aug 7 2013 Pierre-Yves Chibon <pingou@xxxxxxxxxxxx> - 3.1.1-3 - Rebuild to fix broken dependency * Sun Aug 4 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 3.1.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ system-config-date-1.10.7-1.fc18 (FEDORA-2014-0673) A graphical interface for modifying system date and time -------------------------------------------------------------------------------- Update Information: This update fixes a bug where system-config-date erroneously used obsolete SysVinit mechanisms which made it impossible to enable synchronizing the system time over NTP. Additionally, it contains updated translations. -------------------------------------------------------------------------------- ChangeLog: * Fri Jan 10 2014 Nils Philippsen <nils@xxxxxxxxxx> - 1.10.7-1 - cope with systemd executables in several possible locations (#1048136) - pull updated translations * Fri Oct 4 2013 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 1.10.6-2 - use optimized icon scriptlets -------------------------------------------------------------------------------- References: [ 1 ] Bug #1048136 - Synchronize date and time over the network does not work https://bugzilla.redhat.com/show_bug.cgi?id=1048136 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test