The following Fedora 20 Security updates need testing: Age URL 75 https://admin.fedoraproject.org/updates/FEDORA-2013-24018/varnish-3.0.5-1.fc20 56 https://admin.fedoraproject.org/updates/FEDORA-2014-0792/libinfinity-0.5.5-1.fc20 31 https://admin.fedoraproject.org/updates/FEDORA-2014-2221/NetworkManager-ssh-0.9.2-0.2.20140209git46247c2.fc20 26 https://admin.fedoraproject.org/updates/FEDORA-2014-2452/augeas-1.2.0-1.fc20 22 https://admin.fedoraproject.org/updates/FEDORA-2014-2693/openstack-glance-2013.2.2-1.fc20 21 https://admin.fedoraproject.org/updates/FEDORA-2014-2751/zabbix-2.0.11-2.fc20 19 https://admin.fedoraproject.org/updates/FEDORA-2014-2875/oath-toolkit-2.4.1-3.fc20 15 https://admin.fedoraproject.org/updates/FEDORA-2014-3054/python-swiftclient-2.0.2-1.fc20 11 https://admin.fedoraproject.org/updates/FEDORA-2014-3300/pylint-1.1.0-1.fc20,python-astroid-1.0.1-2.fc20,python-logilab-common-0.61.0-1.fc20 8 https://admin.fedoraproject.org/updates/FEDORA-2014-3365/subversion-1.8.8-1.fc20 6 https://admin.fedoraproject.org/updates/FEDORA-2014-3454/mingw-gnutls-3.1.22-1.fc20 6 https://admin.fedoraproject.org/updates/FEDORA-2014-3497/catfish-1.0.1-1.fc20 5 https://admin.fedoraproject.org/updates/FEDORA-2014-3526/rubygem-rbovirt-0.0.18-4.fc20 2 https://admin.fedoraproject.org/updates/FEDORA-2014-3676/wireshark-1.10.6-1.fc20 0 https://admin.fedoraproject.org/updates/FEDORA-2014-3762/asterisk-11.8.1-1.fc20 0 https://admin.fedoraproject.org/updates/FEDORA-2014-3765/freetype-2.5.0-5.fc20 0 https://admin.fedoraproject.org/updates/FEDORA-2014-3778/jansson-2.6-1.fc20 0 https://admin.fedoraproject.org/updates/FEDORA-2014-3811/springframework-security-3.1.6-1.fc20 0 https://admin.fedoraproject.org/updates/FEDORA-2014-3796/samba-4.1.6-1.fc20 0 https://admin.fedoraproject.org/updates/FEDORA-2014-3795/libmodplug-0.8.8.5-1.fc20 The following Fedora 20 Critical Path updates have yet to be approved: Age URL 120 https://admin.fedoraproject.org/updates/FEDORA-2013-21163/libproxy-0.4.11-8.fc20 6 https://admin.fedoraproject.org/updates/FEDORA-2014-3510/krb5-1.11.5-5.fc20 0 https://admin.fedoraproject.org/updates/FEDORA-2014-3796/samba-4.1.6-1.fc20 0 https://admin.fedoraproject.org/updates/FEDORA-2014-3813/selinux-policy-3.12.1-135.fc20 0 https://admin.fedoraproject.org/updates/FEDORA-2014-3789/xorg-x11-drv-synaptics-1.7.4-1.fc20 0 https://admin.fedoraproject.org/updates/FEDORA-2014-3773/sqlite-3.8.4-1.fc20 The following builds have been pushed to Fedora 20 updates-testing dmlite-0.6.2-1.fc20 dmlite-shell-0.6.2-2.fc20 elixir-0.12.5-1.fc20 gscan2pdf-1.2.3-1.fc20 gtkd-2.0.0-46.20140301gitaf01da8.fc20 ibus-table-1.5.0.20140312-1.fc20 ktp-accounts-kcm-0.8.0-1.fc20 ktp-approver-0.8.0-1.fc20 ktp-auth-handler-0.8.0-1.fc20 ktp-call-ui-0.8.0-1.fc20 ktp-common-internals-0.8.0-1.fc20 ktp-contact-list-0.8.0-1.fc20 ktp-contact-runner-0.8.0-1.fc20 ktp-desktop-applets-0.8.0-1.fc20 ktp-filetransfer-handler-0.8.0-1.fc20 ktp-kded-integration-module-0.8.0-1.fc20 ktp-send-file-0.8.0-1.fc20 ktp-text-ui-0.8.0-1.fc20 libkpeople-0.2.1-1.fc20 libmodplug-0.8.8.5-1.fc20 nodejs-ansistyles-0.1.3-3.fc20 perl-Digest-SHA-5.85-5.fc20 perl-PDF-API2-2.021-1.fc20 powerline-0.0.1-6.20140226git70a94e.fc20 python-behave-1.2.3-9.fc20 python-colorama-0.2.7-2.fc20 qt5-qtbase-5.2.1-6.fc20 samba-4.1.6-1.fc20 selinux-policy-3.12.1-135.fc20 springframework-security-3.1.6-1.fc20 sssd-1.11.4-2.fc20 xorg-x11-drv-synaptics-1.7.4-1.fc20 Details about builds: ================================================================================ dmlite-0.6.2-1.fc20 (FEDORA-2014-3792) Common libraries for grid data management and storage -------------------------------------------------------------------------------- Update Information: dmlite release 0.6.2 -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 11 2014 Adrien Devresse <adevress at cern.ch> - 0.6.2-1 - dmlite release 0.6.2 -------------------------------------------------------------------------------- ================================================================================ dmlite-shell-0.6.2-2.fc20 (FEDORA-2014-3805) Shell environment for dmlite -------------------------------------------------------------------------------- Update Information: Fedora/EPEL push dmlite shell 0.6.2 Initial import dmlite shell -------------------------------------------------------------------------------- ================================================================================ elixir-0.12.5-1.fc20 (FEDORA-2014-3793) A modern approach to programming for the Erlang VM -------------------------------------------------------------------------------- Update Information: Update to upstream 0.12.5. Update to upstream 0.12.4. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Ricky Elrod <codeblock@xxxxxxxxxxxxxxxxx> - 0.12.5-1 - Update to upstream 0.12.5. * Thu Feb 13 2014 Ricky Elrod <codeblock@xxxxxxxxxxxxxxxxx> - 0.12.4-1 - Update to upstream 0.12.4. * Tue Feb 4 2014 Ricky Elrod <codeblock@xxxxxxxxxxxxxxxxx> - 0.12.3-1 - Update to upstream 0.12.3. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1074886 - elixir-0.12.5 is available https://bugzilla.redhat.com/show_bug.cgi?id=1074886 [ 2 ] Bug #1061065 - elixir-0.12.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=1061065 -------------------------------------------------------------------------------- ================================================================================ gscan2pdf-1.2.3-1.fc20 (FEDORA-2014-3784) GUI for producing a multipage PDF from a scan -------------------------------------------------------------------------------- Update Information: v 1.2.3 (bz #1034069) -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 11 2014 Bernard Johnson <bjohnson@xxxxxxxxxxxx> - 1.2.3-1 - v 1.2.3 (bz #1034069) - substitute a sed command to change gconftool-2 change -------------------------------------------------------------------------------- References: [ 1 ] Bug #1034069 - gscan2pdf-1.2.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=1034069 -------------------------------------------------------------------------------- ================================================================================ gtkd-2.0.0-46.20140301gitaf01da8.fc20 (FEDORA-2014-3802) D binding and OO wrapper of GTK+ -------------------------------------------------------------------------------- Update Information: Fix requires -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 10 2014 jonathan MERCIER <bioinfornatics@xxxxxxxxx> - 2.0.0-46.20140301gitaf01da8 - Fix requires * Sun Mar 9 2014 jonathan MERCIER <bioinfornatics@xxxxxxxxx> - 2.0.0-45.20140301gitaf01da8 - Update to latest rev * Mon Oct 28 2013 Jonathan MERCIER <bioinfornatics@xxxxxxxxx> - 2.0.0-44.20131026git33f6aeb - Update to rev 33f6aeb * Thu Oct 24 2013 Jonathan MERCIER <bioinfornatics@xxxxxxxxx> - 2.0.0-43.20131022git3948a30 - Update to rev 3948a30 * Wed Jun 26 2013 Jonathan MERCIER <bioinfornatics at fedoraproject dot org> - 2.0.0-42.20130624gitdb5921d - update url * Wed Jun 26 2013 Jonathan MERCIER <bioinfornatics at fedoraproject dot org> - 2.0.0-41.20130624gitdb5921d - update url * Mon Jun 24 2013 Jonathan MERCIER <bioinfornatics at fedoraproject dot org> - 2.0.0-40.20130624gitdb5921d - Update to rev db5921d * Sun Jun 23 2013 Jonathan MERCIER <bioinfornatics at fedoraproject dot org> - 2.0.0-39.20130619git7e95380 - Update to rev 7e95380 * Sun Jun 9 2013 Jonathan MERCIER <bioinfornatics at fedoraproject dot org> - 2.0.0-38.20130526git5073a70 - Update to rev 5073a70 * Fri May 24 2013 Jonathan MERCIER <bioinfornatics at fedoraproject dot org> - 2.0.0-37.20130519gitc19a533 - Update to rev c19a533 * Sat May 18 2013 Jonathan MERCIER <bioinfornatics at fedoraproject dot org> - 2.0.0-36.20130508git516693e - rebuild * Fri May 17 2013 <bioinfornatics at fedoraproject dot org> - 2.0.0-35.20130508git516693e - Update to rev 516693e * Thu May 16 2013 <bioinfornatics at fedoraproject dot org> - 2.0.0-34.20130508git516693e - Update to rev 516693e * Thu May 9 2013 Jonathan MERCIER <bioinfornatics at gmail.com> - 2.0.0-33.20130508git516693e - Update to rev 516693e * Wed May 8 2013 Jonathan MERCIER <bioinfornatics at gmail.com> - 2.0.0-32.20130508gitd53e7af - Update to rev d53e7af * Tue May 7 2013 Jonathan MERCIER <bioinfornatics at gmail.com> - 2.0.0-31.20130507gitc6f7e92 - Update to rev c6f7e92 * Tue May 7 2013 Jonathan MERCIER <bioinfornatics at gmail.com> - 2.0.0-30.20130506git4c3922d - Update to rev 4c3922d -------------------------------------------------------------------------------- ================================================================================ ibus-table-1.5.0.20140312-1.fc20 (FEDORA-2014-3814) The Table engine for IBus platform -------------------------------------------------------------------------------- Update Information: fix another regression introduced by the Python3 port (a spelling mistake in a variable name) -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Mike FABIAN <mfabian@xxxxxxxxxx> - 1.5.0.20140312-1 - update to latest upstream - fix another regression introduced by the Python3 port (a spelling mistake in a variable name) - Resolves: rhbz#1072940 * Tue Mar 11 2014 Mike FABIAN <mfabian@xxxxxxxxxx> - 1.5.0.20140311-1 - update to latest upstream - fix a regression introduced by the Python3 port - add a .desktop file and make the setup tool work with Gnome - make it possible to interrupt the setup tool with Control-C from the command line * Thu Mar 6 2014 Mike FABIAN <mfabian@xxxxxxxxxx> - 1.5.0.20140306-1 - update to latest upstream - Resolves: rhbz#1072940 - Left Shift stopped work for ibus-table-1.5.0.20140218-1.fc20.noarch - port from Python2 to Python3, require Python3 in this rpm now - fix directory for setup tool, setup tool should work now - add profiling support -------------------------------------------------------------------------------- References: [ 1 ] Bug #1072940 - Left Shift stopped work for ibus-table-1.5.0.20140218-1.fc20.noarch https://bugzilla.redhat.com/show_bug.cgi?id=1072940 -------------------------------------------------------------------------------- ================================================================================ ktp-accounts-kcm-0.8.0-1.fc20 (FEDORA-2014-3804) KDE Configuration Module for Telepathy Instant Messaging Accounts -------------------------------------------------------------------------------- Update Information: KDE Telepathy 0.8.0 release. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Jan Grulich <jgrulich@xxxxxxxxxx> 0.8.0-1 - 0.8.0 * Wed Feb 26 2014 Jan Grulich <jgrulich@xxxxxxxxxx> - 0.7.80-1 - 0.7.80 -------------------------------------------------------------------------------- ================================================================================ ktp-approver-0.8.0-1.fc20 (FEDORA-2014-3804) KDE Channel Approver for Telepathy -------------------------------------------------------------------------------- Update Information: KDE Telepathy 0.8.0 release. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Jan Grulich <jgrulich@xxxxxxxxxx> 0.8.0-1 - 0.8.0 * Wed Feb 26 2014 Jan Grulich <jgrulich@xxxxxxxxxx> - 0.7.80-1 - 0.7.80 -------------------------------------------------------------------------------- ================================================================================ ktp-auth-handler-0.8.0-1.fc20 (FEDORA-2014-3804) Provide UI/KWallet Integration -------------------------------------------------------------------------------- Update Information: KDE Telepathy 0.8.0 release. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Jan Grulich <jgrulich@xxxxxxxxxx> 0.8.0-1 - 0.8.0 * Wed Feb 26 2014 Jan Grulich <jgrulich@xxxxxxxxxx> - 0.7.80-1 - 0.7.80 -------------------------------------------------------------------------------- ================================================================================ ktp-call-ui-0.8.0-1.fc20 (FEDORA-2014-3804) Telepathy call handler -------------------------------------------------------------------------------- Update Information: KDE Telepathy 0.8.0 release. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Jan Grulich <jgrulich@xxxxxxxxxx> 0.8.0-1 - 0.8.0 * Wed Feb 26 2014 Jan Grulich <jgrulich@xxxxxxxxxx> - 0.7.80-1 - 0.7.80 -------------------------------------------------------------------------------- ================================================================================ ktp-common-internals-0.8.0-1.fc20 (FEDORA-2014-3804) Common internals for KDE Telepathy -------------------------------------------------------------------------------- Update Information: KDE Telepathy 0.8.0 release. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Jan Grulich <jgrulich@xxxxxxxxxx> 0.8.0-1 - 0.8.0 * Tue Feb 25 2014 Jan Grulich <jgrulich@xxxxxxxxxx> 0.7.80-1 - 0.7.80 -------------------------------------------------------------------------------- ================================================================================ ktp-contact-list-0.8.0-1.fc20 (FEDORA-2014-3804) Telepathy contact list application -------------------------------------------------------------------------------- Update Information: KDE Telepathy 0.8.0 release. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Jan Grulich <jgrulich@xxxxxxxxxx> 0.8.0-1 - 0.8.0 * Wed Feb 26 2014 Jan Grulich <jgrulich@xxxxxxxxxx> - 0.7.80-1 - 0.7.80 -------------------------------------------------------------------------------- ================================================================================ ktp-contact-runner-0.8.0-1.fc20 (FEDORA-2014-3804) Plasma runner for KDE Telepathy -------------------------------------------------------------------------------- Update Information: KDE Telepathy 0.8.0 release. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Jan Grulich <jgrulich@xxxxxxxxxx> 0.8.0-1 - 0.8.0 * Wed Feb 26 2014 Jan Grulich <jgrulich@xxxxxxxxxx> - 0.7.80-1 - 0.7.80 -------------------------------------------------------------------------------- ================================================================================ ktp-desktop-applets-0.8.0-1.fc20 (FEDORA-2014-3804) KDE Telepathy desktop applets -------------------------------------------------------------------------------- Update Information: KDE Telepathy 0.8.0 release. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Jan Grulich <jgrulich@xxxxxxxxxx> 0.8.0-1 - 0.8.0 * Wed Feb 26 2014 Jan Grulich <jgrulich@xxxxxxxxxx> - 0.7.80-1 - 0.7.80 -------------------------------------------------------------------------------- ================================================================================ ktp-filetransfer-handler-0.8.0-1.fc20 (FEDORA-2014-3804) Telepathy file transfer handler -------------------------------------------------------------------------------- Update Information: KDE Telepathy 0.8.0 release. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Jan Grulich <jgrulich@xxxxxxxxxx> 0.8.0-1 - 0.8.0 * Wed Feb 26 2014 Jan Grulich <jgrulich@xxxxxxxxxx> - 0.7.80-1 - 0.7.80 -------------------------------------------------------------------------------- ================================================================================ ktp-kded-integration-module-0.8.0-1.fc20 (FEDORA-2014-3804) KDE integration for telepathy -------------------------------------------------------------------------------- Update Information: KDE Telepathy 0.8.0 release. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Jan Grulich <jgrulich@xxxxxxxxxx> 0.8.0-1 - 0.8.0 * Wed Feb 26 2014 Jan Grulich <jgrulich@xxxxxxxxxx> - 0.7.80-1 - 0.7.80 -------------------------------------------------------------------------------- ================================================================================ ktp-send-file-0.8.0-1.fc20 (FEDORA-2014-3804) A File manager plugin to launch file transfer jobs -------------------------------------------------------------------------------- Update Information: KDE Telepathy 0.8.0 release. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Jan Grulich <jgrulich@xxxxxxxxxx> 0.8.0-1 - 0.8.0 * Wed Feb 26 2014 Jan Grulich <jgrulich@xxxxxxxxxx> - 0.7.80-1 - 0.7.80 -------------------------------------------------------------------------------- ================================================================================ ktp-text-ui-0.8.0-1.fc20 (FEDORA-2014-3804) Telepathy text chat handler -------------------------------------------------------------------------------- Update Information: KDE Telepathy 0.8.0 release. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Jan Grulich <jgrulich@xxxxxxxxxx> 0.8.0-1 - 0.8.0 * Wed Feb 26 2014 Jan Grulich <jgrulich@xxxxxxxxxx> - 0.7.80-1 - 0.7.80 -------------------------------------------------------------------------------- ================================================================================ libkpeople-0.2.1-1.fc20 (FEDORA-2014-3804) Meta-contact aggregation library -------------------------------------------------------------------------------- Update Information: KDE Telepathy 0.8.0 release. -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- ================================================================================ libmodplug-0.8.8.5-1.fc20 (FEDORA-2014-3795) Modplug mod music file format library -------------------------------------------------------------------------------- Update Information: Update to version 0.8.8.5, fixes CVE-2013-4233 and CVE-2013-4234. http://modplug-xmms.sourceforge.net/#news -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 10 2014 Ville Skyttä <ville.skytta@xxxxxx> - 1:0.8.8.5-1 - Update to 0.8.8.5 (CVE-2013-4233, CVE-2013-4234, #995580). -------------------------------------------------------------------------------- References: [ 1 ] Bug #995578 - CVE-2013-4233 CVE-2013-4234 libmodplug: ABC file parsing vulnerabilities https://bugzilla.redhat.com/show_bug.cgi?id=995578 -------------------------------------------------------------------------------- ================================================================================ nodejs-ansistyles-0.1.3-3.fc20 (FEDORA-2014-3799) Functions that surround a string with ansistyle codes so it prints in style -------------------------------------------------------------------------------- Update Information: new package -------------------------------------------------------------------------------- References: [ 1 ] Bug #1074639 - Review Request: nodejs-ansistyles https://bugzilla.redhat.com/show_bug.cgi?id=1074639 -------------------------------------------------------------------------------- ================================================================================ perl-Digest-SHA-5.85-5.fc20 (FEDORA-2014-3785) Perl extension for SHA-1/224/256/384/512 -------------------------------------------------------------------------------- Update Information: This release fixes crash when calling methods on uninitialized Digest::SHA methods. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Petr Pisar <ppisar@xxxxxxxxxx> - 1:5.85-5 - Fix possible crash on uninitialized object (bug #1075478) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1075478 - Crash in Digest::SHA if a method is invoked on an uninitialized object https://bugzilla.redhat.com/show_bug.cgi?id=1075478 -------------------------------------------------------------------------------- ================================================================================ perl-PDF-API2-2.021-1.fc20 (FEDORA-2014-3783) Perl module for creation and modification of PDF files -------------------------------------------------------------------------------- Update Information: v 2.021 (bz #902236) -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 11 2014 Bernard Johnson <bjohnson@xxxxxxxxxxxx> - 2.021-1 - v 2.021 (bz #902236) -------------------------------------------------------------------------------- References: [ 1 ] Bug #902236 - perl-PDF-API2-2.021 is available https://bugzilla.redhat.com/show_bug.cgi?id=902236 -------------------------------------------------------------------------------- ================================================================================ powerline-0.0.1-6.20140226git70a94e.fc20 (FEDORA-2014-3797) The ultimate status-line/prompt utility -------------------------------------------------------------------------------- Update Information: Update to revision 20140226git70a94e. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 - Andreas Schneider <asn@xxxxxxxxxx> - 0.0.1-6.20140226git70a94e - Update to revision 0.0.1-6.20140226git70a94e -------------------------------------------------------------------------------- References: [ 1 ] Bug #1075307 - [abrt] powerline: update_refs(): python2.7 killed by SIGSEGV https://bugzilla.redhat.com/show_bug.cgi?id=1075307 [ 2 ] Bug #1075306 - [abrt] powerline: dict_dealloc(): python2.7 killed by SIGSEGV https://bugzilla.redhat.com/show_bug.cgi?id=1075306 -------------------------------------------------------------------------------- ================================================================================ python-behave-1.2.3-9.fc20 (FEDORA-2014-3798) Tools for the behavior-driven development, Python style -------------------------------------------------------------------------------- Update Information: Add two patches provided by Vadim Rutkovsky (fix #1058371 and #1067388) -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Matěj Cepl <mcepl@xxxxxxxxxx> - 1.2.3-9 - Add two patches provided by Vadim Rutkovsky (fix #1058371 and -------------------------------------------------------------------------------- References: [ 1 ] Bug #1058371 - RFE: Support embedding of videos and custom captions https://bugzilla.redhat.com/show_bug.cgi?id=1058371 [ 2 ] Bug #1067388 - Python-behave crashes when html report is created with invalid chars are present in error message https://bugzilla.redhat.com/show_bug.cgi?id=1067388 -------------------------------------------------------------------------------- ================================================================================ python-colorama-0.2.7-2.fc20 (FEDORA-2014-3808) Cross-platform colored terminal text -------------------------------------------------------------------------------- Update Information: introduce python3 package (rhbz#1075410) -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Matthias Runge <mrunge@xxxxxxxxxx> - 0.2.7-2 - introduce python3 package (rhbz#1075410) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1075410 - RFE: python3-colorama https://bugzilla.redhat.com/show_bug.cgi?id=1075410 -------------------------------------------------------------------------------- ================================================================================ qt5-qtbase-5.2.1-6.fc20 (FEDORA-2014-3680) Qt5 - QtBase components -------------------------------------------------------------------------------- Update Information: This update fixes the Qt 5 QMake configuration to not strip built binaries, so that dependent packages get valid -debuginfo packages. It also enables some build-time dependencies that are not directly used in qt5-qtbase itself, but make it set some global Qt configuration options when it detects them. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Kevin Kofler <Kevin@xxxxxxxxxxxxxxxx> 5.2.1-6 - reenable documentation * Sat Mar 8 2014 Kevin Kofler <Kevin@xxxxxxxxxxxxxxxx> 5.2.1-5 - make the QMAKE_STRIP sed not sensitive to whitespace (see #1074041 in Qt 4) * Tue Feb 18 2014 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 5.2.1-4 - undefine QMAKE_STRIP (and friends), so we get useful -debuginfo pkgs (#1065636) * Wed Feb 12 2014 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 5.2.1-3 - bootstrap for libicu bump -------------------------------------------------------------------------------- References: [ 1 ] Bug #1065636 - python-qt5-debuginfo-5.2-3.fc21 is empty https://bugzilla.redhat.com/show_bug.cgi?id=1065636 -------------------------------------------------------------------------------- ================================================================================ samba-4.1.6-1.fc20 (FEDORA-2014-3796) Server and Client software to interoperate with Windows machines -------------------------------------------------------------------------------- Update Information: Fix CVE-2013-4496 and CVE-2013-6442. -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 11 2014 - Andreas Schneider <asn@xxxxxxxxxx> - 4.1.6-1 - Fix CVE-2013-4496 and CVE-2013-6442. - Fix installation of pidl. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1044099 - CVE-2013-6442 samba: smbcacls will delete ACL lists in certain circumstances https://bugzilla.redhat.com/show_bug.cgi?id=1044099 [ 2 ] Bug #1072792 - CVE-2013-4496 samba: Password lockout not enforced for SAMR password changes https://bugzilla.redhat.com/show_bug.cgi?id=1072792 -------------------------------------------------------------------------------- ================================================================================ selinux-policy-3.12.1-135.fc20 (FEDORA-2014-3813) SELinux policy configuration -------------------------------------------------------------------------------- Update Information: Add docker_connect_any boolean Allow unpriv SELinux users to dbus chat with firewalld Add lvm_write_metadata() Label /etc/yum.reposd dir as system_conf_t. Should be safe because system_conf_t is base_ro_file_type Allow pegasus_openlmi_storage_t to write lvm metadata Add hide_broken_symptoms for kdumpgui because of systemd bug Make kdumpgui_t as unconfined domain Allow docker to connect to tcp/5000 Allow numad to write scan_sleep_millisecs Turn on entropyd_use_audio boolean by default Allow cgred to read /etc/cgconfig.conf because it contains templates used together with rules from /etc/cgrules.conf Allow lscpu running as rhsmcertd_t to read /proc/sysinfo Fix label on irclogs in the homedir Allow kerberos_keytab_domain domains to manage keys until we get sssd fix Allow postgresql to use ldap Add missing syslog-conn port -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 11 2014 Miroslav Grepl<mgrepl@xxxxxxxxxx> 3.12.1-135 - Add docker_connect_any boolean * Tue Mar 11 2014 Miroslav Grepl<mgrepl@xxxxxxxxxx> 3.12.1-134 - Allow unpriv SELinux users to dbus chat with firewalld - Add lvm_write_metadata() - Label /etc/yum.reposd dir as system_conf_t. Should be safe because system_conf_t is base_ro_file_type - Allow pegasus_openlmi_storage_t to write lvm metadata - Add hide_broken_symptoms for kdumpgui because of systemd bug - Make kdumpgui_t as unconfined domain - Allow docker to connect to tcp/5000 * Mon Mar 10 2014 Miroslav Grepl<mgrepl@xxxxxxxxxx> 3.12.1-133 - Allow numad to write scan_sleep_millisecs - Turn on entropyd_use_audio boolean by default - Allow cgred to read /etc/cgconfig.conf because it contains templates used together with rules from /etc/cgrules.conf. - Allow lscpu running as rhsmcertd_t to read /proc/sysinfo - Fix label on irclogs in the homedir - Allow kerberos_keytab_domain domains to manage keys until we get sssd fix - Allow postgresql to use ldap - Add missing syslog-conn port * Fri Mar 7 2014 Miroslav Grepl<mgrepl@xxxxxxxxxx> 3.12.1-132 - Modify xdm_write_home to allow create files/links in /root with xdm_home_ - Allow virt domains to read network state * Thu Mar 6 2014 Miroslav Grepl<mgrepl@xxxxxxxxxx> 3.12.1-131 - Added pcp rules - dontaudit openshift_cron_t searching random directories, should be back ported to RHEL6 - clean up ctdb.te - Allow ctdbd to connect own ports - Fix samba_export_all_rw booleanto cover also non security dirs - Allow swift to exec rpm in swift_t and allow to create tmp files/dirs - Allow neutron to create /run/netns with correct labeling - Allow certmonger to list home dirs * Wed Mar 5 2014 Miroslav Grepl<mgrepl@xxxxxxxxxx> 3.12.1-130 - Change userdom_use_user_inherited_ttys to userdom_use_user_ttys for systemd-tty-ask - Add sysnet_filetrans_named_content_ifconfig() interface - Allow ctdbd to connect own ports - Fix samba_export_all_rw booleanto cover also non security dirs - Allow swift to exec rpm in swift_t and allow to create tmp files/dirs - Allow neutron to create /run/netns with correct labeling - Allow kerberos keytab domains to manage sssd/userdomain keys" - Allow to run ip cmd in neutron_t domain * Mon Mar 3 2014 Miroslav Grepl<mgrepl@xxxxxxxxxx> 3.12.1-129 - Allow block_suspend cap2 for systemd-logind and rw dri device - Add labeling for /usr/libexec/nm-libreswan-service - Allow locallogin to rw xdm key to make Virtual Terminal login providing smartcard pin working - Add xserver_rw_xdm_keys() - Allow rpm_script_t to dbus chat also with systemd-located - Fix ipa_stream_connect_otpd() - update lpd_manage_spool() interface - Allow krb5kdc to stream connect to ipa-otpd - Add ipa_stream_connect_otpd() interface - Allow vpnc to unlink NM pids - Add networkmanager_delete_pid_files() - Allow munin plugins to access unconfined plugins - update abrt_filetrans_named_content to cover /var/spool/debug - Label /var/spool/debug as abrt_var_cache_t - Allow rhsmcertd to connect to squid port - Make docker_transition_unconfined as optional boolean - Allow certmonger to list home dirs * Wed Feb 26 2014 Miroslav Grepl<mgrepl@xxxxxxxxxx> 3.12.1-128 - Make snapperd as unconfined domain and add additional fixes for it - Remove nsplugin.pp module on upgrade -------------------------------------------------------------------------------- References: [ 1 ] Bug #1005453 - SELinux is preventing /usr/bin/pulseaudio from using the 'setcap' accesses on a process. https://bugzilla.redhat.com/show_bug.cgi?id=1005453 [ 2 ] Bug #1063827 - selinux avc for httpd accessing KEYRING ccache type https://bugzilla.redhat.com/show_bug.cgi?id=1063827 [ 3 ] Bug #1067687 - SELinux is preventing /usr/sbin/slapd from write access on the file /var/log/slapd/slapd.log. https://bugzilla.redhat.com/show_bug.cgi?id=1067687 [ 4 ] Bug #1069076 - SELinux is preventing /usr/libexec/goa-daemon from 'read' accesses on the key . https://bugzilla.redhat.com/show_bug.cgi?id=1069076 [ 5 ] Bug #1069161 - SELinux is preventing /usr/lib64/firefox/plugin-container from 'getattr' accesses on the file /proc/kmsg. https://bugzilla.redhat.com/show_bug.cgi?id=1069161 [ 6 ] Bug #1069346 - SELinux is preventing /usr/bin/ps from using the 'sys_ptrace' capabilities. https://bugzilla.redhat.com/show_bug.cgi?id=1069346 [ 7 ] Bug #1069640 - [fail2ban_t] SELinux is preventing /usr/sbin/ipset from create access on the netlink_socket https://bugzilla.redhat.com/show_bug.cgi?id=1069640 [ 8 ] Bug #1071054 - SELinux is preventing /usr/libexec/gdm-session-worker from using the 'net_admin' capabilities. https://bugzilla.redhat.com/show_bug.cgi?id=1071054 [ 9 ] Bug #1071622 - SELinux is preventing /usr/bin/python2.7 from 'create' accesses on the fifo_file hpfax-pipe-124. https://bugzilla.redhat.com/show_bug.cgi?id=1071622 [ 10 ] Bug #1072001 - SELinux is preventing /usr/sbin/ip from 'nlmsg_write' accesses on the netlink_route_socket . https://bugzilla.redhat.com/show_bug.cgi?id=1072001 [ 11 ] Bug #1072006 - SELinux is preventing /usr/bin/python2.7 from 'getattr' accesses on the file . https://bugzilla.redhat.com/show_bug.cgi?id=1072006 [ 12 ] Bug #1072008 - SELinux is preventing /usr/bin/python2.7 from 'read' accesses on the directory . https://bugzilla.redhat.com/show_bug.cgi?id=1072008 [ 13 ] Bug #1072011 - SELinux is preventing /usr/sbin/ip from 'mounton' accesses on the directory . https://bugzilla.redhat.com/show_bug.cgi?id=1072011 [ 14 ] Bug #1072038 - SELinux is preventing /usr/bin/systemd-tty-ask-password-agent from 'open' accesses on the chr_file . https://bugzilla.redhat.com/show_bug.cgi?id=1072038 [ 15 ] Bug #1072695 - SELinux is preventing /usr/sbin/smbd from 'setattr' accesses on the directory Shared. https://bugzilla.redhat.com/show_bug.cgi?id=1072695 [ 16 ] Bug #1074887 - SELinux is preventing /usr/sbin/zabbix_server_pgsql from create access on the unix_dgram_socket https://bugzilla.redhat.com/show_bug.cgi?id=1074887 [ 17 ] Bug #1071706 - docker's global requirements were not met: type/attribute unconfined_t https://bugzilla.redhat.com/show_bug.cgi?id=1071706 [ 18 ] Bug #1073105 - When audio-entropyd is started by systemd, SELinux prevents it from running https://bugzilla.redhat.com/show_bug.cgi?id=1073105 -------------------------------------------------------------------------------- ================================================================================ springframework-security-3.1.6-1.fc20 (FEDORA-2014-3811) Modular Java/J2EE application security framework -------------------------------------------------------------------------------- Update Information: This update fixes CVE-2014-0097. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Michal Srb <msrb@xxxxxxxxxx> - 3.1.6-1 - Update to upstream release 3.1.6 (Fixes CVE-2014-0097) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1075302 - CVE-2014-0097 Spring Framework: empty passwords may bypass authentication https://bugzilla.redhat.com/show_bug.cgi?id=1075302 -------------------------------------------------------------------------------- ================================================================================ sssd-1.11.4-2.fc20 (FEDORA-2014-3794) System Security Services Daemon -------------------------------------------------------------------------------- Update Information: Backports a couple of fixes from the upstream sssd-1-11 branch. -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 11 2014 Jakub Hrozek <jhrozek@xxxxxxxxxx> - 1.11.4-2 - Include couple of patches from upstream 1.11 branch -------------------------------------------------------------------------------- References: [ 1 ] Bug #1071578 - SSSD Does not cache SELinux map from FreeIPA correctly https://bugzilla.redhat.com/show_bug.cgi?id=1071578 -------------------------------------------------------------------------------- ================================================================================ xorg-x11-drv-synaptics-1.7.4-1.fc20 (FEDORA-2014-3789) Xorg X11 Synaptics touchpad input driver -------------------------------------------------------------------------------- Update Information: Update to synaptics 1.7.4, with a bunch of miscellaneous fixes -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 12 2014 Peter Hutterer <peter.hutterer@xxxxxxxxxx> 1.7.4-1 - synaptics 1.7.4 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test