The following Fedora 19 Security updates need testing: Age URL 161 https://admin.fedoraproject.org/updates/FEDORA-2013-19963/openstack-glance-2013.1.4-1.fc19 98 https://admin.fedoraproject.org/updates/FEDORA-2013-24023/varnish-3.0.5-1.fc19 79 https://admin.fedoraproject.org/updates/FEDORA-2014-0797/libinfinity-0.5.5-1.fc19 52 https://admin.fedoraproject.org/updates/FEDORA-2014-2260/NetworkManager-ssh-0.9.2-0.2.20140209git46247c2.fc19 44 https://admin.fedoraproject.org/updates/FEDORA-2014-2710/zabbix-2.0.11-2.fc19 20 https://admin.fedoraproject.org/updates/FEDORA-2014-3839/udisks-1.0.4-12.fc19 13 https://admin.fedoraproject.org/updates/FEDORA-2014-4208/ca-certificates-2013.1.97-1.fc19 5 https://admin.fedoraproject.org/updates/FEDORA-2014-4511/mediawiki-1.21.8-1.fc19 5 https://admin.fedoraproject.org/updates/FEDORA-2014-4462/munin-2.0.20-1.fc19 5 https://admin.fedoraproject.org/updates/FEDORA-2014-4517/perl-YAML-LibYAML-0.41-4.fc19 2 https://admin.fedoraproject.org/updates/FEDORA-2014-4603/php-ZendFramework-1.12.5-1.fc19 2 https://admin.fedoraproject.org/updates/FEDORA-2014-4636/php-ZendFramework2-2.2.6-1.fc19 2 https://admin.fedoraproject.org/updates/FEDORA-2014-4676/a2ps-4.14-23.fc19 2 https://admin.fedoraproject.org/updates/FEDORA-2014-4711/cups-filters-1.0.41-6.fc19 2 https://admin.fedoraproject.org/updates/FEDORA-2014-4720/mod_security-2.7.5-3.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-4781/check-mk-1.2.4p1-1.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-4749/mingw-openjpeg-1.5.1-8.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-4735/php-5.5.11-1.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-4745/ansible-1.5.4-1.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-4800/squid-3.3.12-1.fc19 The following Fedora 19 Critical Path updates have yet to be approved: Age URL 109 https://admin.fedoraproject.org/updates/FEDORA-2013-22326/fedora-bookmarks-15-5.fc19 35 https://admin.fedoraproject.org/updates/FEDORA-2014-3245/testdisk-6.14-2.fc19.1,ntfs-3g-2014.2.15-1.fc19 13 https://admin.fedoraproject.org/updates/FEDORA-2014-4228/nss-util-3.16.0-1.fc19,nss-softokn-3.16.0-1.fc19,nss-3.16.0-1.fc19 13 https://admin.fedoraproject.org/updates/FEDORA-2014-4216/selinux-policy-3.12.1-74.23.fc19 10 https://admin.fedoraproject.org/updates/FEDORA-2014-4292/xorg-x11-drv-synaptics-1.7.4-3.fc19 9 https://admin.fedoraproject.org/updates/FEDORA-2014-3970/kde-workspace-4.11.7-6.fc19 9 https://admin.fedoraproject.org/updates/FEDORA-2014-4384/cups-1.6.4-4.fc19 5 https://admin.fedoraproject.org/updates/FEDORA-2014-4486/ibus-1.5.6-2.fc19 2 https://admin.fedoraproject.org/updates/FEDORA-2014-4692/bash-4.2.46-1.fc19 2 https://admin.fedoraproject.org/updates/FEDORA-2014-4635/libvpx-1.3.0-4.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-4734/elfutils-0.158-2.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-4624/xdg-utils-1.1.0-0.22.rc2.fc19 The following builds have been pushed to Fedora 19 updates-testing MySQL-zrm-3.0-3.fc19 collectl-3.7.3-1.fc19 fpaste-0.3.7.1-12.fc19 golang-github-godbus-dbus-0-0.1.gitcb98efb.fc19 jmol-14.0.13-1.fc19 lnav-0.7.0-2.fc19 mingw-openjpeg-1.5.2-1.fc19 php-pecl-http-2.0.5-1.fc19 q4wine-1.1-3.r2.fc19 skychart-3.10-2.fc19 squid-3.3.12-1.fc19 wxGTK3-3.0.0-7.fc19 x2goserver-4.0.1.15-1.fc19 xdg-utils-1.1.0-0.22.rc2.fc19 xsensors-0.73-1.fc19 yagf-0.9.3.2-1.fc19 Details about builds: ================================================================================ MySQL-zrm-3.0-3.fc19 (FEDORA-2014-4806) MySQL backup manager -------------------------------------------------------------------------------- Update Information: Add patch to enable exclude-pattern with logical backups - Update to 3.0 - Abort if out of space on restore Update to 2.2.0: - Add mail-policy option - Add windows-backup/restore-port options - Add exclude-pattern option - Update to 3.0 - Abort if out of space on restore Update to 2.2.0: - Add mail-policy option - Add windows-backup/restore-port options - Add exclude-pattern option -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 3 2014 Orion Poplawski <orion@xxxxxxxxxxxxx> - 3.0-3 - Add patch to enable exclude-pattern with logical backups -------------------------------------------------------------------------------- ================================================================================ collectl-3.7.3-1.fc19 (FEDORA-2014-4795) A utility to collect various Linux performance data -------------------------------------------------------------------------------- Update Information: - update to upstream version 3.7.3 - upstream changelog at http://collectl.sourceforge.net/Releases.html -------------------------------------------------------------------------------- ChangeLog: * Fri Apr 4 2014 Dan Horák <dan[at]danny.cz> - 3.7.3-1 - upgrade to upstream version 3.7.3 (#1083898) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1083898 - collectl-3.7.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=1083898 -------------------------------------------------------------------------------- ================================================================================ fpaste-0.3.7.1-12.fc19 (FEDORA-2014-4808) A simple tool for pasting info onto sticky notes instances -------------------------------------------------------------------------------- Update Information: * Updated man page No other changes. -------------------------------------------------------------------------------- ChangeLog: * Fri Apr 4 2014 Ankur Sinha <ankursinha AT fedoraproject DOT org> 0.3.7.1-12 - Update man page -------------------------------------------------------------------------------- References: [ 1 ] Bug #1056960 - Update man page https://bugzilla.redhat.com/show_bug.cgi?id=1056960 -------------------------------------------------------------------------------- ================================================================================ golang-github-godbus-dbus-0-0.1.gitcb98efb.fc19 (FEDORA-2014-4825) Go client bindings for D-Bus -------------------------------------------------------------------------------- Update Information: Initial fedora package -------------------------------------------------------------------------------- References: [ 1 ] Bug #1082734 - Review Request: golang-github-godbus-dbus - Go client bindings for D-Bus https://bugzilla.redhat.com/show_bug.cgi?id=1082734 -------------------------------------------------------------------------------- ================================================================================ jmol-14.0.13-1.fc19 (FEDORA-2014-4804) An open-source Java viewer for chemical structures in 3D -------------------------------------------------------------------------------- Update Information: Update to 14.0.13, featuring bug fixes and introduction of support for Gaussian formatted checkpoint files. -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 3 2014 Susi Lehtola <jussilehtola@xxxxxxxxxxxxxxxxx> - 14.0.13-1 - Need full java because this is a GUI application. - Update to 14.0.13. * Fri Mar 28 2014 Michael Simacek <msimacek@xxxxxxxxxx> - 14.0.11-2 - Use Requires: java-headless rebuild (#1067528) -------------------------------------------------------------------------------- ================================================================================ lnav-0.7.0-2.fc19 (FEDORA-2014-4809) A curses-based tool for viewing and analyzing log files -------------------------------------------------------------------------------- Update Information: fix build on big endian arches == 0.7.0 == Features: * Add the '.schema' SQL command to open a view that displays the schema for the internal tables and any attached databases. If lnav was only executed with a SQLite database and no text files, this view will open by default. * The scroll bar now indicates the location of errors/warnings, search hits, and bookmarks. * The xterm title is update to reflect the file name for the top line in the view. * Added a "headless" mode so that you can execute commands and run SQL queries from the command-line without having to do it from the curses UI. * When doing a search or SQL query, any text that is currently being displayed can be tab-completed. * The '-H' option was added so you can view the internal help text. * Added the 'g/G' hotkeys to move to the top/bottom of the file. * Added a 'log_mark' column to the log tables that indicates whether or not a log message is bookmarked. The field is writable, so you can bookmark lines using an SQL UPDATE query. * Added syntax-highlighting when editing SQL queries or search regexes. * Added a "write-json-to" command that writes the result of a SQL query to a JSON-formatted file. * The "elapsed time" column now uses red/green coloring to indicate sharp changes in the message rate. * Added a "set-min-log-level" command to filter out log messages that are below a given level. Fixes: * Performance improvements. * Multi-line filtering has been fixed. * A collator has been added to the log_level column in the log tables so that you can write expressions like "log_level > 'warning'". * The log_time datetime format now matches what is returned by "datetime('now')" so that collating works correctly. * If a search string is not valid PCRE syntax, a search is done for the exact string instead of just returning an error. * Static-linking has been cleaned up. * OpenSSL is no longer a requirement. * Alpha support for Windows/cygwin. * Environment variables can now be accessed in SQL queries using the syntax: $VAR_NAME * An internal log is kept and written out on a crash. * Partition bookmarks are now tracked separately from regular user bookmarks. You can start a partition with the 'partition-name' command and remove it with the 'clear-partition' command. * Improved display of possible matches during tab-completion in the command-prompt. The matches are now shown in a separate view and pressing tab repeatedly will scroll through the view. * The "open" command now does shell word expansion for file names. * More config directory paths have been added: /etc/lnav, $prefix/etc/lnav, and directories passed on the command-line with -I. == 0.7.0 == Features: * Add the '.schema' SQL command to open a view that displays the schema for the internal tables and any attached databases. If lnav was only executed with a SQLite database and no text files, this view will open by default. * The scroll bar now indicates the location of errors/warnings, search hits, and bookmarks. * The xterm title is update to reflect the file name for the top line in the view. * Added a "headless" mode so that you can execute commands and run SQL queries from the command-line without having to do it from the curses UI. * When doing a search or SQL query, any text that is currently being displayed can be tab-completed. * The '-H' option was added so you can view the internal help text. * Added the 'g/G' hotkeys to move to the top/bottom of the file. * Added a 'log_mark' column to the log tables that indicates whether or not a log message is bookmarked. The field is writable, so you can bookmark lines using an SQL UPDATE query. * Added syntax-highlighting when editing SQL queries or search regexes. * Added a "write-json-to" command that writes the result of a SQL query to a JSON-formatted file. * The "elapsed time" column now uses red/green coloring to indicate sharp changes in the message rate. * Added a "set-min-log-level" command to filter out log messages that are below a given level. Fixes: * Performance improvements. * Multi-line filtering has been fixed. * A collator has been added to the log_level column in the log tables so that you can write expressions like "log_level > 'warning'". * The log_time datetime format now matches what is returned by "datetime('now')" so that collating works correctly. * If a search string is not valid PCRE syntax, a search is done for the exact string instead of just returning an error. * Static-linking has been cleaned up. * OpenSSL is no longer a requirement. * Alpha support for Windows/cygwin. * Environment variables can now be accessed in SQL queries using the syntax: $VAR_NAME * An internal log is kept and written out on a crash. * Partition bookmarks are now tracked separately from regular user bookmarks. You can start a partition with the 'partition-name' command and remove it with the 'clear-partition' command. * Improved display of possible matches during tab-completion in the command-prompt. The matches are now shown in a separate view and pressing tab repeatedly will scroll through the view. * The "open" command now does shell word expansion for file names. * More config directory paths have been added: /etc/lnav, $prefix/etc/lnav, and directories passed on the command-line with -I. -------------------------------------------------------------------------------- ChangeLog: * Fri Apr 4 2014 Dan Horák <dan[at]danny.cz> - 0.7.0-2 - fix build on big endian arches * Tue Apr 1 2014 Christopher Meng <rpm@xxxxxxxx> - 0.7.0-1 - Update to 0.7.0 -------------------------------------------------------------------------------- ================================================================================ mingw-openjpeg-1.5.2-1.fc19 (FEDORA-2014-4826) MinGW Windows OpenJPEG library -------------------------------------------------------------------------------- Update Information: Update to 1.5.2, see https://code.google.com/p/openjpeg/source/browse/tags/version.1.5 for details. -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 3 2014 Sandro Mani <manisandro@xxxxxxxxx> - 1.5.2-1 - Update to 1.5.2, upstreamed patches: - rhbz1036491_CVE-2013-6052.patch - rhbz1036493_CVE-2013-6053.patch - openjpeg-1.5-r2029.patch - openjpeg-1.5-r2031.patch - openjpeg-1.5-r2032.patch * Wed Apr 2 2014 Sandro Mani <manisandro@xxxxxxxxx> - 1.5.1-8 - Fix CVE-2014-0158 (see rhbz#1082997) -------------------------------------------------------------------------------- ================================================================================ php-pecl-http-2.0.5-1.fc19 (FEDORA-2014-4828) Extended HTTP support -------------------------------------------------------------------------------- Update Information: Release notes: * Fix rare crash with uninitialized CURLOPT_HTTPHEADER * Fix build with -Werror=format-security (Remi) * Fix build with extenal libs needed by libcurl -------------------------------------------------------------------------------- ChangeLog: * Fri Apr 4 2014 Remi Collet <remi@xxxxxxxxxxxxxxxxx> - 2.0.5-1 - Update to 2.0.5 -------------------------------------------------------------------------------- ================================================================================ q4wine-1.1-3.r2.fc19 (FEDORA-2014-4798) Qt4 GUI for wine -------------------------------------------------------------------------------- Update Information: Update to 1.1-r2 release. -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 3 2014 Dmitrij S. Kryzhevich <krege@xxxxxxx> 1.1-3.r2 - Update to 1.1-r2 release. -------------------------------------------------------------------------------- ================================================================================ skychart-3.10-2.fc19 (FEDORA-2014-4811) Planetarium software for the advanced amateur astronomer -------------------------------------------------------------------------------- Update Information: Upgrade to 3.10 -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 3 2014 Mattia Verga <mattia.verga@xxxxxxxxxx> - 3.10-2 - Fix patch1 * Thu Apr 3 2014 Mattia Verga <mattia.verga@xxxxxxxxxx> - 3.10-1 - Update to 3.10 * Mon Aug 12 2013 Mattia Verga <mattia.verga@xxxxxxxxxx> - 3.8-7 - Manually create needed directories to fix arm and ppc builds * Mon Aug 12 2013 Mattia Verga <mattia.verga@xxxxxxxxxx> - 3.8-6 - Enable arm build - Enable ppc and ppc64 build * Sun Aug 4 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 3.8-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Fri Aug 2 2013 Mattia Verga <mattia.verga@xxxxxxxxxx> - 3.8-4 - Use xz to compress source file instead of bzip -------------------------------------------------------------------------------- ================================================================================ squid-3.3.12-1.fc19 (FEDORA-2014-4800) The Squid proxy caching server -------------------------------------------------------------------------------- Update Information: Use the version from Fedora 20. -------------------------------------------------------------------------------- ChangeLog: * Fri Mar 14 2014 Pavel Šimerda <psimerda@xxxxxxxxxx> - 7:3.3.12-1 - new package version 3.3.12 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1074871 - CVE-2014-0128 squid: denial of service when using SSL-Bump [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1074871 -------------------------------------------------------------------------------- ================================================================================ wxGTK3-3.0.0-7.fc19 (FEDORA-2014-4812) GTK port of the wxWidgets GUI library -------------------------------------------------------------------------------- Update Information: This is not a manitory update and will likely only effect developers. Removed wxGTK-devel compatiblity in favour for a wx-config symlink Fixed RH Bug 1076617. This fixes a graphical glitch on some applications using wxGTK3 and allows some applications to work propework properly -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 3 2014 Jeremy Newton <alexjnewt@xxxxxxxxxxx> - 3.0.0-7 - Removed wxGTK-devel compatiblity in favour for a wx-config symlink see bug RH#1077718 * Tue Mar 18 2014 Jeremy Newton <alexjnewt@xxxxxxxxxxx> - 3.0.0-6 - Removed disable-catch_segvs, see RH#1076617 * Mon Mar 17 2014 Jeremy Newton <alexjnewt@xxxxxxxxxxx> - 3.0.0-5 - Renable combat28 - without it causes bugs RH#1076617 and a few others -------------------------------------------------------------------------------- References: [ 1 ] Bug #1077718 - wxGTK3-devel doesn't supply a wx-config symlink https://bugzilla.redhat.com/show_bug.cgi?id=1077718 [ 2 ] Bug #1076617 - Please consider enable more options https://bugzilla.redhat.com/show_bug.cgi?id=1076617 -------------------------------------------------------------------------------- ================================================================================ x2goserver-4.0.1.15-1.fc19 (FEDORA-2014-4801) X2Go Server -------------------------------------------------------------------------------- Update Information: Update to 4.0.1.15: - Fix hanging x2goserver init script New upstream release (4.0.1.14): - Log SSHFS output and errors to ~/.x2go/C-<session>/sshfs-mounts.log. (Fixes: #415). - If x2golistmounts is used without cmd option <session_id>, then the env var $X2GO_SESSION (current session) will be attempted to use. - If x2goumount-session is used without cmd option <session_id>, then the env var $X2GO_SESSION (current session) will be attempted to use. - Fix x2gostartagent. Make sure the -nolisten tcp option is configurable via x2goagent.options. (Fixes: #424). - Safely remove desktop files for client-side shared folders. Remove the correct desktop file, even if the shared folder has already been (forcefully) umounted. Such situations occur in cases where the connection gets interrupted. SSHFS will then get removed by the Linux kernel and we have to "guess" what desktop icons is actually to be removed. - Fix broken file descriptor closures in x2gocleansessions. (Fixes: #441). - x2gofm.desktop: Drop obsolete Encoding key from .desktop file. - Fix typos / hyphen-as-minus signs issues in x2goversion.8 and x2gomountdirs.8. -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 3 2014 Orion Poplawski <orion@xxxxxxxxxxxxx> - 4.0.1.15-1 - Update to 4.0.1.15 * Wed Apr 2 2014 Orion Poplawski <orion@xxxxxxxxxxxxx> - 4.0.1.14-1 - Update to 4.0.1.14 * Mon Mar 24 2014 Orion Poplawski <orion@xxxxxxxxxxxxx> - 4.0.1.13-4 - Create /tmp/.X11-unix with correct SELinux context (bug #1079772) -------------------------------------------------------------------------------- ================================================================================ xdg-utils-1.1.0-0.22.rc2.fc19 (FEDORA-2014-4624) Basic desktop integration functions -------------------------------------------------------------------------------- Update Information: Refresh to latest 1.1.0-rc2 release, includes more incremental fixes, mostly for generic environment support. -------------------------------------------------------------------------------- ChangeLog: * Fri Apr 4 2014 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 1.1.0-0.22.rc2 - drop using %autosetup (it didn't work?) * Sun Mar 30 2014 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> - 1.1.0-0.21.rc2 - .spec housecleaning (remove deprecated stuff) - pull in latest upstream fixes, including... - xdg-open does not substitute all field codes in Exec key (#1056431, fdo#49204) * Fri Feb 7 2014 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 1.1.0-0.20.rc2 - 1.1.0-rc2 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1056431 - xdg-open does not substitute all field codes in Exec key https://bugzilla.redhat.com/show_bug.cgi?id=1056431 -------------------------------------------------------------------------------- ================================================================================ xsensors-0.73-1.fc19 (FEDORA-2014-4813) An X11 interface to lm_sensors -------------------------------------------------------------------------------- Update Information: New version, fixes Fahrenheit bug, see RH#1076012 -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 3 2014 Jeremy Newton <alexjnewt@xxxxxxxxxxx> - 0.73-1 - New version, fixes bug RH#1076012 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1076012 - xsensors -f fails https://bugzilla.redhat.com/show_bug.cgi?id=1076012 -------------------------------------------------------------------------------- ================================================================================ yagf-0.9.3.2-1.fc19 (FEDORA-2014-4792) Graphical front-end for cuneiform -------------------------------------------------------------------------------- Update Information: Update to 0.9.3.2 release. New 0.9.3.1 version. -------------------------------------------------------------------------------- ChangeLog: * Fri Apr 4 2014 Dmitrij S. Kryzhevich <krege@xxxxxxx> 0.9.3.2-1 - Update to 0.9.3.2. * Wed Apr 2 2014 Dmitrij S. Kryzhevich <krege@xxxxxxx> 0.9.3.1-1 - Update to 0.9.3.1. * Sat Feb 22 2014 Dmitrij S. Kryzhevich <krege@xxxxxxx> 0.9.3-1 - Update to 0.9.3. - Fix prev. bogus dates (Thu -> Tue). * Sun Aug 4 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.9.2-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test