Fedora 20 updates-testing report

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



The following Fedora 20 Security updates need testing:
 Age  URL
  50  https://admin.fedoraproject.org/updates/FEDORA-2014-5897/nrpe-2.15-2.fc20
  30  https://admin.fedoraproject.org/updates/FEDORA-2014-6551/chicken-4.8.0.6-2.fc20
  28  https://admin.fedoraproject.org/updates/FEDORA-2014-6615/drupal7-views-3.8-1.fc20
  10  https://admin.fedoraproject.org/updates/FEDORA-2014-7166/python-jinja2-2.7.3-1.fc20
   8  https://admin.fedoraproject.org/updates/FEDORA-2014-7296/tor-0.2.4.22-2.fc20
   7  https://admin.fedoraproject.org/updates/FEDORA-2014-7348/ReviewBoard-1.7.26-2.fc20,python-django-evolution-0.6.9-4.fc20
   7  https://admin.fedoraproject.org/updates/FEDORA-2014-7359/wireshark-1.10.7-3.fc20
   4  https://admin.fedoraproject.org/updates/FEDORA-2014-7406/rb_libtorrent-0.16.11-2.fc20
   4  https://admin.fedoraproject.org/updates/FEDORA-2014-7423/xen-4.3.2-5.fc20
   3  https://admin.fedoraproject.org/updates/FEDORA-2014-7446/openstack-neutron-2013.2.3-9.fc20
   2  https://admin.fedoraproject.org/updates/FEDORA-2014-7479/sos-3.1-1.fc20
   2  https://admin.fedoraproject.org/updates/FEDORA-2014-5497/openstack-keystone-2013.2.3-4.fc20
   1  https://admin.fedoraproject.org/updates/FEDORA-2014-7523/readline-6.2-10.fc20
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-7579/kdelibs-4.12.5-4.fc20
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-7551/asterisk-11.10.2-2.fc20
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-7577/claws-mail-3.10.1-1.fc20,claws-mail-plugins-3.10.1-1.fc20
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-7587/samba-4.1.8-3.fc20


The following Fedora 20 Critical Path updates have yet to be approved:
 Age URL
   8  https://admin.fedoraproject.org/updates/FEDORA-2014-7276/gupnp-av-0.12.6-1.fc20
   6  https://admin.fedoraproject.org/updates/FEDORA-2014-7385/squashfs-tools-4.3-6.fc20
   1  https://admin.fedoraproject.org/updates/FEDORA-2014-7538/python-2.7.5-12.fc20
   1  https://admin.fedoraproject.org/updates/FEDORA-2014-7512/systemd-208-18.fc20
   1  https://admin.fedoraproject.org/updates/FEDORA-2014-7499/selinux-policy-3.12.1-171.fc20
   1  https://admin.fedoraproject.org/updates/FEDORA-2014-7523/readline-6.2-10.fc20
   1  https://admin.fedoraproject.org/updates/FEDORA-2014-7501/pcre-8.33-5.fc20
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-7587/samba-4.1.8-3.fc20
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-7584/polkit-qt-0.103.0-10.fc20
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-7579/kdelibs-4.12.5-4.fc20


The following builds have been pushed to Fedora 20 updates-testing

    arm-none-eabi-gdb-7.6.2-1.fc20
    ascend-0.9.8-8.20140429svn4677.fc20
    asterisk-11.10.2-2.fc20
    claws-mail-3.10.1-1.fc20
    claws-mail-plugins-3.10.1-1.fc20
    cockpit-0.11-1.fc20
    efibootmgr-0.7.0-3.fc20
    efivar-0.10-2.fc20
    freecad-0.13-9.fc20
    frogr-0.10-1.fc20
    haproxy-1.5.0-2.fc20
    java-1.7.0-openjdk-1.7.0.60-2.5.0.1.fc20
    kdelibs-4.12.5-4.fc20
    konkretcmpi-0.9.2-3.fc20
    lapack-3.4.2-6.fc20
    mate-menus-1.6.0-6.fc20
    mkvtoolnix-7.0.0-1.fc20
    netgen-mesher-5.1-9.fc20
    pdns-recursor-3.6.0-1.fc20
    perl-MooX-Types-MooseLike-Numeric-1.02-2.fc20
    php-pecl-event-1.10.2-1.fc20
    php-pecl-solr-1.1.1-1.fc20
    polkit-qt-0.103.0-10.fc20
    python-fedmsg-meta-fedora-infrastructure-0.2.14-1.fc20
    python-parse-1.6.4-1.fc20
    python-wikitools-1.2-1.fc20
    samba-4.1.8-3.fc20
    stp-0.1-23.20140619git.44de620.fc20
    wine-1.7.20-1.fc20

Details about builds:


================================================================================
 arm-none-eabi-gdb-7.6.2-1.fc20 (FEDORA-2014-7562)
 GDB for (remote) debugging ARM targets
--------------------------------------------------------------------------------
Update Information:

Drop texinfo patch, update to 7.6.2, fix rpath and other rpmlint warnings and errors.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1062623 - Review Request: arm-none-eabi-gdb - GDB for (remote) debugging ARM targets
        https://bugzilla.redhat.com/show_bug.cgi?id=1062623
--------------------------------------------------------------------------------


================================================================================
 ascend-0.9.8-8.20140429svn4677.fc20 (FEDORA-2014-7575)
 ASCEND modelling environment
--------------------------------------------------------------------------------
Update Information:

Added explicit dependencies (MUMPS, coin-or-Ipopt, graphviz).
--------------------------------------------------------------------------------
ChangeLog:

* Fri Jun 20 2014 Antonio Trande <sagitter@xxxxxxxxxxxxxxxxx> 0.9.8-8.20140429svn4677
- Added explicit dependencies (MUMPS, coin-or-Ipopt, graphviz)
* Sun Jun  8 2014 Antonio Trande <sagitter@xxxxxxxxxxxxxxxxx> 0.9.8-7.20140429svn4677
- Rebuild after Sundials fixing (bz#1105767)
--------------------------------------------------------------------------------


================================================================================
 asterisk-11.10.2-2.fc20 (FEDORA-2014-7551)
 The Open Source PBX
--------------------------------------------------------------------------------
Update Information:

The Asterisk Development Team has announced security releases for Certified
Asterisk 1.8.15, 11.6, and Asterisk 1.8, 11, and 12. The available security
releases are released as versions 1.8.15-cert7, 11.6-cert4, 1.8.28.2, 11.10.2,
and 12.3.2.

These releases are available for immediate download at
http://downloads.asterisk.org/pub/telephony/asterisk/releases

These releases resolve security vulnerabilities that were previously fixed in
1.8.15-cert6, 11.6-cert3, 1.8.28.1, 11.10.1, and 12.3.1. Unfortunately, the fix
for AST-2014-007 inadvertently introduced a regression in Asterisk's TCP and TLS
handling that prevented Asterisk from sending data over these transports. This
regression and the security vulnerabilities have been fixed in the versions
specified in this release announcement.

The security patches for AST-2014-007 have been updated with the fix for the
regression, and are available at http://downloads.asterisk.org/pub/security

Please note that the release of these versions resolves the following security
vulnerabilities:

* AST-2014-005: Remote Crash in PJSIP Channel Driver's Publish/Subscribe
                Framework

* AST-2014-006: Permission Escalation via Asterisk Manager User Unauthorized
                Shell Access

* AST-2014-007: Denial of Service via Exhaustion of Allowed Concurrent HTTP
                Connections

* AST-2014-008: Denial of Service in PJSIP Channel Driver Subscriptions

For more information about the details of these vulnerabilities, please read
security advisories AST-2014-005, AST-2014-006, AST-2014-007, and AST-2014-008,
which were released with the previous versions that addressed these
vulnerabilities.

For a full list of changes in the current releases, please see the ChangeLogs:

http://downloads.asterisk.org/pub/telephony/certified-asterisk/releases/ChangeLog-1.8.15-cert7
http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-1.8.28.2
http://downloads.asterisk.org/pub/telephony/certified-asterisk/releases/ChangeLog-11.6-cert4
http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-11.10.2
http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-12.3.2

The security advisories are available at:

 * http://downloads.asterisk.org/pub/security/AST-2014-005.pdf
 * http://downloads.asterisk.org/pub/security/AST-2014-006.pdf
 * http://downloads.asterisk.org/pub/security/AST-2014-007.pdf
 * http://downloads.asterisk.org/pub/security/AST-2014-008.pdf

The Asterisk Development Team has announced security releases for Certified
Asterisk 1.8.15, 11.6, and Asterisk 1.8, 11, and 12. The available security
releases are released as versions 1.8.15-cert6, 11.6-cert3, 1.8.28.1, 11.10.1,
and 12.3.1.

These releases are available for immediate download at
http://downloads.asterisk.org/pub/telephony/asterisk/releases

The release of these versions resolves the following issue:

* AST-2014-007: Denial of Service via Exhaustion of Allowed Concurrent HTTP
                Connections

  Establishing a TCP or TLS connection to the configured HTTP or HTTPS port
  respectively in http.conf and then not sending or completing a HTTP request
  will tie up a HTTP session. By doing this repeatedly until the maximum number
  of open HTTP sessions is reached, legitimate requests are blocked.

Additionally, the release of 11.6-cert3, 11.10.1, and 12.3.1 resolves the
following issue:

* AST-2014-006: Permission Escalation via Asterisk Manager User Unauthorized
                Shell Access

  Manager users can execute arbitrary shell commands with the MixMonitor manager
  action. Asterisk does not require system class authorization for a manager
  user to use the MixMonitor action, so any manager user who is permitted to use
  manager commands can potentially execute shell commands as the user executing
  the Asterisk process.

Additionally, the release of 12.3.1 resolves the following issues:

* AST-2014-005: Remote Crash in PJSIP Channel Driver's Publish/Subscribe
                Framework

  A remotely exploitable crash vulnerability exists in the PJSIP channel
  driver's pub/sub framework. If an attempt is made to unsubscribe when not
  currently subscribed and the endpoint's “sub_min_expiry” is set to zero,
  Asterisk tries to create an expiration timer with zero seconds, which is not
  allowed, so an assertion raised.

* AST-2014-008: Denial of Service in PJSIP Channel Driver Subscriptions

  When a SIP transaction timeout caused a subscription to be terminated, the
  action taken by Asterisk was guaranteed to deadlock the thread on which SIP
  requests are serviced. Note that this behavior could only happen on
  established subscriptions, meaning that this could only be exploited if an
  attacker bypassed authentication and successfully subscribed to a real
  resource on the Asterisk server.

These issues and their resolutions are described in the security advisories.

For more information about the details of these vulnerabilities, please read
security advisories AST-2014-005, AST-2014-006, AST-2014-007, and AST-2014-008,
which were released at the same time as this announcement.

For a full list of changes in the current releases, please see the ChangeLogs:

http://downloads.asterisk.org/pub/telephony/certified-asterisk/releases/ChangeLog-1.8.15-cert6
http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-1.8.28.1
http://downloads.asterisk.org/pub/telephony/certified-asterisk/releases/ChangeLog-11.6-cert3
http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-11.10.1
http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-12.3.1

The Asterisk Development Team has announced the release of Asterisk 11.10.0.
This release is available for immediate download at
http://downloads.asterisk.org/pub/telephony/asterisk

The release of Asterisk 11.10.0 resolves several issues reported by the
community and would have not been possible without your participation.
Thank you!

The following are the issues resolved in this release:

Bugs fixed in this release:
-----------------------------------
 * ASTERISK-23547 - [patch] app_queue removing callers from queue
      when reloading (Reported by Italo Rossi)
 * ASTERISK-23559 - app_voicemail fails to load after fix to
      dialplan functions (Reported by Corey Farrell)
 * ASTERISK-22846 - testsuite: masquerade super test fails on all
      branches (still) (Reported by Matt Jordan)
 * ASTERISK-23545 - Confbridge talker detection settings
      configuration load bug (Reported by John Knott)
 * ASTERISK-23546 - CB_ADD_LEN does not do what you'd think
      (Reported by Walter Doekes)
 * ASTERISK-23620 - Code path in app_stack fails to unlock list
      (Reported by Bradley Watkins)
 * ASTERISK-23616 - Big memory leak in logger.c (Reported by
      ibercom)
 * ASTERISK-23576 - Build failure on SmartOS / Illumos / SunOS
      (Reported by Sebastian Wiedenroth)
 * ASTERISK-23550 - Newer sound sets don't show up in menuselect
      (Reported by Rusty Newton)
 * ASTERISK-18331 - app_sms failure (Reported by David Woodhouse)
 * ASTERISK-19465 - P-Asserted-Identity Privacy (Reported by
      Krzysztof Chmielewski)
 * ASTERISK-23605 - res_http_websocket: Race condition in shutting
      down websocket causes crash (Reported by Matt Jordan)
 * ASTERISK-23707 - Realtime Contacts: Apparent mismatch between
      PGSQL database state and Asterisk state (Reported by Mark
      Michelson)
 * ASTERISK-23381 - [patch]ChanSpy- Barge only works on the initial
      'spy', if the spied-on channel makes a new call, unable to
      barge. (Reported by Robert Moss)
 * ASTERISK-23665 - Wrong mime type for codec H263-1998 (h263+)
      (Reported by Guillaume Maudoux)
 * ASTERISK-23664 - Incorrect H264 specification in SDP. (Reported
      by Guillaume Maudoux)
 * ASTERISK-22977 - chan_sip+CEL: missing ANSWER and PICKUP event
      for INVITE/w/replaces pickup (Reported by Walter Doekes)
 * ASTERISK-23709 - Regression in Dahdi/Analog/waitfordialtone
      (Reported by Steve Davies)

Improvements made in this release:
-----------------------------------
 * ASTERISK-23649 - [patch]Support for DTLS retransmission
      (Reported by NITESH BANSAL)
 * ASTERISK-23564 - [patch]TLS/SRTP status of channel not currently
      available in a CLI command (Reported by Patrick Laimbock)
 * ASTERISK-23754 - [patch] Use var/lib directory for log file
      configured in asterisk.conf (Reported by Igor Goncharovsky)

For a full list of changes in this release, please see the ChangeLog:

http://downloads.asterisk.org/pub/telephony/asterisk/ChangeLog-11.10.0
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Jeffrey Ollie <jeff@xxxxxxxxxx> - 11.10.2-2:
- Drop the 389 directory server schema (1061414)
* Thu Jun 19 2014 Jeffrey Ollie <jeff@xxxxxxxxxx> - 11.10.2-1:
- The Asterisk Development Team has announced security releases for Certified
- Asterisk 1.8.15, 11.6, and Asterisk 1.8, 11, and 12. The available security
- releases are released as versions 1.8.15-cert7, 11.6-cert4, 1.8.28.2, 11.10.2,
- and 12.3.2.
-
- These releases are available for immediate download at
- http://downloads.asterisk.org/pub/telephony/asterisk/releases
-
- These releases resolve security vulnerabilities that were previously fixed in
- 1.8.15-cert6, 11.6-cert3, 1.8.28.1, 11.10.1, and 12.3.1. Unfortunately, the fix
- for AST-2014-007 inadvertently introduced a regression in Asterisk's TCP and TLS
- handling that prevented Asterisk from sending data over these transports. This
- regression and the security vulnerabilities have been fixed in the versions
- specified in this release announcement.
-
- The security patches for AST-2014-007 have been updated with the fix for the
- regression, and are available at http://downloads.asterisk.org/pub/security
-
- Please note that the release of these versions resolves the following security
- vulnerabilities:
-
- * AST-2014-005: Remote Crash in PJSIP Channel Driver's Publish/Subscribe
-                 Framework
-
- * AST-2014-006: Permission Escalation via Asterisk Manager User Unauthorized
-                 Shell Access
-
- * AST-2014-007: Denial of Service via Exhaustion of Allowed Concurrent HTTP
-                 Connections
-
- * AST-2014-008: Denial of Service in PJSIP Channel Driver Subscriptions
-
- For more information about the details of these vulnerabilities, please read
- security advisories AST-2014-005, AST-2014-006, AST-2014-007, and AST-2014-008,
- which were released with the previous versions that addressed these
- vulnerabilities.
-
- For a full list of changes in the current releases, please see the ChangeLogs:
-
- http://downloads.asterisk.org/pub/telephony/certified-asterisk/releases/ChangeLog-1.8.15-cert7
- http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-1.8.28.2
- http://downloads.asterisk.org/pub/telephony/certified-asterisk/releases/ChangeLog-11.6-cert4
- http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-11.10.2
- http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-12.3.2
-
- The security advisories are available at:
-
-  * http://downloads.asterisk.org/pub/security/AST-2014-005.pdf
-  * http://downloads.asterisk.org/pub/security/AST-2014-006.pdf
-  * http://downloads.asterisk.org/pub/security/AST-2014-007.pdf
-  * http://downloads.asterisk.org/pub/security/AST-2014-008.pdf
* Thu Jun 19 2014 Jeffrey Ollie <jeff@xxxxxxxxxx> - 11.10.1-1:
- The Asterisk Development Team has announced security releases for Certified
- Asterisk 1.8.15, 11.6, and Asterisk 1.8, 11, and 12. The available security
- releases are released as versions 1.8.15-cert6, 11.6-cert3, 1.8.28.1, 11.10.1,
- and 12.3.1.
-
- These releases are available for immediate download at
- http://downloads.asterisk.org/pub/telephony/asterisk/releases
-
- The release of these versions resolves the following issue:
-
- * AST-2014-007: Denial of Service via Exhaustion of Allowed Concurrent HTTP
-                 Connections
-
-   Establishing a TCP or TLS connection to the configured HTTP or HTTPS port
-   respectively in http.conf and then not sending or completing a HTTP request
-   will tie up a HTTP session. By doing this repeatedly until the maximum number
-   of open HTTP sessions is reached, legitimate requests are blocked.
-
- Additionally, the release of 11.6-cert3, 11.10.1, and 12.3.1 resolves the
- following issue:
-
- * AST-2014-006: Permission Escalation via Asterisk Manager User Unauthorized
-                 Shell Access
-
-   Manager users can execute arbitrary shell commands with the MixMonitor manager
-   action. Asterisk does not require system class authorization for a manager
-   user to use the MixMonitor action, so any manager user who is permitted to use
-   manager commands can potentially execute shell commands as the user executing
-   the Asterisk process.
-
- Additionally, the release of 12.3.1 resolves the following issues:
-
- * AST-2014-005: Remote Crash in PJSIP Channel Driver's Publish/Subscribe
-                 Framework
-
-   A remotely exploitable crash vulnerability exists in the PJSIP channel
-   driver's pub/sub framework. If an attempt is made to unsubscribe when not
-   currently subscribed and the endpoint's “sub_min_expiry” is set to zero,
-   Asterisk tries to create an expiration timer with zero seconds, which is not
-   allowed, so an assertion raised.
-
- * AST-2014-008: Denial of Service in PJSIP Channel Driver Subscriptions
-
-   When a SIP transaction timeout caused a subscription to be terminated, the
-   action taken by Asterisk was guaranteed to deadlock the thread on which SIP
-   requests are serviced. Note that this behavior could only happen on
-   established subscriptions, meaning that this could only be exploited if an
-   attacker bypassed authentication and successfully subscribed to a real
-   resource on the Asterisk server.
-
- These issues and their resolutions are described in the security advisories.
-
- For more information about the details of these vulnerabilities, please read
- security advisories AST-2014-005, AST-2014-006, AST-2014-007, and AST-2014-008,
- which were released at the same time as this announcement.
-
- For a full list of changes in the current releases, please see the ChangeLogs:
-
- http://downloads.asterisk.org/pub/telephony/certified-asterisk/releases/ChangeLog-1.8.15-cert6
- http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-1.8.28.1
- http://downloads.asterisk.org/pub/telephony/certified-asterisk/releases/ChangeLog-11.6-cert3
- http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-11.10.1
- http://downloads.asterisk.org/pub/telephony/asterisk/releases/ChangeLog-12.3.1
-
- The security advisories are available at:
-
-  * http://downloads.asterisk.org/pub/security/AST-2014-005.pdf
-  * http://downloads.asterisk.org/pub/security/AST-2014-006.pdf
-  * http://downloads.asterisk.org/pub/security/AST-2014-007.pdf
-  * http://downloads.asterisk.org/pub/security/AST-2014-008.pdf
* Thu Jun 19 2014 Jeffrey Ollie <jeff@xxxxxxxxxx> - 11.10.0-1:
- The Asterisk Development Team has announced the release of Asterisk 11.10.0.
- This release is available for immediate download at
- http://downloads.asterisk.org/pub/telephony/asterisk
-
- The release of Asterisk 11.10.0 resolves several issues reported by the
- community and would have not been possible without your participation.
- Thank you!
-
- The following are the issues resolved in this release:
-
- Bugs fixed in this release:
- -----------------------------------
-  * ASTERISK-23547 - [patch] app_queue removing callers from queue
-       when reloading (Reported by Italo Rossi)
-  * ASTERISK-23559 - app_voicemail fails to load after fix to
-       dialplan functions (Reported by Corey Farrell)
-  * ASTERISK-22846 - testsuite: masquerade super test fails on all
-       branches (still) (Reported by Matt Jordan)
-  * ASTERISK-23545 - Confbridge talker detection settings
-       configuration load bug (Reported by John Knott)
-  * ASTERISK-23546 - CB_ADD_LEN does not do what you'd think
-       (Reported by Walter Doekes)
-  * ASTERISK-23620 - Code path in app_stack fails to unlock list
-       (Reported by Bradley Watkins)
-  * ASTERISK-23616 - Big memory leak in logger.c (Reported by
-       ibercom)
-  * ASTERISK-23576 - Build failure on SmartOS / Illumos / SunOS
-       (Reported by Sebastian Wiedenroth)
-  * ASTERISK-23550 - Newer sound sets don't show up in menuselect
-       (Reported by Rusty Newton)
-  * ASTERISK-18331 - app_sms failure (Reported by David Woodhouse)
-  * ASTERISK-19465 - P-Asserted-Identity Privacy (Reported by
-       Krzysztof Chmielewski)
-  * ASTERISK-23605 - res_http_websocket: Race condition in shutting
-       down websocket causes crash (Reported by Matt Jordan)
-  * ASTERISK-23707 - Realtime Contacts: Apparent mismatch between
-       PGSQL database state and Asterisk state (Reported by Mark
-       Michelson)
-  * ASTERISK-23381 - [patch]ChanSpy- Barge only works on the initial
-       'spy', if the spied-on channel makes a new call, unable to
-       barge. (Reported by Robert Moss)
-  * ASTERISK-23665 - Wrong mime type for codec H263-1998 (h263+)
-       (Reported by Guillaume Maudoux)
-  * ASTERISK-23664 - Incorrect H264 specification in SDP. (Reported
-       by Guillaume Maudoux)
-  * ASTERISK-22977 - chan_sip+CEL: missing ANSWER and PICKUP event
-       for INVITE/w/replaces pickup (Reported by Walter Doekes)
-  * ASTERISK-23709 - Regression in Dahdi/Analog/waitfordialtone
-       (Reported by Steve Davies)
-
- Improvements made in this release:
- -----------------------------------
-  * ASTERISK-23649 - [patch]Support for DTLS retransmission
-       (Reported by NITESH BANSAL)
-  * ASTERISK-23564 - [patch]TLS/SRTP status of channel not currently
-       available in a CLI command (Reported by Patrick Laimbock)
-  * ASTERISK-23754 - [patch] Use var/lib directory for log file
-       configured in asterisk.conf (Reported by Igor Goncharovsky)
-
- For a full list of changes in this release, please see the ChangeLog:
-
- http://downloads.asterisk.org/pub/telephony/asterisk/ChangeLog-11.10.0
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 11.9.0-2.1
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Thu May 15 2014 Dennis Gilmore <dennis@xxxxxxxx> - 11.9.0-2
- build against gmime-devel not gmime22-devel
- do not use -m64 on aarch64
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1109284 - CVE-2014-4047 asterisk: DoS due to Exhaustion of Allowed Concurrent HTTP Connections (AST-2014-007)
        https://bugzilla.redhat.com/show_bug.cgi?id=1109284
--------------------------------------------------------------------------------


================================================================================
 claws-mail-3.10.1-1.fc20 (FEDORA-2014-7577)
 Email client and news reader based on GTK+
--------------------------------------------------------------------------------
Update Information:

New in this release:

 * Add an account preference to allow automatically accepting unknown and changed SSL certificates, if they're valid that is, if the root CA is trusted by the distro).

 * RFE 3196, 'When changing quicksearch Search Type, set focus to search input box'

 * PGP/Core plugin: Generate 2048 bit RSA keys.

 * Major code cleanup.

 * Extended claws-mail.desktop with Compose and Receive actions.

 * Updated Bulgarian, Brazilian Portuguese, Czech, Dutch, Esperanto, Finnish, French, German,Hebrew, Hungarian, Indonesian, Lithuanian, Slovak, Spanish, and Swedish translations.

* Bug fixes
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Andreas Bierfert <andreas.bierfert[AT]lowlatency.de>
- 3.10.1-1
- version upgrade
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 3.10.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1110254 - claws-mail: stack-based off-by-one in HTML parsing
        https://bugzilla.redhat.com/show_bug.cgi?id=1110254
--------------------------------------------------------------------------------


================================================================================
 claws-mail-plugins-3.10.1-1.fc20 (FEDORA-2014-7577)
 Additional plugins for Claws Mail
--------------------------------------------------------------------------------
Update Information:

New in this release:

 * Add an account preference to allow automatically accepting unknown and changed SSL certificates, if they're valid that is, if the root CA is trusted by the distro).

 * RFE 3196, 'When changing quicksearch Search Type, set focus to search input box'

 * PGP/Core plugin: Generate 2048 bit RSA keys.

 * Major code cleanup.

 * Extended claws-mail.desktop with Compose and Receive actions.

 * Updated Bulgarian, Brazilian Portuguese, Czech, Dutch, Esperanto, Finnish, French, German,Hebrew, Hungarian, Indonesian, Lithuanian, Slovak, Spanish, and Swedish translations.

* Bug fixes
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Andreas Bierfert <andreas.bierfert[AT]lowlatency.de>
- 3.10.1-1
- bump
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 3.10.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1110254 - claws-mail: stack-based off-by-one in HTML parsing
        https://bugzilla.redhat.com/show_bug.cgi?id=1110254
--------------------------------------------------------------------------------


================================================================================
 cockpit-0.11-1.fc20 (FEDORA-2014-7582)
 A user interface for Linux servers
--------------------------------------------------------------------------------
Update Information:

Update to upstream 0.11 release
Update to upstream 0.10 release
Update to upstream 0.8
Update to upstream 0.5 release
Update to upstream 0.4 release
Update to upstream 0.3 release, including new UI look, and Docker container support
Primary package.
Update to upstream 0.9 release
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1061056 - Review Request: cockpit - A user interface for Linux servers
        https://bugzilla.redhat.com/show_bug.cgi?id=1061056
--------------------------------------------------------------------------------


================================================================================
 efibootmgr-0.7.0-3.fc20 (FEDORA-2014-7564)
 EFI Boot Manager
--------------------------------------------------------------------------------
Update Information:

Reinstate an accidentally dropped hack to avoid apple brain damage.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Peter Jones <pjones@xxxxxxxxxx> - 0.7.0-3
- Reinstate an accidentally dropped hack to avoid apple brain damage.
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.7.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Tue Apr  1 2014 Peter Jones <pjones@xxxxxxxxxx> - 0.7.0-1{?dist}
- Release 0.7
* Mon Jan 13 2014 Peter Jones <pjones@xxxxxxxxxx> - 0.6.1-1
- Release 0.6.1
* Mon Jan 13 2014 Jared Dominguez <Jared_Dominguez@xxxxxxxx>
- new home https://github.com/vathpela/efibootmgr
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #873629 - Malformed variable content during system installation
        https://bugzilla.redhat.com/show_bug.cgi?id=873629
--------------------------------------------------------------------------------


================================================================================
 efivar-0.10-2.fc20 (FEDORA-2014-7564)
 Tools to manage UEFI variables
--------------------------------------------------------------------------------
Update Information:

Reinstate an accidentally dropped hack to avoid apple brain damage.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #873629 - Malformed variable content during system installation
        https://bugzilla.redhat.com/show_bug.cgi?id=873629
--------------------------------------------------------------------------------


================================================================================
 freecad-0.13-9.fc20 (FEDORA-2014-7560)
 A general purpose 3D CAD modeler
--------------------------------------------------------------------------------
Update Information:

Properly obsolete old docs subpackage.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Richard Shaw <hobbes1069@xxxxxxxxx> - 0.13-9
- Fix obsoletes of old documentation subpackage.
- Add conditional so EPEL 6 ppc64 does not require python-pivy which does not
  build on that platform.
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.13-8
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1110015 - bad dependency blocks upgrading freecad docs
        https://bugzilla.redhat.com/show_bug.cgi?id=1110015
--------------------------------------------------------------------------------


================================================================================
 frogr-0.10-1.fc20 (FEDORA-2014-7552)
 Flickr Remote Organizer for GNOME
--------------------------------------------------------------------------------
Update Information:

New upstream version.
--------------------------------------------------------------------------------
ChangeLog:

* Tue Jun 17 2014 Richard Hughes <richard@xxxxxxxxxxx> - 0.10-1
- New upstream version.
--------------------------------------------------------------------------------


================================================================================
 haproxy-1.5.0-2.fc20 (FEDORA-2014-7557)
 HAProxy reverse proxy for high availability environments
--------------------------------------------------------------------------------
Update Information:

Update to upstream stable release 1.5.0
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Ryan O'Hara <rohara@xxxxxxxxxx> - 1.5.0-2
- Build with zlib and openssl support
* Thu Jun 19 2014 Ryan O'Hara <rohara@xxxxxxxxxx> - 1.5.0-1
- Update to 1.5.0
--------------------------------------------------------------------------------


================================================================================
 java-1.7.0-openjdk-1.7.0.60-2.5.0.1.fc20 (FEDORA-2014-7558)
 OpenJDK Runtime Environment
--------------------------------------------------------------------------------
Update Information:

Updated to u60b30

http://mail.openjdk.java.net/pipermail/distro-pkg-dev/2014-June/028187.html

This release have reverted controversial fix of http://icedtea.classpath.org/bugzilla/show_bug.cgi?id=729
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Jiri Vanek  <jvanek@xxxxxxxxxx> - 1.7.0.60-2.5.0.1.f20
- added and applied as reverted patch404 gtk3ToBeReverted.patch
 - reverting controversial fix of http://icedtea.classpath.org/bugzilla/show_bug.cgi?id=729
* Wed Jun 18 2014 Jiri Vanek  <jvanek@xxxxxxxxxx> - 1.7.0.60-2.5.0.f20
- updated to icedtea7-forest 2.5.0
- removed icedtea_version_presuffix
- removed hardcoded 60
- removed upstreamed patch412 add-final-location-rpaths.patch
- removed upstreamed patch413 rh1064383-prelink_fix.patch
--------------------------------------------------------------------------------


================================================================================
 kdelibs-4.12.5-4.fc20 (FEDORA-2014-7579)
 KDE Libraries
--------------------------------------------------------------------------------
Update Information:

Fix security issue where POP3 kioslave silently accepted invalid SSL certificates.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 4.12.5-4
- Provides: kdelibs4-webkit ...
* Thu Jun 19 2014 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 4.12.5-3
- POP3 kiosloave silently accepted invalid SSL certificates (#1111022, #1111023, CVE-2014-3494)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1111022 - CVE-2014-3494 kdelibs: POP3 kioslave silently accepted invalid SSL certificates
        https://bugzilla.redhat.com/show_bug.cgi?id=1111022
--------------------------------------------------------------------------------


================================================================================
 konkretcmpi-0.9.2-3.fc20 (FEDORA-2014-7581)
 Tool for rapid CMPI providers development
--------------------------------------------------------------------------------
Update Information:

Fix returning instance as an output argument from method
--------------------------------------------------------------------------------
ChangeLog:

* Fri Jun 20 2014 Radek Novacek <rnovacek@xxxxxxxxxx> 0.9.2-3
- Fix returning instance as an output argument from method
- Resolves: rhbz#1111527
* Sun Jun  8 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.9.2-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1111527 - can not return instance as an output argument from method
        https://bugzilla.redhat.com/show_bug.cgi?id=1111527
--------------------------------------------------------------------------------


================================================================================
 lapack-3.4.2-6.fc20 (FEDORA-2014-7586)
 Numerical linear algebra package libraries
--------------------------------------------------------------------------------
Update Information:

Use the compiled object files in tmglib, not the static lib it makes.
Also link tmglib to lapacke library.
Add matgen_obj files to lapacke library.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Tom Callaway <spot@xxxxxxxxxxxxxxxxx> - 3.4.2-6
- compile in tmglib object files, not static lib
* Tue Jun 17 2014 Tom Callaway <spot@xxxxxxxxxxxxxxxxx> - 3.4.2-4
- add matgen_obj files to lapacke lib
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1108192 - Include all LAPACKE routines
        https://bugzilla.redhat.com/show_bug.cgi?id=1108192
--------------------------------------------------------------------------------


================================================================================
 mate-menus-1.6.0-6.fc20 (FEDORA-2014-7567)
 Displays menus for MATE Desktop
--------------------------------------------------------------------------------
Update Information:

- backport some 1.8.x upstream commits
- support for games-menus
- fix rhbz (#1097454)
--------------------------------------------------------------------------------
ChangeLog:

* Fri Jun 20 2014 Wolfgang Ulbrich <chat-to-me@xxxxxxxxx> - 1.6.0-6
- backport some 1.8.x upstream commits
- support for games-menus
- fix rhbz (#1097454)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1097454 - games-menus not displayed under mate
        https://bugzilla.redhat.com/show_bug.cgi?id=1097454
--------------------------------------------------------------------------------


================================================================================
 mkvtoolnix-7.0.0-1.fc20 (FEDORA-2014-7585)
 Matroska container manipulation utilities
--------------------------------------------------------------------------------
Update Information:

Multiple bugixes and enhancements. From upstream ChangeLog (http://www.bunkus.org/videotools/mkvtoolnix/doc/ChangeLog):

* mkvmerge: enhancement: In addition to the track statistics tags »BPS«, »DURATION«, »NUMBER_OF_BYTES« and »NUMBER_OF_FRAMES« mkvmerge will write two more tags identifying which application wrote the statistics (»_STATISTICS_WRITING_APP«) and when the file in question was written: »_STATISTICS_WRITING_DATE_UTC«. »_STATISTICS_WRITING_APP« will always contain the same string contained in the segment info header element »WritingApp«. »_STATISTICS_WRITING_DATE_UTC« will contain the same timestamp as in the segment info header element »Date«, though »_STATISTICS_WRITING_DATE_UTC« is actually a string representation instead of an integer value. Additionally a tag named »_STATISTICS_TAGS« is written containing the names of the tags that mkvmerge has set automatically. It equals the following currently: »BPS DURATION NUMBER_OF_BYTES NUMBER_OF_FRAMES«.
* mkvmerge: bug fix: If a single subtitle track contains two or more entries at the same timecode then the cue duration and cue relative position elements written were wrong. 
* mkvinfo: bug fix: fixed wrong progress percentage shown during saving the information to text files. Fixes #1016.
* mkvmerge: new feature: Added a global option for disabling writing the tags with statistics for each track: --disable-track-specific-tags.
* mkvmerge: new feature: When identifying a Matroska file in verbose identification mode track-specific tags will be output as well. The format is »tag_<tag name in lower case>:<tag value>», e.g. for a tag named »BPS« with the value »224000« the output would be »tag_bps:224000«. Enhancement for #1021.
* mkvmerge: new feature: mkvmerge will write track-specific tags with statistics (»BPS« for the average number of bits per second, »DURATION« for the duration, »NUMBER_OF_BYTES« and »NUMBER_OF_FRAMES« for the track's size in bytes and its number of frames/packets). Implements #1021.     
* mkvmerge: bug fix: Changed the file type detection order again. The text subtitle formats are now probed after those binary formats that can be detected quickly and unambiguously. This avoids some mis-detection if e.g. Matroska files as ASS text subtitles if they do contain such a track.
* mmg: enhancement: The chapter editor will only use fast-mode parsing when loading chapters from Matroska files.
* all: bug fix: fixed invalid memory access in the cleanup procedures which only occurred if the output was redirected with the »--redirect-output« command line parameter. 
* mkvmerge: enhancement: The last chapter entry read from MPLS files is removed if it is at most five seconds long. Patch by Andrew Dvorak (see AUTHORS).
* mkvmerge: enhancement: added the attachment UID to the verbose identification output of Matroska files.
* mmg: bug fix: Selecting a subtitle track correctly sets the »character set« drop-down box if no character set was set for this track. Fixes #1008.
* mmg: enhancement: the subtitle character set cannot be set anymore for subtitle tracks read from Matroska files as mkvmerge ignores that setting for said container anyway (text subs are always encoded in UTF-8 in Matroska).
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 18 2014 Dominik Mierzejewski <rpm@xxxxxxxxxxxxxx> 7.0.0-1
- update to 7.0.0
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 6.9.1-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Thu May 22 2014 Petr Machata <pmachata@xxxxxxxxxx> - 6.9.1-2
- Rebuild for boost 1.55.0
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1108068 - mkvtoolnix-7.0.0 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1108068
--------------------------------------------------------------------------------


================================================================================
 netgen-mesher-5.1-9.fc20 (FEDORA-2014-7576)
 Automatic mesh generation tool
--------------------------------------------------------------------------------
Update Information:

Add missing mpich-devel BR.
Initial package.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1108395 - Review Request: netgen-mesher - Automatic mesh generation tool
        https://bugzilla.redhat.com/show_bug.cgi?id=1108395
--------------------------------------------------------------------------------


================================================================================
 pdns-recursor-3.6.0-1.fc20 (FEDORA-2014-7554)
 Modern, advanced and high performance recursing/non authoritative name server
--------------------------------------------------------------------------------
Update Information:

- Update to 3.6.0

This is a performance, feature and bugfix update to 3.5/3.5.3. It contains important fixes for slightly broken domain names, which your users expect to work anyhow. It also brings robust resilience against certain classes of attacks.
--------------------------------------------------------------------------------
ChangeLog:

* Fri Jun 20 2014 Morten Stevens <mstevens@xxxxxxxxxxxxxxx> - 3.6.0-1
- Update to 3.6.0
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 3.6.0-0.2.rc1
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Fri May 30 2014 Morten Stevens <mstevens@xxxxxxxxxxxxxxx> - 3.6.0-0.1.rc1
- Update to 3.6.0-rc1
* Fri May 23 2014 Petr Machata <pmachata@xxxxxxxxxx> - 3.5.3-3
- Rebuild for boost 1.55.0
--------------------------------------------------------------------------------


================================================================================
 perl-MooX-Types-MooseLike-Numeric-1.02-2.fc20 (FEDORA-2014-7578)
 Moo types for numbers
--------------------------------------------------------------------------------
Update Information:

 
--------------------------------------------------------------------------------


================================================================================
 php-pecl-event-1.10.2-1.fc20 (FEDORA-2014-7566)
 Provides interface to libevent library
--------------------------------------------------------------------------------
Update Information:

* Fix: EventBufferEvent::read() accepted negative values
* Fix: TSRM context was not set in EventHttp::__construct (János Fekete)
* Fix: refcounter in EventHttp's default callback (János Fekete)
--------------------------------------------------------------------------------
ChangeLog:

* Fri Jun 20 2014 Remi Collet <remi@xxxxxxxxxxxxxxxxx> - 1.10.2-1
- Update to 1.10.2 (stable)
--------------------------------------------------------------------------------


================================================================================
 php-pecl-solr-1.1.1-1.fc20 (FEDORA-2014-7588)
 Object oriented API to Apache Solr
--------------------------------------------------------------------------------
Update Information:

1.1.0 Stable
- Introduced SolrServerException which handles exception responses produced by Solr Server [Feature #67063]
- SolrClient::commit $maxSegments removed
- SolrQuery::__construct throws SolrIllegalArgumentException instead of E_ERROR
- Removed php curl extension dependency for static builds [Bug #59028]

>From 1.1.0b
- SolrClient::system Access system servlet which fetch Solr Server System Information
- SolrClient::commit argument $maxSegments is now DEPRECATED
- SolrClient::commit Added support for expungeDeletes on
- All SolrClient methods throws SolrClientExceptions instead of E_WARNING + SolrClientException
- SolrClientExceptions' messages are more informative in case of connection errors
- Added json extension validation
- All SolrResponse, SolrQueryResponse, SolrUpdateResponse, SolrPingResponse, SolrGenericResponse, SolrDocument, and SolrInputDocument classes are now final
- All parameters functions throws SolrIllegalArgumentException instead of E_RROR
- SolrParams/SolrModifiableParams/SolrQuery throws SolrIllegalArguments Exception instead of E_ERROR [Feature #66858]
- Various Bug Fixes
--------------------------------------------------------------------------------
ChangeLog:

* Fri Jun 20 2014 Remi Collet <remi@xxxxxxxxxxxxxxxxx> - 1.1.1-1
- Update to 1.1.1 (stable)
- install doc in pecl_docdir
- install tests in pecl_testdir
- build ZTS extension
--------------------------------------------------------------------------------


================================================================================
 polkit-qt-0.103.0-10.fc20 (FEDORA-2014-7584)
 Qt bindings for PolicyKit
--------------------------------------------------------------------------------
Update Information:

Backport some upstream fixes that may help some memory leaks for long-running sessions
--------------------------------------------------------------------------------
ChangeLog:

* Sat Feb  1 2014 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> - 0.103.0-10
- -devel: use %_rpmconfigdir/macros.d (where supported)
- .spec cleanup
* Thu Dec 19 2013 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 0.103.0-9
- pull in some more upstream fixes (from mbriza)
--------------------------------------------------------------------------------


================================================================================
 python-fedmsg-meta-fedora-infrastructure-0.2.14-1.fc20 (FEDORA-2014-7569)
 Metadata providers for Fedora Infrastructure's fedmsg deployment
--------------------------------------------------------------------------------
Update Information:

New github message types supported.  New cloudy, releng handler from David Gay.  Switch from gravatar to libravatar.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Ralph Bean <rbean@xxxxxxxxxx> - 0.2.14-1
- Updates to the github processor.
- New fedimg cloudy releng processor from David Gay.
- Switch to libravatar full-time.
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.2.13-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------


================================================================================
 python-parse-1.6.4-1.fc20 (FEDORA-2014-7550)
 Opposite of format()
--------------------------------------------------------------------------------
Update Information:

New upstream release.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Matěj Cepl <mcepl@xxxxxxxxxx> - 1.6.4-1
- New upstream release.
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.6.2-6
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Wed May 28 2014 Kalev Lember <kalevlember@xxxxxxxxx> - 1.6.2-5
- Rebuilt for https://fedoraproject.org/wiki/Changes/Python_3.4
--------------------------------------------------------------------------------


================================================================================
 python-wikitools-1.2-1.fc20 (FEDORA-2014-7568)
 Python package for interacting with a MediaWiki wiki
--------------------------------------------------------------------------------
Update Information:

This is a new packages that provides python API for mediawiki.
--------------------------------------------------------------------------------


================================================================================
 samba-4.1.8-3.fc20 (FEDORA-2014-7587)
 Server and Client software to interoperate with Windows machines
--------------------------------------------------------------------------------
Update Information:

Update to Samba 4.1.8 (CVE-2014-0178 samba: Uninitialized memory exposure)
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 11 2014 - Guenther Deschner <gdeschner@xxxxxxxxxx> - 4.1.8-3
- Update to Samba 4.1.8.
* Thu Apr  3 2014 - Andreas Schneider <asn@xxxxxxxxxx> - 4.1.6-3
- Add systemd integration to the service daemons.
* Tue Mar 18 2014 - Andreas Schneider <asn@xxxxxxxxxx> - 4.1.6-2
- Created a samba-test-libs package.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1102528 - CVE-2014-0178 samba: Uninitialized memory exposure [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=1102528
--------------------------------------------------------------------------------


================================================================================
 stp-0.1-23.20140619git.44de620.fc20 (FEDORA-2014-7553)
 Constraint solver/decision procedure
--------------------------------------------------------------------------------
Update Information:

This update includes the following changes:
- clean ups in the C++ interface
- fixed a memory leak in the C interface
- fixed a bug that turned all BBNodeManagerAIG NOR nodes into OR nodes
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 18 2014 Jerry James <loganjerry@xxxxxxxxx> - 0.1-23.20140619git.44de620
- Update to recent git snapshot
- Drop upstreamed -undefined patch
* Sun Jun  8 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.1-22.20140402git.f8a392d
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Fri May 23 2014 Petr Machata <pmachata@xxxxxxxxxx> - 0.1-21.20140402git.f8a392d
- Rebuild for boost 1.55.0
--------------------------------------------------------------------------------


================================================================================
 wine-1.7.20-1.fc20 (FEDORA-2014-7561)
 A compatibility layer for windows applications
--------------------------------------------------------------------------------
Update Information:

 * X11 drag & drop fixes.
 * A few more C/C++ runtime functions.
 * Fixes for various memory issues found by Valgrind.
 * Some OLE storage fixes.
 * Various bug fixes.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 19 2014 Andreas Bierfert <andreas.bierfert[AT]lowlatency.de>
- 1.7.20-1
- version upgrade
* Sun Jun  8 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.7.19-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------

-- 
test mailing list
test@xxxxxxxxxxxxxxxxxxxxxxx
To unsubscribe:
https://admin.fedoraproject.org/mailman/listinfo/test





[Index of Archives]     [Fedora Desktop]     [Fedora SELinux]     [Photo Sharing]     [Yosemite Forum]     [KDE Users]

  Powered by Linux