The following Fedora 19 Security updates need testing: Age URL 287 https://admin.fedoraproject.org/updates/FEDORA-2013-19963/openstack-glance-2013.1.4-1.fc19 99 https://admin.fedoraproject.org/updates/FEDORA-2014-5896/nrpe-2.15-2.fc19 50 https://admin.fedoraproject.org/updates/FEDORA-2014-7496/readline-6.2-8.fc19 49 https://admin.fedoraproject.org/updates/FEDORA-2014-7570/asterisk-11.10.2-2.fc19 48 https://admin.fedoraproject.org/updates/FEDORA-2014-6774/claws-mail-3.10.1-1.fc19,claws-mail-plugins-3.10.0-1.fc19,libetpan-1.5-1.fc19 48 https://admin.fedoraproject.org/updates/FEDORA-2014-7610/perl-Email-Address-1.905-1.fc19 39 https://admin.fedoraproject.org/updates/FEDORA-2014-7939/lzo-2.08-1.fc19 34 https://admin.fedoraproject.org/updates/FEDORA-2014-8089/rubygem-activerecord-3.2.13-2.fc19 26 https://admin.fedoraproject.org/updates/FEDORA-2014-8328/python-bottle-0.12.6-1.fc19 26 https://admin.fedoraproject.org/updates/FEDORA-2014-8332/transmission-2.84-1.fc19 16 https://admin.fedoraproject.org/updates/FEDORA-2014-8352/cups-1.6.4-7.fc19 16 https://admin.fedoraproject.org/updates/FEDORA-2014-8771/ReviewBoard-1.7.27-1.fc19 10 https://admin.fedoraproject.org/updates/FEDORA-2014-8972/libndp-1.4-1.fc19 8 https://admin.fedoraproject.org/updates/FEDORA-2014-9057/httpd-2.4.10-1.fc19 8 https://admin.fedoraproject.org/updates/FEDORA-2014-9087/drupal7-date-2.8-1.fc19 8 https://admin.fedoraproject.org/updates/FEDORA-2014-9037/pixman-0.30.0-4.fc19 8 https://admin.fedoraproject.org/updates/FEDORA-2014-9073/tor-0.2.4.23-1.fc19 7 https://admin.fedoraproject.org/updates/FEDORA-2014-9104/tboot-1.8.2-1.fc19 7 https://admin.fedoraproject.org/updates/FEDORA-2014-9113/v8-3.14.5.10-11.fc19 6 https://admin.fedoraproject.org/updates/FEDORA-2014-9132/samba-4.0.21-1.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2014-9162/xulrunner-31.0-1.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2014-9151/krfb-4.11.5-3.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-9279/iodine-0.7.0-1.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-9305/krb5-1.11.3-25.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-9270/wordpress-3.9.2-3.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-9277/drupal7-7.31-1.fc19 The following Fedora 19 Critical Path updates have yet to be approved: Age URL 235 https://admin.fedoraproject.org/updates/FEDORA-2013-22326/fedora-bookmarks-15-5.fc19 161 https://admin.fedoraproject.org/updates/FEDORA-2014-3245/testdisk-6.14-2.fc19.1,ntfs-3g-2014.2.15-1.fc19 13 https://admin.fedoraproject.org/updates/FEDORA-2014-8910/qt5-qtbase-5.3.1-5.fc19,qt-4.8.6-10.fc19 11 https://admin.fedoraproject.org/updates/FEDORA-2014-8924/ibus-1.5.7-6.fc19 10 https://admin.fedoraproject.org/updates/FEDORA-2014-8970/koji-1.9.0-4.fc19 8 https://admin.fedoraproject.org/updates/FEDORA-2014-9037/pixman-0.30.0-4.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2014-9156/gnupg2-2.0.25-1.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2014-9162/xulrunner-31.0-1.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2014-9218/libbluray-0.6.1-1.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2014-9232/firefox-31.0-2.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2014-9244/xfsprogs-3.2.1-1.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-9305/krb5-1.11.3-25.fc19 The following builds have been pushed to Fedora 19 updates-testing R-3.1.1-3.fc19 chicken-4.9.0.1-1.fc19 fedmsg-0.9.3-1.fc19 gfal2-2.6.8-2.fc19 krb5-1.11.3-25.fc19 lftp-4.5.4-1.fc19 lxc-1.0.5-2.fc19 lz4-r121-2.fc19 perl-File-ShareDir-Install-0.08-2.fc19 python-fedmsg-genacls-0.3-1.fc19 python-moksha-hub-1.4.1-1.fc19 smemstat-0.01.10-2.fc19 wordpress-3.9.2-3.fc19 Details about builds: ================================================================================ R-3.1.1-3.fc19 (FEDORA-2014-9314) A language for data analysis and graphics -------------------------------------------------------------------------------- Update Information: Add "make" and "unzip" as Dependencies to R-core. -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 8 2014 Tom Callaway <spot@xxxxxxxxxxxxxxxxx> - 3.1.1-3 - add "unzip" to Requirements list for R-core * Fri Aug 8 2014 Tom Callaway <spot@xxxxxxxxxxxxxxxxx> - 3.1.1-2 - add "make" to Requirements list for R-core (thanks R config) * Thu Jul 10 2014 Tom Callaway <spot@xxxxxxxxxxxxxxxxx> - 3.1.1-1 - update to 3.1.1 * Mon Jul 7 2014 Tom Callaway <spot@xxxxxxxxxxxxxxxxx> - 3.1.0-10 - disable lto everywhere (breaks debuginfo) (bz 1113404) - apply fix for ppc64 (bz 1114240 and upstream bug 15856) - add make check (bz 1059461) - use bundled blas/lapack for RHEL due to bugs in their BLAS - enable Rblas shared lib (whether using bundled BLAS or not) - add explicit requires for new lapack * Tue Jun 24 2014 Tom Callaway <spot@xxxxxxxxxxxxxxxxx> - 3.1.0-9 - mark files in %{_libdir}/R/etc as config(noreplace), resolves 1098663 * Fri Jun 6 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 3.1.0-8 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Wed May 21 2014 Jaroslav Škarvada <jskarvad@xxxxxxxxxx> - 3.1.0-7 - Rebuilt for https://fedoraproject.org/wiki/Changes/f21tcl86 * Thu May 15 2014 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> 3.1.0-6 - Add aarch64 to target CPU specs -------------------------------------------------------------------------------- ================================================================================ chicken-4.9.0.1-1.fc19 (FEDORA-2014-9309) A practical and portable Scheme system -------------------------------------------------------------------------------- Update Information: Latest upstream release. -------------------------------------------------------------------------------- ChangeLog: * Thu Aug 7 2014 Ricky Elrod <relrod@xxxxxxxxxx> - 4.9.0.1-4 - Latest upstream release. * Sat Jun 7 2014 Ricky Elrod <relrod@xxxxxxxxxx> - 4.9.0-4 - Rebuild from previous bootstrap. * Sat Jun 7 2014 Ricky Elrod <relrod@xxxxxxxxxx> - 4.9.0-3 - Bootstrap for el7. * Sat Jun 7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 4.9.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Wed Jun 4 2014 Ricky Elrod <codeblock@xxxxxxxxxxxxxxxxx> - 4.9.0-1 - Latest upstream release. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1104019 - chicken-4.9.0.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=1104019 -------------------------------------------------------------------------------- ================================================================================ fedmsg-0.9.3-1.fc19 (FEDORA-2014-9287) Tools for Fedora Infrastructure real-time messaging -------------------------------------------------------------------------------- Update Information: Disable backlog processing out of the box. -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 8 2014 Ralph Bean <rbean@xxxxxxxxxx> - 0.9.3-1 - Fix broken default config. Disable backlog out of the box. * Fri Aug 8 2014 Ralph Bean <rbean@xxxxxxxxxx> - 0.9.2-1 - Remove patches. * Thu Jul 24 2014 Ralph Bean <rbean@xxxxxxxxxx> - 0.9.1-3 - Update patch. * Thu Jul 24 2014 Ralph Bean <rbean@xxxxxxxxxx> - 0.9.1-2 - Bring in two patches from upstream to fix issues on el7. * Fri Jul 18 2014 Ralph Bean <rbean@xxxxxxxxxx> - 0.9.1-1 - Upstream releases with fixes for el6. * Fri Jul 18 2014 Ralph Bean <rbean@xxxxxxxxxx> - 0.9.0-1 - Daemons can now process backlog at startup. - New fedmsg-dg-replay command for debugging. - Reorganized docs, especially the topics section. - New dep on python-psutil. * Sat Jun 7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.8.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Wed Apr 30 2014 Ralph Bean <rbean@xxxxxxxxxx> - 0.8.0-1 - Latest upstream with new monitoring capabilities. - fedmsg-tweet is retired. -------------------------------------------------------------------------------- ================================================================================ gfal2-2.6.8-2.fc19 (FEDORA-2014-8990) Grid file access library 2.0 -------------------------------------------------------------------------------- Update Information: Update to gfal2 2.6.8 -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 8 2014 Alejandro Alvarez Ayllon <aalvarez at cern.ch> - 2.6.8-2 - Patch for symbol that dissapeared in Davix * Mon Jul 28 2014 Alejandro Alvarez Ayllon <aalvarez at cern.ch> - 2.6.8-1 - Release 2.6.8 of GFAL2 * Sat Jun 7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.5.5-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Thu Mar 13 2014 Alejandro Alvarez <aalvarez at cern.ch> - 2.5.5-2 - Backported patch that fixes segfault on the SRM plugin when listing empty directories * Wed Feb 26 2014 Adrien Devresse <adevress at cern.ch> - 2.5.5-1 - Release 2.5.5 of GFAL2 -------------------------------------------------------------------------------- ================================================================================ krb5-1.11.3-25.fc19 (FEDORA-2014-9305) The Kerberos network authentication system -------------------------------------------------------------------------------- Update Information: This update incorporates the upstream fix for a possible buffer overrun in kadmind when the LDAP kdb backend is in use (CVE-2014-4345). -------------------------------------------------------------------------------- ChangeLog: * Thu Aug 7 2014 Nalin Dahyabhai <nalin@xxxxxxxxxx> - 1.11.3-25 - incorporate fix for MITKRB5-SA-2014-001 (CVE-2014-4345) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1128157 - CVE-2014-4345 krb5: buffer overrun in kadmind with LDAP backend (MITKRB5-SA-2014-001) https://bugzilla.redhat.com/show_bug.cgi?id=1128157 -------------------------------------------------------------------------------- ================================================================================ lftp-4.5.4-1.fc19 (FEDORA-2014-9306) A sophisticated file transfer program -------------------------------------------------------------------------------- Update Information: update to latest upstream lftp-4.5.4 -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 8 2014 Jiri Skala <jskala@xxxxxxxxxx> - 4.5.4-1 - updated to latest upstream 4.5.4 -------------------------------------------------------------------------------- ================================================================================ lxc-1.0.5-2.fc19 (FEDORA-2014-9293) Linux Resource Containers -------------------------------------------------------------------------------- Update Information: Update LXC to the latest stable upstream release 1.0.5. Also, packaging has been improved: - Include sysvinit resp. systemd support for autostart of containers. - Do not list explicit requirements for templates. - Include apidocs. - Various dependency fixes. -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 8 2014 Thomas Moschny <thomas.moschny@xxxxxx> - 1.0.5-2 - Include sysvinit resp. systemd support for autostart of containers. - Do not list explicit requirements for templates. - Add missing dependency on lxc-lua for lxc-top. - Include apidocs. * Fri Aug 8 2014 Peter Robinson <pbrobinson@xxxxxxxxxxxxxxxxx> 1.0.5-1 - Update to 1.0.5 * Sat Jun 7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.0.3-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Wed Jun 4 2014 Thomas Moschny <thomas.moschny@xxxxxx> - 1.0.3-1 - Update to 1.0.3. - Remove obsolete patches. - Add systemd support. - Lua bindings are not optional (needed e.g. for lxc-top). * Wed May 28 2014 Kalev Lember <kalevlember@xxxxxxxxx> - 0.9.0-4 - Rebuilt for https://fedoraproject.org/wiki/Changes/Python_3.4 * Thu Jan 30 2014 Marek Goldmann <mgoldman@xxxxxxxxxx> - 0.9.0-3 - There is still no Python 3 available in EPEL 7 -------------------------------------------------------------------------------- References: [ 1 ] Bug #882236 - lxc: migration to /etc/hostname, /etc/vconsole.conf, /etc/locale.conf https://bugzilla.redhat.com/show_bug.cgi?id=882236 [ 2 ] Bug #1002914 - Latest kernel doesn't allow to login in the containers https://bugzilla.redhat.com/show_bug.cgi?id=1002914 [ 3 ] Bug #1037639 - Starting guest F-20 system in LXC interrupts graphical user session https://bugzilla.redhat.com/show_bug.cgi?id=1037639 [ 4 ] Bug #1056546 - lxc-fedora template doesn't fill lxc.network.hwaddr https://bugzilla.redhat.com/show_bug.cgi?id=1056546 [ 5 ] Bug #1076978 - lxc-create fails when using a template https://bugzilla.redhat.com/show_bug.cgi?id=1076978 [ 6 ] Bug #1076993 - lxc-clone https://bugzilla.redhat.com/show_bug.cgi?id=1076993 [ 7 ] Bug #1097697 - lxc-template is not installable. https://bugzilla.redhat.com/show_bug.cgi?id=1097697 -------------------------------------------------------------------------------- ================================================================================ lz4-r121-2.fc19 (FEDORA-2014-9304) Extremely fast compression algorithm -------------------------------------------------------------------------------- Update Information: - new release - Added a pkg-config file. - Fixed a LZ4 streaming crash bug. -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 8 2014 Igor Gnatenko <i.gnatenko.brain@xxxxxxxxx> - r121-2 - fix destdir * Fri Aug 8 2014 pjp <pjp@xxxxxxxxxxxxxxxxx> - r121-1 - new release - Added a pkg-config file. - Fixed a LZ4 streaming crash bug. -------------------------------------------------------------------------------- ================================================================================ perl-File-ShareDir-Install-0.08-2.fc19 (FEDORA-2014-9291) Install shared files -------------------------------------------------------------------------------- Update Information: -------------------------------------------------------------------------------- ChangeLog: * Sat Jun 7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.08-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Mon Feb 3 2014 Paul Howarth <paul@xxxxxxxxxxxx> - 0.08-1 - Update to 0.08 - Tweak documentation and fix typos - Added $INCLUDE_DOTFILES and $INCLUDE_DOTDIRS - Added delete_share - Tests may now be run in parallel - Don't need to remove empty directories from the buildroot * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.04-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Sat Jul 20 2013 Petr Pisar <ppisar@xxxxxxxxxx> - 0.04-6 - Perl 5.18 rebuild -------------------------------------------------------------------------------- ================================================================================ python-fedmsg-genacls-0.3-1.fc19 (FEDORA-2014-9299) A fedmsg consumer that sets gitosis acls in response to pkgdb messages -------------------------------------------------------------------------------- Update Information: handle teams support in pkgdb2 -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 8 2014 Ralph Bean <rbean@xxxxxxxxxx> - 0.3-1 - Update to handle "teams" support in pkgdb. * Sat Jun 7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.2-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ python-moksha-hub-1.4.1-1.fc19 (FEDORA-2014-9292) Hub components for Moksha -------------------------------------------------------------------------------- Update Information: Configurable permissions on the monitoring socket. Suggested threadpool size to twisted. -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 8 2014 Ralph Bean <rbean@xxxxxxxxxx> - 1.4.1-1 - Configurable permissions on the monitoring socket. - Suggest a threadpool size to twisted based on the number of consumers. * Fri Jul 18 2014 Ralph Bean <rbean@xxxxxxxxxx> - 1.4.0-1 - New API points: pre_consume and post_consume. -------------------------------------------------------------------------------- ================================================================================ smemstat-0.01.10-2.fc19 (FEDORA-2014-9290) Shared memory usage monitoring tool -------------------------------------------------------------------------------- Update Information: Shared memory usage monitoring tool. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1123654 - Review Request: smemstat - Shared memory usage monitoring tool https://bugzilla.redhat.com/show_bug.cgi?id=1123654 -------------------------------------------------------------------------------- ================================================================================ wordpress-3.9.2-3.fc19 (FEDORA-2014-9270) Blog tool and publishing platform -------------------------------------------------------------------------------- Update Information: Upstream annoucement: http://wordpress.org/news/2014/08/wordpress-3-9-2/ -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 8 2014 Remi Collet <remi@xxxxxxxxxxxxxxxxx> - 3.9.2-3 - config dir only readable by apache group, better fix for #1124582 - fix license handling * Thu Aug 7 2014 Remi Collet <remi@xxxxxxxxxxxxxxxxx> - 3.9.2-2 - update to 3.9.2 Security Release #1127547 - config file only readable by apache user (httpd or php-fpm) #1124582 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1127547 - wordpress: security issues fixed in version 3.9.2 https://bugzilla.redhat.com/show_bug.cgi?id=1127547 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test