The following Fedora 19 Security updates need testing: Age URL 379 https://admin.fedoraproject.org/updates/FEDORA-2013-19963/openstack-glance-2013.1.4-1.fc19 191 https://admin.fedoraproject.org/updates/FEDORA-2014-5896/nrpe-2.15-2.fc19 142 https://admin.fedoraproject.org/updates/FEDORA-2014-7496/readline-6.2-8.fc19 85 https://admin.fedoraproject.org/updates/FEDORA-2014-9427/pipelight-0.2.7.3-3.fc19 60 https://admin.fedoraproject.org/updates/FEDORA-2014-10366/icecream-1.0.1-8.20140822git.fc19 59 https://admin.fedoraproject.org/updates/FEDORA-2014-10640/libreoffice-4.1.6.2-8.fc19 44 https://admin.fedoraproject.org/updates/FEDORA-2014-11544/drupal6-6.33-1.fc19 37 https://admin.fedoraproject.org/updates/FEDORA-2014-12057/krb5-1.11.3-29.fc19 29 https://admin.fedoraproject.org/updates/FEDORA-2014-12407/sddm-0.9.0-2.20141007git6a28c29b.fc19 23 https://admin.fedoraproject.org/updates/FEDORA-2014-12994/firefox-33.0-1.fc19 23 https://admin.fedoraproject.org/updates/FEDORA-2014-13047/libxml2-2.9.1-2.fc19 23 https://admin.fedoraproject.org/updates/FEDORA-2014-13018/deluge-1.3.10-1.fc19 13 https://admin.fedoraproject.org/updates/FEDORA-2014-13551/wpa_supplicant-2.0-12.fc19 8 https://admin.fedoraproject.org/updates/FEDORA-2014-14066/php-sabredav-Sabre_VObject-2.1.4-1.fc19,php-sabredav-Sabre_HTTP-1.7.11-1.fc19,php-sabredav-Sabre_CalDAV-1.7.9-1.fc19,php-sabredav-Sabre_DAVACL-1.7.9-1.fc19,php-sabredav-Sabre_CardDAV-1.7.9-2.fc19,php-sabredav-Sabre_DAV-1.7.13-1.fc19,owncloud-5.0.17-2.fc19 8 https://admin.fedoraproject.org/updates/FEDORA-2014-14068/kernel-3.14.23-100.fc19 8 https://admin.fedoraproject.org/updates/FEDORA-2014-14059/mokutil-0.2.0-1.fc19,shim-signed-0.8-2 4 https://admin.fedoraproject.org/updates/FEDORA-2014-14266/python-2.7.5-15.fc19 4 https://admin.fedoraproject.org/updates/FEDORA-2014-14237/claws-mail-plugins-3.11.1-1.fc19,claws-mail-3.11.1-2.fc19,libetpan-1.6-1.fc19 4 https://admin.fedoraproject.org/updates/FEDORA-2014-14257/python3-3.3.2-10.fc19 4 https://admin.fedoraproject.org/updates/FEDORA-2014-14233/aircrack-ng-1.2-0.3.rc1.fc19 2 https://admin.fedoraproject.org/updates/FEDORA-2014-13702/konversation-1.5.1-1.fc19 2 https://admin.fedoraproject.org/updates/FEDORA-2014-14359/curl-7.29.0-25.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-14498/python-requests-kerberos-0.6-1.fc19 The following Fedora 19 Critical Path updates have yet to be approved: Age URL 327 https://admin.fedoraproject.org/updates/FEDORA-2013-22326/fedora-bookmarks-15-5.fc19 253 https://admin.fedoraproject.org/updates/FEDORA-2014-3245/testdisk-6.14-2.fc19.1,ntfs-3g-2014.2.15-1.fc19 13 https://admin.fedoraproject.org/updates/FEDORA-2014-13549/xulrunner-33.0-2.fc19 13 https://admin.fedoraproject.org/updates/FEDORA-2014-13551/wpa_supplicant-2.0-12.fc19 11 https://admin.fedoraproject.org/updates/FEDORA-2014-13880/device-mapper-persistent-data-0.4.1-1.fc19 8 https://admin.fedoraproject.org/updates/FEDORA-2014-14068/kernel-3.14.23-100.fc19 8 https://admin.fedoraproject.org/updates/FEDORA-2014-14047/qtwebkit-2.3.4-1.fc19 4 https://admin.fedoraproject.org/updates/FEDORA-2014-14266/python-2.7.5-15.fc19 2 https://admin.fedoraproject.org/updates/FEDORA-2014-14359/curl-7.29.0-25.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-14516/pcre-8.32-11.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-14505/unzip-6.0-12.fc19 The following builds have been pushed to Fedora 19 updates-testing CGSI-gSOAP-1.3.7-1.fc19 ShellCheck-0.3.4-2.fc19 bashmount-3.2.0-3.fc19 cpanspec-1.78-18.fc19 gfal2-2.7.6-1.fc19 gfal2-python-1.6.0-1.fc19 gfal2-util-1.1.0-1.fc19 inxi-2.2.16-1.fc19 nc6-1.0-21.fc19 ocaml-cppo-1.0.1-1.fc19 oflb-asana-math-fonts-0.954-1.fc19.1 pcre-8.32-11.fc19 perl-App-Nopaste-0.96-1.fc19 php-pecl-http-2.1.4-1.fc19 python-requests-kerberos-0.6-1.fc19 python-slugify-0.0.1-2.fc19 salt-2014.7.0-1.fc19 sonic-visualiser-2.4.1-2.fc19 srm-ifce-1.21.4-1.fc19 unzip-6.0-12.fc19 viewvc-1.1.23-1.fc19 Details about builds: ================================================================================ CGSI-gSOAP-1.3.7-1.fc19 (FEDORA-2014-14520) GSI plugin for gSOAP -------------------------------------------------------------------------------- Update Information: Update for release 1.3.7 -------------------------------------------------------------------------------- ChangeLog: * Thu Nov 6 2014 Alejandro Alvarez Ayllon <aalvarez@xxxxxxx> - 1.3.7-1 - Update for new upstream release * Fri Aug 15 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.3.6-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ ShellCheck-0.3.4-2.fc19 (FEDORA-2014-14490) Tool for checking common errors in POSIX shell scripts -------------------------------------------------------------------------------- Update Information: No longer link against QuickCheck -------------------------------------------------------------------------------- ChangeLog: * Tue Nov 4 2014 Jens Petersen <petersen@xxxxxxxxxx> - 0.3.4-2 - disable tests on all archs (#1158522) - QuickCheck should really only be used for buildtime tests -------------------------------------------------------------------------------- References: [ 1 ] Bug #1158522 - ShellCheck FTBS on ppc(64(le)), s390(x) and aarch64 https://bugzilla.redhat.com/show_bug.cgi?id=1158522 -------------------------------------------------------------------------------- ================================================================================ bashmount-3.2.0-3.fc19 (FEDORA-2014-14517) A menu-driven bash script for mounting removable media -------------------------------------------------------------------------------- Update Information: fix macro for udisks2 dependency Unretire package. -------------------------------------------------------------------------------- ChangeLog: * Wed Nov 5 2014 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 3.2.0-3 - fix macro for udisks2 dependency * Sat Apr 26 2014 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 3.2.0-2 - do not depend on udisks2 on EL6 * Sat Apr 19 2014 Jamie Nguyen <jamielinux@xxxxxxxxxxxxxxxxx> - 3.2.0-1 - update to upstream release 3.2.0 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1089493 - Review Request: bashmount - A menu-driven bash script for mounting removable media https://bugzilla.redhat.com/show_bug.cgi?id=1089493 -------------------------------------------------------------------------------- ================================================================================ cpanspec-1.78-18.fc19 (FEDORA-2014-14533) RPM spec file generation utility -------------------------------------------------------------------------------- Update Information: Fix the incorrect value %optimize macro and bogus perl versions in the list of build requirements. -------------------------------------------------------------------------------- ChangeLog: * Thu Nov 6 2014 Petr Šabata <contyk@xxxxxxxxxx> - 1.78-18 - Use %{optflags} instead of %{optimize} (#739461, b0bdaf23) - Strip META perl version BR (#708377, c4069558) * Tue Aug 26 2014 Jitka Plesnikova <jplesnik@xxxxxxxxxx> - 1.78-17 - Perl 5.20 rebuild * Sat Jun 7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.78-16 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.78-15 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Wed Jul 17 2013 Petr Pisar <ppisar@xxxxxxxxxx> - 1.78-14 - Perl 5.18 rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #739461 - Surprising value for --optimize in generated spec file https://bugzilla.redhat.com/show_bug.cgi?id=739461 [ 2 ] Bug #708377 - [PATCH] normalize perl version in build requires https://bugzilla.redhat.com/show_bug.cgi?id=708377 -------------------------------------------------------------------------------- ================================================================================ gfal2-2.7.6-1.fc19 (FEDORA-2014-14534) Grid file access library 2.0 -------------------------------------------------------------------------------- Update Information: Update for gfal2 2.7.6 release -------------------------------------------------------------------------------- ChangeLog: * Fri Nov 7 2014 Alejandro Alvarez Ayllon <aalvarez at cern.ch> - 2.7.6-1 - New upstream release * Mon Sep 8 2014 Alejandro Alvarez Ayllon <aalvarez at cern.ch> - 2.6.8-6 - Patch to use lseek64 instead of lseek in the http plugin * Thu Sep 4 2014 Orion Poplawski <orion@xxxxxxxxxxxxx> - 2.6.8-5 - Rebuild for pugixml 1.4 * Sat Aug 16 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.6.8-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ gfal2-python-1.6.0-1.fc19 (FEDORA-2014-14481) Python bindings for gfal 2 -------------------------------------------------------------------------------- Update Information: New upstream release -------------------------------------------------------------------------------- ChangeLog: * Fri Nov 7 2014 Alejandro Alvarez <aalvarez at cern.ch> - 1.6.0-1 - Update for release 1.6.0 * Sat Aug 16 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.5.0-1 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ gfal2-util-1.1.0-1.fc19 (FEDORA-2014-14492) GFAL2 utility tools -------------------------------------------------------------------------------- Update Information: New upstream release -------------------------------------------------------------------------------- ChangeLog: * Fri Nov 7 2014 Alejandro Alvarez <aalvarez at cern.ch> - 1.1.0-1 - Update for new upstream 1.1.0 release -------------------------------------------------------------------------------- ================================================================================ inxi-2.2.16-1.fc19 (FEDORA-2014-14501) A full featured system information script -------------------------------------------------------------------------------- Update Information: Update to 2.2.16 -------------------------------------------------------------------------------- ChangeLog: * Thu Nov 6 2014 Vasiliy N. Glazov <vascom2@xxxxxxxxx> 2.2.16-1 - Update to 2.2.16 -------------------------------------------------------------------------------- ================================================================================ nc6-1.0-21.fc19 (FEDORA-2014-14518) Netcat with IPv6 Support -------------------------------------------------------------------------------- Update Information: Close sockets after client disconnects. -------------------------------------------------------------------------------- ChangeLog: * Fri Nov 7 2014 Petr Šabata <contyk@xxxxxxxxxx> - 1.0-21 - Close sockets after the client disconnects (#1161432) * Sun Aug 17 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.0-20 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild * Tue Jun 10 2014 Petr Šabata <contyk@xxxxxxxxxx> - 1.0-19 - Fix FTBFS with the current autoconf * Sat Jun 7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.0-18 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.0-17 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1161432 - nc6 server side keeps socket open after client quits https://bugzilla.redhat.com/show_bug.cgi?id=1161432 -------------------------------------------------------------------------------- ================================================================================ ocaml-cppo-1.0.1-1.fc19 (FEDORA-2014-14503) Equivalent of the C preprocessor for OCaml programs -------------------------------------------------------------------------------- Update Information: Latest upstream version, see https://github.com/mjambon/cppo/commits/master for changes -------------------------------------------------------------------------------- ChangeLog: * Mon Nov 3 2014 Michel Alexandre Salim <salimma@xxxxxxxxxxxxxxxxx> - 1.0.1-1 - Update to 1.0.1 * Thu Apr 24 2014 Jaromir Capik <jcapik@xxxxxxxxxx> - 0.9.3-3 - Removing ExclusiveArch -------------------------------------------------------------------------------- References: [ 1 ] Bug #1108082 - ocaml-cppo-1.0.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=1108082 -------------------------------------------------------------------------------- ================================================================================ oflb-asana-math-fonts-0.954-1.fc19.1 (FEDORA-2014-14478) An OpenType font with a MATH table -------------------------------------------------------------------------------- Update Information: update to 954 update -------------------------------------------------------------------------------- ChangeLog: * Wed Nov 5 2014 Parag Nemade <pnemade AT redha DOT com> - 0.954-1.fc19.1 - update to 954 update -------------------------------------------------------------------------------- ================================================================================ pcre-8.32-11.fc19 (FEDORA-2014-14516) Perl-compatible regular expression library -------------------------------------------------------------------------------- Update Information: This release fixes missing initialization of ovector offsets for capturing groups before a forced match. A garbage values were left there from what an aplication passed into pcre_exec() function. -------------------------------------------------------------------------------- ChangeLog: * Fri Nov 7 2014 Petr Pisar <ppisar@xxxxxxxxxx> - 8.32-11 - Reset non-matched groups within capturing group up to forced match (bug #1161587) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1161587 - Capturing group offsets before forced match are not initialized https://bugzilla.redhat.com/show_bug.cgi?id=1161587 -------------------------------------------------------------------------------- ================================================================================ perl-App-Nopaste-0.96-1.fc19 (FEDORA-2014-14494) Easy access to any pastebin -------------------------------------------------------------------------------- Update Information: A new version of nopaste if available for Fedora. See upstream changelog for the summary of bugfixes and new features in this release -- http://cpansearch.perl.org/src/ETHER/App-Nopaste-0.96/Changes -------------------------------------------------------------------------------- ChangeLog: * Fri Nov 7 2014 Petr Šabata <contyk@xxxxxxxxxx> - 0.96-1 - 0.96 bump * Mon Sep 1 2014 Jitka Plesnikova <jplesnik@xxxxxxxxxx> - 0.90-6 - Perl 5.20 rebuild * Sat Jun 7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.90-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Sun Aug 4 2013 Petr Pisar <ppisar@xxxxxxxxxx> - 0.90-4 - Perl 5.18 rebuild * Sat Aug 3 2013 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.90-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1059620 - perl-App-Nopaste-0.96 is available https://bugzilla.redhat.com/show_bug.cgi?id=1059620 -------------------------------------------------------------------------------- ================================================================================ php-pecl-http-2.1.4-1.fc19 (FEDORA-2014-14482) Extended HTTP support -------------------------------------------------------------------------------- Update Information: Version 2.1.4 * Fixed bug #68353 (QsoSSL support removed in libcurl 7.39) * Fixed bug #68149 (duplicate content-length with libcurl < 7.23) * Fixed bug #66891 (Unexpected HTTP 401 after NTLM authentication) Version 2.1.3 * Fix build with libcurl < 7.26 (Remi) Version 2.1.2 * Added missing request option constants: POSTREDIR_303, AUTH_SPNEGO (libcurl >= 7.38.0), SSL_VERSION_TLSv1_{0,1,2} (libcurl >= 7.34) * Fixed bug #68083 (PUT method not working after DELETE) * Fixed bug #68009 (Segmentation fault after calling exit(0) after a request) * Fixed bug #68000 (Extension does not build on FreeBSD) -------------------------------------------------------------------------------- ChangeLog: * Thu Nov 6 2014 Remi Collet <remi@xxxxxxxxxxxxxxxxx> - 2.1.4-1 - Update to 2.1.4 -------------------------------------------------------------------------------- ================================================================================ python-requests-kerberos-0.6-1.fc19 (FEDORA-2014-14498) A Kerberos authentication handler for python-requests -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2014-8650: requests-kerberos does not perform mutual authentication -------------------------------------------------------------------------------- ChangeLog: * Fri Nov 7 2014 Dan Callaghan <dcallagh@xxxxxxxxxx> - 0.6-1 - fix for mutual authentication handling (RHBZ#1160545, CVE-2014-8650) * Sat Jun 7 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.5-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1160540 - python-requests-kerberos: failure to handle mutual authentication https://bugzilla.redhat.com/show_bug.cgi?id=1160540 -------------------------------------------------------------------------------- ================================================================================ python-slugify-0.0.1-2.fc19 (FEDORA-2014-14499) A generic slugifier -------------------------------------------------------------------------------- Update Information: - Rebuilt. -------------------------------------------------------------------------------- ================================================================================ salt-2014.7.0-1.fc19 (FEDORA-2014-14521) A parallel remote execution system -------------------------------------------------------------------------------- Update Information: Update to feature release 2014.7.0 -------------------------------------------------------------------------------- ChangeLog: * Thu Nov 6 2014 Erik Johnson <erik@xxxxxxxxxxxxx> - 2014.7.0-1 - Update to feature release 2014.7.0 -------------------------------------------------------------------------------- ================================================================================ sonic-visualiser-2.4.1-2.fc19 (FEDORA-2014-14254) A program for viewing and exploring audio data -------------------------------------------------------------------------------- Update Information: Latest upstream release, see CHANGELOG for full details -------------------------------------------------------------------------------- ChangeLog: * Fri Nov 7 2014 Michel Alexandre Salim <salimma@xxxxxxxxxxxxxxxxx> - 2.4.1-2 - Fix tests on s390 and ppc64 (bug #1161119) * Sun Nov 2 2014 Michel Salim <salimma@xxxxxxxxxxxxxxxxx> - 2.4.1-1 - Update to 2.4.1 -------------------------------------------------------------------------------- References: [ 1 ] Bug #991788 - sonic-visualiser-2.4.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=991788 [ 2 ] Bug #1161119 - sonic-visualiser: tests fail on s390(x) ppc64(le) https://bugzilla.redhat.com/show_bug.cgi?id=1161119 -------------------------------------------------------------------------------- ================================================================================ srm-ifce-1.21.4-1.fc19 (FEDORA-2014-14497) SRM client side library -------------------------------------------------------------------------------- Update Information: Update for upstream release 1.21.4 -------------------------------------------------------------------------------- ChangeLog: * Thu Nov 6 2014 Alejandro Alvarez Ayllon <aalvarez at cern.ch> - 1.21.4-1 - Release srm-ifce 1.21.4 * Mon Aug 18 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.20.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ unzip-6.0-12.fc19 (FEDORA-2014-14505) A utility for unpacking zip files -------------------------------------------------------------------------------- Update Information: Fix wrong output data due to memcpy() overlap. -------------------------------------------------------------------------------- ChangeLog: * Thu Nov 6 2014 Petr Stodulka <pstodulk@xxxxxxxxxx> - 6.0-12 - Fix producing of incorrect output due to memcpy overlapping by added option -D NOMEMCPY to compile section. (#1161325) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1161325 - unzip reports crc error and produces incorrect output https://bugzilla.redhat.com/show_bug.cgi?id=1161325 -------------------------------------------------------------------------------- ================================================================================ viewvc-1.1.23-1.fc19 (FEDORA-2014-14491) Browser interface for CVS and SVN version control repositories -------------------------------------------------------------------------------- Update Information: Version 1.1.23 (released 04-Nov-2014) - fix annotate bug triggered by files with trailing blank lines (issue #533) - fix markup display of files with trailing blank lines (issue #533) - add support for root-relative svnauthz access files (issue #535) - fix cvsdb MySQL-python argument conversion error (issue #539) - fix double-escaping of revision links (issue #541) - fix bug that prevented mod_python 3.4+ deployment (issue #540) -------------------------------------------------------------------------------- ChangeLog: * Thu Nov 6 2014 Bojan Smojver <bojan@xxxxxxxxxxxxx> - 1.1.23-1 - bump up to 1.1.23 * Sun Jun 8 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.1.22-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test