The following Fedora 22 Security updates need testing: Age URL 16 https://admin.fedoraproject.org/updates/FEDORA-2015-2638/echoping-6.1-0.1.beta.r434svn.fc22 15 https://admin.fedoraproject.org/updates/FEDORA-2015-2783/drupal7-entity-1.6-1.fc22 10 https://admin.fedoraproject.org/updates/FEDORA-2015-3079/dokuwiki-0-0.24.20140929c.fc22 6 https://admin.fedoraproject.org/updates/FEDORA-2015-3368/389-ds-base-1.3.3.9-1.fc22 1 https://admin.fedoraproject.org/updates/FEDORA-2015-3727/python-django-1.8-0.6.b2.fc22 1 https://admin.fedoraproject.org/updates/FEDORA-2015-3833/php-ZendFramework2-2.3.7-1.fc22 0 https://admin.fedoraproject.org/updates/FEDORA-2015-3935/xen-4.5.0-6.fc22 The following Fedora 22 Critical Path updates have yet to be approved: Age URL 10 https://admin.fedoraproject.org/updates/FEDORA-2015-3062/perl-Test-Simple-1.001014-2.fc22 1 https://admin.fedoraproject.org/updates/FEDORA-2015-3846/anaconda-22.20.4-1.fc22,python-blivet-1.0.3-1.fc22 1 https://admin.fedoraproject.org/updates/FEDORA-2015-3836/system-config-keyboard-1.4.0-6.fc22 1 https://admin.fedoraproject.org/updates/FEDORA-2015-3862/perl-threads-2.01-1.fc22 1 https://admin.fedoraproject.org/updates/FEDORA-2015-3717/bind99-9.9.7-3.fc22,bind-9.10.2-1.fc22,dhcp-4.3.2-2.fc22,dnsperf-2.0.0.0-15.fc22,bind-dyndb-ldap-7.0-4.fc22 1 https://admin.fedoraproject.org/updates/FEDORA-2015-3719/perl-DBI-1.633-3.fc22 1 https://admin.fedoraproject.org/updates/FEDORA-2015-3691/pungi-3.14-1.fc22 1 https://admin.fedoraproject.org/updates/FEDORA-2015-3706/xfce4-panel-4.12.0-3.fc22,xfce4-smartbookmark-plugin-0.4.6-1.fc22,xfce4-dev-tools-4.12.0-1.fc22,thunar-vfs-1.2.0-15.fc22,xmonad-log-applet-2.1.0-8.fc22,xfmpc-0.2.2-9.fc22,xfbib-0.1.0-1.fc22 1 https://admin.fedoraproject.org/updates/FEDORA-2015-3802/amor-14.12.3-1.fc22,ark-14.12.3-1.fc22,audiocd-kio-14.12.3-1.fc22,blinken-14.12.3-1.fc22,cantor-14.12.3-1.fc22,dragon-14.12.3-1.fc22,filelight-14.12.3-1.fc22,jovie-14.12.3-1.fc22,juk-14.12.3-1.fc22,kaccessible-14.12.3-1.fc22,kalzium-14.12.3-1.fc22,kamera-14.12.3-1.fc22,kbruch-14.12.3-1.fc22,kcalc-14.12.3-1.fc22,kcharselect-14.12.3-1.fc22,kcolorchooser-14.12.3-1.fc22,kcron-14.12.3-1.fc22,kdeartwork-14.12.3-2.fc22,kdeedu-data-14.12.3-1.fc22,kdegraphics-mobipocket-14.12.3-1.fc22,kdegraphics-strigi-analyzer-14.12.3-1.fc22,kdegraphics-thumbnailers-14.12.3-1.fc22,kde-l10n-14.12.3-1.fc22,kdenetwork-filesharing-14.12.3-1.fc22,kdenetwork-strigi-analyzers-14.12.3-1.fc22,kdepim-4.14.6-1.fc22,kdepim-runtime-4.14.6-1.fc22,kde-print-manager-14.12.3-1.fc22,kde-wallpapers-14.12.3-1.fc22,kdf-14.12.3-1.fc22,kdnssd-14.12.3-1.fc22,kfloppy-14.12.3-1.fc22,kgamma-14.12.3-1.fc22,kgeography-14.12.3-1.fc22,kget-14.12.3-1.fc22,kgpg-14.12.3-1.fc22,kiten-14.12.3-1.fc22,klettres-14.12.3-1.fc22,kmag-14.12.3-1.fc22,kmousetool-14.12.3-1.fc22,kmouth-14.12.3-1.fc22,kmplot-14.12.3-1.fc22,kolourpaint-14.12.3-1.fc22,kopete-14.12.3-1.fc22,kppp-14.12.3-1.fc22,kqtquickcharts-14.12.3-1.fc22,krdc-14.12.3-1.fc22,kremotecontrol-14.12.3-1.fc22,krfb-14.12.3-1.fc22,kruler-14.12.3-1.fc22,ksaneplugin-14.12.3-1.fc22,kscd-14.12.3-1.fc22,ksnapshot-14.12.3-1.fc22,kstars-14.12.3-1.fc22,ksystemlog-14.12.3-1.fc22,kteatime-14.12.3-1.fc22,ktimer-14.12.3-1.fc22,ktouch-14.12.3-1.fc22,kturtle-14.12.3-1.fc22,kuser-14.12.3-1.fc22,kwalletmanager-14.12.3-1.fc22,kwordquiz-14.12.3-1.fc22,libkcddb-14.12.3-1.fc22,libkcompactdisc-14.12.3-1.fc22,libkdcraw-14.12.3-1.fc22,libkdeedu-14.12.3-1.fc22,libkexiv2-14.12.3-1.fc22,libkipi-14.12.3-1.fc22,libksane-14.12.3-1.fc22,marble-14.12.3-3.fc22,okular-14.12.3-1.fc22,pairs-14.12.3-1.fc22,rocs-14.12.3-1.fc22,step-14.12.3-1.fc22,superkaramba-14.12.3-1.fc22,svgpart-14.12.3-1.fc22,sweeper-14.12.3-1.fc22 1 https://admin.fedoraproject.org/updates/FEDORA-2015-3819/akonadi-1.13.0-12.fc22 1 https://admin.fedoraproject.org/updates/FEDORA-2015-3631/kate4-4.14.3-11.fc22,kate-14.12.3-1.fc22 1 https://admin.fedoraproject.org/updates/FEDORA-2015-3434/kde-baseapps-14.12.3-3.fc22,kdelibs-4.14.6-2.fc22,kdepimlibs-4.14.6-1.fc22,kde-runtime-14.12.3-2.fc22,oxygen-icon-theme-14.12.3-1.fc22 The following builds have been pushed to Fedora 22 updates-testing 99soft-oss-parent-10-1.fc22 DecodeIR-2.45-2.fc22 ahkab-0.12-2.fc22 cgit-0.11.2-1.fc22 cockpit-0.42-1.fc22 gegl03-0.3.0-0.3.gitc9bbc81.fc22 glom-1.28.4-1.fc22 gnome-photos-3.15.91-1.fc22 licq-1.8.2-5.fc22 mesa-10.5.1-1.20150314.fc22 mingw-librsvg2-2.40.8-1.fc22 ndoutils-2.0.0-8.fc22 openambit-0.3-3.git5f2b784.fc22 phpMyAdmin-4.3.12-1.fc22 poedit-1.7.5-1.fc22 python-docx-0.8.5-2.fc22 python-markdown-2.6.1-1.fc22 python-msgpack-0.4.6-1.fc22 rocoto-6.2-1.fc22 spice-html5-0.1.6-1.fc22 tig-2.1-1.fc22 xen-4.5.0-6.fc22 Details about builds: ================================================================================ 99soft-oss-parent-10-1.fc22 (FEDORA-2015-3909) 99 Software Foundation parent pom -------------------------------------------------------------------------------- Update Information: Initial import (#979727). -------------------------------------------------------------------------------- References: [ 1 ] Bug #979727 - Review Request: 99soft-oss-parent - 99 Software Foundation parent pom https://bugzilla.redhat.com/show_bug.cgi?id=979727 -------------------------------------------------------------------------------- ================================================================================ DecodeIR-2.45-2.fc22 (FEDORA-2015-3938) Infrared remote controls decoding library -------------------------------------------------------------------------------- Update Information: Initial import -------------------------------------------------------------------------------- References: [ 1 ] Bug #1199184 - Review Request: DecodeIR - Infrared remote controls decoding library https://bugzilla.redhat.com/show_bug.cgi?id=1199184 -------------------------------------------------------------------------------- ================================================================================ ahkab-0.12-2.fc22 (FEDORA-2015-3936) A SPICE-like electronic circuit simulator written in Python -------------------------------------------------------------------------------- Update Information: Python 3 version created -------------------------------------------------------------------------------- ChangeLog: * Fri Mar 13 2015 Kiara Navarro <sophiekovalevsky@xxxxxxxxxxxxxxxxx> - 0.12-2 - Python 3 version created -------------------------------------------------------------------------------- ================================================================================ cgit-0.11.2-1.fc22 (FEDORA-2015-3928) A fast web interface for git -------------------------------------------------------------------------------- Update Information: Update to 0.11.2 Update to 0.11.1 -------------------------------------------------------------------------------- ChangeLog: * Sat Mar 14 2015 Kevin Fenzi <kevin@xxxxxxxxx> 0.11.2-1 - Update to 0.11.2 * Tue Mar 10 2015 Kevin Fenzi <kevin@xxxxxxxxx> 0.11.1-1 - Update to 0.11.1 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1201950 - cgit-0.11.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=1201950 [ 2 ] Bug #1199323 - cgit-0.11.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=1199323 -------------------------------------------------------------------------------- ================================================================================ cockpit-0.42-1.fc22 (FEDORA-2015-3940) A user interface for Linux servers -------------------------------------------------------------------------------- Update Information: Update to 0.42 release -------------------------------------------------------------------------------- ChangeLog: * Sat Mar 14 2015 Stef Walter <stefw@xxxxxxxxxx> - 0.42-1 - Update to 0.42 release -------------------------------------------------------------------------------- ================================================================================ gegl03-0.3.0-0.3.gitc9bbc81.fc22 (FEDORA-2015-3942) Graph based image processing framework -------------------------------------------------------------------------------- Update Information: GNOME Photos 3.15.91 release, together with new version of the gegl library that it now requires. -------------------------------------------------------------------------------- ================================================================================ glom-1.28.4-1.fc22 (FEDORA-2015-3925) Easy-to-use database designer and user interface -------------------------------------------------------------------------------- Update Information: Glom 1.28.4 release. -------------------------------------------------------------------------------- ChangeLog: * Sat Mar 14 2015 Kalev Lember <kalevlember@xxxxxxxxx> - 1.28.4-1 - Update to 1.28.4 - Simplify macro usage - Drop huge ChangeLog file - Use license macro for the COPYING file - Tighten library dependencies with the _isa macro -------------------------------------------------------------------------------- ================================================================================ gnome-photos-3.15.91-1.fc22 (FEDORA-2015-3942) Access, organize and share your photos on GNOME -------------------------------------------------------------------------------- Update Information: GNOME Photos 3.15.91 release, together with new version of the gegl library that it now requires. -------------------------------------------------------------------------------- ChangeLog: * Fri Mar 13 2015 Kalev Lember <kalevlember@xxxxxxxxx> - 3.15.91-1 - Update to 3.15.91 * Wed Feb 25 2015 Richard Hughes <rhughes@xxxxxxxxxx> - 3.15.90-1 - Update to 3.15.90 -------------------------------------------------------------------------------- ================================================================================ licq-1.8.2-5.fc22 (FEDORA-2015-3946) Graphical ICQ client with multiple protocols support -------------------------------------------------------------------------------- Update Information: Rebuild for libgloox.so.12 -------------------------------------------------------------------------------- ChangeLog: * Sat Mar 14 2015 Pavel Alexeev <Pahan@xxxxxxxxxxxxx> - 1.8.2-5 - Rebuild for libgloox.so.12 -------------------------------------------------------------------------------- ================================================================================ mesa-10.5.1-1.20150314.fc22 (FEDORA-2015-3926) Mesa graphics libraries -------------------------------------------------------------------------------- Update Information: 10.5.1 -------------------------------------------------------------------------------- ChangeLog: * Sat Mar 14 2015 Igor Gnatenko <i.gnatenko.brain@xxxxxxxxx> - 10.5.1-1.20150314 - 10.5.1 -------------------------------------------------------------------------------- ================================================================================ mingw-librsvg2-2.40.8-1.fc22 (FEDORA-2015-3943) SVG library based on cairo for MinGW -------------------------------------------------------------------------------- Update Information: Update to 2.40.8 -------------------------------------------------------------------------------- ChangeLog: * Fri Mar 13 2015 David King <amigadave@xxxxxxxxxxxxx> - 2.40.8-1 - Update to 2.40.8 - Use license macro for COPYING - Update URL -------------------------------------------------------------------------------- ================================================================================ ndoutils-2.0.0-8.fc22 (FEDORA-2015-3908) Stores all configuration and event data from Nagios in a database -------------------------------------------------------------------------------- Update Information: missed the F-22 mass rebuild last year -------------------------------------------------------------------------------- ChangeLog: * Sun Aug 17 2014 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.0.0-8 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ openambit-0.3-3.git5f2b784.fc22 (FEDORA-2015-3930) Open software for the Suunto Ambit(2) -------------------------------------------------------------------------------- Update Information: Rebuild (wireshark). -------------------------------------------------------------------------------- ChangeLog: * Sun Mar 8 2015 Sandro Mani <manisandro@xxxxxxxxx> - 0.3-3.git5f2b784 - Rebuild (wireshark) -------------------------------------------------------------------------------- ================================================================================ phpMyAdmin-4.3.12-1.fc22 (FEDORA-2015-3905) Handle the administration of MySQL over the World Wide Web -------------------------------------------------------------------------------- Update Information: phpMyAdmin 4.3.12.0 (2015-03-14) ================================ - Right-aligned columns have left-aligned header - PMA_Util::parseEnumSetValues fails on enums with UTF-8 values - Undefined index savedsearcheswork - Inline edit of DATE fields with NULL, NULL checkbox is under datepicker - DROP TABLE/VIEW IF EXISTS are not tracked - Compatibility with central columns of version 4.4 - Firefox with auth_type to http with multiple server doesn't work anymore - Views aren't dropped when copying a database - Incomplete bookmark saving - SELECT width on relations page -------------------------------------------------------------------------------- ChangeLog: * Sat Mar 14 2015 Robert Scheck <robert@xxxxxxxxxxxxxxxxx> 4.3.12-1 - Upgrade to 4.3.12 -------------------------------------------------------------------------------- ================================================================================ poedit-1.7.5-1.fc22 (FEDORA-2015-3917) GUI editor for GNU gettext .po files -------------------------------------------------------------------------------- Update Information: New upstream package New upstream version -------------------------------------------------------------------------------- ChangeLog: * Fri Mar 13 2015 Mario Blättermann <mario.blaettermann@xxxxxxxxx> - 1.7.5-1 - New upstream version - Add screenshot URL to appdata file, thanks to Wolfgang Stöggl - Updated German man page -------------------------------------------------------------------------------- ================================================================================ python-docx-0.8.5-2.fc22 (FEDORA-2015-3914) Create and update Microsoft Word .docx files -------------------------------------------------------------------------------- Update Information: Fix dependency requirement. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1194576 - Review Request:python-docx - Lib for creating/updating docx files https://bugzilla.redhat.com/show_bug.cgi?id=1194576 -------------------------------------------------------------------------------- ================================================================================ python-markdown-2.6.1-1.fc22 (FEDORA-2015-3933) Markdown implementation in Python -------------------------------------------------------------------------------- Update Information: Update to version 2.6.1, a bug-fix release. The (new) yaml option has been removed from the Meta-Data Extension as it was buggy (see #390). -------------------------------------------------------------------------------- ChangeLog: * Sat Mar 14 2015 Thomas Moschny <thomas.moschny@xxxxxx> - 2.6.1-1 - Update to 2.6.1. - Apply updated Python packaging guidelines. -------------------------------------------------------------------------------- ================================================================================ python-msgpack-0.4.6-1.fc22 (FEDORA-2015-3932) A Python MessagePack (de)serializer -------------------------------------------------------------------------------- Update Information: Update to latest upstream release. This fixes a data corruption bug. See the [upstream changelog](https://github.com/msgpack/msgpack-python/blob/master/ChangeLog.rst#046) for more details. -------------------------------------------------------------------------------- ChangeLog: * Fri Mar 13 2015 Ken Dreyer <ktdreyer@xxxxxxxxxxxx> - 0.4.6-1 - Update to latest upstream version 0.4.6 (RHBZ #1201568) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1201568 - python-msgpack-0.4.6 is available https://bugzilla.redhat.com/show_bug.cgi?id=1201568 -------------------------------------------------------------------------------- ================================================================================ rocoto-6.2-1.fc22 (FEDORA-2015-3919) Expanded properties file parsing for Google Guice -------------------------------------------------------------------------------- Update Information: Initial import (#887146). -------------------------------------------------------------------------------- References: [ 1 ] Bug #887146 - Review Request: rocoto - Expanded properties file parsing for Google Guice https://bugzilla.redhat.com/show_bug.cgi?id=887146 -------------------------------------------------------------------------------- ================================================================================ spice-html5-0.1.6-1.fc22 (FEDORA-2015-3916) Pure Javascript SPICE client -------------------------------------------------------------------------------- Update Information: Pavel Grunt: Implement file transfer from client to guest -------------------------------------------------------------------------------- ChangeLog: * Fri Mar 13 2015 Jeremy White <jwhite@xxxxxxxxxxxxxxx> 0.1.6-1 - Pavel Grunt: Implement file transfer from client to guest - Pavel Grunt: Report agent capabilities, handle agent tokens - Pavel Grunt: Use WheelEvent instead of MouseWheelEvent - Frantisek Kobzik: Improve error messages - Report a modern number of tokens -------------------------------------------------------------------------------- ================================================================================ tig-2.1-1.fc22 (FEDORA-2015-3912) Text-mode interface for the git revision control system -------------------------------------------------------------------------------- Update Information: Update to 2.1. -------------------------------------------------------------------------------- ChangeLog: * Thu Mar 12 2015 Jason L Tibbitts III <tibbs@xxxxxxxxxxx> - 2.1-1 - Update to 2.1. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1186676 - Crash when staging a chunk https://bugzilla.redhat.com/show_bug.cgi?id=1186676 -------------------------------------------------------------------------------- ================================================================================ xen-4.5.0-6.fc22 (FEDORA-2015-3935) Xen is a virtual machine monitor -------------------------------------------------------------------------------- Update Information: Additional patch for XSA-98 on arm64 HVM qemu unexpectedly enabling emulated VGA graphics backends [XSA-119, CVE-2015-2152] Hypervisor memory corruption due to x86 emulator flaw [XSA-123, CVE-2015-2151] Information leak via internal x86 system device emulation, Information leak through version information hypercall, fix a typo in xen.fedora.systemd.patch -------------------------------------------------------------------------------- ChangeLog: * Fri Mar 13 2015 Michael Young <m.a.young@xxxxxxxxxxxx> - 4.5.0-6 - Additional patch for XSA-98 on arm64 * Thu Mar 12 2015 Michael Young <m.a.young@xxxxxxxxxxxx> - 4.5.0-5 - HVM qemu unexpectedly enabling emulated VGA graphics backends [XSA-119, CVE-2015-2152] (#1201365) * Tue Mar 10 2015 Michael Young <m.a.young@xxxxxxxxxxxx> - 4.5.0-4 - Hypervisor memory corruption due to x86 emulator flaw [XSA-123, CVE-2015-2151] (#1200398) * Thu Mar 5 2015 Michael Young <m.a.young@xxxxxxxxxxxx> - 4.5.0-3 - Information leak via internal x86 system device emulation [XSA-121, CVE-2015-2044] - Information leak through version information hypercall [XSA-122, CVE-2015-2045] - fix a typo in xen.fedora.systemd.patch -------------------------------------------------------------------------------- References: [ 1 ] Bug #1200724 - CVE-2015-2152 xen: HVM qemu unexpectedly enabling emulated VGA graphics backends (XSA 119) https://bugzilla.redhat.com/show_bug.cgi?id=1200724 [ 2 ] Bug #1196274 - CVE-2015-2151 xen: hypervisor memory corruption due to x86 emulator flaw (xsa123) https://bugzilla.redhat.com/show_bug.cgi?id=1196274 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test