The following Fedora 23 Security updates need testing: Age URL 116 https://bodhi.fedoraproject.org/updates/FEDORA-2015-12739 python-kdcproxy-0.3.2-1.fc23 99 https://bodhi.fedoraproject.org/updates/FEDORA-2015-5eb2131441 conntrack-tools-1.4.2-9.fc23 70 https://bodhi.fedoraproject.org/updates/FEDORA-2015-16240 nagios-4.0.8-1.fc23 57 https://bodhi.fedoraproject.org/updates/FEDORA-2015-dd52a54fa1 python-pymongo-3.0.3-1.fc23 57 https://bodhi.fedoraproject.org/updates/FEDORA-2015-c76c1c84cf mod_nss-1.0.12-1.fc23 44 https://bodhi.fedoraproject.org/updates/FEDORA-2015-66439aa9e2 openstack-glance-2015.1.2-1.fc23 28 https://bodhi.fedoraproject.org/updates/FEDORA-2015-84a95e39d4 perl-HTML-Scrubber-0.15-1.fc23 28 https://bodhi.fedoraproject.org/updates/FEDORA-2015-81ded368fe miniupnpc-1.9-6.fc23 19 https://bodhi.fedoraproject.org/updates/FEDORA-2015-3d17682c15 putty-0.66-1.fc23 14 https://bodhi.fedoraproject.org/updates/FEDORA-2015-7852ea201b potrace-1.13-2.fc23 11 https://bodhi.fedoraproject.org/updates/FEDORA-2015-28e56e52e7 seamonkey-2.39-1.fc23 10 https://bodhi.fedoraproject.org/updates/FEDORA-2015-8b5ea2dc53 rubygem-flexmock-2.0.2-1.fc23 10 https://bodhi.fedoraproject.org/updates/FEDORA-2015-4ad4998d00 libpng-1.6.17-3.fc23 10 https://bodhi.fedoraproject.org/updates/FEDORA-2015-1943310658 libpng15-1.5.22-3.fc23 10 https://bodhi.fedoraproject.org/updates/FEDORA-2015-5d1f935811 imapsync-1.644-2.fc23 4 https://bodhi.fedoraproject.org/updates/FEDORA-2015-e3ec4cbf8f lxdm-0.5.3-1.fc23 3 https://bodhi.fedoraproject.org/updates/FEDORA-2015-a8c8f60fbd python-django-1.8.7-1.fc23 3 https://bodhi.fedoraproject.org/updates/FEDORA-2015-df0f324367 knot-2.0.2-1.fc23 3 https://bodhi.fedoraproject.org/updates/FEDORA-2015-0efcb5fbc5 php-symfony-2.7.7-2.fc23 php-twig-1.23.1-2.fc23 1 https://bodhi.fedoraproject.org/updates/FEDORA-2015-27392b3324 jbig2dec-0.12-2.fc23 1 https://bodhi.fedoraproject.org/updates/FEDORA-2015-10f92d4d06 wget-1.17-1.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-28076d0830 thttpd-2.25b-35.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-06a7c972e8 thttpd-2.25b-36.fc23 The following Fedora 23 Critical Path updates have yet to be approved: Age URL 15 https://bodhi.fedoraproject.org/updates/FEDORA-2015-37706c9c35 mash-0.6.19-1.fc23 10 https://bodhi.fedoraproject.org/updates/FEDORA-2015-cf51e6b9dc evolution-data-server-3.18.2-2.fc23 10 https://bodhi.fedoraproject.org/updates/FEDORA-2015-4ad4998d00 libpng-1.6.17-3.fc23 9 https://bodhi.fedoraproject.org/updates/FEDORA-2015-82bc055b3f perl-PathTools-3.60-1.fc23 9 https://bodhi.fedoraproject.org/updates/FEDORA-2015-22dbc37884 perl-Socket-2.021-1.fc23 6 https://bodhi.fedoraproject.org/updates/FEDORA-2015-9b1b3e9a5c xkeyboard-config-2.16-1.fc23 4 https://bodhi.fedoraproject.org/updates/FEDORA-2015-2ae867c402 NetworkManager-vpnc-1.0.8-1.fc23 NetworkManager-openconnect-1.0.8-1.fc23 NetworkManager-openvpn-1.0.8-1.fc23 NetworkManager-openswan-1.0.8-1.fc23 NetworkManager-fortisslvpn-1.0.8-1.fc23 NetworkManager-1.0.8-1.fc23 4 https://bodhi.fedoraproject.org/updates/FEDORA-2015-3e75abf2a3 krb5-1.14-2.fc23 3 https://bodhi.fedoraproject.org/updates/FEDORA-2015-498b25667e perl-BSD-Resource-1.290.900-1.fc23 1 https://bodhi.fedoraproject.org/updates/FEDORA-2015-18669069a5 menu-cache-1.0.0-4.D20151128git0b1e85c263.fc23 1 https://bodhi.fedoraproject.org/updates/FEDORA-2015-87a311850d gnome-disk-utility-3.18.3.1-1.fc23 1 https://bodhi.fedoraproject.org/updates/FEDORA-2015-eef23ceb81 PackageKit-1.0.11-1.fc23 1 https://bodhi.fedoraproject.org/updates/FEDORA-2015-e185ec1a6a pcre-8.38-2.fc23 The following builds have been pushed to Fedora 23 updates-testing antlr3-3.5.2-10.fc23 antlr32-3.2-12.fc23 bugyou-0.1-1.fc23 capstone-3.0.4-4.fc23 eclipse-4.5.1-5.fc23 eclipse-jgit-4.1.0-6.fc23 eclipse-pydev-4.4.0-3.fc23 eclipse-xtext-antlr-generator-2.1.1-3.git18383dd.fc23 findbugs-contrib-6.4.0-1.fc23 getdp-2.7.0-1.fc23 gifticlib-1.0.9-1.fc23 ioprocess-0.15.0-4.fc23 jreen-1.2.1-4.fc23 libminc-2.3.00-1.fc23 libreoffice-5.0.3.2-7.fc23 libva-vdpau-driver-0.7.4-13.fc23 mathic-1.0-1.20130827.git66b5d74.fc23 php-nette-caching-2.3.3-1.fc23 php-nette-di-2.3.6-1.fc23 php-nette-http-2.3.3-1.fc23 php-tracy-2.3.6-1.fc23 python-baker-1.3-1.git408295259ae5.fc23 python-gradunwarp-1.0.2-3.fc23 python-markdown-2.6.5-1.fc23 python-pyoptical-0.4-2.fc23 python-pyriemann-0.2.3-3.fc23 python-tabulate-0.7.5-2.fc23 tcalc-2.0-1.fc23 thttpd-2.25b-35.fc23 thttpd-2.25b-36.fc23 xfe-1.41-1.fc23 Details about builds: ================================================================================ antlr3-3.5.2-10.fc23 (FEDORA-2015-03f691b1fb) ANother Tool for Language Recognition -------------------------------------------------------------------------------- Update Information: Pre-requisites for adding Xtext (Eclipse DSL tooling) to the Fedora distribution. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1283166 - Review Request: eclipse-xtext-antlr-generator - Xtext adapter to ANTLR's generator https://bugzilla.redhat.com/show_bug.cgi?id=1283166 [ 2 ] Bug #1286387 - java.lang.NoClassDefFoundError: org/antlr/runtime/CharStream https://bugzilla.redhat.com/show_bug.cgi?id=1286387 -------------------------------------------------------------------------------- ================================================================================ antlr32-3.2-12.fc23 (FEDORA-2015-03f691b1fb) ANother Tool for Language Recognition -------------------------------------------------------------------------------- Update Information: Pre-requisites for adding Xtext (Eclipse DSL tooling) to the Fedora distribution. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1283166 - Review Request: eclipse-xtext-antlr-generator - Xtext adapter to ANTLR's generator https://bugzilla.redhat.com/show_bug.cgi?id=1283166 [ 2 ] Bug #1286387 - java.lang.NoClassDefFoundError: org/antlr/runtime/CharStream https://bugzilla.redhat.com/show_bug.cgi?id=1286387 -------------------------------------------------------------------------------- ================================================================================ bugyou-0.1-1.fc23 (FEDORA-2015-c8db9e20d1) Automatic Bug Reporting Tool -------------------------------------------------------------------------------- Update Information: Initial packaging. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1284638 - Review Request: bugyou - An Automatic Bug Reporting Tool https://bugzilla.redhat.com/show_bug.cgi?id=1284638 -------------------------------------------------------------------------------- ================================================================================ capstone-3.0.4-4.fc23 (FEDORA-2015-f3a0a2d50e) A lightweight multi-platform, multi-architecture disassembly framework -------------------------------------------------------------------------------- Update Information: A lightweight multi-platform, multi-architecture disassembly framework -------------------------------------------------------------------------------- References: [ 1 ] Bug #1098965 - Review Request: capstone - Multi-platform, multi-architecture disassembly framework. https://bugzilla.redhat.com/show_bug.cgi?id=1098965 -------------------------------------------------------------------------------- ================================================================================ eclipse-4.5.1-5.fc23 (FEDORA-2015-3984ff045b) An open, extensible IDE -------------------------------------------------------------------------------- Update Information: Fixes various GTK3 related bugs: * Truncated text in form-based editors * Unable to drag-n-drop items in various views * Transient dialogs disappearing when you attempt to resize them -------------------------------------------------------------------------------- References: [ 1 ] Bug #1026349 - eclipse-swt: Crash in gtk_print_backend_destroy (libgtk-x11) https://bugzilla.redhat.com/show_bug.cgi?id=1026349 [ 2 ] Bug #1012336 - Methods in outline view with SWT_GTK3=1 not re-arrangable https://bugzilla.redhat.com/show_bug.cgi?id=1012336 [ 3 ] Bug #1226738 - [abrt] java-1.8.0-openjdk-headless: signalHandler(): java killed by SIGABRT https://bugzilla.redhat.com/show_bug.cgi?id=1226738 -------------------------------------------------------------------------------- ================================================================================ eclipse-jgit-4.1.0-6.fc23 (FEDORA-2015-4abd9cce77) Eclipse JGit -------------------------------------------------------------------------------- Update Information: Fixes "NoClassDefFoundError" and "IllegalStateException" errors when invoking "jgit daemon" from the command line. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1228138 - jgit daemon fails with java.lang.NoClassDefFoundError https://bugzilla.redhat.com/show_bug.cgi?id=1228138 -------------------------------------------------------------------------------- ================================================================================ eclipse-pydev-4.4.0-3.fc23 (FEDORA-2015-03f691b1fb) Eclipse Python development plug-in -------------------------------------------------------------------------------- Update Information: Pre-requisites for adding Xtext (Eclipse DSL tooling) to the Fedora distribution. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1283166 - Review Request: eclipse-xtext-antlr-generator - Xtext adapter to ANTLR's generator https://bugzilla.redhat.com/show_bug.cgi?id=1283166 [ 2 ] Bug #1286387 - java.lang.NoClassDefFoundError: org/antlr/runtime/CharStream https://bugzilla.redhat.com/show_bug.cgi?id=1286387 -------------------------------------------------------------------------------- ================================================================================ eclipse-xtext-antlr-generator-2.1.1-3.git18383dd.fc23 (FEDORA-2015-03f691b1fb) Xtext adapter to ANTLR's generator -------------------------------------------------------------------------------- Update Information: Pre-requisites for adding Xtext (Eclipse DSL tooling) to the Fedora distribution. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1283166 - Review Request: eclipse-xtext-antlr-generator - Xtext adapter to ANTLR's generator https://bugzilla.redhat.com/show_bug.cgi?id=1283166 [ 2 ] Bug #1286387 - java.lang.NoClassDefFoundError: org/antlr/runtime/CharStream https://bugzilla.redhat.com/show_bug.cgi?id=1286387 -------------------------------------------------------------------------------- ================================================================================ findbugs-contrib-6.4.0-1.fc23 (FEDORA-2015-1e04f3b5f5) Extra findbugs detectors -------------------------------------------------------------------------------- Update Information: Update to 6.4.0. New detectors added in this release: * [OPM] Overly Permissive Method - Looks for methods that are declared more permissively than the code is using. For instance, declaring a method public, when it could just be declared private. * [STT] Stringified Types - Looks for string fields that appear to be built with parsing or calling toString() on another object, or from objects that are fields. * [IMC] Immature Class - Looks for classes that are not fully implemented to be a well rounded class. While the class will likely work fine, it is more difficult to use or understand than necessary. * [JXI] JAX-RS Issues - Looks for problems with the use of the JAX-RS specification. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1285558 - findbugs-contrib-6.4.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1285558 -------------------------------------------------------------------------------- ================================================================================ getdp-2.7.0-1.fc23 (FEDORA-2015-c1552878af) General Environment for the Treatment of Discrete Problems -------------------------------------------------------------------------------- Update Information: New package -------------------------------------------------------------------------------- References: [ 1 ] Bug #1286367 - Review Request: getdp - General Environment for the Treatment of Discrete Problems https://bugzilla.redhat.com/show_bug.cgi?id=1286367 -------------------------------------------------------------------------------- ================================================================================ gifticlib-1.0.9-1.fc23 (FEDORA-2015-9767674195) IO library for the GIFTI cortical surface data format -------------------------------------------------------------------------------- Update Information: New package -------------------------------------------------------------------------------- References: [ 1 ] Bug #1279202 - Review Request: gifticlib - IO library for the GIFTI cortical surface data format https://bugzilla.redhat.com/show_bug.cgi?id=1279202 -------------------------------------------------------------------------------- ================================================================================ ioprocess-0.15.0-4.fc23 (FEDORA-2015-c8ea71676a) Slave process to perform risky IO -------------------------------------------------------------------------------- Update Information: Fix string formatting for 32bit architecture -------------------------------------------------------------------------------- ================================================================================ jreen-1.2.1-4.fc23 (FEDORA-2015-ffe6710f5c) Qt4 XMPP Library -------------------------------------------------------------------------------- Update Information: jreen-1.2.1-4 - drop JREEN_USE_IRISICE=ON, needs work (missing headers/symbols) (#1282176) - pull in upstream fixes -------------------------------------------------------------------------------- References: [ 1 ] Bug #1282176 - qutim - not working jabber plugin https://bugzilla.redhat.com/show_bug.cgi?id=1282176 -------------------------------------------------------------------------------- ================================================================================ libminc-2.3.00-1.fc23 (FEDORA-2015-a6ab47275f) Core library and API of the MINC toolkit -------------------------------------------------------------------------------- Update Information: New package -------------------------------------------------------------------------------- References: [ 1 ] Bug #1279056 - Review Request: libminc - Core library and API of the MINC toolkit https://bugzilla.redhat.com/show_bug.cgi?id=1279056 -------------------------------------------------------------------------------- ================================================================================ libreoffice-5.0.3.2-7.fc23 (FEDORA-2015-7f9fa67e1b) Free Software Productivity Suite -------------------------------------------------------------------------------- Update Information: Improve quality of gtk3 drawing support -------------------------------------------------------------------------------- References: [ 1 ] Bug #1283426 - [abrt] libreoffice-core: gdk_x11_screen_get_screen_number(): soffice.bin killed by SIGSEGV https://bugzilla.redhat.com/show_bug.cgi?id=1283426 -------------------------------------------------------------------------------- ================================================================================ libva-vdpau-driver-0.7.4-13.fc23 (FEDORA-2015-dc1b2eaea6) HW video decode support for VDPAU platforms -------------------------------------------------------------------------------- Update Information: Disable automatic symlink for mesa vaapi backend drivers (should be handled by mesa instead). -------------------------------------------------------------------------------- References: [ 1 ] Bug #1286386 - web browser crash on specific videos (depending on codec) https://bugzilla.redhat.com/show_bug.cgi?id=1286386 -------------------------------------------------------------------------------- ================================================================================ mathic-1.0-1.20130827.git66b5d74.fc23 (FEDORA-2015-bf85086659) Data structures for Groebner basis computations -------------------------------------------------------------------------------- Update Information: This new package is a C++ library of fast data structures designed for use in Groebner basis computation. This includes data structures for ordering S-pairs, performing divisor queries and ordering polynomial terms during polynomial reduction. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1286322 - Review Request: mathic - Data structures for Groebner basis computations https://bugzilla.redhat.com/show_bug.cgi?id=1286322 -------------------------------------------------------------------------------- ================================================================================ php-nette-caching-2.3.3-1.fc23 (FEDORA-2015-f1bce3ad1c) Nette Caching Component -------------------------------------------------------------------------------- Update Information: Cache accelerates your application by storing data, once hardly retrieved, for future use. To use this library, you just have to add, in your project: require_once '/usr/share/php/Nette/Caching/autoload.php'; -------------------------------------------------------------------------------- References: [ 1 ] Bug #1277409 - Review Request: php-nette-caching - Nette Caching Component https://bugzilla.redhat.com/show_bug.cgi?id=1277409 -------------------------------------------------------------------------------- ================================================================================ php-nette-di-2.3.6-1.fc23 (FEDORA-2015-d5b4979626) Nette Dependency Injection Component -------------------------------------------------------------------------------- Update Information: Purpose of the Dependecy Injection (DI) is to free classes from the responsibility for obtaining objects that they need for its operation (these objects are called services). To pass them these services on their instantiation instead. Nette DI is one of the most interesting part of framework. It is compiled DI container, extremely fast and easy to configure. To use this library, you just have to add, in your project: require_once '/usr/share/php/Nette/DI/autoload.php'; -------------------------------------------------------------------------------- References: [ 1 ] Bug #1277397 - Review Request: php-nette-di - Nette Dependency Injection Component https://bugzilla.redhat.com/show_bug.cgi?id=1277397 -------------------------------------------------------------------------------- ================================================================================ php-nette-http-2.3.3-1.fc23 (FEDORA-2015-29c3aede0b) Nette HTTP Component -------------------------------------------------------------------------------- Update Information: HTTP request and response are encapsulated in Nette\Http\Request and Nette\Http\Response objects which offer comfortable API and also act as sanitization filter. To use this library, you just have to add, in your project: require_once '/usr/share/php/Nette/Http/autoload.php'; -------------------------------------------------------------------------------- References: [ 1 ] Bug #1277415 - Review Request: php-nette-http - Nette HTTP Component https://bugzilla.redhat.com/show_bug.cgi?id=1277415 -------------------------------------------------------------------------------- ================================================================================ php-tracy-2.3.6-1.fc23 (FEDORA-2015-462070d8d0) Tracy: useful PHP debugger -------------------------------------------------------------------------------- Update Information: Tracy library is a useful PHP everyday programmer's helper. It helps you to: - quickly detect and correct errors - log errors - dump variables - measure the time To use this library, you just have to add, in your project: require_once '/usr/share/php/Tracy/autoload.php'; -------------------------------------------------------------------------------- References: [ 1 ] Bug #1277400 - Review Request: php-tracy - Tracy: useful PHP debugger https://bugzilla.redhat.com/show_bug.cgi?id=1277400 -------------------------------------------------------------------------------- ================================================================================ python-baker-1.3-1.git408295259ae5.fc23 (FEDORA-2015-a348caae20) Easy, powerful access to Python functions from the command line -------------------------------------------------------------------------------- Update Information: New package -------------------------------------------------------------------------------- References: [ 1 ] Bug #1284779 - Review Request: python-baker - Easy, powerful access to Python functions from the command line https://bugzilla.redhat.com/show_bug.cgi?id=1284779 -------------------------------------------------------------------------------- ================================================================================ python-gradunwarp-1.0.2-3.fc23 (FEDORA-2015-203b00ea80) Gradient Unwarping -------------------------------------------------------------------------------- Update Information: New package -------------------------------------------------------------------------------- References: [ 1 ] Bug #1279211 - Review Request: python-gradunwarp - Gradient Unwarping https://bugzilla.redhat.com/show_bug.cgi?id=1279211 -------------------------------------------------------------------------------- ================================================================================ python-markdown-2.6.5-1.fc23 (FEDORA-2015-3d9885ab37) Markdown implementation in Python -------------------------------------------------------------------------------- Update Information: Update to the latest stable version 2.6.5 (a bugfix release). ---- Update to the latest stable version 2.6.4 (a bugfix release). -------------------------------------------------------------------------------- ================================================================================ python-pyoptical-0.4-2.fc23 (FEDORA-2015-e1562fb56d) Pure python interface to OptiCAL -------------------------------------------------------------------------------- Update Information: New package -------------------------------------------------------------------------------- References: [ 1 ] Bug #1279187 - Review Request: python-pyoptical - Pure python interface to OptiCAL https://bugzilla.redhat.com/show_bug.cgi?id=1279187 -------------------------------------------------------------------------------- ================================================================================ python-pyriemann-0.2.3-3.fc23 (FEDORA-2015-88a579766b) Covariance matrices manipulation and Biosignal classification -------------------------------------------------------------------------------- Update Information: New package -------------------------------------------------------------------------------- References: [ 1 ] Bug #1280490 - Review Request: python-pyriemann - Covariance matrices manipulation and Biosignal classification https://bugzilla.redhat.com/show_bug.cgi?id=1280490 -------------------------------------------------------------------------------- ================================================================================ python-tabulate-0.7.5-2.fc23 (FEDORA-2015-4f0ef807ad) Pretty-print tabular data in Python, a library and a command-line utility -------------------------------------------------------------------------------- Update Information: New package -------------------------------------------------------------------------------- References: [ 1 ] Bug #1284790 - Review Request: python-tabulate - Pretty-print tabular data in Python, a library and a command-line utility https://bugzilla.redhat.com/show_bug.cgi?id=1284790 -------------------------------------------------------------------------------- ================================================================================ tcalc-2.0-1.fc23 (FEDORA-2015-59259d902f) The terminal calculator -------------------------------------------------------------------------------- Update Information: Added Factorial function -------------------------------------------------------------------------------- ================================================================================ thttpd-2.25b-35.fc23 (FEDORA-2015-28076d0830) Tiny, turbo, throttleable lightweight http server -------------------------------------------------------------------------------- Update Information: - Add patch to fix RHBZ #887451 / CVE-2012-5640 - Fix fedora logo issue (RHBZ #1114423). - Enable PIE flags (RHBZ #955129) - Use systemd for post-rotate script (RHBZ #1218259) -------------------------------------------------------------------------------- References: [ 1 ] Bug #887451 - CVE-2012-5640 thttpd: Denial of Service when using glibc, crypt() can return NULL [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=887451 [ 2 ] Bug #1114423 - broken symlink to poweredby.png https://bugzilla.redhat.com/show_bug.cgi?id=1114423 [ 3 ] Bug #955129 - thttpd package should be built with PIE flags https://bugzilla.redhat.com/show_bug.cgi?id=955129 [ 4 ] Bug #1218259 - thttpd has incorrect logrotate postrotate script following move to systemd https://bugzilla.redhat.com/show_bug.cgi?id=1218259 -------------------------------------------------------------------------------- ================================================================================ thttpd-2.25b-36.fc23 (FEDORA-2015-06a7c972e8) Tiny, turbo, throttleable lightweight http server -------------------------------------------------------------------------------- Update Information: Add a patch to fix RHBZ #924857 / CVE-2013-0348 -------------------------------------------------------------------------------- References: [ 1 ] Bug #924857 - CVE-2013-0348 thttpd: World-readable log file https://bugzilla.redhat.com/show_bug.cgi?id=924857 -------------------------------------------------------------------------------- ================================================================================ xfe-1.41-1.fc23 (FEDORA-2015-5f29c4de33) X File Explorer File Manager -------------------------------------------------------------------------------- Update Information: New version 1.41 is released. -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: http://lists.fedoraproject.org/admin/lists/test@xxxxxxxxxxxxxxxxxxxxxxx