The following Fedora 23 Security updates need testing: Age URL 129 https://bodhi.fedoraproject.org/updates/FEDORA-2015-12739 python-kdcproxy-0.3.2-1.fc23 111 https://bodhi.fedoraproject.org/updates/FEDORA-2015-5eb2131441 conntrack-tools-1.4.2-9.fc23 82 https://bodhi.fedoraproject.org/updates/FEDORA-2015-16240 nagios-4.0.8-1.fc23 69 https://bodhi.fedoraproject.org/updates/FEDORA-2015-dd52a54fa1 python-pymongo-3.0.3-1.fc23 69 https://bodhi.fedoraproject.org/updates/FEDORA-2015-c76c1c84cf mod_nss-1.0.12-1.fc23 56 https://bodhi.fedoraproject.org/updates/FEDORA-2015-66439aa9e2 openstack-glance-2015.1.2-1.fc23 40 https://bodhi.fedoraproject.org/updates/FEDORA-2015-81ded368fe miniupnpc-1.9-6.fc23 23 https://bodhi.fedoraproject.org/updates/FEDORA-2015-28e56e52e7 seamonkey-2.39-1.fc23 22 https://bodhi.fedoraproject.org/updates/FEDORA-2015-4ad4998d00 libpng-1.6.17-3.fc23 13 https://bodhi.fedoraproject.org/updates/FEDORA-2015-27392b3324 jbig2dec-0.12-2.fc23 12 https://bodhi.fedoraproject.org/updates/FEDORA-2015-28076d0830 thttpd-2.25b-35.fc23 12 https://bodhi.fedoraproject.org/updates/FEDORA-2015-06a7c972e8 thttpd-2.25b-36.fc23 7 https://bodhi.fedoraproject.org/updates/FEDORA-2015-8c475f7169 libpng10-1.0.65-1.fc23 4 https://bodhi.fedoraproject.org/updates/FEDORA-2015-abf9659276 php-PHPMailer-5.2.14-1.fc23 4 https://bodhi.fedoraproject.org/updates/FEDORA-2015-7229638357 xsupplicant-2.2.0-13.fc23 3 https://bodhi.fedoraproject.org/updates/FEDORA-2015-2773b85b49 qemu-2.4.1-2.fc23 3 https://bodhi.fedoraproject.org/updates/FEDORA-2015-c80ec85542 libpng15-1.5.25-1.fc23 1 https://bodhi.fedoraproject.org/updates/FEDORA-2015-b2e8518b8e qemu-2.4.1-3.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-ac9a19888e kernel-4.2.7-300.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-6d473c95ee arts-1.5.10-30.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-6e50918d8e kdelibs3-3.5.10-71.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-12a089920e xen-4.5.2-5.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-1c773e8702 shellinabox-2.19-1.fc23 The following Fedora 23 Critical Path updates have yet to be approved: Age URL 22 https://bodhi.fedoraproject.org/updates/FEDORA-2015-4ad4998d00 libpng-1.6.17-3.fc23 17 https://bodhi.fedoraproject.org/updates/FEDORA-2015-2ae867c402 NetworkManager-vpnc-1.0.8-1.fc23 NetworkManager-openconnect-1.0.8-1.fc23 NetworkManager-openvpn-1.0.8-1.fc23 NetworkManager-openswan-1.0.8-1.fc23 NetworkManager-fortisslvpn-1.0.8-1.fc23 NetworkManager-1.0.8-1.fc23 4 https://bodhi.fedoraproject.org/updates/FEDORA-2015-fece7bd0f9 perl-libwww-perl-6.15-1.fc23 3 https://bodhi.fedoraproject.org/updates/FEDORA-2015-4a9c774398 bzip2-1.0.6-18.fc23 1 https://bodhi.fedoraproject.org/updates/FEDORA-2015-a4cd75d6ca kdelibs-4.14.14-4.fc23 1 https://bodhi.fedoraproject.org/updates/FEDORA-2015-4bb606c54b qt-4.8.7-5.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-5edf8033b3 lua-5.3.2-2.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-8932b92a20 gtk2-2.24.29-1.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-584b2829d6 krb5-1.14-3.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-ac9a19888e kernel-4.2.7-300.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-adfda22f51 sqlite-3.9.0-2.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-031a00860d xorg-x11-drv-nouveau-1.0.12-1.fc23 The following builds have been pushed to Fedora 23 updates-testing GeoIP-GeoLite-data-2015.12-1.fc23 bacula-7.2.0-2.fc23 calligra-2.9.10-1.fc23 calligra-l10n-2.9.10-1.fc23 comix-4.0.4-9.fc23 eclipse-xtext-2.9.0-1.fc23 emacs-php-mode-1.17.0-3.fc23 figlet-2.2.5-9.fc23 gtk2-2.24.29-1.fc23 hystrix-1.4.21-4.fc23 ibus-libzhuyin-1.7.6-1.fc23 indistarter-0.2.0-4.20151211svn.fc23 iwyu-0.5-1.fc23 k3d-0.8.0.5-1.fc23 libchardet-1.0.4-3.fc23 libgit2-glib-0.23.8-1.fc23 libreoffice-5.0.3.2-12.fc23 lua-5.3.2-2.fc23 luarocks-2.2.3-0.2.rc2.fc23 msgpack-1.3.0-1.fc23 ola-0.9.8-7.fc23 perl-App-grindperl-0.004-1.fc23 perl-Carton-1.0.22-1.fc23 perl-Compress-Bzip2-2.24-1.fc23 perl-ExtUtils-MakeMaker-CPANfile-0.07-1.fc23 perl-HTTP-Tinyish-0.06-2.fc23 perl-Tie-Handle-Offset-0.003-1.fc23 php-Slim-2.6.2-3.fc23 php-pear-Console-CommandLine-1.2.1-1.fc23 php-pear-PHP-CodeSniffer-2.5.0-1.fc23 python-assimulo-2.8-7.fc23 python-flask-restful-0.3.5-1.fc23 rubygem-nokogiri-1.6.7-0.3.rc3.fc23 scap-security-guide-0.1.27-1.fc23 shellinabox-2.19-1.fc23 tor-0.2.7.6-3.fc23 vertica-python-0.5.5-1.fc23 wildmagic5-5.13-13.fc23 zanata-python-client-1.4.0-1.fc23 Details about builds: ================================================================================ GeoIP-GeoLite-data-2015.12-1.fc23 (FEDORA-2015-a4ad1b7446) Free GeoLite IP geolocation country database -------------------------------------------------------------------------------- Update Information: Periodic database update. -------------------------------------------------------------------------------- ================================================================================ bacula-7.2.0-2.fc23 (FEDORA-2015-a455e496d4) Cross platform network backup for Linux, Unix, Mac and Windows -------------------------------------------------------------------------------- Update Information: Assorted upstream bugfixes from the upstream 7.2 branch. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1168872 - None https://bugzilla.redhat.com/show_bug.cgi?id=1168872 -------------------------------------------------------------------------------- ================================================================================ calligra-2.9.10-1.fc23 (FEDORA-2015-91cd57fd1e) An integrated office suite -------------------------------------------------------------------------------- Update Information: New stable upstream release, see also https://www.calligra.org/news/calligra-2-9-10-released/ -------------------------------------------------------------------------------- ================================================================================ calligra-l10n-2.9.10-1.fc23 (FEDORA-2015-91cd57fd1e) Language files for calligra -------------------------------------------------------------------------------- Update Information: New stable upstream release, see also https://www.calligra.org/news/calligra-2-9-10-released/ -------------------------------------------------------------------------------- ================================================================================ comix-4.0.4-9.fc23 (FEDORA-2015-f0fd9c8ee5) A user-friendly, customizable image viewer -------------------------------------------------------------------------------- Update Information: F-23 PIL removed some API and current comix emits some warnings for that. This new rpm fixes this issue. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1290632 - xception: tostring() has been removed. Please call tobytes() instead. https://bugzilla.redhat.com/show_bug.cgi?id=1290632 -------------------------------------------------------------------------------- ================================================================================ eclipse-xtext-2.9.0-1.fc23 (FEDORA-2015-a4b56c1d77) Xtext is a framework for development of programming languages -------------------------------------------------------------------------------- Update Information: upgrade to 2.9.0 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1287385 - eclipse-xtext-v2.9.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1287385 -------------------------------------------------------------------------------- ================================================================================ emacs-php-mode-1.17.0-3.fc23 (FEDORA-2015-6f5065fb9c) Major GNU Emacs mode for editing PHP code -------------------------------------------------------------------------------- Update Information: emacs-php-mode - Major GNU Emacs mode for editing PHP code -------------------------------------------------------------------------------- References: [ 1 ] Bug #1289860 - Review Request: emacs-php-mode - Major GNU Emacs mode for editing PHP code https://bugzilla.redhat.com/show_bug.cgi?id=1289860 -------------------------------------------------------------------------------- ================================================================================ figlet-2.2.5-9.fc23 (FEDORA-2015-c9f4782b2a) A program for making large letters out of ordinary text -------------------------------------------------------------------------------- Update Information: Fix memory corruption. -------------------------------------------------------------------------------- ================================================================================ gtk2-2.24.29-1.fc23 (FEDORA-2015-8932b92a20) The GIMP ToolKit (GTK+), a library for creating GUIs for X -------------------------------------------------------------------------------- Update Information: gtk+ 2.24.29 release. Bug fixes: - 345345 PrintOperation::paginate is not emitted for class handler - 745127 Changing order of file in "Places" crashes the application - 749507 gtk-2.0.m4 fails to detect a prefixed pkg-config - 752638 notebook tab dragging doesn't work on Quartz (patches... - 753644 Switching from Multipress input method to None immedi... - 753691 make install -j2 fails when building for MinGW - 753992 im-quartz discard_preedit segmentation fault - 754046 annotate gtk_color_button_get_color Translation updates: - Occitan -------------------------------------------------------------------------------- ================================================================================ hystrix-1.4.21-4.fc23 (FEDORA-2015-35994552ed) Library for Latency and Fault Tolerance in Distributed Systems -------------------------------------------------------------------------------- Update Information: Add hystrix to f23 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1289478 - Review Request: hystrix - Library for Latency and Fault Tolerance in Distributed Systems https://bugzilla.redhat.com/show_bug.cgi?id=1289478 -------------------------------------------------------------------------------- ================================================================================ ibus-libzhuyin-1.7.6-1.fc23 (FEDORA-2015-7dbb9cd657) New Zhuyin engine based on libzhuyin for IBus -------------------------------------------------------------------------------- Update Information: new upstream release. -------------------------------------------------------------------------------- ================================================================================ indistarter-0.2.0-4.20151211svn.fc23 (FEDORA-2015-1b6b52d7e8) GUI to start, stop and control an INDI server -------------------------------------------------------------------------------- Update Information: Initial release for Fedora -------------------------------------------------------------------------------- References: [ 1 ] Bug #1236488 - Review Request: indistarter - GUI for Indi Server https://bugzilla.redhat.com/show_bug.cgi?id=1236488 -------------------------------------------------------------------------------- ================================================================================ iwyu-0.5-1.fc23 (FEDORA-2015-b6e24a67fd) C/C++ source files #include analyzer based on clang -------------------------------------------------------------------------------- Update Information: Update to [0.5 (clang 3.7)](https://github.com/include-what-you-use/include- what-you-use/compare/clang_3.6...clang_3.7). -------------------------------------------------------------------------------- ================================================================================ k3d-0.8.0.5-1.fc23 (FEDORA-2015-6a5c98ecd9) A 3D Modeling, Animation and Rendering System -------------------------------------------------------------------------------- Update Information: -------------------------------------------------------------------------------- References: [ 1 ] Bug #1088763 - Missing yafray for k3d/update k3d to 0.8.0.3 https://bugzilla.redhat.com/show_bug.cgi?id=1088763 -------------------------------------------------------------------------------- ================================================================================ libchardet-1.0.4-3.fc23 (FEDORA-2015-caa387608a) Mozilla's universal character set detector -------------------------------------------------------------------------------- Update Information: %changelog * Fri Dec 11 2015 Martin Gansser <martinkg@xxxxxxxxxxxxxxxxx> - 1.0.4-3 - renamed %%version macro for patches - added BR glibc-common - added BR coreutils - added BR make - added BR findutils - added BR gcc - added BR gcc-c++ - added BR sed - added BR perl - moved Korean manual pages to devel sub-package -------------------------------------------------------------------------------- ================================================================================ libgit2-glib-0.23.8-1.fc23 (FEDORA-2015-6d15841168) Git library for GLib -------------------------------------------------------------------------------- Update Information: libgit2-glib 0.23.8 release with misc. bug fixes. -------------------------------------------------------------------------------- ================================================================================ libreoffice-5.0.3.2-12.fc23 (FEDORA-2015-73116e9d95) Free Software Productivity Suite -------------------------------------------------------------------------------- Update Information: + fix wheel scrolling under wayland + backport tweaks for size allocation under wayland -------------------------------------------------------------------------------- References: [ 1 ] Bug #1278885 - black/absent widgetry only with libreoffice-gtk3 installed https://bugzilla.redhat.com/show_bug.cgi?id=1278885 [ 2 ] Bug #1289398 - [gtk3] [wayland] unable to scroll https://bugzilla.redhat.com/show_bug.cgi?id=1289398 -------------------------------------------------------------------------------- ================================================================================ lua-5.3.2-2.fc23 (FEDORA-2015-5edf8033b3) Powerful light-weight programming language -------------------------------------------------------------------------------- Update Information: Update lua to 5.3.2. Fix multi-lib support. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1173984 - Version's OLD https://bugzilla.redhat.com/show_bug.cgi?id=1173984 [ 2 ] Bug #1229992 - lua-devel package is not mutilib compatible https://bugzilla.redhat.com/show_bug.cgi?id=1229992 [ 3 ] Bug #1039249 - lua-5.3.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=1039249 -------------------------------------------------------------------------------- ================================================================================ luarocks-2.2.3-0.2.rc2.fc23 (FEDORA-2015-8bf175462a) A deployment and management system for Lua modules -------------------------------------------------------------------------------- Update Information: Fix luarocks to be an arch-specific package and to properly install components into the lua system path (when installing as root). -------------------------------------------------------------------------------- References: [ 1 ] Bug #1073462 - luarocks package doesn't support multilib https://bugzilla.redhat.com/show_bug.cgi?id=1073462 -------------------------------------------------------------------------------- ================================================================================ msgpack-1.3.0-1.fc23 (FEDORA-2015-0c3aa02031) Binary-based efficient object serialization library -------------------------------------------------------------------------------- Update Information: new upstream release -------------------------------------------------------------------------------- References: [ 1 ] Bug #1290571 - msgpack 1.3.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1290571 -------------------------------------------------------------------------------- ================================================================================ ola-0.9.8-7.fc23 (FEDORA-2015-345b8c49d1) Open Lighting Architecture -------------------------------------------------------------------------------- Update Information: This is a new package. The Open Lighting Architecture is a framework for lighting control information. It supports a range of protocols and over a dozen USB devices. It can run as a standalone service, which is useful for converting signals between protocols, or alternatively using the OLA API, it can be used as the back-end for lighting control software. OLA runs on many different platforms including ARM, which makes it a perfect fit for low cost Ethernet to DMX gateways. -------------------------------------------------------------------------------- ================================================================================ perl-App-grindperl-0.004-1.fc23 (FEDORA-2015-aec44e5e02) Command-line tool to help build and test blead perl -------------------------------------------------------------------------------- Update Information: This release adds "-A" option for specifying additinonal Configure options. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1290609 - perl-App-grindperl-0.004 is available https://bugzilla.redhat.com/show_bug.cgi?id=1290609 -------------------------------------------------------------------------------- ================================================================================ perl-Carton-1.0.22-1.fc23 (FEDORA-2015-2568a025b0) Perl module dependency manager (aka Bundler for Perl) -------------------------------------------------------------------------------- Update Information: carton is a command line tool to track the Perl module dependencies for your Perl application. Dependencies are declared using cpanfile format, and the managed dependencies are tracked in a cpanfile.snapshot file, which is meant to be version controlled, and the snapshot file allows other developers of your application to have the exact same versions of the modules. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1290544 - Review Request: perl-Carton - Perl module dependency manager (aka Bundler for Perl) https://bugzilla.redhat.com/show_bug.cgi?id=1290544 -------------------------------------------------------------------------------- ================================================================================ perl-Compress-Bzip2-2.24-1.fc23 (FEDORA-2015-27b106fada) Interface to Bzip2 compression library -------------------------------------------------------------------------------- Update Information: This release improves build script and fixes some compiler warnings. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1289785 - perl-Compress-Bzip2-2.24 is available https://bugzilla.redhat.com/show_bug.cgi?id=1289785 -------------------------------------------------------------------------------- ================================================================================ perl-ExtUtils-MakeMaker-CPANfile-0.07-1.fc23 (FEDORA-2015-68de4af920) CPANfile support for ExtUtils::MakeMaker -------------------------------------------------------------------------------- Update Information: This release adds support for recommends, suggests, and conflicts directives. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1290614 - perl-ExtUtils-MakeMaker-CPANfile-0.07 is available https://bugzilla.redhat.com/show_bug.cgi?id=1290614 -------------------------------------------------------------------------------- ================================================================================ perl-HTTP-Tinyish-0.06-2.fc23 (FEDORA-2015-58cb37300f) HTTP::Tiny compatible HTTP client wrappers -------------------------------------------------------------------------------- Update Information: HTTP::Tinyish is a wrapper module for HTTP client modules LWP, HTTP::Tiny and HTTP client software curl and wget. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1290537 - Review Request: perl-HTTP-Tinyish - HTTP::Tiny compatible HTTP client wrappers https://bugzilla.redhat.com/show_bug.cgi?id=1290537 -------------------------------------------------------------------------------- ================================================================================ perl-Tie-Handle-Offset-0.003-1.fc23 (FEDORA-2015-cfafdd23e0) Tied handle that hides the beginning of a file -------------------------------------------------------------------------------- Update Information: This modules provides a file handle that hides the beginning of a file. After opening, the file is positioned at the offset location. seek() and tell() calls are modified to preserve the offset. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1290495 - Review Request: perl-Tie-Handle-Offset - Tied handle that hides the beginning of a file https://bugzilla.redhat.com/show_bug.cgi?id=1290495 -------------------------------------------------------------------------------- ================================================================================ php-Slim-2.6.2-3.fc23 (FEDORA-2015-ca810195ec) PHP micro framework -------------------------------------------------------------------------------- Update Information: * fix autoloader name ---- php-Slim-2.6.2-1.fc22 - Last upstream release php-Slim-2.6.2-1.fc23 - Last upstream release ---- php-Slim-2.6.2-2.fc22 - provide php-composer(slim/slim) - don't ignore test suite result - add a simpler autoloader php-Slim-2.6.2-2.fc23 - provide php-composer(slim/slim) - don't ignore test suite result - add a simpler autoloader -------------------------------------------------------------------------------- ================================================================================ php-pear-Console-CommandLine-1.2.1-1.fc23 (FEDORA-2015-3185900577) A full featured command line options and arguments parser -------------------------------------------------------------------------------- Update Information: **Upstream changelog:** * Fixed bug #18397: List action example is wrong [cweiske] * Fixed bug #18682: columnWrap() in refault renderer eats up lines with only a EOL [izi, thanks Helgi] * Fixed bug #18703: No way to override reading of stdin with - [izi, thanks Gwynne Raskind] * Fixed bug #19683: Unit tests are broken [farell] * Fixed bug #19921: package dependencies don't include dom [cweiske] * Fixed unit tests [izi] * Fixed comparison on PHP 7 [Jan Olsen] * Allow multiple instances of the parser by making static variables private [Greg Oriol] * Add composer support -------------------------------------------------------------------------------- ================================================================================ php-pear-PHP-CodeSniffer-2.5.0-1.fc23 (FEDORA-2015-795078b33a) PHP coding standards enforcement tool -------------------------------------------------------------------------------- Update Information: **Upstream changelog:** - PHPCS will now look for a phpcs.xml file in parent directories as well as the current directory (request #626) - PHPCS will now use a phpcs.xml file even if files are specified on the command line. This file is still only used if no standard is specified on the command line - Added support for a phpcs.xml.dist file (request #583). If both a phpcs.xml and phpcs.xml.dist file are present, the phpcs.xml file will be used - Added support for setting PHP ini values in ruleset.xml files (request #560). Setting the value of the new ini tags to name="memory_limit" value="32M" is the same as -d memory_limit=32M - Added support for one or more bootstrap files to be run before processing begins. Use the --bootstrap=file,file,file command line argument to include bootstrap files. Useful if you want to override some of the high-level settings of PHPCS or PHPCBF. Thanks to John Maguire for the patch - Added additional verbose output for CSS tokenizing - Squiz ComparisonOperatorUsageSniff now checks FOR, WHILE and DO-WHILE statements. Thanks to Arnout Boks for the patch - Fixed bug #660 : Syntax checks can fail on Windows with PHP5.6 - Fixed bug #784 : $this->trait is seen as a T_TRAIT token - Fixed bug #786 : Switch indent issue with short array notation - Fixed bug #787 : SpacingAfterDefaultBreak confused by multi-line statements - Fixed bug #797 : Parsing CSS url() value breaks further parsing - Fixed bug #805 : Squiz.Commenting.FunctionComment.InvalidTypeHint on Scalar types on PHP7 - Fixed bug #807 : Cannot fix line endings when open PHP tag is not on the first line - Fixed bug #808 : JS tokeniser incorrectly setting some function and class names to control structure tokens - Fixed bug #809 : PHPCBF can break a require_once statement with a space before the open parenthesis - Fixed bug #813 : PEAR FunctionCallSignature checks wrong indent when first token on line is part of a multi-line string -------------------------------------------------------------------------------- ================================================================================ python-assimulo-2.8-7.fc23 (FEDORA-2015-5af8739110) Ordinary differential and differential algebraic equations solver -------------------------------------------------------------------------------- Update Information: - New Python package -------------------------------------------------------------------------------- References: [ 1 ] Bug #1215354 - Review Request: python-assimulo - Ordinary differential and differential algebraic equations solver https://bugzilla.redhat.com/show_bug.cgi?id=1215354 -------------------------------------------------------------------------------- ================================================================================ python-flask-restful-0.3.5-1.fc23 (FEDORA-2015-983dd0be9f) Simple framework for creating REST APIs for Flask -------------------------------------------------------------------------------- Update Information: update to newest version -------------------------------------------------------------------------------- References: [ 1 ] Bug #1290616 - python-flask-restful-0.3.5 is available https://bugzilla.redhat.com/show_bug.cgi?id=1290616 -------------------------------------------------------------------------------- ================================================================================ rubygem-nokogiri-1.6.7-0.3.rc3.fc23 (FEDORA-2015-f0db66d199) An HTML, XML, SAX, and Reader parser -------------------------------------------------------------------------------- Update Information: libxml2 version unmatching warning is not needed and it is killed with this rpm. -------------------------------------------------------------------------------- ================================================================================ scap-security-guide-0.1.27-1.fc23 (FEDORA-2015-617a36b611) Security guidance and baselines in SCAP formats -------------------------------------------------------------------------------- Update Information: update to the latest upstream release -------------------------------------------------------------------------------- ================================================================================ shellinabox-2.19-1.fc23 (FEDORA-2015-1c773e8702) Web based AJAX terminal emulator -------------------------------------------------------------------------------- Update Information: * Added support for middle-click paste * Improved iOS support * New logic to enable soft keyboard icon * Disable HTTPS fallback using the URL /plain. Consequently disables automatic upgrades from HTTP to HTTPS (CVE-2015-8400) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1287579 - CVE-2015-8400 shellinabox: DNS rebinding attack due to HTTP fallback [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=1287579 [ 2 ] Bug #1287578 - CVE-2015-8400 shellinabox: DNS rebinding attack due to HTTP fallback [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1287578 -------------------------------------------------------------------------------- ================================================================================ tor-0.2.7.6-3.fc23 (FEDORA-2015-c13ba0f430) Anonymizing overlay network for TCP -------------------------------------------------------------------------------- Update Information: update to 0.2.7.6 ---- improve systemd scriptlets and service file ---- update to 0.2.7.5 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1288644 - tor multi-instance service fails to reload ('systemctl reload tor@foo') https://bugzilla.redhat.com/show_bug.cgi?id=1288644 [ 2 ] Bug #1282022 - tor fails to start at boot if ORPort/DirPort is specified with IP address https://bugzilla.redhat.com/show_bug.cgi?id=1282022 [ 3 ] Bug #1286359 - tor multi-instance services do not restart/reload when they should https://bugzilla.redhat.com/show_bug.cgi?id=1286359 -------------------------------------------------------------------------------- ================================================================================ vertica-python-0.5.5-1.fc23 (FEDORA-2015-0cc8357de8) A native Python adapter for the Vertica database -------------------------------------------------------------------------------- Update Information: update to version 0.5.5 ---- update to version 0.5.4 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1285768 - vertica-python-0.5.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=1285768 [ 2 ] Bug #1287914 - vertica-python-0.5.5 is available https://bugzilla.redhat.com/show_bug.cgi?id=1287914 -------------------------------------------------------------------------------- ================================================================================ wildmagic5-5.13-13.fc23 (FEDORA-2015-1a45344354) Wild Magic libraries -------------------------------------------------------------------------------- Update Information: - Fix compilation flags of 'libWm5Applications.so' library -------------------------------------------------------------------------------- ================================================================================ zanata-python-client-1.4.0-1.fc23 (FEDORA-2015-a5290df188) Python Client for Zanata Server -------------------------------------------------------------------------------- Update Information: Upstream update to 1.4.0 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: http://lists.fedoraproject.org/admin/lists/test@xxxxxxxxxxxxxxxxxxxxxxx