The following Fedora 22 Security updates need testing: Age URL 251 https://bodhi.fedoraproject.org/updates/FEDORA-2015-5878 echoping-6.1-0.beta.r434svn.1.fc22 200 https://bodhi.fedoraproject.org/updates/FEDORA-2015-9185 ceph-deploy-1.5.25-1.fc22 133 https://bodhi.fedoraproject.org/updates/FEDORA-2015-12781 python-kdcproxy-0.3.2-1.fc22 117 https://bodhi.fedoraproject.org/updates/FEDORA-2015-1aee5e6f0b conntrack-tools-1.4.2-9.fc22 87 https://bodhi.fedoraproject.org/updates/FEDORA-2015-16239 nagios-4.0.8-1.fc22 81 https://bodhi.fedoraproject.org/updates/FEDORA-2015-05490fc42d squid-3.4.13-3.fc22 76 https://bodhi.fedoraproject.org/updates/FEDORA-2015-2d37e7dacf openstack-swift-2.2.0-6.fc22 74 https://bodhi.fedoraproject.org/updates/FEDORA-2015-3e4043f088 python-pymongo-3.0.3-1.fc22 51 https://bodhi.fedoraproject.org/updates/FEDORA-2015-de44abca87 ntp-4.2.6p5-34.fc22 45 https://bodhi.fedoraproject.org/updates/FEDORA-2015-0552500cd7 python-pygments-2.0.2-3.fc22 45 https://bodhi.fedoraproject.org/updates/FEDORA-2015-9039c25f1d miniupnpc-1.9-6.fc22 27 https://bodhi.fedoraproject.org/updates/FEDORA-2015-7dfbe09bb4 libpng-1.6.16-4.fc22 27 https://bodhi.fedoraproject.org/updates/FEDORA-2015-6c07ab1fa6 libpng-1.6.16-5.fc22 21 https://bodhi.fedoraproject.org/updates/FEDORA-2015-8413bdd343 abrt-2.6.1-7.fc22 19 https://bodhi.fedoraproject.org/updates/FEDORA-2015-89468612f5 jenkins-1.609.3-4.fc22 17 https://bodhi.fedoraproject.org/updates/FEDORA-2015-f683150aa0 thttpd-2.25b-36.fc22 13 https://bodhi.fedoraproject.org/updates/FEDORA-2015-6d64c257cf thunderbird-38.4.0-1.fc22 9 https://bodhi.fedoraproject.org/updates/FEDORA-2015-d5cc306730 p7zip-15.09-4.fc22 9 https://bodhi.fedoraproject.org/updates/FEDORA-2015-3a5cebb105 ImageMagick-6.9.2.7-1.fc22 9 https://bodhi.fedoraproject.org/updates/FEDORA-2015-39522bb8c9 php-PHPMailer-5.2.14-1.fc22 9 https://bodhi.fedoraproject.org/updates/FEDORA-2015-020f4b9400 xsupplicant-2.2.0-13.fc22 8 https://bodhi.fedoraproject.org/updates/FEDORA-2015-686f289aa5 qemu-2.3.1-8.fc22 8 https://bodhi.fedoraproject.org/updates/FEDORA-2015-233750b6ab libpng15-1.5.25-1.fc22 7 https://bodhi.fedoraproject.org/updates/FEDORA-2015-b406a8e4f2 qemu-2.3.1-9.fc22 5 https://bodhi.fedoraproject.org/updates/FEDORA-2015-8dd01b09a9 arts-1.5.10-30.fc22 5 https://bodhi.fedoraproject.org/updates/FEDORA-2015-2f4b92ed2e kdelibs3-3.5.10-71.fc22 5 https://bodhi.fedoraproject.org/updates/FEDORA-2015-08e4af5a20 xen-4.5.2-5.fc22 5 https://bodhi.fedoraproject.org/updates/FEDORA-2015-463143720f shellinabox-2.19-1.fc22 4 https://bodhi.fedoraproject.org/updates/FEDORA-2015-20df66892b gwenhywfar-4.13.1-5.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-7ca4368b0c activemq-5.6.0-14.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-998911cf3f cups-filters-1.4.0-1.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-8b6882339c nodejs-handlebars-4.0.5-1.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-7ab3d3afcf firefox-43.0-1.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-af140eefbc libtevent-0.9.26-1.fc22 libtdb-1.3.8-1.fc22 libtalloc-2.1.5-2.fc22 libldb-1.1.24-1.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-0e0879cc8a samba-4.2.7-0.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-6efa349a85 subversion-1.8.15-1.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-2df40de264 bind-9.10.3-7.P2.fc22 dnsperf-2.0.0.0-19.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-e278e12ebc dhcp-4.3.2-6.fc22 bind99-9.9.8-1.P2.fc22 The following Fedora 22 Critical Path updates have yet to be approved: Age URL 127 https://bodhi.fedoraproject.org/updates/FEDORA-2015-13210 yum-3.4.3-508.fc22 112 https://bodhi.fedoraproject.org/updates/FEDORA-2015-14218 xulrunner-40.0-1.fc22 45 https://bodhi.fedoraproject.org/updates/FEDORA-2015-2123de044f libgphoto2-2.5.8-1.fc22 41 https://bodhi.fedoraproject.org/updates/FEDORA-2015-48f718ed1b vim-7.4.909-1.fc22 39 https://bodhi.fedoraproject.org/updates/FEDORA-2015-069fea7e6b livecd-tools-22.3-1.fc22 27 https://bodhi.fedoraproject.org/updates/FEDORA-2015-6c07ab1fa6 libpng-1.6.16-5.fc22 27 https://bodhi.fedoraproject.org/updates/FEDORA-2015-7dfbe09bb4 libpng-1.6.16-4.fc22 27 https://bodhi.fedoraproject.org/updates/FEDORA-2015-82b7665427 koji-1.10.1-1.fc22 21 https://bodhi.fedoraproject.org/updates/FEDORA-2015-efc06edc85 NetworkManager-vpnc-1.0.8-1.fc22 NetworkManager-openconnect-1.0.8-1.fc22 NetworkManager-openvpn-1.0.8-1.fc22 NetworkManager-openswan-1.0.8-1.fc22 NetworkManager-fortisslvpn-1.0.8-1.fc22 NetworkManager-1.0.8-1.fc22 13 https://bodhi.fedoraproject.org/updates/FEDORA-2015-f194dc9900 librsvg2-2.40.12-1.fc22 13 https://bodhi.fedoraproject.org/updates/FEDORA-2015-6d64c257cf thunderbird-38.4.0-1.fc22 11 https://bodhi.fedoraproject.org/updates/FEDORA-2015-4daef06c07 nautilus-3.16.3-1.fc22 9 https://bodhi.fedoraproject.org/updates/FEDORA-2015-f03bcc3731 perl-libwww-perl-6.15-1.fc22 8 https://bodhi.fedoraproject.org/updates/FEDORA-2015-1b2b67ac30 gnome-online-accounts-3.16.5-1.fc22 7 https://bodhi.fedoraproject.org/updates/FEDORA-2015-3c934e07c3 kdelibs-4.14.14-4.fc22 7 https://bodhi.fedoraproject.org/updates/FEDORA-2015-8083abc683 selinux-policy-3.13.1-128.22.fc22 5 https://bodhi.fedoraproject.org/updates/FEDORA-2015-d68f8a1cba lua-5.3.2-2.fc22 5 https://bodhi.fedoraproject.org/updates/FEDORA-2015-c2041fe5a6 gtk2-2.24.29-1.fc22 5 https://bodhi.fedoraproject.org/updates/FEDORA-2015-1c93bbd1a7 sqlite-3.9.0-2.fc22 5 https://bodhi.fedoraproject.org/updates/FEDORA-2015-473007accf util-linux-2.26.2-4.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-e278e12ebc dhcp-4.3.2-6.fc22 bind99-9.9.8-1.P2.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-2df40de264 bind-9.10.3-7.P2.fc22 dnsperf-2.0.0.0-19.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-0e0879cc8a samba-4.2.7-0.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-af140eefbc libtevent-0.9.26-1.fc22 libtdb-1.3.8-1.fc22 libtalloc-2.1.5-2.fc22 libldb-1.1.24-1.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2015-7ab3d3afcf firefox-43.0-1.fc22 The following builds have been pushed to Fedora 22 updates-testing acpica-tools-20151124-1.fc22 bind-9.10.3-7.P2.fc22 bind99-9.9.8-1.P2.fc22 carbon-c-relay-1.3-1.fc22 dhcp-4.3.2-6.fc22 dnsperf-2.0.0.0-19.fc22 dwb-2015.10.09-1.20151009git.fc22 firefox-43.0-1.fc22 libguestfs-1.30.6-1.fc22 libldb-1.1.24-1.fc22 libtalloc-2.1.5-2.fc22 libtdb-1.3.8-1.fc22 libtevent-0.9.26-1.fc22 nodejs-heap-0.2.6-4.fc22 nodejs-is-builtin-module-1.0.0-1.fc22 nodejs-jison-lex-0.3.4-1.fc22 nodejs-lex-parser-0.1.4-1.fc22 nodejs-propagate-0.3.1-1.fc22 openchange-2.2-10.fc22 openvpn-2.3.9-1.fc22 pcp-3.10.9-1.fc22 python-fedmsg-meta-fedora-infrastructure-0.15.6-1.fc22 python-parse_type-0.3.4-6.fc22 python-tempdir-0.6-1.fc22 qt-creator-3.6.0-1.fc22 samba-4.2.7-0.fc22 sssd-1.13.3-1.fc22 subversion-1.8.15-1.fc22 sysreporter-3.0.0-0.4.alpha4.fc22 tor-0.2.7.6-4.fc22 tracer-0.6.7-1.fc22 Details about builds: ================================================================================ acpica-tools-20151124-1.fc22 (FEDORA-2015-3ec6e98046) ACPICA tools for the development and debug of ACPI tables -------------------------------------------------------------------------------- Update Information: Update to latest upstream version with additional support for ACPI 6.0. ---- Updates ACPICA to latest upstream fixes and additions. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1267772 - acpica-tools-20151124 is available https://bugzilla.redhat.com/show_bug.cgi?id=1267772 -------------------------------------------------------------------------------- ================================================================================ bind-9.10.3-7.P2.fc22 (FEDORA-2015-2df40de264) The Berkeley Internet Name Domain (BIND) DNS (Domain Name System) server -------------------------------------------------------------------------------- Update Information: security update -------------------------------------------------------------------------------- References: [ 1 ] Bug #1291176 - CVE-2015-8000 bind: responses with a malformed class attribute can trigger an assertion failure in db.c https://bugzilla.redhat.com/show_bug.cgi?id=1291176 [ 2 ] Bug #1291186 - CVE-2015-8461 bind: race condition when handling socket errors can lead to an assertion failure in resolver.c https://bugzilla.redhat.com/show_bug.cgi?id=1291186 -------------------------------------------------------------------------------- ================================================================================ bind99-9.9.8-1.P2.fc22 (FEDORA-2015-e278e12ebc) The Berkeley Internet Name Domain (BIND) DNS (Domain Name System) libraries -------------------------------------------------------------------------------- Update Information: security update -------------------------------------------------------------------------------- References: [ 1 ] Bug #1291176 - CVE-2015-8000 bind: responses with a malformed class attribute can trigger an assertion failure in db.c https://bugzilla.redhat.com/show_bug.cgi?id=1291176 -------------------------------------------------------------------------------- ================================================================================ carbon-c-relay-1.3-1.fc22 (FEDORA-2015-656879f127) Enhanced C implementation of Carbon relay, aggregator and rewriter -------------------------------------------------------------------------------- Update Information: Update to upstream 1.3 ---- Update to upstream 1.2 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1290612 - carbon-c-relay-v1.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=1290612 -------------------------------------------------------------------------------- ================================================================================ dhcp-4.3.2-6.fc22 (FEDORA-2015-e278e12ebc) Dynamic host configuration protocol software -------------------------------------------------------------------------------- Update Information: security update -------------------------------------------------------------------------------- References: [ 1 ] Bug #1291176 - CVE-2015-8000 bind: responses with a malformed class attribute can trigger an assertion failure in db.c https://bugzilla.redhat.com/show_bug.cgi?id=1291176 -------------------------------------------------------------------------------- ================================================================================ dnsperf-2.0.0.0-19.fc22 (FEDORA-2015-2df40de264) Benchmarking authorative and recursing DNS servers -------------------------------------------------------------------------------- Update Information: security update -------------------------------------------------------------------------------- References: [ 1 ] Bug #1291176 - CVE-2015-8000 bind: responses with a malformed class attribute can trigger an assertion failure in db.c https://bugzilla.redhat.com/show_bug.cgi?id=1291176 [ 2 ] Bug #1291186 - CVE-2015-8461 bind: race condition when handling socket errors can lead to an assertion failure in resolver.c https://bugzilla.redhat.com/show_bug.cgi?id=1291186 -------------------------------------------------------------------------------- ================================================================================ dwb-2015.10.09-1.20151009git.fc22 (FEDORA-2015-406c845655) Dynamic web browser based on WebKit and GTK+ -------------------------------------------------------------------------------- Update Information: Rebase to new upstream -------------------------------------------------------------------------------- References: [ 1 ] Bug #1231391 - [abrt] dwb: _IO_vfprintf_internal(): dwb killed by SIGSEGV https://bugzilla.redhat.com/show_bug.cgi?id=1231391 -------------------------------------------------------------------------------- ================================================================================ firefox-43.0-1.fc22 (FEDORA-2015-7ab3d3afcf) Mozilla Firefox Web browser -------------------------------------------------------------------------------- Update Information: Update to latest upstream - Firefox 43 -------------------------------------------------------------------------------- ================================================================================ libguestfs-1.30.6-1.fc22 (FEDORA-2015-850e89be8b) Access and modify virtual machine disk images -------------------------------------------------------------------------------- Update Information: New upstream version 1.30.6. -------------------------------------------------------------------------------- ================================================================================ libldb-1.1.24-1.fc22 (FEDORA-2015-af140eefbc) A schema-less, ldap like, API and database -------------------------------------------------------------------------------- Update Information: Fixes CVE-2015-5330 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1292070 - CVE-2015-5330 libldb: samba: Remote memory read in Samba LDAP server [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1292070 -------------------------------------------------------------------------------- ================================================================================ libtalloc-2.1.5-2.fc22 (FEDORA-2015-af140eefbc) The talloc library -------------------------------------------------------------------------------- Update Information: Fixes CVE-2015-5330 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1292070 - CVE-2015-5330 libldb: samba: Remote memory read in Samba LDAP server [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1292070 -------------------------------------------------------------------------------- ================================================================================ libtdb-1.3.8-1.fc22 (FEDORA-2015-af140eefbc) The tdb library -------------------------------------------------------------------------------- Update Information: Fixes CVE-2015-5330 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1292070 - CVE-2015-5330 libldb: samba: Remote memory read in Samba LDAP server [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1292070 -------------------------------------------------------------------------------- ================================================================================ libtevent-0.9.26-1.fc22 (FEDORA-2015-af140eefbc) The tevent library -------------------------------------------------------------------------------- Update Information: Fixes CVE-2015-5330 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1292070 - CVE-2015-5330 libldb: samba: Remote memory read in Samba LDAP server [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1292070 -------------------------------------------------------------------------------- ================================================================================ nodejs-heap-0.2.6-4.fc22 (FEDORA-2015-471e1ca190) Binary heap (priority queue) algorithms -------------------------------------------------------------------------------- Update Information: Initial packaging -------------------------------------------------------------------------------- References: [ 1 ] Bug #1278960 - Review Request: nodejs-heap - Binary heap (priority queue) algorithms https://bugzilla.redhat.com/show_bug.cgi?id=1278960 -------------------------------------------------------------------------------- ================================================================================ nodejs-is-builtin-module-1.0.0-1.fc22 (FEDORA-2015-a5747a956b) Check if a string matches the name of a Node.js builtin module -------------------------------------------------------------------------------- Update Information: Initial packaging -------------------------------------------------------------------------------- References: [ 1 ] Bug #1291392 - Review Request: nodejs-is-builtin-module - Check if a string matches the name of a Node.js builtin module https://bugzilla.redhat.com/show_bug.cgi?id=1291392 -------------------------------------------------------------------------------- ================================================================================ nodejs-jison-lex-0.3.4-1.fc22 (FEDORA-2015-c90201c019) Lexical analyzer generator used by jison -------------------------------------------------------------------------------- Update Information: Initial packaging -------------------------------------------------------------------------------- References: [ 1 ] Bug #1284945 - Review Request: nodejs-jison-lex - Lexical analyzer generator used by jison https://bugzilla.redhat.com/show_bug.cgi?id=1284945 -------------------------------------------------------------------------------- ================================================================================ nodejs-lex-parser-0.1.4-1.fc22 (FEDORA-2015-d100b82ad6) A parser for lexical grammars used by jison -------------------------------------------------------------------------------- Update Information: Initial packaging -------------------------------------------------------------------------------- References: [ 1 ] Bug #1284942 - Review Request: nodejs-lex-parser - A parser for lexical grammars used by jison https://bugzilla.redhat.com/show_bug.cgi?id=1284942 -------------------------------------------------------------------------------- ================================================================================ nodejs-propagate-0.3.1-1.fc22 (FEDORA-2015-15467790d6) Propagate events -------------------------------------------------------------------------------- Update Information: Initial packaging -------------------------------------------------------------------------------- References: [ 1 ] Bug #1286844 - Review Request: nodejs-propagate - Propagate events https://bugzilla.redhat.com/show_bug.cgi?id=1286844 -------------------------------------------------------------------------------- ================================================================================ openchange-2.2-10.fc22 (FEDORA-2015-5efa3fdb58) Provides access to Microsoft Exchange servers using native protocols -------------------------------------------------------------------------------- Update Information: Rebuild against newer samba (after security update) -------------------------------------------------------------------------------- ================================================================================ openvpn-2.3.9-1.fc22 (FEDORA-2015-d54e77936b) A full-featured SSL VPN solution -------------------------------------------------------------------------------- Update Information: Latest upstream. https://community.openvpn.net/openvpn/wiki/ChangesInOpenvpn23 -------------------------------------------------------------------------------- ================================================================================ pcp-3.10.9-1.fc22 (FEDORA-2015-d08245c076) System-level performance monitoring and performance management -------------------------------------------------------------------------------- Update Information: Update to latest PCP sources. ---- pcp-3.10.8-1.fc21 - Update pmlogger to log an immediate sample first (BZ 1269921) - Add pmOption host and archive setter python APIs (BZ 1270176) - Replace old pmatop(1) man page with pcp- atop(1) (BZ 1270761) - Update to latest PCP sources. - CHANGELOG : - pmdaslurm: new PMDA exporting HPC scheduler metrics - pmdalinux: correctly report high speed network link speeds - pmdalinux: support for wireless network interfaces - pmdalinux: add support for NVME devices - pmie: fqdn functionality, added %c for action strings - pmlogextract: runtime reducing instance optimizations - pmlogrewrite: metric name lex pattern change - pmlogger: change semantics for first logging operation - rc_pmlogger: shell escape for control file "directory" field - pcp-atop: update with latest atop features (esp. NFS) - pcp-atop: fix initial fetch time offset for the globals - pcp-atop: fix -b/-e options to match man page description - docs: update Quick Ref Guide with pcp-atop/pcp-atopsar - docs: remove outdated pmatop man page, see pcp-atop(1) - python api: fix local-context mode type error - python api: improve handling of non-ascii instance names - python api: simple debugging interface to access pmDebug - python api: ensure an interruptible sleep is used - python api: add single host/archive pmOption setter methods - libpcp: add $PCP_DEBUG to initialize pmDebug - libpcp: extend __pmAF* family with __pmAFsetup - libpcp: resolve false-context-sharing corner cases - pcp2graphite: provide a local- context mode option - pmmgr: add the subtarget-containers option - pmmgr: add pmlogreduce support - rc_pmcd: be more careful with auto- install/-remove - pmcd: allow dynamic switching of monitored containers - pmdapmcd: add pmcd.client.container diagnostic metric - pmdaroot: new metric mapping containers to their cgroups - pmdaroot: add cgroup heuristics for non-systemd setups - pmdaroot: fix timeliness of creation of socket connection - pmdads389: add normalized dn cache metrics - pmdads389: instantaneous vs discrete metric corrections - pmdads389: send correct error codes when not connected - pmdamounts: correct a number of 32-bit unsafe calculations - pmdanfsclient: improve PMDA error handling - pmdaperfevent: fix invalid metric names - pmdaperfevent: add reference clock cycles for NHM and WSM - docs: added upgrade instructions to pmdaperfevent man page - containers: bindmount /dev/log for syslog messages - build: fix FreeBSD 10.2 with dtrace probes auto-enabled pcp-3.10.8-1.fc22 - Update pmlogger to log an immediate sample first (BZ 1269921) - Add pmOption host and archive setter python APIs (BZ 1270176) - Replace old pmatop(1) man page with pcp-atop(1) (BZ 1270761) - Update to latest PCP sources. - CHANGELOG - pmdaslurm: new PMDA exporting HPC scheduler metrics - pmdalinux: correctly report high speed network link speeds - pmdalinux: support for wireless network interfaces - pmdalinux: add support for NVME devices - pmie: fqdn functionality, added %c for action strings - pmlogextract: runtime reducing instance optimizations - pmlogrewrite: metric name lex pattern change - pmlogger: change semantics for first logging operation - rc_pmlogger: shell escape for control file "directory" field - pcp-atop: update with latest atop features (esp. NFS) - pcp-atop: fix initial fetch time offset for the globals - pcp-atop: fix -b/-e options to match man page description - docs: update Quick Ref Guide with pcp-atop/pcp-atopsar - docs: remove outdated pmatop man page, see pcp-atop(1) - python api: fix local-context mode type error - python api: improve handling of non-ascii instance names - python api: simple debugging interface to access pmDebug - python api: ensure an interruptible sleep is used - python api: add single host/archive pmOption setter methods - libpcp: add $PCP_DEBUG to initialize pmDebug - libpcp: extend __pmAF* family with __pmAFsetup - libpcp: resolve false-context-sharing corner cases - pcp2graphite: provide a local- context mode option - pmmgr: add the subtarget-containers option - pmmgr: add pmlogreduce support - rc_pmcd: be more careful with auto- install/-remove - pmcd: allow dynamic switching of monitored containers - pmdapmcd: add pmcd.client.container diagnostic metric - pmdaroot: new metric mapping containers to their cgroups - pmdaroot: add cgroup heuristics for non-systemd setups - pmdaroot: fix timeliness of creation of socket connection - pmdads389: add normalized dn cache metrics - pmdads389: instantaneous vs discrete metric corrections - pmdads389: send correct error codes when not connected - pmdamounts: correct a number of 32-bit unsafe calculations - pmdanfsclient: improve PMDA error handling - pmdaperfevent: fix invalid metric names - pmdaperfevent: add reference clock cycles for NHM and WSM - docs: added upgrade instructions to pmdaperfevent man page - containers: bindmount /dev/log for syslog messages - build: fix FreeBSD 10.2 with dtrace probes auto-enabled pcp-3.10.8-1.el5 - Update pmlogger to log an immediate sample first (BZ 1269921) - Add pmOption host and archive setter python APIs (BZ 1270176) - Replace old pmatop(1) man page with pcp-atop(1) (BZ 1270761) - Update to latest PCP sources. - CHANGELOG - pmdaslurm: new PMDA exporting HPC scheduler metrics - pmdalinux: correctly report high speed network link speeds - pmdalinux: support for wireless network interfaces - pmdalinux: add support for NVME devices - pmie: fqdn functionality, added %c for action strings - pmlogextract: runtime reducing instance optimizations - pmlogrewrite: metric name lex pattern change - pmlogger: change semantics for first logging operation - rc_pmlogger: shell escape for control file "directory" field - pcp-atop: update with latest atop features (esp. NFS) - pcp-atop: fix initial fetch time offset for the globals - pcp-atop: fix -b/-e options to match man page description - docs: update Quick Ref Guide with pcp-atop/pcp-atopsar - docs: remove outdated pmatop man page, see pcp-atop(1) - python api: fix local-context mode type error - python api: improve handling of non-ascii instance names - python api: simple debugging interface to access pmDebug - python api: ensure an interruptible sleep is used - python api: add single host/archive pmOption setter methods - libpcp: add $PCP_DEBUG to initialize pmDebug - libpcp: extend __pmAF* family with __pmAFsetup - libpcp: resolve false-context-sharing corner cases - pcp2graphite: provide a local- context mode option - pmmgr: add the subtarget-containers option - pmmgr: add pmlogreduce support - rc_pmcd: be more careful with auto- install/-remove - pmcd: allow dynamic switching of monitored containers - pmdapmcd: add pmcd.client.container diagnostic metric - pmdaroot: new metric mapping containers to their cgroups - pmdaroot: add cgroup heuristics for non-systemd setups - pmdaroot: fix timeliness of creation of socket connection - pmdads389: add normalized dn cache metrics - pmdads389: instantaneous vs discrete metric corrections - pmdads389: send correct error codes when not connected - pmdamounts: correct a number of 32-bit unsafe calculations - pmdanfsclient: improve PMDA error handling - pmdaperfevent: fix invalid metric names - pmdaperfevent: add reference clock cycles for NHM and WSM - docs: added upgrade instructions to pmdaperfevent man page - containers: bindmount /dev/log for syslog messages - build: fix FreeBSD 10.2 with dtrace probes auto-enabled pcp-3.10.8-1.fc23.1 - Update pmlogger to log an immediate sample first (BZ 1269921) - Add pmOption host and archive setter python APIs (BZ 1270176) - Replace old pmatop(1) man page with pcp-atop(1) (BZ 1270761) - Update to latest PCP sources. - CHANGELOG - pmdaslurm: new PMDA exporting HPC scheduler metrics - pmdalinux: correctly report high speed network link speeds - pmdalinux: support for wireless network interfaces - pmdalinux: add support for NVME devices - pmie: fqdn functionality, added %c for action strings - pmlogextract: runtime reducing instance optimizations - pmlogrewrite: metric name lex pattern change - pmlogger: change semantics for first logging operation - rc_pmlogger: shell escape for control file "directory" field - pcp-atop: update with latest atop features (esp. NFS) - pcp-atop: fix initial fetch time offset for the globals - pcp-atop: fix -b/-e options to match man page description - docs: update Quick Ref Guide with pcp-atop/pcp-atopsar - docs: remove outdated pmatop man page, see pcp-atop(1) - python api: fix local-context mode type error - python api: improve handling of non-ascii instance names - python api: simple debugging interface to access pmDebug - python api: ensure an interruptible sleep is used - python api: add single host/archive pmOption setter methods - libpcp: add $PCP_DEBUG to initialize pmDebug - libpcp: extend __pmAF* family with __pmAFsetup - libpcp: resolve false-context-sharing corner cases - pcp2graphite: provide a local- context mode option - pmmgr: add the subtarget-containers option - pmmgr: add pmlogreduce support - rc_pmcd: be more careful with auto- install/-remove - pmcd: allow dynamic switching of monitored containers - pmdapmcd: add pmcd.client.container diagnostic metric - pmdaroot: new metric mapping containers to their cgroups - pmdaroot: add cgroup heuristics for non-systemd setups - pmdaroot: fix timeliness of creation of socket connection - pmdads389: add normalized dn cache metrics - pmdads389: instantaneous vs discrete metric corrections - pmdads389: send correct error codes when not connected - pmdamounts: correct a number of 32-bit unsafe calculations - pmdanfsclient: improve PMDA error handling - pmdaperfevent: fix invalid metric names - pmdaperfevent: add reference clock cycles for NHM and WSM - docs: added upgrade instructions to pmdaperfevent man page - containers: bindmount /dev/log for syslog messages - build: fix FreeBSD 10.2 with dtrace probes auto-enabled -------------------------------------------------------------------------------- References: [ 1 ] Bug #1284411 - RFE: Add pcp -V https://bugzilla.redhat.com/show_bug.cgi?id=1284411 [ 2 ] Bug #1249572 - pcp-iostat exception at the end of an archive https://bugzilla.redhat.com/show_bug.cgi?id=1249572 [ 3 ] Bug #1163413 - RFE: pmdapipe https://bugzilla.redhat.com/show_bug.cgi?id=1163413 [ 4 ] Bug #1284417 - Python PMAPI pmSetMode does not allow None timeval https://bugzilla.redhat.com/show_bug.cgi?id=1284417 [ 5 ] Bug #1285371 - Python PMAPI pmiPutValue does not accept singular metrics https://bugzilla.redhat.com/show_bug.cgi?id=1285371 [ 6 ] Bug #1286733 - Invalid Python PMAPI pmRegisterDerived call crashes libpcp https://bugzilla.redhat.com/show_bug.cgi?id=1286733 [ 7 ] Bug #1287678 - pmstat -g SEGV https://bugzilla.redhat.com/show_bug.cgi?id=1287678 [ 8 ] Bug #1287778 - Python PMAPI pmNonOptionsFromList cryptic error message https://bugzilla.redhat.com/show_bug.cgi?id=1287778 [ 9 ] Bug #1289909 - pmdumptext -g / -p not working https://bugzilla.redhat.com/show_bug.cgi?id=1289909 [ 10 ] Bug #1256125 - SELinux is preventing /usr/bin/pmlogger from 'open' accesses on the file /var/lib/pcp/config/pmlogger/config.default. https://bugzilla.redhat.com/show_bug.cgi?id=1256125 [ 11 ] Bug #1270761 - pmatop -h does not work https://bugzilla.redhat.com/show_bug.cgi?id=1270761 [ 12 ] Bug #1270176 - Python PMAPI pmSetOptionHostList no workie https://bugzilla.redhat.com/show_bug.cgi?id=1270176 [ 13 ] Bug #1269921 - pmRecordControl misses the first sample https://bugzilla.redhat.com/show_bug.cgi?id=1269921 -------------------------------------------------------------------------------- ================================================================================ python-fedmsg-meta-fedora-infrastructure-0.15.6-1.fc22 (FEDORA-2015-bdf13494b5) Metadata providers for Fedora Infrastructure's fedmsg deployment -------------------------------------------------------------------------------- Update Information: New processors for pungi-koji and nagios messages. -------------------------------------------------------------------------------- ================================================================================ python-parse_type-0.3.4-6.fc22 (FEDORA-2015-55616cb314) Simplifies to build parse types based on the parse module -------------------------------------------------------------------------------- Update Information: Whoops! Duplicated BuildRequires and Requires removed. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1286457 - python3-parse_type requires python3-enum34, but enum is built into python3 https://bugzilla.redhat.com/show_bug.cgi?id=1286457 -------------------------------------------------------------------------------- ================================================================================ python-tempdir-0.6-1.fc22 (FEDORA-2015-af9d07d6d9) Automatically manage temporary directories, based on tempfile.mkdtemp -------------------------------------------------------------------------------- Update Information: Python class to automatically manage temporary directories, based on tempfile.mkdtemp. Having to manually manage temporary directories is annoying. So this class encapsulates temporary directories which just disappear after use, including contained directories and files. Temporary directories are created with tempfile.mkdtemp and thus safe from race conditions. -------------------------------------------------------------------------------- ================================================================================ qt-creator-3.6.0-1.fc22 (FEDORA-2015-cce2eff86d) Cross-platform IDE for Qt -------------------------------------------------------------------------------- Update Information: Update to version 3.6.0, see http://code.qt.io/cgit/qt-creator/qt- creator.git/tree/dist/changes-3.6.0.md?h=3.6 for details. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1290682 - [abrt] qt-creator: CPlusPlus::LiteralTable<CPlusPlus::Identifier>::findOrInsertLiteral(): qtcreator killed by SIGSEGV https://bugzilla.redhat.com/show_bug.cgi?id=1290682 -------------------------------------------------------------------------------- ================================================================================ samba-4.2.7-0.fc22 (FEDORA-2015-0e0879cc8a) Server and Client software to interoperate with Windows machines -------------------------------------------------------------------------------- Update Information: Update to Samba 4.2.7 (security release) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1292069 - CVE-2015-5299 CVE-2015-7540 CVE-2015-3223 CVE-2015-5252 CVE-2015-5296 samba: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1292069 -------------------------------------------------------------------------------- ================================================================================ sssd-1.13.3-1.fc22 (FEDORA-2015-d4924ffeaa) System Security Services Daemon -------------------------------------------------------------------------------- Update Information: New upstream release 1.13.3 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1193839 - sssd loses sudo rules on boot https://bugzilla.redhat.com/show_bug.cgi?id=1193839 -------------------------------------------------------------------------------- ================================================================================ subversion-1.8.15-1.fc22 (FEDORA-2015-6efa349a85) A Modern Concurrent Version Control System -------------------------------------------------------------------------------- Update Information: This update includes the latest stable release of _Apache Subversion 1.8_, version **1.8.15**. ### User-visible changes: #### Client-side bugfixes: * gpg- agent: fix crash with non-canonical $HOME #### Client-side and server-side bugfixes: * fix a segfault with old style text delta #### Server-side bugfixes: * fsfs: reduce memory allocation with Apache * mod_dav_svn: emit first log items as soon as possible * mod_dav_svn: use LimitXMLRequestBody for skel- encoded requests #### Bindings bugfixes: * swig: fix memory corruption in svn_client_copy_source_t ---- This update includes the latest stable release of _Apache Subversion_, version **1.8.14**. This update fixes two security issues: * **CVE-2015-3184**: Subversion's mod_authz_svn does not properly restrict anonymous access in some mixed anonymous/authenticated environments when using Apache httpd 2.4. http://subversion.apache.org/security/CVE-2015-3184-advisory.txt * **CVE-2015-3187**: Subversion servers, both httpd and svnserve, will reveal some paths that should be hidden by path-based authz. http://subversion.apache.org/security/CVE-2015-3187-advisory.txt ### User- visible changes: #### Client-side bugfixes: * document svn:autoprops * cp: fix 'svn cp ^/A/D/H@1 ^/A' to properly create A * resolve: improve conflict prompts for binary files * ls: improve performance of '-v' on tag directories * improved Sqlite 3.8.9 query performance regression on externals * fixed [issue 4580](http://subversion.tigris.org/issues/show_bug.cgi?id=4580): 'svn -v st' on file externals reports "?" instead of user and revision after 'svn up' #### Server-side bugfixes: * mod_dav_svn: do not ignore skel parsing errors * detect invalid svndiff data earlier * prevent possible repository corruption on power/disk failures * fixed [issue 4577](http://subversion.tigris.org/issues/show_bug.cgi?id=4577): Read error with nodes whose DELTA chain starts with a PLAIN rep * fixed [issue 4531](http://subversion.tigris.org/issues/show_bug.cgi?id=4531): server-side copy (over dav) is slow and uses too much memory ### Developer-visible changes: #### General: * avoid failing some tests on versions of Python with a very old sqlite * fix Ruby tests so they don't use the users real configuration #### Bindings: * swig-pl: fix some stack memory problems -------------------------------------------------------------------------------- References: [ 1 ] Bug #1289959 - CVE-2015-5343 subversion: (mod_dav_svn) integer overflow when parsing skel-encoded request bodies https://bugzilla.redhat.com/show_bug.cgi?id=1289959 [ 2 ] Bug #1289958 - CVE-2015-5259 subversion: integer overflow in the svn:// protocol parser https://bugzilla.redhat.com/show_bug.cgi?id=1289958 [ 3 ] Bug #1247249 - CVE-2015-3184 subversion: Mixed anonymous/authenticated path-based authz with httpd 2.4 https://bugzilla.redhat.com/show_bug.cgi?id=1247249 -------------------------------------------------------------------------------- ================================================================================ sysreporter-3.0.0-0.4.alpha4.fc22 (FEDORA-2015-af43634f50) Basic system reporter with emailing -------------------------------------------------------------------------------- Update Information: Upgrade to alpha4 ---- Initial build of sysreporter -------------------------------------------------------------------------------- References: [ 1 ] Bug #1291459 - Review Request: sysreporter - Basic system reporter with emailing https://bugzilla.redhat.com/show_bug.cgi?id=1291459 -------------------------------------------------------------------------------- ================================================================================ tor-0.2.7.6-4.fc22 (FEDORA-2015-8185ed15cf) Anonymizing overlay network for TCP -------------------------------------------------------------------------------- Update Information: fix tmpfiles.d ---- update to 0.2.7.6 ---- improve systemd scriptlets and service file ---- update to 0.2.7.5 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1292198 - tor-0.2.7.6-3.fc23 fails to start: /run/tor not available because /usr/lib/tmpfiles.d/tor.conf is wrong https://bugzilla.redhat.com/show_bug.cgi?id=1292198 [ 2 ] Bug #1288644 - tor multi-instance service fails to reload ('systemctl reload tor@foo') https://bugzilla.redhat.com/show_bug.cgi?id=1288644 [ 3 ] Bug #1282022 - tor fails to start at boot if ORPort/DirPort is specified with IP address https://bugzilla.redhat.com/show_bug.cgi?id=1282022 [ 4 ] Bug #1286359 - tor multi-instance services do not restart/reload when they should https://bugzilla.redhat.com/show_bug.cgi?id=1286359 -------------------------------------------------------------------------------- ================================================================================ tracer-0.6.7-1.fc22 (FEDORA-2015-6b425575ef) Finds outdated running applications in your system -------------------------------------------------------------------------------- Update Information: - Recognize root user from -r or --root arguments; Fix #51 - Don't force root, rather catch exceptions; See #49 - Use non-zero exit codes to indicate various situations; See #46 - Fix unicode error from raw_input (RhBug:1279409) - Change distro name retrieval to try to read /etc/os-release first -------------------------------------------------------------------------------- References: [ 1 ] Bug #1279409 - [abrt] tracer: default.py:112:render_interactive:UnicodeEncodeError: 'ascii' codec can't encode character u'\xe1' in position 12: ordinal not in range(128) https://bugzilla.redhat.com/show_bug.cgi?id=1279409 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: http://lists.fedoraproject.org/admin/lists/test@xxxxxxxxxxxxxxxxxxxxxxx