The following Fedora 23 Security updates need testing: Age URL 263 https://bodhi.fedoraproject.org/updates/FEDORA-2015-16240 nagios-4.0.8-1.fc23 221 https://bodhi.fedoraproject.org/updates/FEDORA-2015-81ded368fe miniupnpc-1.9-6.fc23 194 https://bodhi.fedoraproject.org/updates/FEDORA-2015-27392b3324 jbig2dec-0.12-2.fc23 144 https://bodhi.fedoraproject.org/updates/FEDORA-2015-dd52a54fa1 python-pymongo-3.0.3-1.fc23 144 https://bodhi.fedoraproject.org/updates/FEDORA-2015-06a7c972e8 thttpd-2.25b-37.fc23 109 https://bodhi.fedoraproject.org/updates/FEDORA-2016-637618fcd4 mingw-nsis-2.50-1.fc23 64 https://bodhi.fedoraproject.org/updates/FEDORA-2016-b8f91621c7 optipng-0.7.6-1.fc23 28 https://bodhi.fedoraproject.org/updates/FEDORA-2016-b3b9407940 squid-3.5.10-4.fc23 8 https://bodhi.fedoraproject.org/updates/FEDORA-2016-7a878ed298 GraphicsMagick-1.3.24-1.fc23 6 https://bodhi.fedoraproject.org/updates/FEDORA-2016-89e0874533 ntp-4.2.6p5-41.fc23 5 https://bodhi.fedoraproject.org/updates/FEDORA-2016-0f550603a5 xen-4.5.3-7.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2016-9693e82a25 iperf3-3.1.3-1.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2016-80edb9d511 kernel-4.5.7-200.fc23 The following Fedora 23 Critical Path updates have yet to be approved: Age URL 5 https://bodhi.fedoraproject.org/updates/FEDORA-2016-28873e4832 vim-7.4.1868-1.fc23 5 https://bodhi.fedoraproject.org/updates/FEDORA-2016-fad11727bf PackageKit-1.1.1-2.fc23 appstream-data-23-11.fc23 fwupd-0.7.1-1.fc23 gnome-software-3.20.3-1.fc23.1 json-glib-1.2.0-1.fc23 libappstream-glib-0.5.14-1.fc23 libgusb-0.2.9-1.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2016-ea1920c858 linux-firmware-20160609-66.gita4bbc811.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2016-80edb9d511 kernel-4.5.7-200.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2016-b106782c81 librsvg2-2.40.16-1.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2016-dd40448860 thunderbird-45.1.1-1.fc23 0 https://bodhi.fedoraproject.org/updates/FEDORA-2016-10948f9e9d mdadm-3.3.4-3.fc23 The following builds have been pushed to Fedora 23 updates-testing Cython-0.23.4-3.fc23 NetworkManager-l2tp-1.0.2-2.fc23 acpica-tools-20160527-1.fc23 dcraw-9.27.0-1.fc23 fuse-emulator-1.2.0-1.fc23 glom-1.30.4-1.fc23 gnome-abrt-1.2.2-3.fc23 guayadeque-0.4.1-0.8.beta1gitce1ab15.fc23 iperf3-3.1.3-1.fc23 keepassx-2.0.2-1.fc23 keepassx0-0.4.4-3.fc23 kernel-4.5.7-200.fc23 libisds-0.10.4-1.fc23 libreoffice-5.0.6.2-7.fc23 librsvg2-2.40.16-1.fc23 libspectrum-1.2.0-1.fc23 linux-firmware-20160609-66.gita4bbc811.fc23 mdadm-3.3.4-3.fc23 memkind-1.1.0-1.fc23 mingw-taglib-1.11-1.fc23 nudoku-0.2.5-1.fc23 percolator-3.0-1.fc23 perl-DateTime-TimeZone-2.00-1.fc23 perl-Test-WWW-Mechanize-PSGI-0.36-1.fc23 phoronix-test-suite-6.4.0-1.fc23 php-pecl-redis-2.2.8-1.fc23 python-elasticsearch-1.7.0-2.fc23 qt-creator-4.0.1-1.fc23 rhn-client-tools-2.5.16-1.fc23 rhnlib-2.5.87-1.fc23 rubygem-rabbit-2.1.9-1.fc23 sayonara-0.9.0-1.20160607git.fc23 thunderbird-45.1.1-1.fc23 thunderbird-enigmail-1.9.3-2.fc23 unar-1.10.1-1.fc23 vagrant-digitalocean-0.9.0-1.fc23 vagrant-hostmanager-1.8.1-2.fc23 Details about builds: ================================================================================ Cython-0.23.4-3.fc23 (FEDORA-2016-1af043e3f4) A language for writing Python extension modules -------------------------------------------------------------------------------- Update Information: see https://github.com/cython/cython/blob/master/CHANGES.rst -------------------------------------------------------------------------------- References: [ 1 ] Bug #1343331 - please update Cython in F23 to fix recursion bug https://bugzilla.redhat.com/show_bug.cgi?id=1343331 -------------------------------------------------------------------------------- ================================================================================ NetworkManager-l2tp-1.0.2-2.fc23 (FEDORA-2016-158eb4cd92) NetworkManager VPN plugin for L2TP and L2TP/IPSec -------------------------------------------------------------------------------- Update Information: Fix install gnome subpackage (#1342335) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1342335 - NetworkManager-l2tp-gnome obsoletes wrong version of NetworkManager-l2tp https://bugzilla.redhat.com/show_bug.cgi?id=1342335 -------------------------------------------------------------------------------- ================================================================================ acpica-tools-20160527-1.fc23 (FEDORA-2016-68880f6e36) ACPICA tools for the development and debug of ACPI tables -------------------------------------------------------------------------------- Update Information: Summary of changes for version 20160527: 1) ACPICA kernel-resident subsystem: Temporarily reverted the new arbitrary bit length/alignment support in AcpiHwRead/AcpiHwWrite for the Generic Address Structure. There have been a number of regressions with the new code that need to be fully resolved and tested before this support can be finally integrated into ACPICA. Apologies for any inconveniences these issues may have caused. 2) The ACPI message macros are not configurable (ACPI_MSG_ERROR, ACPI_MSG_EXCEPTION, ACPI_MSG_WARNING, ACPI_MSG_INFO, ACPI_MSG_BIOS_ERROR, and ACPI_MSG_BIOS_WARNING). Lv Zheng. 3) Fixed a couple of GCC warnings associated with the use of the -Wcast-qual option. Adds a new return macro, return_STR. Junk-uk Kim. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1340573 - acpica-tools-20160527 is available https://bugzilla.redhat.com/show_bug.cgi?id=1340573 -------------------------------------------------------------------------------- ================================================================================ dcraw-9.27.0-1.fc23 (FEDORA-2016-a33e51fb31) Tool for decoding raw image data from digital cameras -------------------------------------------------------------------------------- Update Information: This update contains a new upstream bugfix and enhancement release. It contains updated color matrices and adds support for the ACES colorspace, as well as improving device support: * Blackmagic URSA * Canon EOS 750D, EOS 760D, EOS M, EOS 80D, IXUS 160 and sRAW/mRAW for EOS 5DS R * Fuji X-E2, X-E2S and X-Pro2 * Nokia N9 * Photron BC2-HD -------------------------------------------------------------------------------- ================================================================================ fuse-emulator-1.2.0-1.fc23 (FEDORA-2016-087835777b) The Free UNIX Spectrum Emulator -------------------------------------------------------------------------------- Update Information: Update to the latest upstream. -------------------------------------------------------------------------------- ================================================================================ glom-1.30.4-1.fc23 (FEDORA-2016-58dd976ccb) Easy-to-use database designer and user interface -------------------------------------------------------------------------------- Update Information: glom 1.30.4 release. * Avoid crash when trying to show GtkCssProvider errors. * Don't use deprecated font: syntax with GtkCssProvider. -------------------------------------------------------------------------------- ================================================================================ gnome-abrt-1.2.2-3.fc23 (FEDORA-2016-d19d364c87) A utility for viewing problems that have occurred with the system -------------------------------------------------------------------------------- Update Information: - One more fix for the format of a package version - Albanian translation added - Translation updates (Russian, Slovak) -------------------------------------------------------------------------------- ================================================================================ guayadeque-0.4.1-0.8.beta1gitce1ab15.fc23 (FEDORA-2016-96b728b8c1) Music player -------------------------------------------------------------------------------- Update Information: * Wed Jun 08 2016 Martin Gansser <martinkg@xxxxxxxxxxxxxxxxx> - 0.4.1-0.8.beta1gitce1ab15 - Update to 0.4.1-0.8.beta1gitce1ab15 * Sun Jun 05 2016 Martin Gansser <martinkg@xxxxxxxxxxxxxxxxx> - 0.4.1-0.7.beta1git79b6383 - Documented licensing breakdown - Added Provides: bundled(wxcurl) = wxcurl_version * Sat Jun 04 2016 Martin Gansser <martinkg@xxxxxxxxxxxxxxxxx> - 0.4.1-0.6.beta1git79b6383 - Update to 0.4.1-0.6.beta1git79b6383 - Added wxWidgets to License tag - Added %%dir %%{_datadir}/%%{name} because it's owned by the package - modified macro for l10n subpackage * Mon May 30 2016 Martin Gansser <martinkg@xxxxxxxxxxxxxxxxx> - 0.4.1-0.5.beta1git26eaf8d - Update to 0.4.1-0.5.beta1git26eaf8d * Wed May 25 2016 Martin Gansser <martinkg@xxxxxxxxxxxxxxxxx> - 0.4.1-0.4.beta1git13013ff - Update to 0.4.1-0.4.beta1git13013ff - Split locales into a l10n subpackage * Sun May 22 2016 Martin Gansser <martinkg@xxxxxxxxxxxxxxxxx> - 0.4.1-0.3.beta1git35561f6 - Update to 0.4.1-0.3.beta1git35561f6 - Dropped BR subversion-devel - Removed Group tag, it's obsolete - Addes %%{name}-desktop.patch - Dropped -DCMAKE_INSTALL_PREFIX='%%{_prefix}' because it's already in %%cmake macro - Changed -DCMAKE_BUILD_TYPE='Release' to -DCMAKE_BUILD_TYPE='Debug' * Sun May 22 2016 Martin Gansser <martinkg@xxxxxxxxxxxxxxxxx> - 0.4.1-0.2.beta1gitd2c0281 - Update to 0.4.1-0.2.beta1gitd2c0281 - Mark license files as %%license where available - Cleanup spec file * Sat May 21 2016 Martin Gansser <martinkg@xxxxxxxxxxxxxxxxx> - 0.4.1-0.1.beta1git65f759c - Update to 0.4.1-0.1.beta1git65f759c -------------------------------------------------------------------------------- ================================================================================ iperf3-3.1.3-1.fc23 (FEDORA-2016-9693e82a25) Measurement tool for TCP/UDP bandwidth performance -------------------------------------------------------------------------------- Update Information: New upstream release. Fixes CVE-2016-4303. ---- update to iperf3-3.1b3 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1270190 - iperf 3.1b3 is available https://bugzilla.redhat.com/show_bug.cgi?id=1270190 -------------------------------------------------------------------------------- ================================================================================ keepassx-2.0.2-1.fc23 (FEDORA-2016-1405d6fc58) Cross-platform password manager -------------------------------------------------------------------------------- Update Information: Revert to 2.0.2. -------------------------------------------------------------------------------- ================================================================================ keepassx0-0.4.4-3.fc23 (FEDORA-2016-fcd957ca82) Cross-platform password manager -------------------------------------------------------------------------------- Update Information: Initial import. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1340269 - Review Request: keepassx0 - Cross-platform password manager https://bugzilla.redhat.com/show_bug.cgi?id=1340269 -------------------------------------------------------------------------------- ================================================================================ kernel-4.5.7-200.fc23 (FEDORA-2016-80edb9d511) The Linux kernel -------------------------------------------------------------------------------- Update Information: Update to the latest upstream stable release, Linux v4.5.7. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1343335 - CVE-2016-5243 kernel: Information leak in tipc_nl_compat_link_dump https://bugzilla.redhat.com/show_bug.cgi?id=1343335 [ 2 ] Bug #1343337 - CVE-2016-5244 kernel: Information leak in rds_inc_info_copy https://bugzilla.redhat.com/show_bug.cgi?id=1343337 -------------------------------------------------------------------------------- ================================================================================ libisds-0.10.4-1.fc23 (FEDORA-2016-7080bc0945) Library for accessing the Czech Data Boxes -------------------------------------------------------------------------------- Update Information: This release fixes a publishing recipient identity when sending a message. -------------------------------------------------------------------------------- ================================================================================ libreoffice-5.0.6.2-7.fc23 (FEDORA-2016-a5cb6313b0) Free Software Productivity Suite -------------------------------------------------------------------------------- Update Information: * fix a11y queries during dispose combobox crash -------------------------------------------------------------------------------- References: [ 1 ] Bug #1343766 - Crash in LibreOffice Impress: Segmentation fault in ComboBox::IsMultiSelectionEnabled() https://bugzilla.redhat.com/show_bug.cgi?id=1343766 -------------------------------------------------------------------------------- ================================================================================ librsvg2-2.40.16-1.fc23 (FEDORA-2016-b106782c81) An SVG library based on cairo -------------------------------------------------------------------------------- Update Information: librsvg 2.40.16 release. For details, please see https://mail.gnome.org/archives /ftp-release-list/2016-June/msg00007.html -------------------------------------------------------------------------------- ================================================================================ libspectrum-1.2.0-1.fc23 (FEDORA-2016-087835777b) A library for reading spectrum emulator file formats -------------------------------------------------------------------------------- Update Information: Update to the latest upstream. -------------------------------------------------------------------------------- ================================================================================ linux-firmware-20160609-66.gita4bbc811.fc23 (FEDORA-2016-ea1920c858) Firmware files used by the Linux kernel -------------------------------------------------------------------------------- Update Information: Update to latest upstream snapshot. Intel bluetooth, radeon smc, Intel braswell/broxton audio, cxgb4 updates -------------------------------------------------------------------------------- ================================================================================ mdadm-3.3.4-3.fc23 (FEDORA-2016-10948f9e9d) The mdadm program controls Linux md devices (software RAID arrays) -------------------------------------------------------------------------------- Update Information: This fix the problem that mdadm-last-resort@.timer can't start when reboot for degraded raid1 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1337003 - mdadm-last-resort@.timer is not started for degraded arrays https://bugzilla.redhat.com/show_bug.cgi?id=1337003 -------------------------------------------------------------------------------- ================================================================================ memkind-1.1.0-1.fc23 (FEDORA-2016-bd9f264b5d) User Extensible Heap Manager -------------------------------------------------------------------------------- Update Information: Update memkind source file to 1.1.0 upstream -------------------------------------------------------------------------------- ================================================================================ mingw-taglib-1.11-1.fc23 (FEDORA-2016-337077edca) Audio Meta-Data Library -------------------------------------------------------------------------------- Update Information: Update to 1.11 -------------------------------------------------------------------------------- ================================================================================ nudoku-0.2.5-1.fc23 (FEDORA-2016-2202d1a5f7) Ncurses based Sudoku game -------------------------------------------------------------------------------- Update Information: Minor update -------------------------------------------------------------------------------- References: [ 1 ] Bug #1343789 - nudoku-0.2.5 is available https://bugzilla.redhat.com/show_bug.cgi?id=1343789 -------------------------------------------------------------------------------- ================================================================================ percolator-3.0-1.fc23 (FEDORA-2016-3d706eb55d) Software for postprocessing of shotgun proteomics data -------------------------------------------------------------------------------- Update Information: - Update to 3.0 - Use cmake3 on epel -------------------------------------------------------------------------------- ================================================================================ perl-DateTime-TimeZone-2.00-1.fc23 (FEDORA-2016-939192462d) Time zone object base class and factory -------------------------------------------------------------------------------- Update Information: Updated to the latest version ---- Updated to the latest version -------------------------------------------------------------------------------- References: [ 1 ] Bug #1343783 - perl-DateTime-TimeZone-2.00 is available https://bugzilla.redhat.com/show_bug.cgi?id=1343783 [ 2 ] Bug #1343522 - perl-DateTime-TimeZone-1.99 is available https://bugzilla.redhat.com/show_bug.cgi?id=1343522 -------------------------------------------------------------------------------- ================================================================================ perl-Test-WWW-Mechanize-PSGI-0.36-1.fc23 (FEDORA-2016-2d6b170abf) Test PSGI programs using WWW::Mechanize -------------------------------------------------------------------------------- Update Information: -------------------------------------------------------------------------------- ================================================================================ phoronix-test-suite-6.4.0-1.fc23 (FEDORA-2016-7cf6b6b523) An Automated, Open-Source Testing Framework -------------------------------------------------------------------------------- Update Information: update to new upstream release -------------------------------------------------------------------------------- ================================================================================ php-pecl-redis-2.2.8-1.fc23 (FEDORA-2016-fc57ddcefe) Extension for communicating with the Redis key-value store -------------------------------------------------------------------------------- Update Information: **phpredis 2.2.8** The main improvement in this version of phpredis is support for Redis Cluster. In addition there have been many bug fixes and improvements to non cluster related commands, which are listed below: * Added randomization to our seed nodes to balance which instance is used to map the keyspace (Vitaliy Stepanyuk) * Added support for IPv6 addresses * PHP liveness checking workaround (Shafreeck Sea) * Various documentation and code formatting and style fixes (ares333, sanpili, Bryan Nelson, linfangrong, Romero Malaquias, Viktor Sz?pe) * Fix scan reply processing to use long instead of int to avoid overflow (mixiaojiong). * Fix potential segfault in Redis Cluster session storage (Sergei Lomakov) * Fixed memory leak in discard function * Sanity check for igbinary unserialization (Maurus Cuelenaere) * Fix segfault occuring from unclosed socket connection for Redis Cluster (CatKang) * Case insensitive zRangeByScore options * Fixed dreaded size_t vs long long compiler warning -------------------------------------------------------------------------------- ================================================================================ python-elasticsearch-1.7.0-2.fc23 (FEDORA-2016-62abbd9345) Client for Elasticsearch -------------------------------------------------------------------------------- Update Information: Readd missing urllib3 require -------------------------------------------------------------------------------- References: [ 1 ] Bug #1312584 - Missing python-urllib3 requires https://bugzilla.redhat.com/show_bug.cgi?id=1312584 -------------------------------------------------------------------------------- ================================================================================ qt-creator-4.0.1-1.fc23 (FEDORA-2016-354c2ce633) Cross-platform IDE for Qt -------------------------------------------------------------------------------- Update Information: Update to version 4.0.1, see https://blog.qt.io/blog/2016/06/08/qt- creator-4-0-1-released/ for details. -------------------------------------------------------------------------------- ================================================================================ rhn-client-tools-2.5.16-1.fc23 (FEDORA-2016-bf23567576) Support programs and libraries for Red Hat Satellite or Spacewalk -------------------------------------------------------------------------------- Update Information: * rebase to new upstream version * use python3 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1235574 - Cannot register system with spacewalk https://bugzilla.redhat.com/show_bug.cgi?id=1235574 -------------------------------------------------------------------------------- ================================================================================ rhnlib-2.5.87-1.fc23 (FEDORA-2016-bf23567576) Python libraries for the Spacewalk project -------------------------------------------------------------------------------- Update Information: * rebase to new upstream version * use python3 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1235574 - Cannot register system with spacewalk https://bugzilla.redhat.com/show_bug.cgi?id=1235574 -------------------------------------------------------------------------------- ================================================================================ rubygem-rabbit-2.1.9-1.fc23 (FEDORA-2016-f3f05254fb) RD-document-based presentation application -------------------------------------------------------------------------------- Update Information: New version 2.1.9 is released. -------------------------------------------------------------------------------- ================================================================================ sayonara-0.9.0-1.20160607git.fc23 (FEDORA-2016-5a7b2a12d4) A lightweight Qt Audio player -------------------------------------------------------------------------------- Update Information: - Update to 0.9.0-2.20160607git -------------------------------------------------------------------------------- ================================================================================ thunderbird-45.1.1-1.fc23 (FEDORA-2016-dd40448860) Mozilla Thunderbird mail/newsgroup client -------------------------------------------------------------------------------- Update Information: For list of changes see: https://www.mozilla.org/en- US/thunderbird/45.1.1/releasenotes/ -------------------------------------------------------------------------------- ================================================================================ thunderbird-enigmail-1.9.3-2.fc23 (FEDORA-2016-b38aed5cb7) Authentication and encryption extension for Mozilla Thunderbird -------------------------------------------------------------------------------- Update Information: New upstream release (1.9.3), noarch package now -------------------------------------------------------------------------------- ================================================================================ unar-1.10.1-1.fc23 (FEDORA-2016-a33426ad95) Multi-format extractor -------------------------------------------------------------------------------- Update Information: Update to 1.10.1 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1308208 - unar: FTBFS in rawhide https://bugzilla.redhat.com/show_bug.cgi?id=1308208 [ 2 ] Bug #1266571 - unar-1.9.1 available https://bugzilla.redhat.com/show_bug.cgi?id=1266571 -------------------------------------------------------------------------------- ================================================================================ vagrant-digitalocean-0.9.0-1.fc23 (FEDORA-2016-a932d07bf9) Vagrant plugin for having Digital Ocean as an provider -------------------------------------------------------------------------------- Update Information: Updates to 0.9.0 -------------------------------------------------------------------------------- ================================================================================ vagrant-hostmanager-1.8.1-2.fc23 (FEDORA-2016-2b571492da) Vagrant plugin to manage /etc/hosts -------------------------------------------------------------------------------- Update Information: Add the license macro to the -doc subpackage. -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://lists.fedoraproject.org/admin/lists/test@xxxxxxxxxxxxxxxxxxxxxxx