The following Fedora 22 Security updates need testing: Age URL 441 https://bodhi.fedoraproject.org/updates/FEDORA-2015-5878 echoping-6.1-0.beta.r434svn.1.fc22 390 https://bodhi.fedoraproject.org/updates/FEDORA-2015-9185 ceph-deploy-1.5.25-1.fc22 322 https://bodhi.fedoraproject.org/updates/FEDORA-2015-12781 python-kdcproxy-0.3.2-1.fc22 277 https://bodhi.fedoraproject.org/updates/FEDORA-2015-16239 nagios-4.0.8-1.fc22 265 https://bodhi.fedoraproject.org/updates/FEDORA-2015-2d37e7dacf openstack-swift-2.2.0-6.fc22 234 https://bodhi.fedoraproject.org/updates/FEDORA-2015-9039c25f1d miniupnpc-1.9-6.fc22 217 https://bodhi.fedoraproject.org/updates/FEDORA-2015-7dfbe09bb4 libpng-1.6.16-4.fc22 217 https://bodhi.fedoraproject.org/updates/FEDORA-2015-6c07ab1fa6 libpng-1.6.16-5.fc22 184 https://bodhi.fedoraproject.org/updates/FEDORA-2015-b9e4c97ff1 sos-3.2-2.fc22 158 https://bodhi.fedoraproject.org/updates/FEDORA-2015-f683150aa0 thttpd-2.25b-37.fc22 134 https://bodhi.fedoraproject.org/updates/FEDORA-2016-560802e52b xdelta-3.0.7-7.fc22 123 https://bodhi.fedoraproject.org/updates/FEDORA-2016-24d134e494 mingw-nsis-2.50-1.fc22 110 https://bodhi.fedoraproject.org/updates/FEDORA-2016-3cbe9ad765 python-pygments-2.1.3-1.fc22 71 https://bodhi.fedoraproject.org/updates/FEDORA-2016-a028331ebc poppler-0.30.0-4.fc22 42 https://bodhi.fedoraproject.org/updates/FEDORA-2016-73a5867050 squid-3.5.10-4.fc22 20 https://bodhi.fedoraproject.org/updates/FEDORA-2016-c3bd6a3496 ntp-4.2.6p5-41.fc22 6 https://bodhi.fedoraproject.org/updates/FEDORA-2016-95f1569a73 drupal7-7.44-1.fc22 5 https://bodhi.fedoraproject.org/updates/FEDORA-2016-0fd6ca526a expat-2.1.1-2.fc22 1 https://bodhi.fedoraproject.org/updates/FEDORA-2016-5c52dcfe47 python3-3.4.2-8.fc22 1 https://bodhi.fedoraproject.org/updates/FEDORA-2016-e37f15a5f4 python-2.7.10-10.fc22 1 https://bodhi.fedoraproject.org/updates/FEDORA-2016-fbb5a65729 squidGuard-1.4-26.fc22 1 https://bodhi.fedoraproject.org/updates/FEDORA-2016-f597359bf2 setroubleshoot-3.2.27.1-1.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2016-4573f8c9ba wordpress-4.5.3-1.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2016-ea3002b577 qemu-2.3.1-16.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2016-99fbdc5c34 php-5.6.23-1.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2016-b08d0b00fc php-pecl-zip-1.12.5-2.fc22 0 https://bodhi.fedoraproject.org/updates/FEDORA-2016-b2ad500fea mirrormanager-1.4.4-5.fc22 The following Fedora 22 Critical Path updates have yet to be approved: Age URL 316 https://bodhi.fedoraproject.org/updates/FEDORA-2015-13210 yum-3.4.3-508.fc22 234 https://bodhi.fedoraproject.org/updates/FEDORA-2015-2123de044f libgphoto2-2.5.8-1.fc22 217 https://bodhi.fedoraproject.org/updates/FEDORA-2015-6c07ab1fa6 libpng-1.6.16-5.fc22 217 https://bodhi.fedoraproject.org/updates/FEDORA-2015-7dfbe09bb4 libpng-1.6.16-4.fc22 71 https://bodhi.fedoraproject.org/updates/FEDORA-2016-a028331ebc poppler-0.30.0-4.fc22 68 https://bodhi.fedoraproject.org/updates/FEDORA-2016-027faabac4 libreport-2.6.4-2.fc22 abrt-2.6.1-11.fc22 66 https://bodhi.fedoraproject.org/updates/FEDORA-2016-af1f30412b pygtk2-2.24.0-14.fc22 62 https://bodhi.fedoraproject.org/updates/FEDORA-2016-41df7ccbc8 lldpad-1.0.1-4.git036e314.fc22 18 https://bodhi.fedoraproject.org/updates/FEDORA-2016-2cdb5d5a7c vim-7.4.1868-1.fc22 13 https://bodhi.fedoraproject.org/updates/FEDORA-2016-f4a2bc1983 mdadm-3.3.4-3.fc22 9 https://bodhi.fedoraproject.org/updates/FEDORA-2016-ab75c587f3 perl-5.20.3-331.fc22 9 https://bodhi.fedoraproject.org/updates/FEDORA-2016-babda1429a thunderbird-45.1.1-2.fc22 6 https://bodhi.fedoraproject.org/updates/FEDORA-2016-3b1495a847 samba-4.2.12-1.fc22 5 https://bodhi.fedoraproject.org/updates/FEDORA-2016-0fd6ca526a expat-2.1.1-2.fc22 2 https://bodhi.fedoraproject.org/updates/FEDORA-2016-18212502a4 pcre-8.39-2.fc22 1 https://bodhi.fedoraproject.org/updates/FEDORA-2016-e37f15a5f4 python-2.7.10-10.fc22 The following builds have been pushed to Fedora 22 updates-testing btrfs-sxbackup-0.6.8-1.fc22 mirrormanager-1.4.4-5.fc22 perl-autobox-Junctions-0.002-1.fc22 php-5.6.23-1.fc22 php-pecl-zip-1.12.5-2.fc22 zanata-api-3.9.1-1.fc22 zanata-common-3.9.1-1.fc22 Details about builds: ================================================================================ btrfs-sxbackup-0.6.8-1.fc22 (FEDORA-2016-b9ff41d0c1) Incremental btrfs snapshot backups with push/pull support via SSH -------------------------------------------------------------------------------- Update Information: Update to 0.6.8 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1347484 - btrfs-sxbackup-0.6.8 is available https://bugzilla.redhat.com/show_bug.cgi?id=1347484 -------------------------------------------------------------------------------- ================================================================================ mirrormanager-1.4.4-5.fc22 (FEDORA-2016-b2ad500fea) Fedora mirror management system -------------------------------------------------------------------------------- Update Information: Added a patch to move the mirrormanager client from pickle to json (related to CVE-2016-1000003). -------------------------------------------------------------------------------- ================================================================================ perl-autobox-Junctions-0.002-1.fc22 (FEDORA-2016-91a5e6fa09) Autoboxified junction-style operators -------------------------------------------------------------------------------- Update Information: This release updates documentation. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1349202 - perl-autobox-Junctions-0.002 is available https://bugzilla.redhat.com/show_bug.cgi?id=1349202 -------------------------------------------------------------------------------- ================================================================================ php-5.6.23-1.fc22 (FEDORA-2016-99fbdc5c34) PHP scripting language for creating dynamic web sites -------------------------------------------------------------------------------- Update Information: 23 Jun 2016, **PHP 5.6.23** **Core:** * Fixed bug php#72275 (Integer Overflow in json_encode()/json_decode()/json_utf8_to_utf16()). (Stas) * Fixed bug php#72400 (Integer Overflow in addcslashes/addslashes). (Stas) * Fixed bug php#72403 (Integer Overflow in Length of String-typed ZVAL). (Stas) **GD:** * Fixed bug php#72298 (pass2_no_dither out-of-bounds access). (Stas) * Fixed bug php#72337 (invalid dimensions can lead to crash) (Pierre) * Fixed bug php#72339 (Integer Overflow in _gd2GetHeader() resulting in heap overflow). (Pierre) * Fixed bug php#72407 (NULL Pointer Dereference at _gdScaleVert). (Stas) * Fixed bug php#72446 (Integer Overflow in gdImagePaletteToTrueColor() resulting in heap overflow). (Pierre) **Intl:** * Fixed bug php#70484 (selectordinal doesn't work with named parameters). (Anatol) **mbstring:** * Fixed bug php#72402 (_php_mb_regex_ereg_replace_exec - double free). (Stas) **mcrypt:** * Fixed bug php#72455 (Heap Overflow due to integer overflows). (Stas) **Phar:** * Fixed bug php#72321 (invalid free in phar_extract_file()). (hji at dyntopia dot com) **SPL:** * Fixed bug php#72262 (int/size_t confusion in SplFileObject::fread). (Stas) * Fixed bug php#72433 (Use After Free Vulnerability in PHP's GC algorithm and unserialize). (Dmitry) **OpenSSL:** * Fixed bug php#72140 (segfault after calling ERR_free_strings()). (Jakub Zelenka) **WDDX:** * Fixed bug php#72340 (Double Free Courruption in wddx_deserialize). (Stas) -------------------------------------------------------------------------------- ================================================================================ php-pecl-zip-1.12.5-2.fc22 (FEDORA-2016-b08d0b00fc) A ZIP archive management extension -------------------------------------------------------------------------------- Update Information: * Fix bug php#71561 (NULL pointer dereference in Zip::ExtractTo) * Fix bug php#72434: ZipArchive class Use After Free Vulnerability in PHP's GC algorithm and unserialize -------------------------------------------------------------------------------- ================================================================================ zanata-api-3.9.1-1.fc22 (FEDORA-2016-7f15fa5c6e) Zanata API modules -------------------------------------------------------------------------------- Update Information: - Upstream update to version 3.9.1 -------------------------------------------------------------------------------- ================================================================================ zanata-common-3.9.1-1.fc22 (FEDORA-2016-6047458ed1) Zanata common modules -------------------------------------------------------------------------------- Update Information: - Upstream update to version 3.9.1 - Add BuildRequires findbugs and mvn(org.jboss.resteasy:resteasy-bom:pom:) -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://lists.fedoraproject.org/admin/lists/test@xxxxxxxxxxxxxxxxxxxxxxx