The following Fedora 25 Security updates need testing: Age URL 77 https://bodhi.fedoraproject.org/updates/FEDORA-2016-d79ba708cb exim-4.87.1-1.fc25 7 https://bodhi.fedoraproject.org/updates/FEDORA-2017-b59943dcae qbittorrent-3.3.11-1.fc25 7 https://bodhi.fedoraproject.org/updates/FEDORA-2017-dc1828d4f9 tcpreplay-4.1.2-3.fc25 7 https://bodhi.fedoraproject.org/updates/FEDORA-2017-d215a25e41 wordpress-4.7.3-1.fc25 6 https://bodhi.fedoraproject.org/updates/FEDORA-2017-0e9ad12958 icoutils-0.31.2-1.fc25 5 https://bodhi.fedoraproject.org/updates/FEDORA-2017-534e23bad9 rabbitmq-server-3.6.6-2.fc25 5 https://bodhi.fedoraproject.org/updates/FEDORA-2017-19b5c9f1c6 sscg-2.0.3-1.fc25 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-003fa5648c rpm-ostree-2017.3-2.fc25 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-df53d02da7 knot-resolver-1.2.4-1.fc25 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-deb228e07b php-onelogin-php-saml-2.10.4-1.fc25 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-ae18216e75 rkward-0.6.5-5.fc25 rpy-2.8.5-3.fc25 R-3.3.3-1.fc25 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-3dba8a70ce jasper-1.900.13-3.fc25 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-47a4910f07 openslp-2.0.0-10.fc25 The following Fedora 25 Critical Path updates have yet to be approved: Age URL 20 https://bodhi.fedoraproject.org/updates/FEDORA-2017-c5dbde322a epiphany-3.22.6-2.fc25 7 https://bodhi.fedoraproject.org/updates/FEDORA-2017-803e6bacb4 pungi-4.1.13-1.fc25 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-f1a1bb2c4c python3-3.5.3-3.fc25 python3-docs-3.5.3-1.fc25 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-fd40615ad7 gnome-software-3.22.7-1.fc25 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-a08fb0f051 gtk3-3.22.10-1.fc25 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-3dba8a70ce jasper-1.900.13-3.fc25 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-7799a1cc7c appliance-tools-008.0-4.fc25 livecd-tools-24.2-1.fc25 The following builds have been pushed to Fedora 25 updates-testing ack-2.16-1.fc25 asymptote-2.40-1.fc25 cacti-1.0.5-1.fc25 clusterssh-4.09-1.fc25 dynafed-1.2.5-1.fc25 empathy-3.12.13-1.fc25 esniper-2.33.0-1.fc25 gnome-software-3.22.7-1.fc25 golang-github-karlseguin-ccache-2.0.2-0.1.gita2d6215.fc25 gtk3-3.22.10-1.fc25 jasper-1.900.13-3.fc25 jss-4.4.0-1.fc25 libreoffice-5.2.6.2-4.fc25 magic-8.1.157-1.fc25 notmuch-0.24-1.fc25 openslp-2.0.0-10.fc25 perl-Test-Harness-3.38-1.fc25 perl-namespace-sweep-0.006-1.fc25 python-ansible-tower-cli-3.1.1-1.fc25 python-clyent-1.2.2-2.fc25 python-maxminddb-1.3.0-1.fc25 python-pyswip-0.2.3-2.git72771d9.fc25 python-slugify-1.2.1-2.fc25 qutebrowser-0.10.1-1.fc25 recoll-1.23.1-1.fc25 sysbench-1.0.4-1.fc25 tomboy-1.15.7-1.fc25 tomcatjss-7.2.0-2.fc25 twirssi-2.6.4-1.fc25 xkb-switch-1.5.0-1.20160925gitda4ef22.fc25 Details about builds: ================================================================================ ack-2.16-1.fc25 (FEDORA-2017-d06676fbfa) Grep-like text finder -------------------------------------------------------------------------------- Update Information: 2.15_03 Sun Feb 26 23:07:35 CST 2017 ==================================== [ENHANCEMENTS] Include .cljs, .cljc and .edn files with the --clojure filetype. Thanks, Austin Chamberlin. Added .xsd to the --xml filetype. Thanks, Nick Morrott. Added support for Swift language. Thanks, Nikolaj Schumacher. (GH #512) The MSYS2 project is now seen as Windows. Thanks, Ray Donnelly. (GH #450) Expand the definition of OCaml files. Thanks, Marek Kubica. (GH #511) Add support for Groovy Server Pages. Thanks, Ethan Mallove. (GH #469) [DOCUMENTATION] Expanded the explanation of how the -w flag works. Thanks, Ed Avis. (GH #585) 2.15_02 Thu Dec 17 15:51:15 CST 2015 ==================================== [FIXES] Reverted an optimization to make \s work properly again. (GH #572, GH #571, GH #562, GH #491, GH #498) Fixed an out-of-date FAQ entry. Thanks, Jakub Wilk. (GH #580) [ENHANCEMENTS] The JSP filetype (--jsp) now recognizes .jspf files. Thanks, Sebastien Feugere. (GH #586) 2.15_01 Fri Feb 13 16:23:54 CST 2015 ==================================== [FIXES] The -l and -c flags would sometimes return inaccurate results due to a bug introduced in 2.14. Thanks to Elliot Shank for the report! (GH #491) Behavior when using newlines in a search was inconsistent. Thanks to Yves Chevallier for the report! (GH #522) Add minimal requirement of Getopt::Long 2.38, not 2.35, for GetOptionsFromString. Don't ignore directories that are specified as command line targets (GH #524) Fix a bug where a regular expression that matches the empty string could cause ack to go into an infinite loop (GH #542) [ENHANCEMENTS] Many optimizations and code cleanups. Thanks, Stephan Hohe. Added --hpp option for C++ header files. Thankis, Steffen Jaeckel. ack now supports --ignore-dir=match:.... Thanks, Ailin Nemui! (GitHub ticket #42) ack also supports --ignore-dir=ext:..., and --noignore-dir supports match/ext as well -------------------------------------------------------------------------------- References: [ 1 ] Bug #1431301 - ack-2.16 is available https://bugzilla.redhat.com/show_bug.cgi?id=1431301 -------------------------------------------------------------------------------- ================================================================================ asymptote-2.40-1.fc25 (FEDORA-2017-43ffd79c5a) Descriptive vector graphics language -------------------------------------------------------------------------------- Update Information: Update to 2.40 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1416389 - asymptote-2.40 is available https://bugzilla.redhat.com/show_bug.cgi?id=1416389 -------------------------------------------------------------------------------- ================================================================================ cacti-1.0.5-1.fc25 (FEDORA-2017-e75dd152a7) An rrd based graphing tool -------------------------------------------------------------------------------- Update Information: - Update to 1.0.5 Release notes: http://www.cacti.net/release_notes_1_0_5.php -------------------------------------------------------------------------------- References: [ 1 ] Bug #1430893 - cacti package is missing requires php-gd php-posix https://bugzilla.redhat.com/show_bug.cgi?id=1430893 [ 2 ] Bug #1431597 - cacti-1.0.5 is available https://bugzilla.redhat.com/show_bug.cgi?id=1431597 -------------------------------------------------------------------------------- ================================================================================ clusterssh-4.09-1.fc25 (FEDORA-2017-b040d471a4) Secure concurrent multiple server terminal control -------------------------------------------------------------------------------- Update Information: - Updated to new 4.09 upstream version, fixes rhbz #1431337 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1431337 - clusterssh-4.09 is available https://bugzilla.redhat.com/show_bug.cgi?id=1431337 -------------------------------------------------------------------------------- ================================================================================ dynafed-1.2.5-1.fc25 (FEDORA-2017-79d9a4ce15) Ultra-scalable dynamic system for federating HTTP-based storage resources -------------------------------------------------------------------------------- Update Information: * new upstream release -------------------------------------------------------------------------------- ================================================================================ empathy-3.12.13-1.fc25 (FEDORA-2017-f345313b2b) Instant Messaging Client for GNOME -------------------------------------------------------------------------------- Update Information: Update to 3.12.13 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1380966 - Package metadata for Empathy (and others) list the wrong URL. https://bugzilla.redhat.com/show_bug.cgi?id=1380966 -------------------------------------------------------------------------------- ================================================================================ esniper-2.33.0-1.fc25 (FEDORA-2017-5a13f8c011) A lightweight console application for sniping eBay auctions -------------------------------------------------------------------------------- Update Information: Upstream issues: * \#715, \#716 new bid history page * \#718 modified signin mechanism. -------------------------------------------------------------------------------- ================================================================================ gnome-software-3.22.7-1.fc25 (FEDORA-2017-fd40615ad7) A software center for GNOME -------------------------------------------------------------------------------- Update Information: This stable release fixes a few minor flatpak issues and improves the layout for gnome-maps featured banner. -------------------------------------------------------------------------------- ================================================================================ golang-github-karlseguin-ccache-2.0.2-0.1.gita2d6215.fc25 (FEDORA-2017-ed9e4516b2) A golang LRU Cache for high concurrency -------------------------------------------------------------------------------- Update Information: First package for Fedora -------------------------------------------------------------------------------- References: [ 1 ] Bug #1418371 - Review Request: golang-github-karlseguin-ccache - A golang LRU Cache for high concurrency https://bugzilla.redhat.com/show_bug.cgi?id=1418371 -------------------------------------------------------------------------------- ================================================================================ gtk3-3.22.10-1.fc25 (FEDORA-2017-a08fb0f051) The GIMP ToolKit (GTK+), a library for creating GUIs for X -------------------------------------------------------------------------------- Update Information: gtk+ 3.22.10 release. Theme: Improve styling for flow boxes Bugs fixed: - 778905 Frame: documented flat style class is not usable - 779073 style flowbox tiles - 779074 style selectionmode checkboxes for flowbox - 779317 gtk_pad_controllerpad_set_action issue with incorrect assert - 779374 Unprovoked key repeat in gnome-terminal after in 3.22.9 - 779383 quartz: Let CSD windows be fullscreen - 779392 Implement backdrop for Quartz -------------------------------------------------------------------------------- ================================================================================ jasper-1.900.13-3.fc25 (FEDORA-2017-3dba8a70ce) Implementation of the JPEG-2000 standard, Part 1 -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2016-8654 Security fix for CVE-2016-9262 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1393882 - CVE-2016-9262 jasper: Multiple overflow vulnerabilities leading to use after free https://bugzilla.redhat.com/show_bug.cgi?id=1393882 [ 2 ] Bug #1399167 - CVE-2016-8654 jasper: Heap-based buffer overflow in QMFB code in JPC codec https://bugzilla.redhat.com/show_bug.cgi?id=1399167 -------------------------------------------------------------------------------- ================================================================================ jss-4.4.0-1.fc25 (FEDORA-2017-155b9d81d2) Java Security Services (JSS) -------------------------------------------------------------------------------- Update Information: Bugzilla Bug #1431937 - Rebase jss to 4.4.0 in Fedora 25+ -------------------------------------------------------------------------------- References: [ 1 ] Bug #1431937 - Rebase jss to 4.4.0 in Fedora 25+ https://bugzilla.redhat.com/show_bug.cgi?id=1431937 -------------------------------------------------------------------------------- ================================================================================ libreoffice-5.2.6.2-4.fc25 (FEDORA-2017-231cceb063) Free Software Productivity Suite -------------------------------------------------------------------------------- Update Information: * fix various glitches with latest gtk3 and wayland; drag and drop and popup positioning. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1431478 - Impress: font color picker appears far away from font color picker button https://bugzilla.redhat.com/show_bug.cgi?id=1431478 [ 2 ] Bug #1431540 - [abrt] libreoffice-core: (anonymous namespace)::signalHandlerFunction(): soffice.bin killed by SIGABRT https://bugzilla.redhat.com/show_bug.cgi?id=1431540 [ 3 ] Bug #1431476 - Impress: Moving slides copies instead of moving https://bugzilla.redhat.com/show_bug.cgi?id=1431476 -------------------------------------------------------------------------------- ================================================================================ magic-8.1.157-1.fc25 (FEDORA-2017-c6a95eec47) A very capable VLSI layout tool -------------------------------------------------------------------------------- Update Information: New version 8.1.157 is released. -------------------------------------------------------------------------------- ================================================================================ notmuch-0.24-1.fc25 (FEDORA-2017-0738494411) System for indexing, searching, and tagging email -------------------------------------------------------------------------------- Update Information: Latest upstream. -------------------------------------------------------------------------------- ================================================================================ openslp-2.0.0-10.fc25 (FEDORA-2017-47a4910f07) Open implementation of Service Location Protocol V2 -------------------------------------------------------------------------------- Update Information: Fix possible overflow in SLPFoldWhiteSpace, CVE-2016-7567 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1379988 - CVE-2016-7567 openslp: memory corruption due to possible overflow in SLPFoldWhiteSpace in common/slp_compare.c [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1379988 -------------------------------------------------------------------------------- ================================================================================ perl-Test-Harness-3.38-1.fc25 (FEDORA-2017-2ba3d59f13) Run Perl standard test scripts with statistics -------------------------------------------------------------------------------- Update Information: This release adds support for running tests with Perl that does not have "." in @INC path. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1431899 - perl-Test-Harness-3.38 is available https://bugzilla.redhat.com/show_bug.cgi?id=1431899 -------------------------------------------------------------------------------- ================================================================================ perl-namespace-sweep-0.006-1.fc25 (FEDORA-2017-42ac245c42) Sweep up imported subs in your classes -------------------------------------------------------------------------------- Update Information: -------------------------------------------------------------------------------- ================================================================================ python-ansible-tower-cli-3.1.1-1.fc25 (FEDORA-2017-e1299c3b1c) A CLI tool for Ansible Tower -------------------------------------------------------------------------------- Update Information: Update ---- update to 3.1 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1430960 - python-ansible-tower-cli-v3.1.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1430960 -------------------------------------------------------------------------------- ================================================================================ python-clyent-1.2.2-2.fc25 (FEDORA-2017-56f28322fc) Command line client library for posix and windows -------------------------------------------------------------------------------- Update Information: Clyent is a python command line utility library for binstar, binstar-build and chalmers. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1411510 - Review Request: python-clyent - Command line client library for posix and windows https://bugzilla.redhat.com/show_bug.cgi?id=1411510 -------------------------------------------------------------------------------- ================================================================================ python-maxminddb-1.3.0-1.fc25 (FEDORA-2017-3c785281a9) Reader for the MaxMind DB format -------------------------------------------------------------------------------- Update Information: Update to 1.3.0 (#1431895) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1431895 - python-maxminddb-1.3.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1431895 -------------------------------------------------------------------------------- ================================================================================ python-pyswip-0.2.3-2.git72771d9.fc25 (FEDORA-2017-7ec0b0998e) Python-SWI-Prolog bridge -------------------------------------------------------------------------------- Update Information: Initial package -------------------------------------------------------------------------------- References: [ 1 ] Bug #1413374 - Review Request: python-pyswip - Python-SWI-Prolog bridge https://bugzilla.redhat.com/show_bug.cgi?id=1413374 -------------------------------------------------------------------------------- ================================================================================ python-slugify-1.2.1-2.fc25 (FEDORA-2017-9bb80fbc5d) Returns Unicode slugs -------------------------------------------------------------------------------- Update Information: Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1431417 - Update python-slugify to 1.2.1 in f25 https://bugzilla.redhat.com/show_bug.cgi?id=1431417 -------------------------------------------------------------------------------- ================================================================================ qutebrowser-0.10.1-1.fc25 (FEDORA-2017-3c5082efbe) A keyboard-driven, vim-like browser based on PyQt5 and QtWebKit -------------------------------------------------------------------------------- Update Information: Rebased to 0.10.1 ---- Rebased to 0.10.0. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1430343 - qutebrowser-v0.10.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=1430343 -------------------------------------------------------------------------------- ================================================================================ recoll-1.23.1-1.fc25 (FEDORA-2017-b7852652ad) Desktop full text search tool with Qt GUI -------------------------------------------------------------------------------- Update Information: Update to latest upstream release recoll 1.23.1. ---- Advanced search did not work. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1431437 - recoll-1.23.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1431437 [ 2 ] Bug #1419360 - Recoll advanced search does not work https://bugzilla.redhat.com/show_bug.cgi?id=1419360 -------------------------------------------------------------------------------- ================================================================================ sysbench-1.0.4-1.fc25 (FEDORA-2017-09fadc10ed) System performance benchmark -------------------------------------------------------------------------------- Update Information: Update to version 1.0.x : - Lua scripts instead of hard-coded C tests for database ("oltp") benchmarks + ability to create custom workloads - much better single-threaded performance - much better scalability - improvements and cleanups in command line syntax and options - latency histograms in cumulative statistic reports -report hooks to print statistics in custom formats (CSV/JSON/XML/etc.) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1419273 - Rebase to the version 1.0.0 https://bugzilla.redhat.com/show_bug.cgi?id=1419273 [ 2 ] Bug #1424670 - sysbench-1.0.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=1424670 -------------------------------------------------------------------------------- ================================================================================ tomboy-1.15.7-1.fc25 (FEDORA-2017-e1c8985afb) Note-taking application -------------------------------------------------------------------------------- Update Information: Update tomboy to 1.15.7. -------------------------------------------------------------------------------- ================================================================================ tomcatjss-7.2.0-2.fc25 (FEDORA-2017-2fc4861133) JSSE implementation using JSS for Tomcat -------------------------------------------------------------------------------- Update Information: tomcatjss Pagure Issue #6 - Rebase tomcatjss to 7.2.0 in Fedora 25+ -------------------------------------------------------------------------------- ================================================================================ twirssi-2.6.4-1.fc25 (FEDORA-2017-3a537f8d1f) An Irssi script to interact with Twitter -------------------------------------------------------------------------------- Update Information: Update to 2.6.4 (bz#1377132) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1377132 - twirssi generates warning: unescaped left brace in regex is deprecated https://bugzilla.redhat.com/show_bug.cgi?id=1377132 -------------------------------------------------------------------------------- ================================================================================ xkb-switch-1.5.0-1.20160925gitda4ef22.fc25 (FEDORA-2017-0d0c3f178e) Switch your X keyboard layouts from the command line -------------------------------------------------------------------------------- Update Information: Update to 1.5.0 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1431397 - xkb-switch-1.5.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1431397 -------------------------------------------------------------------------------- _______________________________________________ test mailing list -- test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to test-leave@xxxxxxxxxxxxxxxxxxxxxxx