The following Fedora 24 Security updates need testing: Age URL 146 https://bodhi.fedoraproject.org/updates/FEDORA-2016-26f9817b08 squid-3.5.23-1.fc24 139 https://bodhi.fedoraproject.org/updates/FEDORA-2016-eaaa9c4a08 exim-4.87.1-1.fc24 101 https://bodhi.fedoraproject.org/updates/FEDORA-2017-ece16ba6ba runc-1.0.0-5.rc2.gitc91b5be.fc24 82 https://bodhi.fedoraproject.org/updates/FEDORA-2017-4b176c1694 redis-3.2.8-1.fc24 52 https://bodhi.fedoraproject.org/updates/FEDORA-2017-0f5fe1913f sane-backends-1.0.25-7.fc24 44 https://bodhi.fedoraproject.org/updates/FEDORA-2017-ec01954fe9 chromium-57.0.2987.133-1.fc24 38 https://bodhi.fedoraproject.org/updates/FEDORA-2017-8330a48ca2 python-XStatic-jquery-ui-1.12.0.1-1.fc24 17 https://bodhi.fedoraproject.org/updates/FEDORA-2017-0b6da97aa5 squirrelmail-1.4.22-19.fc24 11 https://bodhi.fedoraproject.org/updates/FEDORA-2017-c3ce061ea7 lynis-2.5.0-1.fc24 10 https://bodhi.fedoraproject.org/updates/FEDORA-2017-7a0e2d58f8 thunderbird-52.1.0-1.fc24 8 https://bodhi.fedoraproject.org/updates/FEDORA-2017-ebe41f3fd7 python-fedora-0.9.0-3.fc24 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-01a7989fc0 git-2.7.5-1.fc24 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-8b4898ce81 kdelibs-4.14.30-2.fc24 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-aceb424894 smb4k-1.2.2-3.fc24 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-da0b00fd64 jasper-1.900.13-4.fc24 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-4de07172f4 postgresql-9.5.7-1.fc24 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-947da3daa5 chicken-4.12.0-2.fc24 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-eaab38c11e deluge-1.3.15-1.fc24 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-3f2d5790d2 pcmanfm-1.2.5-2.fc24 menu-cache-1.0.2-4.D20170514git56f6668459.fc24 lxterminal-0.3.0-3.fc24 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-fc10e3165a FlightGear-2016.1.2-6.fc24 The following Fedora 24 Critical Path updates have yet to be approved: Age URL 34 https://bodhi.fedoraproject.org/updates/FEDORA-2017-ae0e285fc1 libdrm-2.4.79-1.fc24 25 https://bodhi.fedoraproject.org/updates/FEDORA-2017-e1905fd566 koji-1.12.0-2.fc24 13 https://bodhi.fedoraproject.org/updates/FEDORA-2017-3a209288cf audit-2.7.6-1.fc24 11 https://bodhi.fedoraproject.org/updates/FEDORA-2017-94e1a0cb77 libXdmcp-1.1.2-6.fc24 11 https://bodhi.fedoraproject.org/updates/FEDORA-2017-80497255ca libICE-1.0.9-9.fc24 11 https://bodhi.fedoraproject.org/updates/FEDORA-2017-a16494458f rsync-3.1.2-3.fc24 10 https://bodhi.fedoraproject.org/updates/FEDORA-2017-7a0e2d58f8 thunderbird-52.1.0-1.fc24 5 https://bodhi.fedoraproject.org/updates/FEDORA-2017-9a479a2cff kernel-4.10.15-100.fc24 5 https://bodhi.fedoraproject.org/updates/FEDORA-2017-1fa6f4f9bf cups-2.1.4-7.fc24 5 https://bodhi.fedoraproject.org/updates/FEDORA-2017-1e4ebe1303 hwdata-0.300-1.fc24 5 https://bodhi.fedoraproject.org/updates/FEDORA-2017-2dde77a642 python-beautifulsoup4-4.6.0-1.fc24 5 https://bodhi.fedoraproject.org/updates/FEDORA-2017-6dfa4501e8 qt5-qtbase-5.6.2-4.fc24 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-830e540c85 python3-3.5.3-6.fc24 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-da0b00fd64 jasper-1.900.13-4.fc24 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-05913d5475 python-2.7.13-2.fc24 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-ea08548d1a vim-8.0.596-1.fc24 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-8b4898ce81 kdelibs-4.14.30-2.fc24 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-01a7989fc0 git-2.7.5-1.fc24 3 https://bodhi.fedoraproject.org/updates/FEDORA-2017-3fa1357529 webkitgtk4-2.16.2-1.fc24 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-3f2d5790d2 pcmanfm-1.2.5-2.fc24 menu-cache-1.0.2-4.D20170514git56f6668459.fc24 lxterminal-0.3.0-3.fc24 The following builds have been pushed to Fedora 24 updates-testing FlightGear-2016.1.2-6.fc24 lxterminal-0.3.0-3.fc24 magic-8.1.166-1.fc24 menu-cache-1.0.2-4.D20170514git56f6668459.fc24 pcmanfm-1.2.5-2.fc24 perl-Devel-PPPort-3.36-1.fc24 perl-IPC-Cmd-0.98-1.fc24 perl-Inline-C-0.77-1.fc24 perl-Net-HTTP-6.15-1.fc24 php-egulias-email-validator-1.2.13-3.fc24 php-gitter-0.3.0-8.fc24 php-gliph-0.1.8-7.fc24 php-guzzlehttp-guzzle-5.3.1-3.fc24 php-guzzlehttp-ringphp-1.1.0-9.fc24 php-guzzlehttp-streams-3.0.0-9.fc24 python36-3.6.1-1.fc24 qmapshack-1.8.1-1.fc24 Details about builds: ================================================================================ FlightGear-2016.1.2-6.fc24 (FEDORA-2017-fc10e3165a) The FlightGear Flight Simulator -------------------------------------------------------------------------------- Update Information: This updates fixes a security bug in the route manager, to prevent it from overwriting arbitrary files (CVE-2017-8921) -------------------------------------------------------------------------------- ================================================================================ lxterminal-0.3.0-3.fc24 (FEDORA-2017-3f2d5790d2) Desktop-independent VTE-based terminal emulator -------------------------------------------------------------------------------- Update Information: A potential security flaw is found on LXDE products, which create socket under /tmp with some predictable names, which may leads to DOS. The security flow on lxterminal is now assigned as CVE-2016-10369. Some other components also had similar issues. These new rpms should fix these issues. At least relogin is required to make this fix effect. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1449114 - CVE-2016-10369 lxterminal: Insecure use of /tmp for a socket file [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1449114 -------------------------------------------------------------------------------- ================================================================================ magic-8.1.166-1.fc24 (FEDORA-2017-c0a6dc5d7f) A very capable VLSI layout tool -------------------------------------------------------------------------------- Update Information: New version 8.1.166 is released. -------------------------------------------------------------------------------- ================================================================================ menu-cache-1.0.2-4.D20170514git56f6668459.fc24 (FEDORA-2017-3f2d5790d2) Caching mechanism for freedesktop.org compliant menus -------------------------------------------------------------------------------- Update Information: A potential security flaw is found on LXDE products, which create socket under /tmp with some predictable names, which may leads to DOS. The security flow on lxterminal is now assigned as CVE-2016-10369. Some other components also had similar issues. These new rpms should fix these issues. At least relogin is required to make this fix effect. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1449114 - CVE-2016-10369 lxterminal: Insecure use of /tmp for a socket file [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1449114 -------------------------------------------------------------------------------- ================================================================================ pcmanfm-1.2.5-2.fc24 (FEDORA-2017-3f2d5790d2) Extremly fast and lightweight file manager -------------------------------------------------------------------------------- Update Information: A potential security flaw is found on LXDE products, which create socket under /tmp with some predictable names, which may leads to DOS. The security flow on lxterminal is now assigned as CVE-2016-10369. Some other components also had similar issues. These new rpms should fix these issues. At least relogin is required to make this fix effect. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1449114 - CVE-2016-10369 lxterminal: Insecure use of /tmp for a socket file [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1449114 -------------------------------------------------------------------------------- ================================================================================ perl-Devel-PPPort-3.36-1.fc24 (FEDORA-2017-1e4e09edce) Perl Pollution Portability header generator -------------------------------------------------------------------------------- Update Information: This release fixes building on Perl without "." in @INC path. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1450650 - perl-Devel-PPPort-3.36 is available https://bugzilla.redhat.com/show_bug.cgi?id=1450650 -------------------------------------------------------------------------------- ================================================================================ perl-IPC-Cmd-0.98-1.fc24 (FEDORA-2017-e90bd93b0e) Finding and running system commands made easy -------------------------------------------------------------------------------- Update Information: This release fixes can_run() test not to search working directory. It also adds wait_loop_callback for run_forked(). -------------------------------------------------------------------------------- References: [ 1 ] Bug #1450538 - perl-IPC-Cmd-0.98 is available https://bugzilla.redhat.com/show_bug.cgi?id=1450538 -------------------------------------------------------------------------------- ================================================================================ perl-Inline-C-0.77-1.fc24 (FEDORA-2017-dbd794e1f5) Write Perl subroutines in C -------------------------------------------------------------------------------- Update Information: This release fixes tests and updates documentation. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1450537 - perl-Inline-C-0.77 is available https://bugzilla.redhat.com/show_bug.cgi?id=1450537 -------------------------------------------------------------------------------- ================================================================================ perl-Net-HTTP-6.15-1.fc24 (FEDORA-2017-5d411c1588) Low-level HTTP connection (client) -------------------------------------------------------------------------------- Update Information: This release fixes a test. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1450543 - perl-Net-HTTP-6.15 is available https://bugzilla.redhat.com/show_bug.cgi?id=1450543 -------------------------------------------------------------------------------- ================================================================================ php-egulias-email-validator-1.2.13-3.fc24 (FEDORA-2017-07e3422d39) A library for validating emails -------------------------------------------------------------------------------- Update Information: Switch autoloader to `php-fedora-autoloader` -------------------------------------------------------------------------------- ================================================================================ php-gitter-0.3.0-8.fc24 (FEDORA-2017-07e3422d39) Object oriented interaction with Git repositories -------------------------------------------------------------------------------- Update Information: Switch autoloader to `php-fedora-autoloader` -------------------------------------------------------------------------------- ================================================================================ php-gliph-0.1.8-7.fc24 (FEDORA-2017-07e3422d39) A graph library for PHP -------------------------------------------------------------------------------- Update Information: Switch autoloader to `php-fedora-autoloader` -------------------------------------------------------------------------------- ================================================================================ php-guzzlehttp-guzzle-5.3.1-3.fc24 (FEDORA-2017-07e3422d39) PHP HTTP client and webservice framework -------------------------------------------------------------------------------- Update Information: Switch autoloader to `php-fedora-autoloader` -------------------------------------------------------------------------------- ================================================================================ php-guzzlehttp-ringphp-1.1.0-9.fc24 (FEDORA-2017-07e3422d39) Simple handler system used to power clients and servers in PHP -------------------------------------------------------------------------------- Update Information: Switch autoloader to `php-fedora-autoloader` -------------------------------------------------------------------------------- ================================================================================ php-guzzlehttp-streams-3.0.0-9.fc24 (FEDORA-2017-07e3422d39) Provides a simple abstraction over streams of data -------------------------------------------------------------------------------- Update Information: Switch autoloader to `php-fedora-autoloader` -------------------------------------------------------------------------------- ================================================================================ python36-3.6.1-1.fc24 (FEDORA-2017-97b16fe12b) Version 3.6 of the Python programming language aka Python 3000 -------------------------------------------------------------------------------- Update Information: Update to 3.6.1 -------------------------------------------------------------------------------- ================================================================================ qmapshack-1.8.1-1.fc24 (FEDORA-2017-ceeab41674) GPS mapping and management tool -------------------------------------------------------------------------------- Update Information: - updated to 1.8.1 - https://bitbucket.org/maproom/qmapshack/raw/87b93cd14edc78c 57da70b66b33b013965d6dfe2/changelog.txt -------------------------------------------------------------------------------- References: [ 1 ] Bug #1450653 - qmapshack-1.8.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=1450653 -------------------------------------------------------------------------------- _______________________________________________ test mailing list -- test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to test-leave@xxxxxxxxxxxxxxxxxxxxxxx