Fedora 26 updates-testing report

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



The following Fedora 26 Security updates need testing:
 Age  URL
  80  https://bodhi.fedoraproject.org/updates/FEDORA-2017-1bf5a0ce01   python-XStatic-jquery-ui-1.12.0.1-2.fc26
  19  https://bodhi.fedoraproject.org/updates/FEDORA-2017-2522df3526   nodejs-brace-expansion-1.1.7-1.fc26
  15  https://bodhi.fedoraproject.org/updates/FEDORA-2017-794c18b62d   tomcat-8.0.44-1.fc26
   4  https://bodhi.fedoraproject.org/updates/FEDORA-2017-5c6a9b07a3   xen-4.8.1-4.fc26
   4  https://bodhi.fedoraproject.org/updates/FEDORA-2017-2df90e929a   drupal8-8.3.4-1.fc26
   2  https://bodhi.fedoraproject.org/updates/FEDORA-2017-5c8a4ebccd   zabbix-3.0.9-1.fc26
   1  https://bodhi.fedoraproject.org/updates/FEDORA-2017-0eea793538   globus-xio-5.16-1.fc26 globus-net-manager-0.17-1.fc26 globus-gass-cache-program-6.7-1.fc26 globus-gass-copy-9.27-1.fc26 globus-gssapi-gsi-12.16-1.fc26 globus-gram-job-manager-14.36-1.fc26 globus-gridftp-server-12.2-1.fc26 globus-io-11.9-1.fc26 globus-xio-gsi-driver-3.11-1.fc26 globus-xio-pipe-driver-3.10-1.fc26 globus-xio-udt-driver-1.27-1.fc26 myproxy-6.1.28-1.fc26 globus-ftp-client-8.35-2.fc26
   1  https://bodhi.fedoraproject.org/updates/FEDORA-2017-6874606e19   drupal7-7.56-1.fc26
   0  https://bodhi.fedoraproject.org/updates/FEDORA-2017-28387b61fd   php-horde-Horde-Image-2.5.1-1.fc26
   0  https://bodhi.fedoraproject.org/updates/FEDORA-2017-64f47504e4   ocaml-4.04.0-10.fc26


The following Fedora 26 Critical Path updates have yet to be approved:
 Age URL
   7  https://bodhi.fedoraproject.org/updates/FEDORA-2017-0dec8a74c5   pungi-4.1.16-3.fc26
   4  https://bodhi.fedoraproject.org/updates/FEDORA-2017-83bfe1d789   flatpak-0.9.6-1.fc26
   4  https://bodhi.fedoraproject.org/updates/FEDORA-2017-0d905dbef8   util-linux-2.30-1.fc26
   4  https://bodhi.fedoraproject.org/updates/FEDORA-2017-5c6a9b07a3   xen-4.8.1-4.fc26
   3  https://bodhi.fedoraproject.org/updates/FEDORA-2017-59ca80e001   libguestfs-1.36.5-1.fc26
   0  https://bodhi.fedoraproject.org/updates/FEDORA-2017-3aec86381a   anaconda-26.21.10-1.fc26 anaconda-user-help-26.1-5.fc26
   0  https://bodhi.fedoraproject.org/updates/FEDORA-2017-058a13ad72   perl-5.24.1-392.fc26
   0  https://bodhi.fedoraproject.org/updates/FEDORA-2017-1976d4f040   python2-2.7.13-11.fc26
   0  https://bodhi.fedoraproject.org/updates/FEDORA-2017-4f722b12ce   perl-Scalar-List-Utils-1.48-1.fc26


The following builds have been pushed to Fedora 26 updates-testing

    CImg-202-1.fc26
    amsynth-1.8.0-1.fc26
    anaconda-26.21.10-1.fc26
    anaconda-user-help-26.1-5.fc26
    clevis-5-1.fc26
    consul-0.7.2-0.1.gita9afa0c.fc26
    diorite-4.5.0-1.fc26
    drumkv1-0.8.3-1.fc26
    freerdp-2.0.0-28.20170623git9904c32.fc26
    gmsh-3.0.3-1.fc26
    gnome-backgrounds-3.24.0-3.fc26
    go-i18n-1.8.0-2.fc26
    gofed-1.0.0-0.10.rc1.fc26
    golang-github-docker-go-connections-0.1.2-0.4.git6e4c13d.fc26
    golang-github-fsouza-go-dockerclient-0.2.1-19.git2350d7b.fc26
    golang-github-mistifyio-go-zfs-0-0.5.git1b4ae6f.fc26
    golang-github-pelletier-go-buffruneio-0.2.0-0.1.gitc37440a.fc26
    golang-github-pelletier-go-toml-1.0.0-0.1.git5ccdfb1.fc26
    golang-googlecode-go-exp-0-0.14.gitd00e13e.fc26
    htmlcleaner-2.2.1-10.fc26
    keepassxc-2.2.0-1.fc26
    libmtp-1.1.12-1.fc26
    libtomcrypt-1.17-31.20160123git912eff4.fc26
    libtommath-1.0-8.fc26
    liferea-1.12-0.1.rc3.fc26
    llvm3.9-3.9.1-9.fc26
    nemo-3.4.4-2.fc26
    nuvola-app-amazon-cloud-player-5.4-6.fc26
    nuvolasdk-4.5.0-1.fc26
    ocaml-4.04.0-10.fc26
    oci-register-machine-0-3.8.gitbf6b0f2.fc26
    pdns-4.0.4-3.fc26
    perl-5.24.1-392.fc26
    perl-MetaCPAN-Client-2.017000-1.fc26
    perl-Parse-ErrorString-Perl-0.26-1.fc26
    perl-Scalar-List-Utils-1.48-1.fc26
    php-horde-Horde-Image-2.5.1-1.fc26
    php-phpunit-PHPUnit-5.7.21-1.fc26
    php-theseer-autoload-1.24.1-1.fc26
    po4a-0.51-1.fc26
    python-fedimg-0.7.3-2.fc26
    python-moksha-hub-1.5.2-1.fc26
    python-sqlalchemy-1.1.11-1.fc26
    python2-2.7.13-11.fc26
    python35-3.5.3-2.fc26
    remmina-1.2.0-0.37.20170622git7e82138.fc26
    samplv1-0.8.3-1.fc26
    sane-backends-1.0.27-2.fc26
    spandsp-0.0.6-3.fc26
    synthv1-0.8.3-1.fc26
    xastir-2.0.8-4.fc26
    xchat-2.8.8-34.fc26

Details about builds:


================================================================================
 CImg-202-1.fc26 (FEDORA-2017-1195d1c5f5)
 C++ Template Image Processing Toolkit
--------------------------------------------------------------------------------
Update Information:

Update CImg to v202, also resolves legal issue with non-free embedded image.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1295246 - CImg contain problematic content
        https://bugzilla.redhat.com/show_bug.cgi?id=1295246
--------------------------------------------------------------------------------


================================================================================
 amsynth-1.8.0-1.fc26 (FEDORA-2017-77d78155ba)
 A classic synthesizer with dual oscillators
--------------------------------------------------------------------------------
Update Information:

New upstream release
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1464813 - amsynth-1.8.0 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1464813
--------------------------------------------------------------------------------


================================================================================
 anaconda-26.21.10-1.fc26 (FEDORA-2017-3aec86381a)
 Graphical system installer
--------------------------------------------------------------------------------
Update Information:

Mostly fixes.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1463297 - Server install fails on armhfp - "/boot file system cannot be of type xfs"
        https://bugzilla.redhat.com/show_bug.cgi?id=1463297
  [ 2 ] Bug #1464297 - anaconda is disabling ipv6 even though not asked to
        https://bugzilla.redhat.com/show_bug.cgi?id=1464297
  [ 3 ] Bug #1413813 - Non-ASCII password warning claims "Press Done to continue", but you can't
        https://bugzilla.redhat.com/show_bug.cgi?id=1413813
  [ 4 ] Bug #1439565 - No help in blivet-gui
        https://bugzilla.redhat.com/show_bug.cgi?id=1439565
--------------------------------------------------------------------------------


================================================================================
 anaconda-user-help-26.1-5.fc26 (FEDORA-2017-3aec86381a)
 Content for the Anaconda built-in help system
--------------------------------------------------------------------------------
Update Information:

Mostly fixes.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1463297 - Server install fails on armhfp - "/boot file system cannot be of type xfs"
        https://bugzilla.redhat.com/show_bug.cgi?id=1463297
  [ 2 ] Bug #1464297 - anaconda is disabling ipv6 even though not asked to
        https://bugzilla.redhat.com/show_bug.cgi?id=1464297
  [ 3 ] Bug #1413813 - Non-ASCII password warning claims "Press Done to continue", but you can't
        https://bugzilla.redhat.com/show_bug.cgi?id=1413813
  [ 4 ] Bug #1439565 - No help in blivet-gui
        https://bugzilla.redhat.com/show_bug.cgi?id=1439565
--------------------------------------------------------------------------------


================================================================================
 clevis-5-1.fc26 (FEDORA-2017-eba47499b6)
 Automated decryption framework
--------------------------------------------------------------------------------
Update Information:

New upstream release
--------------------------------------------------------------------------------


================================================================================
 consul-0.7.2-0.1.gita9afa0c.fc26 (FEDORA-2017-5577cdca89)
 Tool for service discovery, monitoring and configuration http://www.consul.io
--------------------------------------------------------------------------------
Update Information:

Update to v7.2.0
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1348875 - consul-0.6.4 available
        https://bugzilla.redhat.com/show_bug.cgi?id=1348875
--------------------------------------------------------------------------------


================================================================================
 diorite-4.5.0-1.fc26 (FEDORA-2017-1368829f63)
 Utility and widget library for Nuvola Player
--------------------------------------------------------------------------------
Update Information:

- Update to stable 4.5.0 - Dropped wscript.patch
--------------------------------------------------------------------------------


================================================================================
 drumkv1-0.8.3-1.fc26 (FEDORA-2017-def83ad99f)
 An old-school drum-kit sampler
--------------------------------------------------------------------------------
Update Information:

Update to 0.8.3 of the v1 suite of audio plugins
--------------------------------------------------------------------------------


================================================================================
 freerdp-2.0.0-28.20170623git9904c32.fc26 (FEDORA-2017-294ac891a3)
 Free implementation of the Remote Desktop Protocol (RDP)
--------------------------------------------------------------------------------
Update Information:

Latest 2.0 snapshot of FreeRP and latest Remmina snapshot with lots of bugfixes
(especially memory leaks).
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1464846 - [abrt] remmina: transport_ssl_cb(): remmina killed by signal 11
        https://bugzilla.redhat.com/show_bug.cgi?id=1464846
  [ 2 ] Bug #1464442 - [abrt] remmina: do_validate_rows(): remmina killed by SIGSEGV
        https://bugzilla.redhat.com/show_bug.cgi?id=1464442
  [ 3 ] Bug #1459044 - [abrt] remmina: pango_glyph_item_iter_next_cluster(): remmina killed by SIGABRT
        https://bugzilla.redhat.com/show_bug.cgi?id=1459044
  [ 4 ] Bug #1455555 - [abrt] remmina: remmina_rdp_file_import_channel(): remmina killed by SIGSEGV
        https://bugzilla.redhat.com/show_bug.cgi?id=1455555
  [ 5 ] Bug #1451489 - [abrt] remmina: remmina_rdp_cliprdr_request_data(): remmina killed by signal 11
        https://bugzilla.redhat.com/show_bug.cgi?id=1451489
  [ 6 ] Bug #1459803 - [abrt] freerdp: xfreerdp killed by SIGSEGV
        https://bugzilla.redhat.com/show_bug.cgi?id=1459803
--------------------------------------------------------------------------------


================================================================================
 gmsh-3.0.3-1.fc26 (FEDORA-2017-20df98ee3a)
 A three-dimensional finite element mesh generator
--------------------------------------------------------------------------------
Update Information:

Update to 3.0.3, see http://gmsh.info/CHANGELOG.txt for details.
--------------------------------------------------------------------------------


================================================================================
 gnome-backgrounds-3.24.0-3.fc26 (FEDORA-2017-b9417fa936)
 Desktop backgrounds packaged with the GNOME desktop
--------------------------------------------------------------------------------
Update Information:

This update adds obsoletes to help with the gnome-backgrounds and gnome-
backgrounds-extras package split, making sure that _both_ packages get installed
for upgrades.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1464555 - package should provide Obsoletes:
        https://bugzilla.redhat.com/show_bug.cgi?id=1464555
--------------------------------------------------------------------------------


================================================================================
 go-i18n-1.8.0-2.fc26 (FEDORA-2017-562e7e3f38)
 Translate Go programs into multiple languages
--------------------------------------------------------------------------------
Update Information:

Add go-toml dependency
--------------------------------------------------------------------------------


================================================================================
 gofed-1.0.0-0.10.rc1.fc26 (FEDORA-2017-b10f777cdf)
 Tool for development of golang devel packages
--------------------------------------------------------------------------------
Update Information:

Exclude ppc64
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1465019 - Tracker for gofed
        https://bugzilla.redhat.com/show_bug.cgi?id=1465019
--------------------------------------------------------------------------------


================================================================================
 golang-github-docker-go-connections-0.1.2-0.4.git6e4c13d.fc26 (FEDORA-2017-b5295621ba)
 Utility package to work with network connections
--------------------------------------------------------------------------------
Update Information:

Exclude ppc64
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1465046 - Tracker for golang-github-docker-go-connections
        https://bugzilla.redhat.com/show_bug.cgi?id=1465046
--------------------------------------------------------------------------------


================================================================================
 golang-github-fsouza-go-dockerclient-0.2.1-19.git2350d7b.fc26 (FEDORA-2017-6fe6be854e)
 Client for the Docker remote API
--------------------------------------------------------------------------------
Update Information:

Exlcude ppc64 arch
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1215656 - Tracker for golang-github-fsouza-go-dockerclient
        https://bugzilla.redhat.com/show_bug.cgi?id=1215656
--------------------------------------------------------------------------------


================================================================================
 golang-github-mistifyio-go-zfs-0-0.5.git1b4ae6f.fc26 (FEDORA-2017-45f57bac29)
 Go wrappers for ZFS commands
--------------------------------------------------------------------------------
Update Information:

Exclude aarch64 architecture
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1465016 - Tracker for golang-github-mistifyio-go-zfs
        https://bugzilla.redhat.com/show_bug.cgi?id=1465016
--------------------------------------------------------------------------------


================================================================================
 golang-github-pelletier-go-buffruneio-0.2.0-0.1.gitc37440a.fc26 (FEDORA-2017-7d1856da70)
 Wrapper around bufio to provide buffered runes access with unlimited unreads
--------------------------------------------------------------------------------
Update Information:

Bump to v0.2.0
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1464885 - Tracker for golang-github-pelletier-go-buffruneio
        https://bugzilla.redhat.com/show_bug.cgi?id=1464885
  [ 2 ] Bug #1430564 - golang-github-pelletier-go-buffruneio-v0.2.0 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1430564
--------------------------------------------------------------------------------


================================================================================
 golang-github-pelletier-go-toml-1.0.0-0.1.git5ccdfb1.fc26 (FEDORA-2017-7373575f2f)
 Go library for the TOML language
--------------------------------------------------------------------------------
Update Information:

Bump to v1.0.0
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1464882 - Tracker for golang-github-pelletier-go-toml
        https://bugzilla.redhat.com/show_bug.cgi?id=1464882
  [ 2 ] Bug #1430562 - golang-github-pelletier-go-toml-v1.0.0 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1430562
--------------------------------------------------------------------------------


================================================================================
 golang-googlecode-go-exp-0-0.14.gitd00e13e.fc26 (FEDORA-2017-569dec8ec9)
 Experimental tools and packages for Go
--------------------------------------------------------------------------------
Update Information:

Remove superfluous dependencies
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1456243 - golang-googlecode-go-exp: FTBFS due to missing dependencies on Fedora 26+
        https://bugzilla.redhat.com/show_bug.cgi?id=1456243
  [ 2 ] Bug #1423669 - golang-googlecode-go-exp: FTBFS in rawhide
        https://bugzilla.redhat.com/show_bug.cgi?id=1423669
--------------------------------------------------------------------------------


================================================================================
 htmlcleaner-2.2.1-10.fc26 (FEDORA-2017-3e80afd506)
 HTML parser written in Java
--------------------------------------------------------------------------------
Update Information:

* Fix build on recent Fedora releases
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1423721 - htmlcleaner: FTBFS in rawhide
        https://bugzilla.redhat.com/show_bug.cgi?id=1423721
  [ 2 ] Bug #1307624 - htmlcleaner: FTBFS in rawhide
        https://bugzilla.redhat.com/show_bug.cgi?id=1307624
--------------------------------------------------------------------------------


================================================================================
 keepassxc-2.2.0-1.fc26 (FEDORA-2017-b6bef5a68d)
 Cross-platform password manager
--------------------------------------------------------------------------------
Update Information:

2.2.0 release. Enabled yubikey support
--------------------------------------------------------------------------------


================================================================================
 libmtp-1.1.12-1.fc26 (FEDORA-2017-95639cb987)
 A software library for MTP media players
--------------------------------------------------------------------------------
Update Information:

Support lots of new MTP devices.
--------------------------------------------------------------------------------


================================================================================
 libtomcrypt-1.17-31.20160123git912eff4.fc26 (FEDORA-2017-369b58321a)
 A comprehensive, portable cryptographic toolkit
--------------------------------------------------------------------------------
Update Information:

Update release to packaging guidelines format, update URL
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1463608 - libtommath + libtomcrypt: Wrong URL in .spec
        https://bugzilla.redhat.com/show_bug.cgi?id=1463608
  [ 2 ] Bug #1463547 - libtommath + libtomcrypt: Wrong URL in .spec
        https://bugzilla.redhat.com/show_bug.cgi?id=1463547
--------------------------------------------------------------------------------


================================================================================
 libtommath-1.0-8.fc26 (FEDORA-2017-369b58321a)
 A portable number theoretic multiple-precision integer library
--------------------------------------------------------------------------------
Update Information:

Update release to packaging guidelines format, update URL
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1463608 - libtommath + libtomcrypt: Wrong URL in .spec
        https://bugzilla.redhat.com/show_bug.cgi?id=1463608
  [ 2 ] Bug #1463547 - libtommath + libtomcrypt: Wrong URL in .spec
        https://bugzilla.redhat.com/show_bug.cgi?id=1463547
--------------------------------------------------------------------------------


================================================================================
 liferea-1.12-0.1.rc3.fc26 (FEDORA-2017-0a6563c401)
 An RSS/RDF feed reader
--------------------------------------------------------------------------------
Update Information:

Update to 1.12-rc3
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1389172 - Update liferea to 1.12-rc2
        https://bugzilla.redhat.com/show_bug.cgi?id=1389172
--------------------------------------------------------------------------------


================================================================================
 llvm3.9-3.9.1-9.fc26 (FEDORA-2017-f60309d380)
 The Low Level Virtual Machine Version 3.9
--------------------------------------------------------------------------------
Update Information:

Add more patches needed by Julia and enable those who weren't enabled.
--------------------------------------------------------------------------------


================================================================================
 nemo-3.4.4-2.fc26 (FEDORA-2017-b755b6b05d)
 File manager for Cinnamon
--------------------------------------------------------------------------------
Update Information:

- Fix control-n (new window) action callback when used from the desktop process
- it should launch the preferred file manager instead of attempting to spawn a
window itself.
--------------------------------------------------------------------------------


================================================================================
 nuvola-app-amazon-cloud-player-5.4-6.fc26 (FEDORA-2017-565c89ed4f)
 Amazon Cloud Player for Nuvola Player 3
--------------------------------------------------------------------------------
Update Information:

- dropped sed command - remove
%%{_datadir}/icons/*/*/*/nuvolaplayer3_amazon_cloud_player.*
--------------------------------------------------------------------------------


================================================================================
 nuvolasdk-4.5.0-1.fc26 (FEDORA-2017-2f9fe89c4b)
 SDK for building Nuvola Player's web app scripts
--------------------------------------------------------------------------------
Update Information:

Update to 4.5.0-1
--------------------------------------------------------------------------------


================================================================================
 ocaml-4.04.0-10.fc26 (FEDORA-2017-64f47504e4)
 OCaml compiler and programming environment
--------------------------------------------------------------------------------
Update Information:

Fix: ocaml: Insufficient sanitisation allows privilege escalation for setuid
binaries (CVE-2017-9772) (RHBZ#1464920).
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1464920 - CVE-2017-9772 ocaml: Insufficient sanitisation allows privilege escalation for setuid binaries
        https://bugzilla.redhat.com/show_bug.cgi?id=1464920
--------------------------------------------------------------------------------


================================================================================
 oci-register-machine-0-3.8.gitbf6b0f2.fc26 (FEDORA-2017-a8f83e371e)
 Golang binary to register OCI containers with systemd-machined
--------------------------------------------------------------------------------
Update Information:

oci-register-machine has a bug where it can not terminate containers with longer
then 32 character ids.  These packages fix this issue.
--------------------------------------------------------------------------------


================================================================================
 pdns-4.0.4-3.fc26 (FEDORA-2017-fa28aa785a)
 A modern, advanced and high performance authoritative-only nameserver
--------------------------------------------------------------------------------
Update Information:

- Update to 4.0.4  Release notes: https://blog.powerdns.com/2017/06/23/powerdns-
authoritative-server-4-0-4-released/
--------------------------------------------------------------------------------


================================================================================
 perl-5.24.1-392.fc26 (FEDORA-2017-058a13ad72)
 Practical Extraction and Report Language
--------------------------------------------------------------------------------
Update Information:

This release fixes a memory wrap in sv_vcatpvfn_flags(), a crash when calling a
subroutine from a stash, an improper cast of a negative integer to an unsigned
8-bit type, cloning :via handles on a thread creation, glob UTF-8 flag on a glob
reassignment, a buffer overflow in my_atof2(), checks for tainted directory in
$ENV{PATH} if a backslash escape presents, handling backslashes in PATH
environment variable when executing "perl -S", a conditional jump on
uninitilized memory in re_intuit_start(), and spurious "Assuming NOT a POSIX
class" warnings. It also makes File::Glob more resistant against degenerative
matching. It also adds "perl-interpreter" RPM dependency symbol to ease reusing
spec files from Fedora 27.
--------------------------------------------------------------------------------


================================================================================
 perl-MetaCPAN-Client-2.017000-1.fc26 (FEDORA-2017-e15b305ae5)
 A comprehensive, DWIM-featured client to the MetaCPAN API
--------------------------------------------------------------------------------
Update Information:

Current upstream maintenance release.
--------------------------------------------------------------------------------


================================================================================
 perl-Parse-ErrorString-Perl-0.26-1.fc26 (FEDORA-2017-4643857e4f)
 Module for parsing error messages
--------------------------------------------------------------------------------
Update Information:

Updated to the latest version  ----  This release corrects misspellings in the
documentation.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1464674 - perl-Parse-ErrorString-Perl-0.26 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1464674
  [ 2 ] Bug #1464431 - perl-Parse-ErrorString-Perl-0.24 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1464431
--------------------------------------------------------------------------------


================================================================================
 perl-Scalar-List-Utils-1.48-1.fc26 (FEDORA-2017-4f722b12ce)
 A selection of general-utility scalar and list subroutines
--------------------------------------------------------------------------------
Update Information:

Rebase to upstream release 1.48.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1464620 - perl-Scalar-List-Utils-1.48 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1464620
--------------------------------------------------------------------------------


================================================================================
 php-horde-Horde-Image-2.5.1-1.fc26 (FEDORA-2017-28387b61fd)
 Horde Image API
--------------------------------------------------------------------------------
Update Information:

**Horde_Image 2.5.1**  * [mjr] SECURITY: Fix more potential places for command
injections.   ----  **Horde_Image 2.5.0**  * [mjr] **SECURITY**: Prevent DOS
attack by preventing an infinite loop in certain conditions (CVE-2017-9773,
reported by Fariskhi Vidyan). * [mjr] **SECURITY**: Prevent RCE attacks by
properly sanitizing shell arguments (CVE-2017-9774, reported by Fariskhi
Vidyan). * [jan] Add blur effect.
--------------------------------------------------------------------------------


================================================================================
 php-phpunit-PHPUnit-5.7.21-1.fc26 (FEDORA-2017-aad6aa7bce)
 The PHP Unit Testing framework
--------------------------------------------------------------------------------
Update Information:

**Version 5.7.21** - 2017-06-21  * Added
`PHPUnit\Framework\AssertionFailedError`, `PHPUnit\Framework\Test`, and
`PHPUnit\Framework\TestSuite` to the forward compatibility layer for PHPUnit 6 *
Fixed [#2705](https://github.com/sebastianbergmann/phpunit/issues/2705):
`stderr` parameter in `phpunit.xml` always considered `true`  ----  **Version
5.7.20** - 2017-05-22  * Fixed
[#2563](https://github.com/sebastianbergmann/phpunit/pull/2563): `phpunit
--version` does not display version when running unsupported PHP
--------------------------------------------------------------------------------


================================================================================
 php-theseer-autoload-1.24.1-1.fc26 (FEDORA-2017-f89aa93146)
 A tool and library to generate autoload code
--------------------------------------------------------------------------------
Update Information:

**Release 1.24.1**  * Merge PR
[#78](https://github.com/theseer/Autoload/pull/78): Restore PHP 5.3
compatibility [Remi]  ----  **Release 1.24.0**  *
[#77](https://github.com/theseer/Autoload/issues/77): Change duplicate detection
to collect all rather than exit on first
--------------------------------------------------------------------------------


================================================================================
 po4a-0.51-1.fc26 (FEDORA-2017-830cf1e59c)
 A tool maintaining translations anywhere
--------------------------------------------------------------------------------
Update Information:

Update to po4a-0.51
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1436674 - po4a-0.51 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1436674
--------------------------------------------------------------------------------


================================================================================
 python-fedimg-0.7.3-2.fc26 (FEDORA-2017-65a162df42)
 Automatically upload Fedora Cloud images to cloud providers
--------------------------------------------------------------------------------
Update Information:

Updates to 0.7.3.  ----  Updates to 0.7.2
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1464796 - python-fedimg-0.7.3 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1464796
  [ 2 ] Bug #1463975 - python-fedimg-0.7.2 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1463975
--------------------------------------------------------------------------------


================================================================================
 python-moksha-hub-1.5.2-1.fc26 (FEDORA-2017-2ad313b0e4)
 Hub components for Moksha
--------------------------------------------------------------------------------
Update Information:

A few more fixes for the STOMP backend (topic header and a fix to ack mode).
----  Small bugfix:  https://github.com/mokshaproject/moksha/pull/43  ----
Latest upstream.  - One bugfix:  https://github.com/mokshaproject/moksha/pull/41
- And one feature: https://github.com/mokshaproject/moksha/pull/42  The feature
enables STOMP consumers to switch from 'auto' ack mode to 'client' ack mode.
ACKs will be automatically sent to the broker if the consumer does not raise an
Exception.  Exceptions raised by consumers will result in a NACK.  Please test
with care.  ----  One bugfix for STOMP users, which unescapes headers:
https://github.com/mokshaproject/moksha/pull/40  One new feature to properly
support users interacting with durable broker queues:
https://github.com/mokshaproject/moksha/pull/39
--------------------------------------------------------------------------------


================================================================================
 python-sqlalchemy-1.1.11-1.fc26 (FEDORA-2017-125f537704)
 Modular and flexible ORM library for python
--------------------------------------------------------------------------------
Update Information:

This update contains a new upstream bugfix release.  The upstream [changelog](ht
tp://docs.sqlalchemy.org/en/latest/changelog/changelog_11.html#change-1.1.11)
contains a list of all changes in version 1.1.11.
--------------------------------------------------------------------------------


================================================================================
 python2-2.7.13-11.fc26 (FEDORA-2017-1976d4f040)
 An interpreted, interactive, object-oriented programming language
--------------------------------------------------------------------------------
Update Information:

Fix test_alpn_protocols from test_ssl
--------------------------------------------------------------------------------


================================================================================
 python35-3.5.3-2.fc26 (FEDORA-2017-eb221115c4)
 Version 3.5 of the Python programming language
--------------------------------------------------------------------------------
Update Information:

Fix test_alpn_protocols from test_ssl
--------------------------------------------------------------------------------


================================================================================
 remmina-1.2.0-0.37.20170622git7e82138.fc26 (FEDORA-2017-294ac891a3)
 Remote Desktop Client
--------------------------------------------------------------------------------
Update Information:

Latest 2.0 snapshot of FreeRP and latest Remmina snapshot with lots of bugfixes
(especially memory leaks).
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1464846 - [abrt] remmina: transport_ssl_cb(): remmina killed by signal 11
        https://bugzilla.redhat.com/show_bug.cgi?id=1464846
  [ 2 ] Bug #1464442 - [abrt] remmina: do_validate_rows(): remmina killed by SIGSEGV
        https://bugzilla.redhat.com/show_bug.cgi?id=1464442
  [ 3 ] Bug #1459044 - [abrt] remmina: pango_glyph_item_iter_next_cluster(): remmina killed by SIGABRT
        https://bugzilla.redhat.com/show_bug.cgi?id=1459044
  [ 4 ] Bug #1455555 - [abrt] remmina: remmina_rdp_file_import_channel(): remmina killed by SIGSEGV
        https://bugzilla.redhat.com/show_bug.cgi?id=1455555
  [ 5 ] Bug #1451489 - [abrt] remmina: remmina_rdp_cliprdr_request_data(): remmina killed by signal 11
        https://bugzilla.redhat.com/show_bug.cgi?id=1451489
  [ 6 ] Bug #1459803 - [abrt] freerdp: xfreerdp killed by SIGSEGV
        https://bugzilla.redhat.com/show_bug.cgi?id=1459803
--------------------------------------------------------------------------------


================================================================================
 samplv1-0.8.3-1.fc26 (FEDORA-2017-def83ad99f)
 A polyphonic sampler synthesizer with stereo fx
--------------------------------------------------------------------------------
Update Information:

Update to 0.8.3 of the v1 suite of audio plugins
--------------------------------------------------------------------------------


================================================================================
 sane-backends-1.0.27-2.fc26 (FEDORA-2017-1c545761d1)
 Scanner access software
--------------------------------------------------------------------------------
Update Information:

New upstream bugfix and enhancement release with fixed soft dependency on
backend driver packages.   Changes in version 1.0.27:  * Significant
enhancements to canon_dr, epjitsu, epsonds, fujitsu, genesys, hp3500, pixma and
xerox-mfp backends. * Minor updates, bugfixes or scanners added in several
backends. * 30+ new scanner models supported. * Updated Linux USB3 workaround
(see note below). * Documentation and translation updates. * Bugfixes (Avahi,
threading, USB, ICC/PNG/JPEG, etc).  Note: The Linux USB3 workaround which was
added in version 1.0.25 is now disabled by default. If you have difficulty using
a scanner which previously worked, or intermittent scanner availability, try
setting the new environment variable `SANE_USB_WORKAROUND=1` before starting
your frontend.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1446842 - Duplicate "backends" in recommendation from sane-backends-libs
        https://bugzilla.redhat.com/show_bug.cgi?id=1446842
--------------------------------------------------------------------------------


================================================================================
 spandsp-0.0.6-3.fc26 (FEDORA-2017-ad269e8663)
 A DSP library for telephony
--------------------------------------------------------------------------------
Update Information:

Remove non-free (non-distributable) lena image.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1295194 - spandsp contain problematic content
        https://bugzilla.redhat.com/show_bug.cgi?id=1295194
--------------------------------------------------------------------------------


================================================================================
 synthv1-0.8.3-1.fc26 (FEDORA-2017-def83ad99f)
 A 4-oscillator subtractive polyphonic synthesizer
--------------------------------------------------------------------------------
Update Information:

Update to 0.8.3 of the v1 suite of audio plugins
--------------------------------------------------------------------------------


================================================================================
 xastir-2.0.8-4.fc26 (FEDORA-2017-06f5ed024f)
 Amateur Station Tracking and Reporting system for amateur radio
--------------------------------------------------------------------------------
Update Information:

 try to fix broken deps - again!
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #142454 - RHEL4 U2: pciehp driver may not loaded under some BIOS/FW implementations
        https://bugzilla.redhat.com/show_bug.cgi?id=142454
--------------------------------------------------------------------------------


================================================================================
 xchat-2.8.8-34.fc26 (FEDORA-2017-537f75a98b)
 A popular and easy to use graphical IRC (chat) client
--------------------------------------------------------------------------------
Update Information:

Ported to OpenSSL 1.1.0.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1387521 - xchat-2.8.8-32.fc26 FTBFS: dereferencing pointer to incomplete type 'X509_STORE_CTX {aka struct x509_store_ctx_st}'
        https://bugzilla.redhat.com/show_bug.cgi?id=1387521
--------------------------------------------------------------------------------
_______________________________________________
test mailing list -- test@xxxxxxxxxxxxxxxxxxxxxxx
To unsubscribe send an email to test-leave@xxxxxxxxxxxxxxxxxxxxxxx





[Index of Archives]     [Fedora Desktop]     [Fedora SELinux]     [Photo Sharing]     [Yosemite Forum]     [KDE Users]

  Powered by Linux