Fedora 26 updates-testing report

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



The following Fedora 26 Security updates need testing:
 Age  URL
 213  https://bodhi.fedoraproject.org/updates/FEDORA-2017-1bf5a0ce01   python-XStatic-jquery-ui-1.12.0.1-2.fc26
 152  https://bodhi.fedoraproject.org/updates/FEDORA-2017-2522df3526   nodejs-brace-expansion-1.1.7-1.fc26
 106  https://bodhi.fedoraproject.org/updates/FEDORA-2017-1c053de325   memcached-1.4.39-1.fc26
 103  https://bodhi.fedoraproject.org/updates/FEDORA-2017-ccb5c8d1e7   docker-distribution-2.6.2-1.git48294d9.fc26
  31  https://bodhi.fedoraproject.org/updates/FEDORA-2017-6e6f4f95e6   ruby-2.4.2-84.fc26
  18  https://bodhi.fedoraproject.org/updates/FEDORA-2017-6bff3cf26c   suricata-3.2.4-1.fc26
  15  https://bodhi.fedoraproject.org/updates/FEDORA-2017-9149114fba   qemu-2.9.1-2.fc26
  11  https://bodhi.fedoraproject.org/updates/FEDORA-2017-b52f851dea   calamares-3.1.7-1.fc26
  11  https://bodhi.fedoraproject.org/updates/FEDORA-2017-ef7c118dbc   tomcat-8.0.47-1.fc26
  11  https://bodhi.fedoraproject.org/updates/FEDORA-2017-41957e0f90   krb5-1.15.2-4.fc26
  10  https://bodhi.fedoraproject.org/updates/FEDORA-2017-5c17b4934f   nodejs-6.11.5-1.fc26
  10  https://bodhi.fedoraproject.org/updates/FEDORA-2017-009bc68243   xen-4.8.2-5.fc26
  10  https://bodhi.fedoraproject.org/updates/FEDORA-2017-8d2cfc3752   apr-1.6.3-1.fc26
  10  https://bodhi.fedoraproject.org/updates/FEDORA-2017-329e5fb4c9   apr-util-1.5.4-6.fc26
   5  https://bodhi.fedoraproject.org/updates/FEDORA-2017-8bf1b0c692   ansible-2.4.1.0-2.fc26
   5  https://bodhi.fedoraproject.org/updates/FEDORA-2017-6fd6877975   wordpress-4.8.3-1.fc26
   3  https://bodhi.fedoraproject.org/updates/FEDORA-2017-ea72793352   fedpkg-1.30-3.fc26 rpkg-1.51-1.fc26
   3  https://bodhi.fedoraproject.org/updates/FEDORA-2017-2c9852dd05   liblouis-2.6.2-12.fc26
   2  https://bodhi.fedoraproject.org/updates/FEDORA-2017-9fbb35aeda   kernel-4.13.11-200.fc26
   2  https://bodhi.fedoraproject.org/updates/FEDORA-2017-e16ed3f7a1   jackson-databind-2.7.6-5.fc26
   2  https://bodhi.fedoraproject.org/updates/FEDORA-2017-379679442e   rubygem-ox-2.4.13-2.fc26
   2  https://bodhi.fedoraproject.org/updates/FEDORA-2017-5cb8354008   perl-Catalyst-Plugin-Static-Simple-0.34-1.fc26
   0  https://bodhi.fedoraproject.org/updates/FEDORA-2017-45044b6b33   hostapd-2.6-6.fc26
   0  https://bodhi.fedoraproject.org/updates/FEDORA-2017-fa89dbf50d   php-PHPMailer-5.2.26-1.fc26
   0  https://bodhi.fedoraproject.org/updates/FEDORA-2017-5b5eb98196   chromium-62.0.3202.75-1.fc26


The following Fedora 26 Critical Path updates have yet to be approved:
 Age URL
  36  https://bodhi.fedoraproject.org/updates/FEDORA-2017-621a9b4828   iproute-4.13.0-1.fc26
  26  https://bodhi.fedoraproject.org/updates/FEDORA-2017-8e91b32f31   python3-3.6.3-2.fc26
  24  https://bodhi.fedoraproject.org/updates/FEDORA-2017-19f599ecd6   chrony-3.2-1.fc26
  18  https://bodhi.fedoraproject.org/updates/FEDORA-2017-2b44217ccc   kobo-0.7.0-3.fc26
  15  https://bodhi.fedoraproject.org/updates/FEDORA-2017-9149114fba   qemu-2.9.1-2.fc26
  14  https://bodhi.fedoraproject.org/updates/FEDORA-2017-04dc465e5b   ModemManager-1.6.10-1.fc26
  14  https://bodhi.fedoraproject.org/updates/FEDORA-2017-f3aa1f4515   ibus-1.5.17-1.fc26
  11  https://bodhi.fedoraproject.org/updates/FEDORA-2017-41957e0f90   krb5-1.15.2-4.fc26
  11  https://bodhi.fedoraproject.org/updates/FEDORA-2017-5158af062e   sssd-1.16.0-1.fc26
  11  https://bodhi.fedoraproject.org/updates/FEDORA-2017-67025b87e7   python-cryptography-2.0.2-2.fc26
  11  https://bodhi.fedoraproject.org/updates/FEDORA-2017-34b7ce4fee   libappstream-glib-0.7.3-1.fc26
  10  https://bodhi.fedoraproject.org/updates/FEDORA-2017-009bc68243   xen-4.8.2-5.fc26
   7  https://bodhi.fedoraproject.org/updates/FEDORA-2017-18db22d7c4   lua-5.3.4-6.fc26
   7  https://bodhi.fedoraproject.org/updates/FEDORA-2017-307574c83f   libunwind-1.2-2.fc26
   5  https://bodhi.fedoraproject.org/updates/FEDORA-2017-acf7207aae   glusterfs-3.10.7-1.fc26
   5  https://bodhi.fedoraproject.org/updates/FEDORA-2017-861946053e   python-productmd-1.9-1.fc26
   5  https://bodhi.fedoraproject.org/updates/FEDORA-2017-f9b723360f   libinput-1.9.1-1.fc26
   5  https://bodhi.fedoraproject.org/updates/FEDORA-2017-c133443edc   calibre-3.1.1-2.fc26 fcitx-qt5-1.1.1-2.fc26 gammaray-2.8.1-2.fc26 kf5-akonadi-server-17.04.1-4.fc26 kf5-frameworkintegration-5.38.0-2.fc26 kf5-kdeclarative-5.38.0-2.fc26 kf5-kwayland-5.38.0-2.fc26 kwin-5.10.5-2.fc26 libfm-qt-0.11.2-7.fc26 libqtxdg-2.0.0-6.fc26 lxqt-qtplugin-0.11.1-7.fc26 plasma-integration-5.10.5-2.fc26 python-qt5-5.9-8.fc26 qgnomeplatform-0.3-5.fc26 qstardict-1.2-5.fc26 qt-creator-4.2.2-7.fc26 qt5-doc-5.9.2-1.fc26 qt5-qt3d-5.9.2-1.fc26 qt5-qtbase-5.9.2-3.fc26 qt5-qtcanvas3d-5.9.2-1.fc26 qt5-qtconnectivity-5.9.2-1.fc26 qt5-qtdeclarative-5.9.2-2.fc26 qt5-qtdoc-5.9.2-1.fc26 qt5-qtgraphicaleffects-5.9.2-1.fc26 qt5-qtimageformats-5.9.2-1.fc26 qt5-qtlocation-5.9.2-1.fc26 qt5-qtmultimedia-5.9.2-1.fc26 qt5-qtquickcontrols-5.9.2-1.fc26 qt5-qtquickcontrols2-5.9.2-1.fc26 qt5-qtscript-5.9.2-1.fc26 qt5-qtsensors-5.9.2-1.fc26 qt5-qtserialbus-5.9.2-1.fc26 qt5-qtserialport-5.9.2-1.fc26 qt5-qtstyleplugins-5.0.0-2
 1.fc26 qt5-qtsvg-5.9.2-1.fc26 qt5-qttools-5.9.2-1.fc26 qt5-qttranslations-5.9.2-1.fc26 qt5-qtvirtualkeyboard-5.9.2-1.fc26 qt5-qtwayland-5.9.2-1.fc26 qt5-qtwebchannel-5.9.2-1.fc26 qt5-qtwebengine-5.9.1-5.fc26 qt5-qtwebkit-5.212.0-0.12.alpha2.fc26 qt5-qtwebsockets-5.9.2-1.fc26 qt5-qtx11extras-5.9.2-1.fc26 qt5-qtxmlpatterns-5.9.2-1.fc26 qt5ct-0.33-2.fc26 sip-4.19.3-4.fc26 ugene-1.27.0-8.fc26 yarock-1.1.6-7.fc26
   3  https://bodhi.fedoraproject.org/updates/FEDORA-2017-8477dfde52   v4l-utils-1.12.5-5.fc26
   3  https://bodhi.fedoraproject.org/updates/FEDORA-2017-2727dc1ce8   iio-sensor-proxy-2.4-1.fc26
   3  https://bodhi.fedoraproject.org/updates/FEDORA-2017-9e682ac8e2   nfs-utils-2.1.1-6.rc6.fc26
   3  https://bodhi.fedoraproject.org/updates/FEDORA-2017-d664074226   hwdata-0.306-1.fc26
   3  https://bodhi.fedoraproject.org/updates/FEDORA-2017-f10b769a7e   pcre2-10.23-10.fc26
   3  https://bodhi.fedoraproject.org/updates/FEDORA-2017-349fb51b4d   pungi-4.1.20-1.fc26
   3  https://bodhi.fedoraproject.org/updates/FEDORA-2017-da5d015449   pcre-8.41-3.fc26
   3  https://bodhi.fedoraproject.org/updates/FEDORA-2017-9d797ffb4b   glib2-2.52.3-2.fc26
   3  https://bodhi.fedoraproject.org/updates/FEDORA-2017-01e4375a1e   pulseaudio-11.1-5.fc26
   2  https://bodhi.fedoraproject.org/updates/FEDORA-2017-231f0f5c1e   ethtool-4.13-1.fc26
   2  https://bodhi.fedoraproject.org/updates/FEDORA-2017-9fbb35aeda   kernel-4.13.11-200.fc26
   0  https://bodhi.fedoraproject.org/updates/FEDORA-2017-9d9767cf8a   libsolv-0.6.30-2.fc26
   0  https://bodhi.fedoraproject.org/updates/FEDORA-2017-06960877d0   dracut-046-3.1.fc26
   0  https://bodhi.fedoraproject.org/updates/FEDORA-2017-ad679ebc50   menu-cache-1.1.0-1.fc26
   0  https://bodhi.fedoraproject.org/updates/FEDORA-2017-89d7c95377   libdrm-2.4.88-1.fc26
   0  https://bodhi.fedoraproject.org/updates/FEDORA-2017-d242f7163c   SDL2-2.0.7-2.fc26
   0  https://bodhi.fedoraproject.org/updates/FEDORA-2017-ae8f081077   python-lxml-4.1.1-1.fc26
   0  https://bodhi.fedoraproject.org/updates/FEDORA-2017-8e7d5f5eb0   flatpak-0.10.0-1.fc26 flatpak-builder-0.10.4-1.fc26


The following builds have been pushed to Fedora 26 updates-testing

    CGSI-gSOAP-1.3.10-7.fc26
    Cython-0.27.3-1.fc26
    R-xml2-1.1.1-2.fc26
    SDL2-2.0.7-2.fc26
    blueberry-1.1.17-1.fc26
    calcurse-4.3.0-1.fc26
    ccnet-6.1.3-1.fc26
    chromium-62.0.3202.75-1.fc26
    dracut-046-3.1.fc26
    engrampa-1.18.3-1.fc26
    flatpak-0.10.0-1.fc26
    flatpak-builder-0.10.4-1.fc26
    getdp-2.11.3-1.fc26
    gmsh-3.0.6-1.fc26
    golang-github-cznic-strutil-0-0.2.git529a34b.fc26
    graphite-web-1.0.2-1.fc26
    hostapd-2.6-6.fc26
    hplip-3.17.10-3.fc26
    libdrm-2.4.88-1.fc26
    libimagequant-2.11.2-1.fc26
    librvngabw-0.0.2-1.fc26
    libsolv-0.6.30-2.fc26
    libtimidity-0.2.5-1.fc26
    lightdm-settings-1.1.3-1.fc26
    marco-1.18.2-1.fc26
    mate-applets-1.18.2-1.fc26
    mate-media-1.18.2-1.fc26
    menu-cache-1.1.0-1.fc26
    module-build-service-1.4.5-1.fc26
    obs-build-20171023-267.1.1.fc26
    osc-0.161.1-224.1.1.fc26
    par2cmdline-0.7.4-1.fc26
    perl-DateTime-TimeZone-2.15-1.fc26
    perl-Finance-Quote-1.41-1.fc26
    php-PHPMailer-5.2.26-1.fc26
    php-nikic-php-parser3-3.1.2-1.fc26
    php-pecl-igbinary-2.0.5-1.fc26
    php-phpunit-PHP-CodeCoverage-4.0.8-3.fc26
    php-phpunit-php-code-coverage5-5.2.3-1.fc26
    pngquant-2.11.2-1.fc26
    python-autobahn-17.10.1-1.fc26
    python-carbon-1.0.2-1.fc26
    python-lxml-4.1.1-1.fc26
    python-sphinx-1.5.5-1.fc26
    python-transforms3d-0.3.1-1.fc26
    python-whisper-1.0.2-1.fc26
    rigsofrods-0.4.7.0-5.fc26
    rpkg-client-0.12-1.fc26
    seafile-6.1.3-1.fc26
    seafile-client-6.1.3-1.fc26
    slick-greeter-1.1.0-1.fc26
    sxiv-24-1.fc26
    the_silver_searcher-2.1.0-1.fc26
    yamllint-1.10.0-1.fc26

Details about builds:


================================================================================
 CGSI-gSOAP-1.3.10-7.fc26 (FEDORA-2017-d72ea5e3e2)
 GSI plugin for gSOAP
--------------------------------------------------------------------------------
Update Information:

Adapt to a change in globus-gsi-credential.
--------------------------------------------------------------------------------


================================================================================
 Cython-0.27.3-1.fc26 (FEDORA-2017-d9293601d0)
 A language for writing Python extension modules
--------------------------------------------------------------------------------
Update Information:

Update to 0.27.3
--------------------------------------------------------------------------------


================================================================================
 R-xml2-1.1.1-2.fc26 (FEDORA-2017-28e81a96d6)
 Parse XML
--------------------------------------------------------------------------------
Update Information:

Initial package of xml2 for R.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1507775 - Review Request: R-xml2 - Parse XML
        https://bugzilla.redhat.com/show_bug.cgi?id=1507775
--------------------------------------------------------------------------------


================================================================================
 SDL2-2.0.7-2.fc26 (FEDORA-2017-d242f7163c)
 Cross-platform multimedia library
--------------------------------------------------------------------------------
Update Information:

Fix ibus regression
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1507444 - ibus not working with SDL2-2.0.7
        https://bugzilla.redhat.com/show_bug.cgi?id=1507444
--------------------------------------------------------------------------------


================================================================================
 blueberry-1.1.17-1.fc26 (FEDORA-2017-40da4248ff)
 Bluetooth configuration tool
--------------------------------------------------------------------------------
Update Information:

* New upstream release
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1509725 - blueberry-1.1.17 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1509725
--------------------------------------------------------------------------------


================================================================================
 calcurse-4.3.0-1.fc26 (FEDORA-2017-a6cabb6502)
 Text-based personal organizer
--------------------------------------------------------------------------------
Update Information:

4.3.0
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1509991 - New Version Released
        https://bugzilla.redhat.com/show_bug.cgi?id=1509991
--------------------------------------------------------------------------------


================================================================================
 ccnet-6.1.3-1.fc26 (FEDORA-2017-17b0e78017)
 A framework for writing networked applications in C
--------------------------------------------------------------------------------
Update Information:

Update to 6.1.3
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1493119 - None
        https://bugzilla.redhat.com/show_bug.cgi?id=1493119
--------------------------------------------------------------------------------


================================================================================
 chromium-62.0.3202.75-1.fc26 (FEDORA-2017-5b5eb98196)
 A WebKit (Blink) powered web browser
--------------------------------------------------------------------------------
Update Information:

Security fix for CVE-2017-15386 CVE-2017-15387 CVE-2017-15388 CVE-2017-15389
CVE-2017-15390 CVE-2017-15391 CVE-2017-15392 CVE-2017-15393 CVE-2017-15394
CVE-2017-15395 CVE-2017-5124 CVE-2017-5125 CVE-2017-5126 CVE-2017-5127.  Build
switched to use gtk3.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1503550 - CVE-2017-15395 chromium-browser: null pointer dereference in imagecapture
        https://bugzilla.redhat.com/show_bug.cgi?id=1503550
  [ 2 ] Bug #1503549 - CVE-2017-15394 chromium-browser: url spoofing in extensions ui
        https://bugzilla.redhat.com/show_bug.cgi?id=1503549
  [ 3 ] Bug #1503548 - CVE-2017-15393 chromium-browser: referrer leak in devtools
        https://bugzilla.redhat.com/show_bug.cgi?id=1503548
  [ 4 ] Bug #1503547 - CVE-2017-15392 chromium-browser: incorrect registry key handling in platformintegration
        https://bugzilla.redhat.com/show_bug.cgi?id=1503547
  [ 5 ] Bug #1503546 - CVE-2017-15391 chromium-browser: extension limitation bypass in extensions
        https://bugzilla.redhat.com/show_bug.cgi?id=1503546
  [ 6 ] Bug #1503545 - CVE-2017-15390 chromium-browser: url spoofing in omnibox
        https://bugzilla.redhat.com/show_bug.cgi?id=1503545
  [ 7 ] Bug #1503544 - CVE-2017-15389 chromium-browser: url spoofing in omnibox
        https://bugzilla.redhat.com/show_bug.cgi?id=1503544
  [ 8 ] Bug #1503543 - CVE-2017-15388 chromium-browser: out of bounds read in skia
        https://bugzilla.redhat.com/show_bug.cgi?id=1503543
  [ 9 ] Bug #1503542 - CVE-2017-15387 chromium-browser: content security bypass
        https://bugzilla.redhat.com/show_bug.cgi?id=1503542
  [ 10 ] Bug #1503540 - CVE-2017-15386 chromium-browser: ui spoofing in blink
        https://bugzilla.redhat.com/show_bug.cgi?id=1503540
  [ 11 ] Bug #1503539 - CVE-2017-5133 chromium-browser: out of bounds write in skia
        https://bugzilla.redhat.com/show_bug.cgi?id=1503539
  [ 12 ] Bug #1503538 - CVE-2017-5131 chromium-browser: out of bounds write in skia
        https://bugzilla.redhat.com/show_bug.cgi?id=1503538
  [ 13 ] Bug #1503537 - CVE-2017-5130 chromium-browser: heap overflow in libxml2
        https://bugzilla.redhat.com/show_bug.cgi?id=1503537
  [ 14 ] Bug #1503536 - CVE-2017-5132 chromium-browser: incorrect stack manipulation in webassembly
        https://bugzilla.redhat.com/show_bug.cgi?id=1503536
  [ 15 ] Bug #1503535 - CVE-2017-5129 chromium-browser: use after free in webaudio
        https://bugzilla.redhat.com/show_bug.cgi?id=1503535
  [ 16 ] Bug #1503534 - CVE-2017-5128 chromium-browser: heap overflow in webgl
        https://bugzilla.redhat.com/show_bug.cgi?id=1503534
  [ 17 ] Bug #1503533 - CVE-2017-5127 chromium-browser: use after free in pdfium
        https://bugzilla.redhat.com/show_bug.cgi?id=1503533
  [ 18 ] Bug #1503532 - CVE-2017-5126 chromium-browser: use after free in pdfium
        https://bugzilla.redhat.com/show_bug.cgi?id=1503532
  [ 19 ] Bug #1503531 - CVE-2017-5125 chromium-browser: heap overflow in skia
        https://bugzilla.redhat.com/show_bug.cgi?id=1503531
  [ 20 ] Bug #1503530 - CVE-2017-5124 chromium-browser: uxss with mhtml
        https://bugzilla.redhat.com/show_bug.cgi?id=1503530
--------------------------------------------------------------------------------


================================================================================
 dracut-046-3.1.fc26 (FEDORA-2017-06960877d0)
 Initramfs generator using udev
--------------------------------------------------------------------------------
Update Information:

Fixed setting of timeouts for device units, so that LUKS password request does
not timeout.  Fixed default image location, if /boot/<machine-id> is present,
but grubby is used.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1509599 - dracut outputs images to incorrect location
        https://bugzilla.redhat.com/show_bug.cgi?id=1509599
--------------------------------------------------------------------------------


================================================================================
 engrampa-1.18.3-1.fc26 (FEDORA-2017-e8d1e20256)
 MATE Desktop file archiver
--------------------------------------------------------------------------------
Update Information:

- update to 1.18.3
--------------------------------------------------------------------------------


================================================================================
 flatpak-0.10.0-1.fc26 (FEDORA-2017-8e7d5f5eb0)
 Application deployment framework for desktop apps
--------------------------------------------------------------------------------
Update Information:

flatpak 0.10.0 and flatpak-builder 0.10.4 releases. For details, see
https://github.com/flatpak/flatpak/releases/tag/0.10.0 and
https://github.com/flatpak/flatpak-builder/releases/tag/0.10.4
--------------------------------------------------------------------------------


================================================================================
 flatpak-builder-0.10.4-1.fc26 (FEDORA-2017-8e7d5f5eb0)
 Tool to build flatpaks from source
--------------------------------------------------------------------------------
Update Information:

flatpak 0.10.0 and flatpak-builder 0.10.4 releases. For details, see
https://github.com/flatpak/flatpak/releases/tag/0.10.0 and
https://github.com/flatpak/flatpak-builder/releases/tag/0.10.4
--------------------------------------------------------------------------------


================================================================================
 getdp-2.11.3-1.fc26 (FEDORA-2017-39e7c82dda)
 General Environment for the Treatment of Discrete Problems
--------------------------------------------------------------------------------
Update Information:

- New `Eig` operator for general eigenvalue problems (polynomial, rational) -
Small improvements and bug fixes.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1509733 - getdp-2.11.3 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1509733
--------------------------------------------------------------------------------


================================================================================
 gmsh-3.0.6-1.fc26 (FEDORA-2017-377e7e707c)
 A three-dimensional finite element mesh generator
--------------------------------------------------------------------------------
Update Information:

Update to version 3.0.6, see http://gmsh.info/CHANGELOG.txt for details.
--------------------------------------------------------------------------------


================================================================================
 golang-github-cznic-strutil-0-0.2.git529a34b.fc26 (FEDORA-2017-cae511fd0c)
 Supplemental utilities for Go's strings package
--------------------------------------------------------------------------------
Update Information:

Bump to commit 529a34b.  This adds a new Homepath() function, with no other
changes.
--------------------------------------------------------------------------------


================================================================================
 graphite-web-1.0.2-1.fc26 (FEDORA-2017-b8e6952942)
 A Django web application for enterprise scalable realtime graphing
--------------------------------------------------------------------------------
Update Information:

Update to 1.0.2
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1508546 - ImportError: cannot import name patterns
        https://bugzilla.redhat.com/show_bug.cgi?id=1508546
--------------------------------------------------------------------------------


================================================================================
 hostapd-2.6-6.fc26 (FEDORA-2017-45044b6b33)
 IEEE 802.11 AP, IEEE 802.1X/WPA/WPA2/EAP/RADIUS Authenticator
--------------------------------------------------------------------------------
Update Information:

Latest hostapd release with KRACK patches applied.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1503874 - KRACK affects hostapd
        https://bugzilla.redhat.com/show_bug.cgi?id=1503874
  [ 2 ] Bug #1502588 - CVE-2017-13077 CVE-2017-13078 CVE-2017-13079 CVE-2017-13080 CVE-2017-13081 CVE-2017-13082 CVE-2017-13086 CVE-2017-13087 CVE-2017-13088 hostapd: various flaws [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=1502588
  [ 3 ] Bug #1468942 - attempting to create Access Point overrides modprobe for wifi and crashes
        https://bugzilla.redhat.com/show_bug.cgi?id=1468942
--------------------------------------------------------------------------------


================================================================================
 hplip-3.17.10-3.fc26 (FEDORA-2017-9db70a93bf)
 HP Linux Imaging and Printing Project
--------------------------------------------------------------------------------
Update Information:

1509394 - Add support for HP ColorLaserjet MFP M278-M281
--------------------------------------------------------------------------------


================================================================================
 libdrm-2.4.88-1.fc26 (FEDORA-2017-89d7c95377)
 Direct Rendering Manager runtime library
--------------------------------------------------------------------------------
Update Information:

Update to 2.4.88
--------------------------------------------------------------------------------


================================================================================
 libimagequant-2.11.2-1.fc26 (FEDORA-2017-65eb2c55f7)
 Palette quantization library
--------------------------------------------------------------------------------
Update Information:

Update to version 2.11.2, see
https://github.com/ImageOptim/libimagequant/blob/master/CHANGELOG for details.
----  Update to version 2.11.0, see
https://github.com/ImageOptim/libimagequant/blob/master/CHANGELOG for details.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1508211 - libimagequant-2.11.0 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1508211
--------------------------------------------------------------------------------


================================================================================
 librvngabw-0.0.2-1.fc26 (FEDORA-2017-a6c4033b16)
 An AbiWord document generator library
--------------------------------------------------------------------------------
Update Information:

new upstream release
--------------------------------------------------------------------------------


================================================================================
 libsolv-0.6.30-2.fc26 (FEDORA-2017-9d9767cf8a)
 Package dependency solver
--------------------------------------------------------------------------------
Update Information:

Improve error message on DB_VERSION_MISMATCH errors
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1483553 - glibc dnf script error: BDB1539 Build signature doesn't match environment
        https://bugzilla.redhat.com/show_bug.cgi?id=1483553
--------------------------------------------------------------------------------


================================================================================
 libtimidity-0.2.5-1.fc26 (FEDORA-2017-2d166220bf)
 MIDI to WAVE converter library
--------------------------------------------------------------------------------
Update Information:

Update to 0.2.5, license changes to "LGPLv2+ or Artistic".
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1508195 - libtimidity-0.2.5 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1508195
--------------------------------------------------------------------------------


================================================================================
 lightdm-settings-1.1.3-1.fc26 (FEDORA-2017-43550d1b0e)
 Configuration tool for the LightDM display manager
--------------------------------------------------------------------------------
Update Information:

* New upstream release
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1509947 - lightdm-settings-1.1.3 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1509947
--------------------------------------------------------------------------------


================================================================================
 marco-1.18.2-1.fc26 (FEDORA-2017-012400e441)
 MATE Desktop window manager
--------------------------------------------------------------------------------
Update Information:

- update to 1.18.2
--------------------------------------------------------------------------------


================================================================================
 mate-applets-1.18.2-1.fc26 (FEDORA-2017-503d82d346)
 MATE Desktop panel applets
--------------------------------------------------------------------------------
Update Information:

- update to 1.18.2
--------------------------------------------------------------------------------


================================================================================
 mate-media-1.18.2-1.fc26 (FEDORA-2017-4fba5795be)
 MATE media programs
--------------------------------------------------------------------------------
Update Information:

- update to 1.18.2
--------------------------------------------------------------------------------


================================================================================
 menu-cache-1.1.0-1.fc26 (FEDORA-2017-ad679ebc50)
 Caching mechanism for freedesktop.org compliant menus
--------------------------------------------------------------------------------
Update Information:

New version 1.1.0 is released.
--------------------------------------------------------------------------------


================================================================================
 module-build-service-1.4.5-1.fc26 (FEDORA-2017-255c542986)
 The Module Build Service for Modularity
--------------------------------------------------------------------------------
Update Information:

Enhancements:  * Add the ability to specify different rebuild methods * Don't
allow a user to resubmit a module build that is already in the init * Changed
the filters so they execute when everything is built * Handle module builds
without components * Default to reverse ordering by ID in APIs * Use
dogpile.cache to cache the default_buildroot_groups result * Log the original
exception in consumer before trying to do anything else. Also commit the
db.session before doing build.transition * Default verbose to false but present
a lot more information when verbose is false * Schedule components based on
build time * Try to reuse all components in the batch before starting it * Don't
reassign the value of the modulemd when resuming a build * Remove unneeded build
transition * Set 'time_modified' at module creation * Record components through
the backend after module submission * Fix incorrect call to koji API. * Update
the documentation * Default PATCH return value to be the extended_json like POST
* Default verbose to on ordering by id in the module-builds API * allow any SCM
URLs for local builds * Raise UnprocessableEntity instead of ValueError in
pdc.py to forward the error message to Flask client. * added git option which
will return correct return code * Remove old SSL config options. * Remove some
code duplication in views.py
--------------------------------------------------------------------------------


================================================================================
 obs-build-20171023-267.1.1.fc26 (FEDORA-2017-c4cb73e7ca)
 A generic package build script
--------------------------------------------------------------------------------
Update Information:

Rebase to the latest versions of `osc` and `obs-build`
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1434633 - obs-build-20171023-267.1 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1434633
--------------------------------------------------------------------------------


================================================================================
 osc-0.161.1-224.1.1.fc26 (FEDORA-2017-c4cb73e7ca)
 The openSUSE Build Service Commander
--------------------------------------------------------------------------------
Update Information:

Rebase to the latest versions of `osc` and `obs-build`
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1434633 - obs-build-20171023-267.1 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1434633
--------------------------------------------------------------------------------


================================================================================
 par2cmdline-0.7.4-1.fc26 (FEDORA-2017-a558bc9794)
 PAR 2.0 compatible file verification and repair tool
--------------------------------------------------------------------------------
Update Information:

Most notable changes are:  - Multithreading support has been merged upstream
(previously, it was only a patch in the package). One can use the `-t` argument
to set the number of threads. - Added `-B` argument which allows one to set the
base path to use for data files.  For more details, see:
https://github.com/Parchive/par2cmdline/blob/v0.7.4/ChangeLog.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1442898 - par2cmdline-0.7.4 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1442898
--------------------------------------------------------------------------------


================================================================================
 perl-DateTime-TimeZone-2.15-1.fc26 (FEDORA-2017-5e65fc6c1c)
 Time zone object base class and factory
--------------------------------------------------------------------------------
Update Information:

Updated to the latest version  ----  Updated to the latest version
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1509643 - perl-DateTime-TimeZone-2.15 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1509643
  [ 2 ] Bug #1507463 - perl-DateTime-TimeZone-2.14 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1507463
--------------------------------------------------------------------------------


================================================================================
 perl-Finance-Quote-1.41-1.fc26 (FEDORA-2017-e5b17ca891)
 A Perl module that retrieves stock and mutual fund quotes
--------------------------------------------------------------------------------
Update Information:

Current  upstream maintenance release. Various sources fixed, new source
AlphaVantage added.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1509722 - perl-Finance-Quote-1.40 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1509722
--------------------------------------------------------------------------------


================================================================================
 php-PHPMailer-5.2.26-1.fc26 (FEDORA-2017-fa89dbf50d)
 PHP email transport class with a lot of features
--------------------------------------------------------------------------------
Update Information:

**Version 5.2.26** (November 4th 2017)  * Minor security backport from 6.0 - set
Debugoutput in constructor according to SAPI in use, avoiding potential XSS in
default debug output.
--------------------------------------------------------------------------------


================================================================================
 php-nikic-php-parser3-3.1.2-1.fc26 (FEDORA-2017-09b9bdd199)
 A PHP parser written in PHP
--------------------------------------------------------------------------------
Update Information:

**Version 3.1.2** (2017-11-04)  * **Fixed**      * Comments on empty blocks are
now preserved on a `Stmt\Nop` node. (#382)  * **Added**      * Added `kind`
attribute for `Stmt\Namespace_` node, which is one of `KIND_SEMICOLON` or
`KIND_BRACED`. (#417)     * Added `setDocComment()` method to namespace builder.
(#437)
--------------------------------------------------------------------------------


================================================================================
 php-pecl-igbinary-2.0.5-1.fc26 (FEDORA-2017-f553ccff7e)
 Replacement for the standard PHP serializer
--------------------------------------------------------------------------------
Update Information:

**Version 2.0.5**  * Improve performance when unserializing objects/arrays and
serializing    objects/arrays/strings in php 5/7. * Update unserialization of
integer object keys for php 7.2: Make those keys    accessible when
unserializing. * Properly pick up presence of gcc for default compiler flags
(`cc --version`    doesn't contain gcc).    Add -O2 to default gcc compiler
flags. * Use empty string for serializing empty $_SESSION array, similar to
"session.serialize_handler=php".    Older igbinary releases already unserialize
the empty string to the empty array.
--------------------------------------------------------------------------------


================================================================================
 php-phpunit-PHP-CodeCoverage-4.0.8-3.fc26 (FEDORA-2017-d9011f2db6)
 PHP code coverage information
--------------------------------------------------------------------------------
Update Information:

**Packaging changes**  - adapt autoloader for php-sebastian-php-token-stream2 -
fix FTBFS from Koschei, add patch for PHP 7.2 - ignore test failing, know by
upstream (travis)
--------------------------------------------------------------------------------


================================================================================
 php-phpunit-php-code-coverage5-5.2.3-1.fc26 (FEDORA-2017-652ce7890e)
 PHP code coverage information
--------------------------------------------------------------------------------
Update Information:

**Version 5.2.3** - 2017-11-03  * **Fixed**      * Fixed
[#540](https://github.com/sebastianbergmann/php-code-coverage/issues/540):
Missing attribute `type` in the CSS `<link>` elements     * Fixed
[#554](https://github.com/sebastianbergmann/php-code-coverage/pull/554):
`Parameter must be an array or an object that implements Countable`  **Packaging
changes**  - raise dependency on phpunit/php-token-stream 2.0 - adapt autoloader
for php-sebastian-php-token-stream2 - fix FTBFS from Koschei, add patch for PHP
7.2 - ignore test failing, know by upstream (travis)
--------------------------------------------------------------------------------


================================================================================
 pngquant-2.11.2-1.fc26 (FEDORA-2017-65eb2c55f7)
 PNG quantization tool for reducing image file size
--------------------------------------------------------------------------------
Update Information:

Update to version 2.11.2, see
https://github.com/ImageOptim/libimagequant/blob/master/CHANGELOG for details.
----  Update to version 2.11.0, see
https://github.com/ImageOptim/libimagequant/blob/master/CHANGELOG for details.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1508211 - libimagequant-2.11.0 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1508211
--------------------------------------------------------------------------------


================================================================================
 python-autobahn-17.10.1-1.fc26 (FEDORA-2017-9ac70750f5)
 Python networking library for WebSocket and WAMP
--------------------------------------------------------------------------------
Update Information:

Update to 17.10.1
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1508172 - python-autobahn-17.10.1 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1508172
--------------------------------------------------------------------------------


================================================================================
 python-carbon-1.0.2-1.fc26 (FEDORA-2017-b8e6952942)
 Back-end data caching and persistence daemon for Graphite
--------------------------------------------------------------------------------
Update Information:

Update to 1.0.2
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1508546 - ImportError: cannot import name patterns
        https://bugzilla.redhat.com/show_bug.cgi?id=1508546
--------------------------------------------------------------------------------


================================================================================
 python-lxml-4.1.1-1.fc26 (FEDORA-2017-ae8f081077)
 XML processing library combining libxml2/libxslt with the ElementTree API
--------------------------------------------------------------------------------
Update Information:

Update to 4.1.1
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1509587 - need python-lxml 3.8.0 or newer for python-html5-parser / calibre updates
        https://bugzilla.redhat.com/show_bug.cgi?id=1509587
  [ 2 ] Bug #1504388 - python-lxml-4.1.0 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1504388
--------------------------------------------------------------------------------


================================================================================
 python-sphinx-1.5.5-1.fc26 (FEDORA-2017-00050526e6)
 Python documentation generator
--------------------------------------------------------------------------------
Update Information:

Update to 1.5.5
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1498084 - None
        https://bugzilla.redhat.com/show_bug.cgi?id=1498084
--------------------------------------------------------------------------------


================================================================================
 python-transforms3d-0.3.1-1.fc26 (FEDORA-2017-1862edbecb)
 3 dimensional spatial transformations
--------------------------------------------------------------------------------
Update Information:

Update to 0.3.1
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1462207 - python-transforms3d-0.3.1 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1462207
--------------------------------------------------------------------------------


================================================================================
 python-whisper-1.0.2-1.fc26 (FEDORA-2017-b8e6952942)
 Whisper is a file-based time-series database format for Graphite
--------------------------------------------------------------------------------
Update Information:

Update to 1.0.2
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1508546 - ImportError: cannot import name patterns
        https://bugzilla.redhat.com/show_bug.cgi?id=1508546
--------------------------------------------------------------------------------


================================================================================
 rigsofrods-0.4.7.0-5.fc26 (FEDORA-2017-e66322c282)
 Vehicle simulator based on soft-body physics
--------------------------------------------------------------------------------
Update Information:

Bruings RigsOfRods into Fedora
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #879928 - Review Request: rigsofrods - Vehicle simulator based on soft-body physics
        https://bugzilla.redhat.com/show_bug.cgi?id=879928
--------------------------------------------------------------------------------


================================================================================
 rpkg-client-0.12-1.fc26 (FEDORA-2017-21302d05cf)
 RPM packaging utitility
--------------------------------------------------------------------------------
Update Information:

- respect hashtype from the sources file if any  ----  - set default distgit
target to src.fedoraproject.org - fix downloading sources for any-length-
namespace   modules - make the whole lookaside url template explict in   the
config file - rename 'rpkg' config section to 'distgit' - update in command
descriptions  ----  - possibility to give directory to --spec - also take --spec
in account for rpmdefines - update spec descriptions - added is-packed
subcommand - try reading ~/.config/rpkg before /etc/rpkg - add unittests - for
source downloading, try both url formats   with/without hashtype - add make-
source subcommand - patch srpm to generate Source0 if unpacked content -
override load_ns_module_name to work with any length   namespaces - added --spec
for srpm, make-source, and copr-build - fixed tagging not to include host dist
tag - docs update - make all config values optional
--------------------------------------------------------------------------------


================================================================================
 seafile-6.1.3-1.fc26 (FEDORA-2017-17b0e78017)
 Cloud storage cli client
--------------------------------------------------------------------------------
Update Information:

Update to 6.1.3
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1493119 - None
        https://bugzilla.redhat.com/show_bug.cgi?id=1493119
--------------------------------------------------------------------------------


================================================================================
 seafile-client-6.1.3-1.fc26 (FEDORA-2017-17b0e78017)
 Seafile cloud storage desktop client
--------------------------------------------------------------------------------
Update Information:

Update to 6.1.3
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1493119 - None
        https://bugzilla.redhat.com/show_bug.cgi?id=1493119
--------------------------------------------------------------------------------


================================================================================
 slick-greeter-1.1.0-1.fc26 (FEDORA-2017-f3284aabf0)
 A slick-looking LightDM greeter
--------------------------------------------------------------------------------
Update Information:

* New upstream release
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1509759 - slick-greeter-1.1.0 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1509759
--------------------------------------------------------------------------------


================================================================================
 sxiv-24-1.fc26 (FEDORA-2017-25e2280c13)
 Simple (or small or suckless) X Image Viewer
--------------------------------------------------------------------------------
Update Information:

A new version of sxiv is available. Feature highlights:  * Automatically reload
the current image whenever it changes * Support embedding into other X windows
with -e (e.g. tabbed) * New option -p prevents sxiv from creating cache and
temporary files * Simpler mouse mappings, the most basic features are accessible
with the mouse only (navigate, zoom, pan)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1508673 - sxiv-v24 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1508673
--------------------------------------------------------------------------------


================================================================================
 the_silver_searcher-2.1.0-1.fc26 (FEDORA-2017-f893263973)
 Super-fast text searching tool (ag)
--------------------------------------------------------------------------------
Update Information:

update to 2.1.0
--------------------------------------------------------------------------------


================================================================================
 yamllint-1.10.0-1.fc26 (FEDORA-2017-a1bcbb7f03)
 A linter for YAML files
--------------------------------------------------------------------------------
Update Information:

Update to latest upstream version
--------------------------------------------------------------------------------
_______________________________________________
test mailing list -- test@xxxxxxxxxxxxxxxxxxxxxxx
To unsubscribe send an email to test-leave@xxxxxxxxxxxxxxxxxxxxxxx





[Index of Archives]     [Fedora Desktop]     [Fedora SELinux]     [Photo Sharing]     [Yosemite Forum]     [KDE Users]

  Powered by Linux