The following Fedora 30 Security updates need testing: Age URL 48 https://bodhi.fedoraproject.org/updates/FEDORA-2019-a96124345a rubygem-jquery-ui-rails-6.0.1-1.fc30 48 https://bodhi.fedoraproject.org/updates/FEDORA-2019-06f5bbdaf5 python-gnupg-0.4.4-1.fc30 44 https://bodhi.fedoraproject.org/updates/FEDORA-2019-bf800b1c04 kubernetes-1.13.5-1.fc30 38 https://bodhi.fedoraproject.org/updates/FEDORA-2019-4a8eeaf80e freeradius-3.0.19-3.fc30 37 https://bodhi.fedoraproject.org/updates/FEDORA-2019-b30b48200c advancecomp-2.1-11.fc30 20 https://bodhi.fedoraproject.org/updates/FEDORA-2019-6a8b5fb46a mutt-1.12.0-1.fc30 18 https://bodhi.fedoraproject.org/updates/FEDORA-2019-cb2bff6d48 poppler-0.73.0-13.fc30 12 https://bodhi.fedoraproject.org/updates/FEDORA-2019-b6d3c8b0a8 pam-u2f-1.0.8-1.fc30 7 https://bodhi.fedoraproject.org/updates/FEDORA-2019-320d5295fc mingw-libxslt-1.1.33-1.fc30 6 https://bodhi.fedoraproject.org/updates/FEDORA-2019-d5ded5326b dbus-1.12.16-1.fc30 5 https://bodhi.fedoraproject.org/updates/FEDORA-2019-fa3e40f00a libtiff-4.0.10-5.fc30 2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-aeda234b68 xen-4.11.1-6.fc30 0 https://bodhi.fedoraproject.org/updates/FEDORA-2019-a8121923d5 php-brumann-polyfill-unserialize-1.0.3-1.fc30 php-typo3-phar-stream-wrapper2-2.1.2-1.fc30 0 https://bodhi.fedoraproject.org/updates/FEDORA-2019-9f613ab692 drupal7-uuid-1.3-1.fc30 The following Fedora 30 Critical Path updates have yet to be approved: Age URL 18 https://bodhi.fedoraproject.org/updates/FEDORA-2019-cb2bff6d48 poppler-0.73.0-13.fc30 18 https://bodhi.fedoraproject.org/updates/FEDORA-2019-f42bbbeb54 iproute-5.1.0-1.fc30 18 https://bodhi.fedoraproject.org/updates/FEDORA-2019-06f611666c nfs-utils-2.3.4-2.fc30 17 https://bodhi.fedoraproject.org/updates/FEDORA-2019-3f20be4d52 selinux-policy-3.14.3-38.fc30 17 https://bodhi.fedoraproject.org/updates/FEDORA-2019-d754a7fa00 cups-2.2.11-3.fc30 13 https://bodhi.fedoraproject.org/updates/FEDORA-2019-c0cd19cfcd igt-gpu-tools-1.23-1.20190531git4108c74.fc30 xorg-x11-drv-intel-2.99.917-42.20180618.fc30 12 https://bodhi.fedoraproject.org/updates/FEDORA-2019-71f312266b perl-podlators-4.12-1.fc30 12 https://bodhi.fedoraproject.org/updates/FEDORA-2019-3c0523b33c elfutils-0.176-3.fc30 12 https://bodhi.fedoraproject.org/updates/FEDORA-2019-128d522632 libevdev-1.7.0-1.fc30 10 https://bodhi.fedoraproject.org/updates/FEDORA-2019-8d0daa04d1 firewalld-0.6.4-1.fc30 10 https://bodhi.fedoraproject.org/updates/FEDORA-2019-ba2ca87218 redhat-rpm-config-130-1.fc30 10 https://bodhi.fedoraproject.org/updates/FEDORA-2019-3b09e23a58 iio-sensor-proxy-2.7-1.fc30 10 https://bodhi.fedoraproject.org/updates/FEDORA-2019-5101717387 bluez-5.50-8.fc30 8 https://bodhi.fedoraproject.org/updates/FEDORA-2019-60ba61b5ab ceph-14.2.1-2.fc30 7 https://bodhi.fedoraproject.org/updates/FEDORA-2019-caa00da046 audit-3.0-0.9.20190507gitf58ec40.fc30 7 https://bodhi.fedoraproject.org/updates/FEDORA-2019-ffb90829eb fedora-release-30-4 6 https://bodhi.fedoraproject.org/updates/FEDORA-2019-7840da1aa2 epiphany-3.32.3-1.fc30 6 https://bodhi.fedoraproject.org/updates/FEDORA-2019-8a62644235 python-mako-1.0.12-1.fc30 6 https://bodhi.fedoraproject.org/updates/FEDORA-2019-d5ded5326b dbus-1.12.16-1.fc30 6 https://bodhi.fedoraproject.org/updates/FEDORA-2019-599e026ca8 osinfo-db-20190611-1.fc30 6 https://bodhi.fedoraproject.org/updates/FEDORA-2019-6ca7ba6183 glusterfs-6.3-1.fc30 6 https://bodhi.fedoraproject.org/updates/FEDORA-2019-57ca4efaf9 python-blivet-3.1.4-1.fc30 6 https://bodhi.fedoraproject.org/updates/FEDORA-2019-be28413187 file-5.36-3.fc30 5 https://bodhi.fedoraproject.org/updates/FEDORA-2019-6c74403348 libqb-1.0.5-2.fc30 5 https://bodhi.fedoraproject.org/updates/FEDORA-2019-4b588c7cc3 corosync-3.0.2-1.fc30 5 https://bodhi.fedoraproject.org/updates/FEDORA-2019-fa3e40f00a libtiff-4.0.10-5.fc30 5 https://bodhi.fedoraproject.org/updates/FEDORA-2019-292a7fc61f libblockdev-2.22-1.fc30 3 https://bodhi.fedoraproject.org/updates/FEDORA-2019-db12c4b65c fcoe-utils-1.0.32-8.git9834b34.fc30 3 https://bodhi.fedoraproject.org/updates/FEDORA-2019-f251d18245 breeze-icon-theme-5.59.0-1.fc30 extra-cmake-modules-5.59.0-1.fc30 kf5-5.59.0-1.fc30 kf5-attica-5.59.0-1.fc30 kf5-baloo-5.59.0-1.fc30 kf5-bluez-qt-5.59.0-1.fc30 kf5-frameworkintegration-5.59.0-1.fc30 kf5-kactivities-5.59.0-1.fc30 kf5-kactivities-stats-5.59.0-1.fc30 kf5-kapidox-5.59.0-1.fc30 kf5-karchive-5.59.0-1.fc30 kf5-kauth-5.59.0-1.fc30 kf5-kbookmarks-5.59.0-1.fc30 kf5-kcmutils-5.59.0-1.fc30 kf5-kcodecs-5.59.0-1.fc30 kf5-kcompletion-5.59.0-1.fc30 kf5-kconfig-5.59.0-1.fc30 kf5-kconfigwidgets-5.59.0-1.fc30 kf5-kcoreaddons-5.59.0-1.fc30 kf5-kcrash-5.59.0-1.fc30 kf5-kdbusaddons-5.59.0-1.fc30 kf5-kdeclarative-5.59.0-1.fc30 kf5-kded-5.59.0-1.fc30 kf5-kdelibs4support-5.59.0-1.fc30 kf5-kdesignerplugin-5.59.0-1.fc30 kf5-kdesu-5.59.0-1.fc30 kf5-kdewebkit-5.59.0-1.fc30 kf5-kdnssd-5.59.0-1.fc30 kf5-kdoctools-5.59.0-1.fc30 kf5-kemoticons-5.59.0-1.fc30 kf5-kfilemetadata-5.59.0-1.fc30 kf5-kglobalaccel-5.59.0-1.fc30 kf5-kguiad dons-5.59.0-1.fc30 kf5-kholidays-5.59.0-1.fc30 kf5-khtml-5.59.0-1.fc30 kf5-ki18n-5.59.0-1.fc30 kf5-kiconthemes-5.59.0-1.fc30 kf5-kidletime-5.59.0-1.fc30 kf5-kimageformats-5.59.0-1.fc30 kf5-kinit-5.59.0-1.fc30 kf5-kio-5.59.0-1.fc30 kf5-kirigami2-5.59.0-1.fc30 kf5-kitemmodels-5.59.0-1.fc30 kf5-kitemviews-5.59.0-1.fc30 kf5-kjobwidgets-5.59.0-1.fc30 kf5-kjs-5.59.0-1.fc30 kf5-kjsembed-5.59.0-1.fc30 kf5-kmediaplayer-5.59.0-1.fc30 kf5-knewstuff-5.59.0-1.fc30 kf5-knotifications-5.59.0-1.fc30 kf5-knotifyconfig-5.59.0-1.fc30 kf5-kpackage-5.59.0-1.fc30 kf5-kparts-5.59.0-1.fc30 kf5-kpeople-5.59.0-1.fc30 kf5-kplotting-5.59.0-1.fc30 kf5-kpty-5.59.0-1.fc30 kf5-kross-5.59.0-1.fc30 kf5-krunner-5.59.0-1.fc30 kf5-kservice-5.59.0-1.fc30 kf5-ktexteditor-5.59.0-1.fc30 kf5-ktextwidgets-5.59.0-1.fc30 kf5-kunitconversion-5.59.0-1.fc30 kf5-kwallet-5.59.0-1.fc30 kf5-kwayland-5.59.0-1.fc30 kf5-kwidgetsaddons-5.59.0-1.fc30 kf5-kwindowsystem-5.59.0-1.fc30 kf5-kxmlgui-5.59.0-1.fc30 kf5-kxmlrpcclient-5.59.0-1.fc30 kf5-modemmanager-qt-5.59.0-1.fc30 kf5-networkmanager-qt-5.59.0-1.fc30 kf5-plasma-5.59.0-1.fc30 kf5-prison-5.59.0-1.fc30 kf5-purpose-5.59.0-1.fc30 kf5-solid-5.59.0-1.fc30 kf5-sonnet-5.59.0-1.fc30 kf5-syndication-5.59.0-1.fc30 kf5-syntax-highlighting-5.59.0-1.fc30 kf5-threadweaver-5.59.0-1.fc30 oxygen-icon-theme-5.59.0-1.fc30 qqc2-desktop-style-5.59.0-1.fc30 2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-aeda234b68 xen-4.11.1-6.fc30 2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-13d9bfc7e8 exo-0.12.6-1.fc30 2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-e9c4bcfcf2 ModemManager-1.10.2-1.fc30 libqmi-1.22.4-1.fc30 0 https://bodhi.fedoraproject.org/updates/FEDORA-2019-bd3d74ebd4 evolution-3.32.3-1.fc30 evolution-data-server-3.32.3-1.fc30 0 https://bodhi.fedoraproject.org/updates/FEDORA-2019-1575ccd38c sssd-2.2.0-1.fc30 0 https://bodhi.fedoraproject.org/updates/FEDORA-2019-fd3abd06fc pcre2-10.33-4.fc30 0 https://bodhi.fedoraproject.org/updates/FEDORA-2019-3c98465176 openssh-8.0p1-4.fc30 0 https://bodhi.fedoraproject.org/updates/FEDORA-2019-dd1633d7cb switcheroo-control-1.3.1-1.fc30 0 https://bodhi.fedoraproject.org/updates/FEDORA-2019-118ee2329e vim-8.1.1561-1.fc30 0 https://bodhi.fedoraproject.org/updates/FEDORA-2019-926e24f840 libbluray-1.1.2-1.fc30 0 https://bodhi.fedoraproject.org/updates/FEDORA-2019-60d950e4b6 gobject-introspection-1.60.2-1.fc30 0 https://bodhi.fedoraproject.org/updates/FEDORA-2019-f7675395b8 libgee-0.20.1-5.fc30 libgee06-0.6.8-14.fc30 The following builds have been pushed to Fedora 30 updates-testing GraphicsMagick-1.3.32-1.fc30 compiz-0.8.16.1-3.fc30 libwpe-1.3.1-1.fc30 marco-1.22.2-1.fc30 mate-control-center-1.22.1-2.fc30 mate-themes-3.22.20-1.fc30 msoffcrypto-tool-4.10.0-1.fc30 subscription-manager-1.25.9-1.fc30 wpebackend-fdo-1.3.1-1.fc30 Details about builds: ================================================================================ GraphicsMagick-1.3.32-1.fc30 (FEDORA-2019-da4c20882c) An ImageMagick fork, offering faster image generation and better quality -------------------------------------------------------------------------------- Update Information: New bug and security fix release, see http://www.graphicsmagick.org/NEWS.html#june-15-2019 -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 17 2019 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> - 1.3.32-1 - 1.3.32 * Thu May 30 2019 Jitka Plesnikova <jplesnik@xxxxxxxxxx> - 1.3.31-6 - Perl 5.30 rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1554189 - CVE-2017-18219 CVE-2017-18220 GraphicsMagick: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1554189 [ 2 ] Bug #1543274 - CVE-2018-6799 GraphicsMagick: Heap overwrite in magick/pixel_cache.c:AcquireCacheNexus() can lead to denial of service [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1543274 [ 3 ] Bug #1494552 - CVE-2017-14504 CVE-2017-14649 CVE-2017-14733 CVE-2017-14994 CVE-2017-14997 CVE-2017-15238 CVE-2017-15930 CVE-2017-16545 CVE-2017-16547 CVE-2017-17498 CVE-2017-17500 CVE-2017-17501 CVE-2017-17502 CVE-2017-17503 GraphicsMagick: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1494552 [ 4 ] Bug #1475495 - CVE-2017-11638 CVE-2017-11642 CVE-2017-11722 CVE-2017-12935 CVE-2017-12936 CVE-2017-12937 CVE-2017-13063 CVE-2017-13064 CVE-2017-13065 CVE-2017-13648 CVE-2017-13736 CVE-2017-13737 CVE-2017-13775 ... GraphicsMagick: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1475495 [ 5 ] Bug #1708526 - CVE-2017-12805 CVE-2017-12806 GraphicsMagick: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1708526 [ 6 ] Bug #1707774 - CVE-2019-11470 CVE-2019-11472 GraphicsMagick: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1707774 [ 7 ] Bug #1707754 - CVE-2019-11474 GraphicsMagick: floating point exception in coders/xwd.c causing denial of service [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1707754 [ 8 ] Bug #1707716 - CVE-2019-11473 GraphicsMagick: out of bounds in coders/xwd.c causing denial of service by crafting an XWD image file [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1707716 -------------------------------------------------------------------------------- ================================================================================ compiz-0.8.16.1-3.fc30 (FEDORA-2019-c8f380b3ef) OpenGL window and compositing manager -------------------------------------------------------------------------------- Update Information: - add support for invisible-borders (marco) - rebuild because of soname bump of marco (mate-control-center) - rebuild because of soname bump of marco (compiz) - add themes with large borders for non compositor usage -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 17 2019 Wolfgang Ulbrich <fedora@xxxxxxxxx - 1:0.8.16.1-3 - build with marco-1.22.2 - enable BR libcompizconfig-devel * Mon Jun 17 2019 Wolfgang Ulbrich <fedora@xxxxxxxxx - 1:0.8.16.1-2 - build without marco, because of reverse dependencies to libcompizconfig - disable BR libcompizconfig-devel -------------------------------------------------------------------------------- References: [ 1 ] Bug #1721026 - compiz needs a rebuild because of new marco-1.22.2 soname bump https://bugzilla.redhat.com/show_bug.cgi?id=1721026 -------------------------------------------------------------------------------- ================================================================================ libwpe-1.3.1-1.fc30 (FEDORA-2019-222c656d38) General-purpose library for the WPE-flavored port of WebKit -------------------------------------------------------------------------------- Update Information: New version -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 17 2019 Chris King <bunnyapocalypse@xxxxxxxxxxxxxx> - 1.3.1-1 - New version -------------------------------------------------------------------------------- References: [ 1 ] Bug #1721145 - libwpe-1.3.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=1721145 -------------------------------------------------------------------------------- ================================================================================ marco-1.22.2-1.fc30 (FEDORA-2019-c8f380b3ef) MATE Desktop window manager -------------------------------------------------------------------------------- Update Information: - add support for invisible-borders (marco) - rebuild because of soname bump of marco (mate-control-center) - rebuild because of soname bump of marco (compiz) - add themes with large borders for non compositor usage -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 17 2019 Wolfgang Ulbrich <fedora@xxxxxxxxx> - 1.22.2-1 - update 1.22.2 release - add support for invisible borders -------------------------------------------------------------------------------- References: [ 1 ] Bug #1721026 - compiz needs a rebuild because of new marco-1.22.2 soname bump https://bugzilla.redhat.com/show_bug.cgi?id=1721026 -------------------------------------------------------------------------------- ================================================================================ mate-control-center-1.22.1-2.fc30 (FEDORA-2019-c8f380b3ef) MATE Desktop control-center -------------------------------------------------------------------------------- Update Information: - add support for invisible-borders (marco) - rebuild because of soname bump of marco (mate-control-center) - rebuild because of soname bump of marco (compiz) - add themes with large borders for non compositor usage -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 17 2019 Wolfgang Ulbrich <fedora@xxxxxxxxx> - 1.22.1-2 - rebuild because of soname bump of marco -------------------------------------------------------------------------------- References: [ 1 ] Bug #1721026 - compiz needs a rebuild because of new marco-1.22.2 soname bump https://bugzilla.redhat.com/show_bug.cgi?id=1721026 -------------------------------------------------------------------------------- ================================================================================ mate-themes-3.22.20-1.fc30 (FEDORA-2019-c8f380b3ef) MATE Desktop themes -------------------------------------------------------------------------------- Update Information: - add support for invisible-borders (marco) - rebuild because of soname bump of marco (mate-control-center) - rebuild because of soname bump of marco (compiz) - add themes with large borders for non compositor usage -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 17 2019 Wolfgang Ulbrich <fedora@xxxxxxxxx> - 3.22.20-1 - update to 3.22.20 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1721026 - compiz needs a rebuild because of new marco-1.22.2 soname bump https://bugzilla.redhat.com/show_bug.cgi?id=1721026 -------------------------------------------------------------------------------- ================================================================================ msoffcrypto-tool-4.10.0-1.fc30 (FEDORA-2019-f103c26fd0) Python tool for decrypting MS Office files with passwords or other keys -------------------------------------------------------------------------------- Update Information: The msoffcrypto-tool (formerly ms-offcrypto-tool) is a Python tool and library for decrypting encrypted Microsoft Office files with password, intermediate key, or private key which generated its escrow key. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1716196 - Review Request: msoffcrypto-tool - Python tool for decrypting MS Office files with passwords or other keys https://bugzilla.redhat.com/show_bug.cgi?id=1716196 -------------------------------------------------------------------------------- ================================================================================ subscription-manager-1.25.9-1.fc30 (FEDORA-2019-31ec284168) Tools and libraries for subscription and repository management -------------------------------------------------------------------------------- Update Information: This update fixes multiple bugs, but the most prominent result on Fedora will be that you will not see this at all. subscription-manager is usually not relevant to Fedora installs, but it was incorrectly being pulled into live image builds and showing up as a spoke in the installer and initial-setup. This happened after Fedora 30 was released, but affects the [semi-demi-hemi-unofficial 'live respin' releases](https://dl.fedoraproject.org/pub/alt/live-respins/). Future respins done after this update goes stable will no longer be affected. -------------------------------------------------------------------------------- ChangeLog: * Wed Jun 12 2019 Christopher Snyder <csnyder@xxxxxxxxxx> 1.25.9-1 - 1717147: Updating from System Type to Entitlement Type (waldirio@xxxxxxxxx) - Updated from System Type to Entitlement Type (waldirio@xxxxxxxxx) - 1708105: Fixed unsetting syspurpose attributes; ENT-1330 (jhnidek@xxxxxxxxxx) - spec: Don't supplement initial-setup-gui on Fedora (awilliam@xxxxxxxxxx) - 1713626: Only disable system repos if the disable_system_repos is "1" (csnyder@xxxxxxxxxx) - 1673662: Print reasons, why syspurpose status is mismatch; ENT-1247 (jhnidek@xxxxxxxxxx) - Bump sshpk from 1.13.1 to 1.16.1 in /cockpit (dependabot[bot]@users.noreply.github.com) - Also handle anaconda removal of install classes in rhsm_gui.py (awilliam@xxxxxxxxxx) - 1652549: Addition of tests for heartbeat method (wpoteat@xxxxxxxxxx) - Try to fix ostree unit test. (jhnidek@xxxxxxxxxx) - Set LANG to run subscription-manager and get proper output (suttner@xxxxxxx) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1718622 - Red Hat subscription showing during installation process https://bugzilla.redhat.com/show_bug.cgi?id=1718622 -------------------------------------------------------------------------------- ================================================================================ wpebackend-fdo-1.3.1-1.fc30 (FEDORA-2019-cdcbcbb0e9) A WPE backend designed for Linux desktop systems -------------------------------------------------------------------------------- Update Information: New version -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 17 2019 Chris King <bunnyapocalypse@xxxxxxxxxxxxxx> - 1.3.1-1 - New version -------------------------------------------------------------------------------- References: [ 1 ] Bug #1720294 - wpebackend-fdo-1.3.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=1720294 -------------------------------------------------------------------------------- _______________________________________________ test mailing list -- test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to test-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/test@xxxxxxxxxxxxxxxxxxxxxxx