The following Fedora 34 Security updates need testing: Age URL 20 https://bodhi.fedoraproject.org/updates/FEDORA-2022-07ff33f237 expat-2.4.6-1.fc34 11 https://bodhi.fedoraproject.org/updates/FEDORA-2022-6aba96e1b8 radare2-5.6.4-1.fc34 6 https://bodhi.fedoraproject.org/updates/FEDORA-2022-62adf9a1e0 nbd-3.24-1.fc34 5 https://bodhi.fedoraproject.org/updates/FEDORA-2022-32c39ab8c0 pesign-113-18.fc34 5 https://bodhi.fedoraproject.org/updates/FEDORA-2022-fbf40ae0e4 httpie-3.1.0-1.fc34 5 https://bodhi.fedoraproject.org/updates/FEDORA-2022-ceb3e03c5e rust-regex-1.5.5-1.fc34 3 https://bodhi.fedoraproject.org/updates/FEDORA-2022-4b3079c1be wordpress-5.8.4-1.fc34 3 https://bodhi.fedoraproject.org/updates/FEDORA-2022-e5c03af85e linux-firmware-20220310-130.fc34 1 https://bodhi.fedoraproject.org/updates/FEDORA-2022-5fab125c08 zabbix-5.0.21-1.fc34 1 https://bodhi.fedoraproject.org/updates/FEDORA-2022-dc35dd101f containerd-1.6.1-1.fc34 1 https://bodhi.fedoraproject.org/updates/FEDORA-2022-6b46927596 abcm2ps-8.14.13-1.fc34 1 https://bodhi.fedoraproject.org/updates/FEDORA-2022-96b6341e4f xen-4.14.4-2.fc34 1 https://bodhi.fedoraproject.org/updates/FEDORA-2022-806492f1d1 python-paramiko-2.10.1-1.fc34 The following Fedora 34 Critical Path updates have yet to be approved: Age URL 341 https://bodhi.fedoraproject.org/updates/FEDORA-2021-1300e131b6 ddpt-0.96-4.fc34 ledmon-0.95-4.fc34 libgpod-0.8.3-38.fc34 libzfcphbaapi-2.2.0-12.fc34 lsvpd-1.7.11-6.fc34 sg3_utils-1.46-1.fc34 udisks-1.0.5-18.fc34 101 https://bodhi.fedoraproject.org/updates/FEDORA-2021-c8f226c8be annobin-9.79-3.fc34 62 https://bodhi.fedoraproject.org/updates/FEDORA-2022-e3b891fe11 gdb-11.1-7.fc34 20 https://bodhi.fedoraproject.org/updates/FEDORA-2022-07ff33f237 expat-2.4.6-1.fc34 14 https://bodhi.fedoraproject.org/updates/FEDORA-2022-508ceaafe3 netcat-1.218-4.fc34 14 https://bodhi.fedoraproject.org/updates/FEDORA-2022-e288311bdb libretls-3.5.0-1.fc34 13 https://bodhi.fedoraproject.org/updates/FEDORA-2022-9f402b03a2 vim-8.2.4485-1.fc34 13 https://bodhi.fedoraproject.org/updates/FEDORA-2022-0e4b1d193a coreutils-8.32-31.fc34 11 https://bodhi.fedoraproject.org/updates/FEDORA-2022-1b9895f2c2 fontconfig-2.13.94-5.fc34 11 https://bodhi.fedoraproject.org/updates/FEDORA-2022-8f3103b973 hwdata-0.357-1.fc34 11 https://bodhi.fedoraproject.org/updates/FEDORA-2022-5a37bf3192 wayland-1.20.0-1.fc34 10 https://bodhi.fedoraproject.org/updates/FEDORA-2022-55ff5243e1 supermin-5.3.2-1.fc34 7 https://bodhi.fedoraproject.org/updates/FEDORA-2022-27f9fd5a8d mtools-4.0.38-1.fc34 7 https://bodhi.fedoraproject.org/updates/FEDORA-2022-84947aa156 libbluray-1.3.1-1.fc34 6 https://bodhi.fedoraproject.org/updates/FEDORA-2022-59ac072681 ndctl-73-1.fc34 6 https://bodhi.fedoraproject.org/updates/FEDORA-2022-42757a421d pyparted-3.12.0-1.fc34 5 https://bodhi.fedoraproject.org/updates/FEDORA-2022-31e2dd21cc swtpm-0.6.3-1.20220309git7449df4.fc34 3 https://bodhi.fedoraproject.org/updates/FEDORA-2022-dfa28c0285 freerdp-2.6.1-1.fc34 3 https://bodhi.fedoraproject.org/updates/FEDORA-2022-e5c03af85e linux-firmware-20220310-130.fc34 3 https://bodhi.fedoraproject.org/updates/FEDORA-2022-633d3272bb libreport-2.15.2-4.fc34 1 https://bodhi.fedoraproject.org/updates/FEDORA-2022-7a7ce77afe go-rpm-macros-3.0.15-1.fc34 1 https://bodhi.fedoraproject.org/updates/FEDORA-2022-96b6341e4f xen-4.14.4-2.fc34 1 https://bodhi.fedoraproject.org/updates/FEDORA-2022-7c75e0d3d8 zchunk-1.2.1-1.fc34 1 https://bodhi.fedoraproject.org/updates/FEDORA-2022-8b897349c7 kernel-5.16.14-100.fc34 The following builds have been pushed to Fedora 34 updates-testing blender-2.93.8-1.fc34 borgmatic-1.5.24-1.fc34 bottles-2022.3.14-1.fc34 colin-0.5.3-1.fc34 cups-2.3.3op2-16.fc34 dotnet6.0-6.0.103-1.fc34 dqlite-1.9.1-1.fc34 evince-40.5-1.fc34 ghostwriter-2.1.2-1.fc34 moodle-3.11.6-1.fc34 Details about builds: ================================================================================ blender-2.93.8-1.fc34 (FEDORA-2022-a2c52e6d02) 3D modeling, animation, rendering and post-production -------------------------------------------------------------------------------- Update Information: Blender ----------- * New 3.1.0. See the[ release notes](https://www.blender.org/download/releases/3-1/) . * Reenable USD support. * Rebuild LuxCore for the new Blender release. * New 2.93.8 release for Fedora 34. -------------------------------------------------------------------------------- ChangeLog: * Wed Feb 23 2022 Luya Tshimbalanga <luya@xxxxxxxxxxxxxxxxx> 1:2.93.8-1 - Update to blender LTS 2.93.8 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2062481 - blender-3.1.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2062481 -------------------------------------------------------------------------------- ================================================================================ borgmatic-1.5.24-1.fc34 (FEDORA-2022-806d0afb13) Simple Python wrapper script for borgbackup -------------------------------------------------------------------------------- Update Information: - [#431](https://projects.torsion.org/borgmatic- collective/borgmatic/issues/431): Add "working_directory" option to support source directories with relative paths. - [#444](https://projects.torsion.org/borgmatic-collective/borgmatic/issues/444): When loading a configuration file that is unreadable due to file permissions, warn instead of erroring. This supports running borgmatic as a non-root user with configuration in ~/.config even if there is an unreadable global configuration file in /etc. - [#469](https://projects.torsion.org/borgmatic- collective/borgmatic/issues/469): Add "repositories" context to "before_*" and "after_*" command action hooks. See the documentation for more information: [https://torsion.org/borgmatic/docs/how-to/add-preparation- and-cleanup-steps-to-backups/](https://torsion.org/borgmatic/docs/how-to/add- preparation-and-cleanup-steps-to-backups/) - [#486](https://projects.torsion.org/borgmatic-collective/borgmatic/issues/486): Fix handling of "patterns_from" and "exclude_from" options to error instead of warning when referencing unreadable files and "create" action is run. - [#507](https://projects.torsion.org/borgmatic-collective/borgmatic/issues/507): Fix Borg usage error in the "compact" action when running "borgmatic --dry-run". Now, skip "compact" entirely during a dry run. -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 14 2022 Felix Kaechele <felix@xxxxxxxxxxx> - 1.5.24-1 - update to 1.5.24 -------------------------------------------------------------------------------- ================================================================================ bottles-2022.3.14-1.fc34 (FEDORA-2022-c6a42b628b) Easily manage Wine prefix in a new way -------------------------------------------------------------------------------- Update Information: Update to 2022.3.14 -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 14 2022 Artem Polishchuk <ego.cordatus@xxxxxxxxx> - 2022.3.14-1 - chore(update): 2022.3.14 -------------------------------------------------------------------------------- ================================================================================ colin-0.5.3-1.fc34 (FEDORA-2022-10a5e6feb3) Tool to check generic rules/best-practices for containers/images/dockerfiles. -------------------------------------------------------------------------------- Update Information: New upstream release 0.5.3 -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 14 2022 Packit Service <user-cont-team+packit-service@xxxxxxxxxx> - 0.5.3-1 - Add additional global location of rulesets for default installation from PyPI - Run tests in upstream on the Testing Farm via Packit - Few code-style changes suggested by Sourcery -------------------------------------------------------------------------------- References: [ 1 ] Bug #2036710 - colin can't find its rulesets https://bugzilla.redhat.com/show_bug.cgi?id=2036710 [ 2 ] Bug #2040258 - colin-0.5.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=2040258 -------------------------------------------------------------------------------- ================================================================================ cups-2.3.3op2-16.fc34 (FEDORA-2022-352f2e3280) CUPS printing system -------------------------------------------------------------------------------- Update Information: let ipp-usb recommendation in only for F36+... (bz#2063241,2061851,2061843) -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 14 2022 Zdenek Dohnal <zdohnal@xxxxxxxxxx> - 1:2.3.3op2-16 - let ipp-usb recommendation in only for F36+... (bz#2063241,2061851,2061843) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2061843 - usb printer connection unstable after installing ipp-usb https://bugzilla.redhat.com/show_bug.cgi?id=2061843 [ 2 ] Bug #2061851 - recent (04/03/22) update breaks sane-backends https://bugzilla.redhat.com/show_bug.cgi?id=2061851 [ 3 ] Bug #2063241 - After update, ipp-usb package took over my printer https://bugzilla.redhat.com/show_bug.cgi?id=2063241 -------------------------------------------------------------------------------- ================================================================================ dotnet6.0-6.0.103-1.fc34 (FEDORA-2022-3b24db8072) .NET Runtime and SDK -------------------------------------------------------------------------------- Update Information: This is the March 2022 update for .NET 6: SDK 6.0.103 and Runtime 6.0.3 Release notes: - SDK: https://github.com/dotnet/core/blob/main/release- notes/6.0/6.0.3/6.0.103.md - Runtime: https://github.com/dotnet/core/blob/main/release-notes/6.0/6.0.3/6.0.3.md This includes fixes for CVE-2022-24464 and CVE-2022-24512 -------------------------------------------------------------------------------- ChangeLog: * Thu Mar 10 2022 Omair Majid <omajid@xxxxxxxxxx> - 6.0.103-1 - Update to .NET SDK 6.0.103 and Runtime 6.0.3 -------------------------------------------------------------------------------- ================================================================================ dqlite-1.9.1-1.fc34 (FEDORA-2022-c2d3411976) Embeddable, replicated and fault tolerant SQL engine -------------------------------------------------------------------------------- Update Information: Initial import (#2017476). -------------------------------------------------------------------------------- ChangeLog: * Sun Feb 27 2022 Reto Gantenbein <reto.gantenbein@xxxxxxxxxxxx> - 1.9.1-1 - Update to 1.9.1 * Thu Jan 20 2022 Fedora Release Engineering <releng@xxxxxxxxxxxxxxxxx> - 1.9.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild * Sun Dec 5 2021 Reto Gantenbein <reto.gantenbein@xxxxxxxxxxxx> 1.9.0-1 - Initial import (#2017476). -------------------------------------------------------------------------------- References: [ 1 ] Bug #2017476 - Review Request: dqlite - Embeddable, replicated and fault tolerant SQL engine https://bugzilla.redhat.com/show_bug.cgi?id=2017476 -------------------------------------------------------------------------------- ================================================================================ evince-40.5-1.fc34 (FEDORA-2022-e263ca3cc7) Document viewer -------------------------------------------------------------------------------- Update Information: Update to 40.5 -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 14 2022 David King <amigadave@xxxxxxxxxxxxx> - 40.5-1 - Update to 40.5 -------------------------------------------------------------------------------- ================================================================================ ghostwriter-2.1.2-1.fc34 (FEDORA-2022-557ad15f2e) Cross-platform, aesthetic, distraction-free Markdown editor -------------------------------------------------------------------------------- Update Information: Updated to version 2.1.2 with CVE-2022-24724 vulnerability fix. -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 14 2022 Vitaly Zaitsev <vitaly@xxxxxxxxxxxxxx> - 2.1.2-1 - Updated to version 2.1.2 with CVE-2022-24724 vulnerability fix. * Thu Jan 20 2022 Fedora Release Engineering <releng@xxxxxxxxxxxxxxxxx> - 2.1.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #2060664 - CVE-2022-24724 ghostwriter: cmark-gfm: possible RCE due to integer overflow [fedora-34] https://bugzilla.redhat.com/show_bug.cgi?id=2060664 -------------------------------------------------------------------------------- ================================================================================ moodle-3.11.6-1.fc34 (FEDORA-2022-4801b2d09b) A Course Management System -------------------------------------------------------------------------------- Update Information: 3.11.6 -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 14 2022 Gwyn Ciesla <gwync@xxxxxxxxxxxxxx> - 3.11.6-1 - 3.11.6 * Thu Jan 20 2022 Fedora Release Engineering <releng@xxxxxxxxxxxxxxxxx> - 3.11.5-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #2063394 - moodle-3.11.6 is available https://bugzilla.redhat.com/show_bug.cgi?id=2063394 -------------------------------------------------------------------------------- _______________________________________________ test mailing list -- test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to test-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/test@xxxxxxxxxxxxxxxxxxxxxxx Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure