The following Fedora 14 Security updates need testing: https://admin.fedoraproject.org/updates/openswan-2.6.29-1.fc14 https://admin.fedoraproject.org/updates/rekonq-0.6.0-1.fc14 https://admin.fedoraproject.org/updates/seamonkey-2.0.8-1.fc14 https://admin.fedoraproject.org/updates/mysql-5.1.50-2.fc14 https://admin.fedoraproject.org/updates/cgit-0.8.2.1-4.fc14 https://admin.fedoraproject.org/updates/perl-libwww-perl-5.837-2.fc14 https://admin.fedoraproject.org/updates/mailman-2.1.13-6.fc14 https://admin.fedoraproject.org/updates/exim-4.72-2.fc14 https://admin.fedoraproject.org/updates/mantis-1.1.8-4.fc14 https://admin.fedoraproject.org/updates/pam_mount-2.5-1.fc14,libHX-3.6-1.fc14 https://admin.fedoraproject.org/updates/ghostscript-8.71-16.fc14 The following builds have been pushed to Fedora 14 updates-testing 389-ds-base-1.2.6.1-1.fc14 ORBit2-2.14.19-1.fc14 cgit-0.8.2.1-4.fc14 eclipse-ptp-4.0.3-2.fc14 eog-2.32.0-1.fc14 erlang-amf-0-0.2.20100908git27329144.fc14 erlang-ibrowse-2.0.1-1.fc14 erlang-log4erl-0.9.0-3.fc14 erlang-misultin-0.6.1-2.fc14 festival-freebsoft-utils-0.10-1.fc14 gdk-pixbuf2-2.22.0-1.fc14 glib2-2.26.0-1.fc14 glibc-2.12.90-14 gnome-applet-alarm-clock-0.3.1-2.fc14 gnome-bluetooth-2.32.0-1.fc14 gnome-disk-utility-2.32.0-1.fc14 gnome-media-2.32.0-1.fc14 gnome-pilot-2.32.0-1.fc14 gnome-vfs2-2.24.4-1.fc14 gtk2-2.22.0-1.fc14 gupnp-dlna-0.4.0-1.fc14 ibus-1.3.7-6.fc14 ibus-pinyin-1.3.11-1.fc14 initscripts-9.20.1-1.fc14 jtidy-1.0-0.7.r938.fc14 kcbench-data-0.1-6.fc14 libgtop2-2.28.2-1.fc14 libsoup-2.32.0-2.fc14 mash-0.5.20-1.fc14 muse-1.1-1.fc14 nautilus-sendto-2.32.0-1.fc14 openswan-2.6.29-1.fc14 perl-libwww-perl-5.837-2.fc14 php-pear-Log-1.12.3-1.fc14 pnp4nagios-0.4.14-4.fc14 qlandkartegt-0.19.2-1.fc14 rancid-2.3.4-1.fc14 rygel-0.8.0-1.fc14 sssd-1.3.0-32.fc14 totem-pl-parser-2.30.4-1.fc14 Details about builds: ================================================================================ 389-ds-base-1.2.6.1-1.fc14 (FEDORA-2010-15398) 389 Directory Server (base) -------------------------------------------------------------------------------- Update Information: new release 1.2.6.1 to fix several moderate bugs: Bug 634561 - Server crushes when using Windows Sync Agreement Bug 635987 - Incorrect sub scope search result with ACL containing ldap:///self Bug 612264 - ACI issue with (targetattr='userPassword') Bug 606920 - anonymous resource limit- nstimelimit - also applied to "cn=directory manager" Bug 631862 - crash - delete entries not in cache + referint Put back the selinux dependencies I removed during a merge commit . . . -------------------------------------------------------------------------------- ChangeLog: * Thu Sep 23 2010 Rich Megginson <rmeggins@xxxxxxxxxx> - 1.2.6.1-1 - Bug 634561 - Server crushes when using Windows Sync Agreement -------------------------------------------------------------------------------- References: [ 1 ] Bug #634561 - Server crushes when using Windows Sync Agreement https://bugzilla.redhat.com/show_bug.cgi?id=634561 [ 2 ] Bug #631862 - crash - delete entries not in cache + referint https://bugzilla.redhat.com/show_bug.cgi?id=631862 -------------------------------------------------------------------------------- ================================================================================ ORBit2-2.14.19-1.fc14 (FEDORA-2010-15410) A high-performance CORBA Object Request Broker -------------------------------------------------------------------------------- Update Information: The latest upstream release of ORBit2 contains a fix for a free on error of uninitialized IOR components. -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Matthias Clasen <mclasen@xxxxxxxxxx> - 2.14.19-1 - Update to 2.14.19 * Mon Aug 23 2010 Matthias Clasen <mclasen@xxxxxxxxxx> - 2.14.18-2 - Co-own /usr/share/gtk-doc (#604406) - Some packaging cleanups -------------------------------------------------------------------------------- ================================================================================ cgit-0.8.2.1-4.fc14 (FEDORA-2010-15387) A fast webinterface for git -------------------------------------------------------------------------------- Update Information: This fixes a security issue where a special crafted .git file could cause arbitrary code execution (CVE-2010-2542). -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 27 2010 Todd Zullinger <tmz@xxxxxxxxx> - 0.8.2.1-4 - Appy upstream git patch for CVE-2010-2542 (#618108) -------------------------------------------------------------------------------- References: [ 1 ] Bug #618108 - CVE-2010-2542 Git: Arbitrary code execution via specially-crafted .git file https://bugzilla.redhat.com/show_bug.cgi?id=618108 -------------------------------------------------------------------------------- ================================================================================ eclipse-ptp-4.0.3-2.fc14 (FEDORA-2010-15294) Eclipse Parallel Tools Platform -------------------------------------------------------------------------------- Update Information: Update to PTP 4.0.3, photran 6.0.3 final. -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 27 2010 Orion Poplawski <orion@xxxxxxxxxxxxx> - 4.0.3-2 - Make rdt provide/obsolete rdt-remotetools * Mon Sep 20 2010 Orion Poplawski <orion@xxxxxxxxxxxxx> - 4.0.3-1 - Update to PTP 4.0.3, photran 6.0.3 - Drop rdt-remotetools now part of rdt -------------------------------------------------------------------------------- ================================================================================ eog-2.32.0-1.fc14 (FEDORA-2010-15415) Eye of GNOME image viewer -------------------------------------------------------------------------------- Update Information: The stable eog release that ends the 2.31 devel cycle. For details, see http://download.gnome.org/sources/eog/2.32/eog-2.32.0.news -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Matthias Clasen <mclasen@xxxxxxxxxx> 2.32.0-1 - Update to 2.32.0 -------------------------------------------------------------------------------- ================================================================================ erlang-amf-0-0.2.20100908git27329144.fc14 (FEDORA-2010-15401) Erlang Action Message Format Library -------------------------------------------------------------------------------- Update Information: Initial commit -------------------------------------------------------------------------------- References: [ 1 ] Bug #632190 - Review Request: erlang-amf - Erlang Action Message Format Library https://bugzilla.redhat.com/show_bug.cgi?id=632190 -------------------------------------------------------------------------------- ================================================================================ erlang-ibrowse-2.0.1-1.fc14 (FEDORA-2010-15402) Erlang HTTP client -------------------------------------------------------------------------------- Update Information: Ver. 2.0.1 -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Peter Lemenkov <lemenkov@xxxxxxxxx> - 2.0.1-1 - Ver. 2.0.1 - Narrowed BuildRequires -------------------------------------------------------------------------------- ================================================================================ erlang-log4erl-0.9.0-3.fc14 (FEDORA-2010-15411) A logger for erlang in the spirit of Log4J -------------------------------------------------------------------------------- Update Information: Initial commit -------------------------------------------------------------------------------- References: [ 1 ] Bug #632186 - Review Request: erlang-log4erl - A logger for erlang in the spirit of Log4J https://bugzilla.redhat.com/show_bug.cgi?id=632186 -------------------------------------------------------------------------------- ================================================================================ erlang-misultin-0.6.1-2.fc14 (FEDORA-2010-15379) Erlang library for building fast lightweight HTTP(S) servers -------------------------------------------------------------------------------- Update Information: Initial commit -------------------------------------------------------------------------------- References: [ 1 ] Bug #632189 - Review Request: erlang-misultin - Erlang library for building fast lightweight HTTP(S) servers https://bugzilla.redhat.com/show_bug.cgi?id=632189 -------------------------------------------------------------------------------- ================================================================================ festival-freebsoft-utils-0.10-1.fc14 (FEDORA-2010-15380) A collection of utilities that enhance Festival with some useful features -------------------------------------------------------------------------------- References: [ 1 ] Bug #628524 - Review Request: festival-freebsoft-utils - A collection of utilities that enhance Festival with some useful features https://bugzilla.redhat.com/show_bug.cgi?id=628524 [ 2 ] Bug #484577 - missing speech-dispatcher.scm https://bugzilla.redhat.com/show_bug.cgi?id=484577 -------------------------------------------------------------------------------- ================================================================================ gdk-pixbuf2-2.22.0-1.fc14 (FEDORA-2010-15394) An image loading library -------------------------------------------------------------------------------- Update Information: The stable gdk-pixbuf release that ends the 2.21 devel cycle. For details, see http://download.gnome.org/sources/gdk-pixbuf/2.22/gdk-pixbuf-2.22.0.news -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 21 2010 Matthias Clasen <mclasen@xxxxxxxxxx> 2.22.0-1 - Update to 2.22.0 -------------------------------------------------------------------------------- ================================================================================ glib2-2.26.0-1.fc14 (FEDORA-2010-15396) A library of handy utility functions -------------------------------------------------------------------------------- Update Information: The stable release of glib that ends the 2.25 devel cycle. For details, see http://download.gnome.org/sources/glib/2.26/glib-2.26.0.news -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Matthias Clasen <mclasen@xxxxxxxxxx> - 2.26.0-1 - Update to 2.26.0 -------------------------------------------------------------------------------- ================================================================================ glibc-2.12.90-14 (FEDORA-2010-15317) The GNU libc libraries -------------------------------------------------------------------------------- Update Information: Update from master - Add two forgotten licence exceptions - getdents64 fallback d_type support - Move freeres function from ld.so to libc.so - Undo feature selection for ftruncate (BZ#12037) - Fix namespace pollution in pthread_cleanup_push - Fix limit detection in x86-64 SSE2 strncasecmp (#632560) - Add support for fanotify_mark on sparc32 and s390 - Fix register conflict in s390 ____longjmp_chk (#629970) - Don't try to free rpath strings allocated during startup (#629976) - Actually make it possible to user the default name server - Fix memory leak on init/fini dependency list (#632936) - Fix handling of collating symbols in regexps (BZ#11561) - Don't parse %s format argument as multibyte string (BZ#6530) - Fix overflow in nss files parser - Fix spurious nop at start of __strspn_ia32 - Don't try to write to _rtld_global_ro after performing relro protection (#638091) -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Andreas Schwab <schwab@xxxxxxxxxx> - 2.12.90-14 - Don't try to write to _rtld_global_ro after performing relro protection (#638091) * Mon Sep 27 2010 Andreas Schwab <schwab@xxxxxxxxxx> - 2.12.90-13 - Update from master - Add two forgotten licence exceptions - getdents64 fallback d_type support - Move freeres function from ld.so to libc.so - Undo feature selection for ftruncate (BZ#12037) - Fix namespace pollution in pthread_cleanup_push - Fix limit detection in x86-64 SSE2 strncasecmp (#632560) - Add support for fanotify_mark on sparc32 and s390 - Fix register conflict in s390 ____longjmp_chk (#629970) - Don't try to free rpath strings allocated during startup (#629976) - Actually make it possible to user the default name server - Fix memory leak on init/fini dependency list (#632936) - Fix handling of collating symbols in regexps (BZ#11561) - Don't parse %s format argument as multibyte string (BZ#6530) - Fix overflow in nss files parser - Fix spurious nop at start of __strspn_ia32 * Wed Sep 15 2010 Dennis Gilmore <dennis@xxxxxxxx> - 2.12.90-12 - dont build sparcv9v and sparc64v anymore -------------------------------------------------------------------------------- References: [ 1 ] Bug #632560 - strncasecmp fails sometimes https://bugzilla.redhat.com/show_bug.cgi?id=632560 [ 2 ] Bug #629970 - can't build glibc-2.12.90-8 on s390x - endless loop on tst-longjmp_chk2 https://bugzilla.redhat.com/show_bug.cgi?id=629970 [ 3 ] Bug #629976 - valgrind claims "Invalid free() ... below main" https://bugzilla.redhat.com/show_bug.cgi?id=629976 [ 4 ] Bug #632936 - memory leak at dlopen/dlclose reported by valgrind https://bugzilla.redhat.com/show_bug.cgi?id=632936 [ 5 ] Bug #638091 - Kernel panic at boot after glibc update https://bugzilla.redhat.com/show_bug.cgi?id=638091 -------------------------------------------------------------------------------- ================================================================================ gnome-applet-alarm-clock-0.3.1-2.fc14 (FEDORA-2010-15404) Alarm clock for the GNOME panel -------------------------------------------------------------------------------- Update Information: This update fixes a crash when enabling the autostart option. -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 27 2010 Christoph Wickert <cwickert@xxxxxxxxxxxxxxxxx> - 0.3.1-2 - Fix crash when enabling autostart (#615699 and #619770) -------------------------------------------------------------------------------- References: [ 1 ] Bug #615699 - [abrt] crash in gnome-applet-alarm-clock-0.3.1-1.fc12: raise: Process /usr/bin/alarm-clock-applet was killed by signal 6 (SIGABRT) https://bugzilla.redhat.com/show_bug.cgi?id=615699 [ 2 ] Bug #619770 - [abrt] crash in gnome-applet-alarm-clock-0.3.1-1.fc13: magazine_chain_pop_head: Process /usr/bin/alarm-clock-applet was killed by signal 11 (SIGSEGV) https://bugzilla.redhat.com/show_bug.cgi?id=619770 -------------------------------------------------------------------------------- ================================================================================ gnome-bluetooth-2.32.0-1.fc14 (FEDORA-2010-15403) Bluetooth graphical utilities -------------------------------------------------------------------------------- Update Information: This update brings new translations. -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Bastien Nocera <bnocera@xxxxxxxxxx> 2.32.0-1 - Update to 2.32.0 * Mon Sep 13 2010 Bastien Nocera <bnocera@xxxxxxxxxx> 2.31.90-1 - Update to 2.31.90 -------------------------------------------------------------------------------- ================================================================================ gnome-disk-utility-2.32.0-1.fc14 (FEDORA-2010-15383) Disk management application -------------------------------------------------------------------------------- Update Information: The stable gnome-disk-utility release that ends the 2.31 devel cycle. For details, see http://download.gnome.org/sources/gnome-disk-utility/2.32/gnome-disk-utility-2.32.0.news -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Matthias Clasen <mclasen@xxxxxxxxxx> - 2.32.0-1.fc14 - Update to 2.32.0 -------------------------------------------------------------------------------- ================================================================================ gnome-media-2.32.0-1.fc14 (FEDORA-2010-15406) GNOME media programs -------------------------------------------------------------------------------- Update Information: This update adds new translations. -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Bastien Nocera <bnocera@xxxxxxxxxx> 2.32.0-1 - Update to 2.32.0 -------------------------------------------------------------------------------- ================================================================================ gnome-pilot-2.32.0-1.fc14 (FEDORA-2010-15385) GNOME pilot programs -------------------------------------------------------------------------------- Update Information: Introduces gnome-pilot-eds, which obsoletes the evolution-conduits subpackage that was dropped from Evolution several releases ago. -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 27 2010 Matthew Barnes <mbarnes@xxxxxxxxxx> - 2.32.0-1 - Update to 2.32.0 - Remove patch for RH bug #512004 (fixed upstream). - Add an eds subpackage which obsoletes evolution-conduits. -------------------------------------------------------------------------------- ================================================================================ gnome-vfs2-2.24.4-1.fc14 (FEDORA-2010-15414) The GNOME virtual file-system libraries -------------------------------------------------------------------------------- Update Information: The latest upstream release of gnome-vfs contains a fix for non-writable home directories, and updated translations. -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Matthias Clasen <mclasen@xxxxxxxxxx> - 2.24.4-1 - Update to 2.24.4 -------------------------------------------------------------------------------- ================================================================================ gtk2-2.22.0-1.fc14 (FEDORA-2010-15408) The GIMP ToolKit (GTK+), a library for creating GUIs for X -------------------------------------------------------------------------------- Update Information: The stable release of GTK+ that is ending the 2.21 devel cycle. For details, see http://download.gnome.org/sources/gtk+/2.22/gtk+-2.22.0.news -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 27 2010 Matthias Clasen <mclasen@xxxxxxxxxx> - 2.22.0-1 - Update to 2.22.0 -------------------------------------------------------------------------------- ================================================================================ gupnp-dlna-0.4.0-1.fc14 (FEDORA-2010-15388) A collection of helpers for building UPnP AV applications -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 27 2010 Peter Robinson <pbrobinson@xxxxxxxxx> 0.4.0-1 - New upstream 0.4.0 release -------------------------------------------------------------------------------- ================================================================================ ibus-1.3.7-6.fc14 (FEDORA-2010-15391) Intelligent Input Bus for Linux OS -------------------------------------------------------------------------------- Update Information: - Updated ibus-435880-surrounding-text.patch Fixes Bug 634829 - ibus_im_context_set_surrounding() to get strings. -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Takao Fujiwara <tfujiwar@xxxxxxxxxx> - 1.3.7-6 - Updated ibus-435880-surrounding-text.patch Fixes Bug 634829 - ibus_im_context_set_surrounding() to get strings. -------------------------------------------------------------------------------- References: [ 1 ] Bug #634829 - [abrt] ibus-m17n-1.3.1-1.fc14: shift_state: Process /usr/libexec/ibus-engine-m17n was killed by signal 11 (SIGSEGV) https://bugzilla.redhat.com/show_bug.cgi?id=634829 -------------------------------------------------------------------------------- ================================================================================ ibus-pinyin-1.3.11-1.fc14 (FEDORA-2010-15390) The Chinese Pinyin and Bopomofo engines for IBus input platform -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Peng Wu <pwu@xxxxxxxxxx> - 1.3.11-1 - Update to 1.3.11 -------------------------------------------------------------------------------- ================================================================================ initscripts-9.20.1-1.fc14 (FEDORA-2010-15412) The inittab file and the /etc/init.d scripts -------------------------------------------------------------------------------- Update Information: This update fixes lang.csh when used with grep-2.7, and assorted other minor issues. -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 27 2010 Bill Nottingham <notting@xxxxxxxxxx> - 9.20.1-1 - sysconfig.txt: adjust clock docs to match reality (#637058) - lang.csh: fix for grep-2.7 (#636552) - fix checkpid description to match reality (#637176) - reset btmp on boot where necessary (#633768, <dmach@xxxxxxxxxx>) -------------------------------------------------------------------------------- References: [ 1 ] Bug #637058 - ntpdate doesn't care with UTC settings https://bugzilla.redhat.com/show_bug.cgi?id=637058 [ 2 ] Bug #636552 - "grep: character class syntax is [[:space:]], not [:space:]" printed for every tcsh shell https://bugzilla.redhat.com/show_bug.cgi?id=636552 [ 3 ] Bug #637176 - checkpid() function in /etc/init.d/functions won't work with plural pids https://bugzilla.redhat.com/show_bug.cgi?id=637176 [ 4 ] Bug #633768 - /var/log/btmp is not created on boot https://bugzilla.redhat.com/show_bug.cgi?id=633768 [ 5 ] Bug #630914 - Single user mode reported as "unknown" https://bugzilla.redhat.com/show_bug.cgi?id=630914 -------------------------------------------------------------------------------- ================================================================================ jtidy-1.0-0.7.r938.fc14 (FEDORA-2010-15400) HTML syntax checker and pretty printer -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Chris Spike <chris.spike@xxxxxxxx> 2:1.0-0.7.r938 - Added ant javac source attribute - Removed version from ant build requires * Tue Sep 28 2010 Chris Spike <chris.spike@xxxxxxxx> 2:1.0-0.6.r938 - Fixed unversioned Obsoletes - Fixed wrapper script file permissions * Mon Sep 27 2010 Chris Spike <chris.spike@xxxxxxxx> 2:1.0-0.5.r938 - Dropped gcj_support - Updated to latest upstream version - Moved shell script to main package and obsoleted script subpackage - Updated description - Removed xml-commons-apis and jaxp_parser_impl from requires and build requires - Removed xml-commons-apis from ant config file -------------------------------------------------------------------------------- ================================================================================ kcbench-data-0.1-6.fc14 (FEDORA-2010-15409) Kernel sources to be used by kcbench -------------------------------------------------------------------------------- Update Information: Update to 2.6.35, as 2.6.25 does not build with F14 anyway; a switch to a later version was overdue anyway, to make compiling longer again -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 27 2010 Thorsten Leemhuis <fedora[AT]leemhuis[DOT]org> - 0.1-6 - switch to 2.6.35 for F14 and later - add a patch to fix building with newer make versions - do not exclude docs, as that can lead to a build error - add proper obsolets for 2.6.25 package - remove the hard require on a specific kcbench-data version in kcbench-data.foo -------------------------------------------------------------------------------- ================================================================================ libgtop2-2.28.2-1.fc14 (FEDORA-2010-15413) libgtop library (version 2) -------------------------------------------------------------------------------- Update Information: The latest release of libgtop brings some translation updates. -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Matthias Clasen <mclasen@xxxxxxxxxx> - 2.28.2-1 - Update to 2.28.2 -------------------------------------------------------------------------------- ================================================================================ libsoup-2.32.0-2.fc14 (FEDORA-2010-15386) Soup, an HTTP library implementation -------------------------------------------------------------------------------- Update Information: The stable libsoup release that ends the 2.31 devel cycle. For details, see http://download.gnome.org/sources/libsoup/2.32/libsoup-2.32.0.news -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Matthias Clasen <mclasen@xxxxxxxxxx> - 2.32.0-1 - Update to 2.32.0 -------------------------------------------------------------------------------- ================================================================================ mash-0.5.20-1.fc14 (FEDORA-2010-15407) Koji buildsystem to yum repository converter -------------------------------------------------------------------------------- Update Information: This is the latest upstream mash release, which fixes a variety of bugs. This mash package updates the branched config to point to the proper Fedora 14 repos. -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Bill Nottingham <notting@xxxxxxxxxx> 0.5.20-1 - solve multilib against parent repos if configured (#633136) - fix traceback when only binary RPMS exist (modified from #636697, <tguthmann@xxxxxxxxxxxx>) - disable sigchecking on deltas in source, not via patch (#512454) - mark LSB-providing packages as multilib (#585858) - fix libmunge to catch more cases (#637172, <mschwendt@xxxxxxxxx>) - add krb5 plugin dir to multilib list (#632611) - add libstdc++-static as a multilib whitelist (#630581) - add dri as a multilib dir - arm arch compatiblitiy <dennis@xxxxxxxx> * Fri Jul 30 2010 Bill Nottingham <notting@xxxxxxxxxx> 0.5.19-1 - retarget branched.mash at f14 -------------------------------------------------------------------------------- References: [ 1 ] Bug #633136 - Update fails with errors https://bugzilla.redhat.com/show_bug.cgi?id=633136 [ 2 ] Bug #512454 - attempting to check that existing deltas match signatures does not work https://bugzilla.redhat.com/show_bug.cgi?id=512454 [ 3 ] Bug #637172 - [PATCH] enhancement for libmunge in spam-o-matic https://bugzilla.redhat.com/show_bug.cgi?id=637172 [ 4 ] Bug #630581 - libstdc++-static.i686 package missing on x86_64 https://bugzilla.redhat.com/show_bug.cgi?id=630581 [ 5 ] Bug #636697 - [MASH/KOJI] what about imported RPMs without a build ? https://bugzilla.redhat.com/show_bug.cgi?id=636697 [ 6 ] Bug #585858 - redhat-lsb-graphics broken https://bugzilla.redhat.com/show_bug.cgi?id=585858 [ 7 ] Bug #632611 - RFE: count plugins under /usr/$LIB/krb5/plugins as multilib https://bugzilla.redhat.com/show_bug.cgi?id=632611 -------------------------------------------------------------------------------- ================================================================================ muse-1.1-1.fc14 (FEDORA-2010-15382) Midi/Audio Music Sequencer -------------------------------------------------------------------------------- Update Information: Highlights: * Jack midi support. * Allow native VST guis for plugins * Audio and midi routing popup menus now stay open, for making rapid connections. * MusE now has two mixers, with selectable track type display. * External midi sync fixes and improvements, should be very stable * Some pianoroll improvements * Some crash fixes * Drum editor fixes * Various arranger fixes and improvements * Various improvements for plugin guis * Routing fixes * Stability fixes for plugins * Various DSSI fixes * Rec enabled track moves with selection when only one track is rec enabled * Jack midi, routing system, multichannel synth ins/outs, midi strips and trackinfo pane. * Dummy audio driver: Added global settings for sample rate and period size. * Arranger track list: Quick 'right-click' or 'ctrl-click' or 'ctrl-mouse-wheel' toggling of Track On/Off. * Allow changing timebase master * Option to split imported midi tracks into multiple parts. * Several new keyboard shortcuts for various operations, see shortcut editor * Several colour tweaks and other cosmetic changes * Various stability fixes * Countless fixes and tweaks, about a 300 lines in the Changelog, check it for a complete list of blood sweat and tears. -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 27 2010 Orcan Ogetbil <oget[DOT]fedora[AT]gmail[DOT]com> - 1:1.1-1 - Update to 1.1 -------------------------------------------------------------------------------- ================================================================================ nautilus-sendto-2.32.0-1.fc14 (FEDORA-2010-15395) Nautilus context menu for sending files -------------------------------------------------------------------------------- Update Information: This update fixes the contextual menu not appearing for non-local files, and adds new translations. -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Bastien Nocera <bnocera@xxxxxxxxxx> 2.32.0-1 - Update to 2.32.0 * Mon Sep 13 2010 Bastien Nocera <bnocera@xxxxxxxxxx> 2.31.90-1 - Update to 2.31.90 -------------------------------------------------------------------------------- ================================================================================ openswan-2.6.29-1.fc14 (FEDORA-2010-15381) IPSEC implementation with IKEv1 and IKEv2 keying protocols -------------------------------------------------------------------------------- Update Information: - New upstream release - Fixes for CVE-2010-3308 and CVE-2010-3302 -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 27 2010 Avesh Agarwal <avagarwa@xxxxxxxxxx> - 2.6.29-1 - New upstream release - Fixes for CVE-2010-3308 and CVE-2010-3302 * Fri Aug 13 2010 Avesh Agarwal <avagarwa@xxxxxxxxxx> - 2.6.28-1 - New upstream release - Updated existing patches - Changed man to man-db in Buildrequires -------------------------------------------------------------------------------- References: [ 1 ] Bug #637924 - CVE-2010-3308 Openswan cisco banner option handling vulnerability https://bugzilla.redhat.com/show_bug.cgi?id=637924 [ 2 ] Bug #634264 - CVE-2010-3302 openswan: buffer overflow vulnerability in XAUTH client-side support https://bugzilla.redhat.com/show_bug.cgi?id=634264 -------------------------------------------------------------------------------- ================================================================================ perl-libwww-perl-5.837-2.fc14 (FEDORA-2010-15405) A Perl interface to the World-Wide Web -------------------------------------------------------------------------------- Update Information: Fix broken package dependencies CVE-2010-2253 lwp-download now needs the -s option to honor the Content-Disposition header CVE-2010-2253 lwp-download now needs the -s option to honor the Content-Disposition header -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Ralf CorsÃpius <corsepiu@xxxxxxxxxxxxxxxxx> - 5.837-2 - Add missing ':' to filter_from_requires perl(HTTP::GHTTP). - filter_from_provides /perl(HTTP::Headers)$/d instead of /perl(HTTP::Headers)/d. * Mon Sep 27 2010 Marcela MaÅlÃÅovà <mmaslano@xxxxxxxxxx> 5.837-1 - update -------------------------------------------------------------------------------- References: [ 1 ] Bug #602800 - CVE-2010-2253 perl-libwww-perl: multiple HTTP client download filename vulnerability [OCERT 2010-001] https://bugzilla.redhat.com/show_bug.cgi?id=602800 -------------------------------------------------------------------------------- ================================================================================ php-pear-Log-1.12.3-1.fc14 (FEDORA-2010-15393) Abstracted logging facility for PHP -------------------------------------------------------------------------------- Update Information: Upstream Changelog: Version 1.12.3 * The unit tests now set the timezone. (Bug 17830) * The composite handler now opens child handlers lazily (on demand). (Bug 17785) Version 1.12.2 * Use PHP5-specific static method notation to avoid strict warnings. (Bug: 17509) * Fixing some potential undefined backtrace references. (Bug: 17738) * Adding `lineFormat` and `timeFormat` configuration variables to the syslog handler. (Request: 17753) -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Remi Collet <Fedora@xxxxxxxxxxxxxxxxx> 1.12.3-1 - Version 1.12.3 (stable) - API 1.0.0 (stable) - run tests during %check -------------------------------------------------------------------------------- ================================================================================ pnp4nagios-0.4.14-4.fc14 (FEDORA-2010-15384) Nagios performance data analysis tool -------------------------------------------------------------------------------- Update Information: Fix PHP deprecated warnings with PHP 5.3. -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 27 2010 Xavier Bachelot <xavier@xxxxxxxxxxxx> 0.4.14-4 - Bump release for rebuild. -------------------------------------------------------------------------------- References: [ 1 ] Bug #572851 - Lots of PHP Deprecated warnings in pnp4nagios https://bugzilla.redhat.com/show_bug.cgi?id=572851 -------------------------------------------------------------------------------- ================================================================================ qlandkartegt-0.19.2-1.fc14 (FEDORA-2010-15392) GPS device mapping tool -------------------------------------------------------------------------------- Update Information: update to 0.19.2 with these changes: - Show extended data of tracks - arious user supplied bugfixes. - Pimp up map canvas - Add min/max elevation markers to highlighted track - File dialog for screenshot, save track stat plot and save canvas behaves strange. - GeoDB: add summary about item as tooltip rather than the real comment. - Add track profile preview on canvas - Make scale and wind rose optional -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 27 2010 Dan HorÃk <dan[at]danny.cz> 0.19.2-1 - update to 0.19.2 -------------------------------------------------------------------------------- ================================================================================ rancid-2.3.4-1.fc14 (FEDORA-2010-15397) Really Awesome New Cisco confIg Differ -------------------------------------------------------------------------------- Update Information: New upstream 2.3.4 release -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Peter Robinson <pbrobinson@xxxxxxxxx> 2.3.4-1 - New upstream 2.3.4 release -------------------------------------------------------------------------------- ================================================================================ rygel-0.8.0-1.fc14 (FEDORA-2010-15378) A collection of UPnP/DLNA services -------------------------------------------------------------------------------- Update Information: New stable 0.8.0 release -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Peter Robinson <pbrobinson@xxxxxxxxx> 0.8.0-1 - New 0.8.0 stable release -------------------------------------------------------------------------------- ================================================================================ sssd-1.3.0-32.fc14 (FEDORA-2010-15399) System Security Services Daemon -------------------------------------------------------------------------------- Update Information: * Tue Sep 28 2010 Stephen Gallagher <sgallagh@xxxxxxxxxx> - 1.3.0-32 - Resolves: rhbz#637955 - libini_config-devel needs libcollection-devel but - doesn't require it -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Stephen Gallagher <sgallagh@xxxxxxxxxx> - 1.3.0-32 - Resolves: rhbz#637955 - libini_config-devel needs libcollection-devel but - doesn't require it * Thu Sep 16 2010 Stephen Gallagher <sgallagh@xxxxxxxxxx> - 1.3.0-31 - Resolves: rhbz#632615 - the krb5 locator plugin isn't packaged for multilib -------------------------------------------------------------------------------- References: [ 1 ] Bug #637955 - libini_config-devel needs libcollection-devel but doesn't require it https://bugzilla.redhat.com/show_bug.cgi?id=637955 [ 2 ] Bug #632615 - the krb5 locator plugin isn't packaged for multilib https://bugzilla.redhat.com/show_bug.cgi?id=632615 -------------------------------------------------------------------------------- ================================================================================ totem-pl-parser-2.30.4-1.fc14 (FEDORA-2010-15389) Totem Playlist Parser library -------------------------------------------------------------------------------- Update Information: This update fixes parsing of video files masquerading as MP4 files, as well as API documentation bugs. -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Bastien Nocera <bnocera@xxxxxxxxxx> 2.30.4-1 - Update to 2.30.4 * Mon Sep 13 2010 Bastien Nocera <bnocera@xxxxxxxxxx> 2.30.3-1 - Update to 2.30.3 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test