The following Fedora 12 Security updates need testing: https://admin.fedoraproject.org/updates/clamav-0.96.3-1200.fc12 https://admin.fedoraproject.org/updates/bzip2-1.0.6-1.fc12 https://admin.fedoraproject.org/updates/ghostscript-8.71-16.fc12 https://admin.fedoraproject.org/updates/mailman-2.1.12-10.fc12 https://admin.fedoraproject.org/updates/ardour-2.8.11-5.fc12 https://admin.fedoraproject.org/updates/gnome-subtitles-1.0-3.fc12 https://admin.fedoraproject.org/updates/openldap-2.4.19-6.fc12 https://admin.fedoraproject.org/updates/gif2png-2.5.1-1202.fc12 https://admin.fedoraproject.org/updates/php-pear-CAS-1.1.3-1.fc12 https://admin.fedoraproject.org/updates/drupal-cck-6.x.2.8-1.fc12 https://admin.fedoraproject.org/updates/tuxguitar-1.2-3.fc12 https://admin.fedoraproject.org/updates/freetype-2.3.11-6.fc12 https://admin.fedoraproject.org/updates/apr-util-1.3.10-1.fc12 https://admin.fedoraproject.org/updates/postgresql-8.4.5-1.fc12 https://admin.fedoraproject.org/updates/webkitgtk-1.2.5-1.fc12 https://admin.fedoraproject.org/updates/poppler-0.12.4-5.fc12 The following builds have been pushed to Fedora 12 updates-testing 3Depict-0.0.2-3.fc12 NetworkManager-0.8.1-8.git20100831.fc12 apr-util-1.3.10-1.fc12 audacious-plugins-2.2-38.fc12 cluster-3.0.17-1.fc12 cmake-fedora-0.1.4-1.fc12 conky-1.8.1-1.fc12 dia-optics-0.1-1.fc12 dovecot-1.2.15-1.fc12 dracut-005-5.fc12 erlang-getopt-0.3-2.fc12 erlang-protobuffs-0-0.2.20100930git58ff962.fc12 fence-agents-3.0.17-1.fc12 gnash-0.8.8-4.fc12 gnujump-1.0.6-4.fc12 gwibber-2.33.0-11.875bzr.fc12 josm-0-0.11.3592svn.fc12 kmplayer-0.11.2c-1.fc12 libdigidoc-2.7.0-1.fc12 libhangul-0.0.11-1.fc12 mc-4.7.4-2.fc12 mercurial-1.6.4-3.fc12 mg-20090107-5.fc12 mimedefang-2.71-1.fc12 mod_pubcookie-3.3.4a-3.fc12 mongodb-1.6.3-1.fc12 motoya-lmaru-fonts-1.00-0.1.20100928git.fc12 nagios-plugins-1.4.15-2.fc12 nss-3.12.8-2.fc12 nss-softokn-3.12.8-1.fc12 nss-util-3.12.8-1.fc12 php-domxml-php4-php5-1.21.2-1.fc12 php-pear-CAS-1.1.3-1.fc12 poppler-0.12.4-5.fc12 postgresql-8.4.5-1.fc12 publican-2.2-0.fc12 publican-redhat-2.4-0.fc12 python-netaddr-0.7.5-1.fc12 resource-agents-3.0.17-1.fc12 rgmanager-3.0.17-1.fc12 rubygem-cairo-1.10.0-2.fc12 rubygem-json_pure-1.4.6-3.fc12 rubygem-marc-0.4.1-1.fc12 rubygem-pkg-config-1.0.7-1.fc12 rubygem-rack-accept-0.4.3-4.fc12 smartcardpp-0.2.0-1.fc12 webkitgtk-1.2.5-1.fc12 xneur-0.10.0-5.fc12 youtube-dl-2010.10.03-1.fc12 Details about builds: ================================================================================ 3Depict-0.0.2-3.fc12 (FEDORA-2010-15920) Valued 3D point cloud visualization and analysis -------------------------------------------------------------------------------- Update Information: New package -------------------------------------------------------------------------------- References: [ 1 ] Bug #622314 - Review request: 3Depict- Valued point cloud visualisation and analysis https://bugzilla.redhat.com/show_bug.cgi?id=622314 -------------------------------------------------------------------------------- ================================================================================ NetworkManager-0.8.1-8.git20100831.fc12 (FEDORA-2010-16012) Network connection manager and user applications -------------------------------------------------------------------------------- Update Information: This update preserves custom hostnames on local-mapped lines in /etc/hosts, and fixes an issue with out-dated information being left in the /etc/hosts file, which sometimes prevented logging in after suspend/hibernate. -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 7 2010 Dan Williams <dcbw@xxxxxxxxxx> - 0.8.1-8 - core: preserve custom local-mapped hostnames in /etc/hosts (rh #627269) * Thu Oct 7 2010 Dan Williams <dcbw@xxxxxxxxxx> - 0.8.1-7 - core: remove stale /etc/hosts mappings (rh #630146) -------------------------------------------------------------------------------- References: [ 1 ] Bug #627269 - [enh] preserve 127.0.0.1 localhost/localhost6 line if possible https://bugzilla.redhat.com/show_bug.cgi?id=627269 [ 2 ] Bug #630146 - NetworkManager doesn't remove entry from /etc/hosts when connection dies preventing login https://bugzilla.redhat.com/show_bug.cgi?id=630146 -------------------------------------------------------------------------------- ================================================================================ apr-util-1.3.10-1.fc12 (FEDORA-2010-15916) Apache Portable Runtime Utility library -------------------------------------------------------------------------------- Update Information: This update includes the latest stable release of the APR-util library. A memory leak in the apr_brigade_split_line() function allowed a denial of service attack network services using this function, such as the Apache HTTP Server. (CVE-2010-1623) Bug fixes to the "thread pool" interfaces and ODBC support are also included. -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 5 2010 Joe Orton <jorton@xxxxxxxxxx> - 1.3.10-1 - update to 1.3.10 * Wed Nov 25 2009 Joe Orton <jorton@xxxxxxxxxx> - 1.3.9-3 - rebuild for new BDB -------------------------------------------------------------------------------- References: [ 1 ] Bug #640281 - CVE-2010-1623 apr-util: DoS (memory consumption) by processing certain APR buckets https://bugzilla.redhat.com/show_bug.cgi?id=640281 -------------------------------------------------------------------------------- ================================================================================ audacious-plugins-2.2-38.fc12 (FEDORA-2010-15923) Plugins for the Audacious media player -------------------------------------------------------------------------------- Update Information: This updates removes the "OpenPSF PSF1/PSF2 Audio Plugin" (psf.so) because of licensing issues. -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 7 2010 Michael Schwendt <mschwendt@xxxxxxxxxxxxxxxxx> - 2.2-38 - Update stripped tarball that removes the .psf plugin because of a licensing issue. -------------------------------------------------------------------------------- ================================================================================ cluster-3.0.17-1.fc12 (FEDORA-2010-15996) Red Hat Cluster -------------------------------------------------------------------------------- Update Information: This update addresses several major bugs. Everybody is recommended to update as soon as possible. -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 6 2010 Fabio M. Di Nitto <fdinitto@xxxxxxxxxx> - 3.0.17-1 - new upstream release Resolves: rhbz#632595, rhbz#633856, rhbz#632385, rhbz#628013 Resolves: rhbz#621313, rhbz#595383, rhbz#580492, rhbz#605733 Resolves: rhbz#636243, rhbz#591003, rhbz#637913, rhbz#634718 Resolves: rhbz#617247, rhbz#617247, rhbz#617234, rhbz#631943 Resolves: rhbz#639018 -------------------------------------------------------------------------------- ================================================================================ cmake-fedora-0.1.4-1.fc12 (FEDORA-2010-15990) CMake helper modules for fedora developers -------------------------------------------------------------------------------- Update Information: Initial package submission. -------------------------------------------------------------------------------- References: [ 1 ] Bug #639816 - Review Request: cmake-fedora - CMake helper modules for fedora developers https://bugzilla.redhat.com/show_bug.cgi?id=639816 -------------------------------------------------------------------------------- ================================================================================ conky-1.8.1-1.fc12 (FEDORA-2010-15984) A system monitor for X -------------------------------------------------------------------------------- Update Information: http://conky.sourceforge.net/changelog.html -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 6 2010 Miroslav Lichvar <mlichvar@xxxxxxxxxx> - 1.8.1-1 - update to 1.8.1 * Wed Apr 21 2010 Miroslav Lichvar <mlichvar@xxxxxxxxxx> - 1.8.0-4 - remove rpath * Wed Apr 14 2010 Miroslav Lichvar <mlichvar@xxxxxxxxxx> - 1.8.0-3 - enable imlib support (#581986) * Thu Apr 1 2010 Miroslav Lichvar <mlichvar@xxxxxxxxxx> - 1.8.0-2 - update to 1.8.0 * Mon Feb 15 2010 Miroslav Lichvar <mlichvar@xxxxxxxxxx> - 1.7.2-2 - fix building with new audacious (#556317) -------------------------------------------------------------------------------- ================================================================================ dia-optics-0.1-1.fc12 (FEDORA-2010-15930) Dia Optics shapes -------------------------------------------------------------------------------- Update Information: Optic shapes for Dia. -------------------------------------------------------------------------------- ================================================================================ dovecot-1.2.15-1.fc12 (FEDORA-2010-15921) Secure imap and pop3 server -------------------------------------------------------------------------------- Update Information: - updated to dovecot 1.2.15, sieve 0.1.18, managesieve 0.11.12 - acl: Fixed the logic of merging multiple ACL entries - acl: Don't give admin rights to all owner mailboxes - Maildir: Fixed potential "Duplicate file entry" in dovecot-uidlist file errors. - Maildir: Avoid unnecessary uidlist recreation during mail delivery -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 5 2010 Michal Hlavinka <mhlavink@xxxxxxxxxx> - 1:1.2.15-1 - updated to dovecot 1.2.15, sieve 0.1.18, managesieve 0.11.12 - acl: Fixed the logic of merging multiple ACL entries - acl: Don't give admin rights to all owner mailboxes - Maildir: Fixed potential "Duplicate file entry" in dovecot-uidlist file errors. - Maildir: Avoid unnecessary uidlist recreation during mail delivery. -------------------------------------------------------------------------------- ================================================================================ dracut-005-5.fc12 (FEDORA-2010-15187) Initramfs generator using udev -------------------------------------------------------------------------------- Update Information: This dracut update fixes a lot of bugs encountered in F12, F13, F14 and Red Hat Enterprise. The patches added were: - kernel-modules: add more hardcoded modules - dracut-functions: use udevadm to get ID_FS_* - dracut.conf: use "+=" as default for config variables - znet: use ccw-init and ccw rules from s390utils in dracut - znet: renamed rd_CCW to rd_ZNET - fcoe: add /sbin/vconfig and the 8021q kernel module - dracut.8: fix rd_LVM_LV description - plymouth: only display luksname and device for multiple luks - dracut.spec: remove elfutils-libelf requirement - use "grep" directly without "nm" to drop binutils requirement - plymouth/plymouth-populate-initrd: get rid of awk - dracut: get rid of the "file" command - dracut.spec: clean up the requirements - 90mdraid dracut-functions: fix md raid hostonly detection - 40network/parse-ip-opts.sh: add "ip=auto6" to valid options - 40network/dhclient-script: be more verbose - 40network/ifup: be more verbose - TEST-50-MULTINIC: do not provide a cdrom in the testcase - 95fcoe/fcoe-up: wait_for_if_up - get rid of rdnetdebug - 95znet: removed 55-ccw.rules and ccw_init - Makefile: make more clean - selinux-loadpolicy.sh: exit for "selinux=0" - dracut-functions: check if specific dracut module is missing - multipath: simplify and install wwids (rhbz 595719) - multipath: remove multipath udev rules, if no multipath.conf was found - 90crypt: 'crypto_LUKS' identifier corrected - selinux: move selinux to a separate module - plymouth/cryptroot-ask.sh: beautify password prompt - network: depend on ifcfg, if /etc/sysconfig/network-scripts exist - network: strip pxelinux hardware type field from BOOTIF - dracut.spec: moved znet to dracut-network - Write rules for symlinks to /dev/.udev/rules.d for later usage - dracut-functions: set LANG=C for ldd output parsing - dracut-functions: use LC_ALL=C rather than LANG=C - dmsquash, resume: do not name the /dev/.udev/rules like the /etc ones - dmsquash-live: mount live image at /dev/.initramfs/live - dmsquash-live: depend on dm module - dmsquash-live: do not umount /dev/.initramfs/live for cdrom_id to work - plymouth: depend on crypt, if cryptsetup exists - dracut.spec: removed duplicate COPYING - Just look for cryptroot instead of /sbin/cryptroot - Have cryptroot-ask load dm_crypt if needed. - crypt: assemble 70-luks.rules dynamically - cryptroot-ask: s/getargs rd_NO_CRYPTTAB/getarg rd_NO_CRYPTTAB/g - crypt/parse-crypt.sh: fix end label for luks udev rules - crypt: wait for all rd_LUKS_UUID disks to appear - dracut-lib.sh: getarg() returns the value of the last argument - dracut: fixed stripping of kernel modules - conffile before confdir - selinux: fixed error handling for load-policy - btrfs: add hostonly check - lvm: wait for all rd_LVM_LV and rd_LVM_VG specified to appear - 90crypt: keys on external devices support - crypt: remove emergency source of dracut-lib.sh - dracut-functions: fix "-m -a" handling - removed redundant 64-lvm.rules install - crypt: strip "luks-" from rd_LUKS_UUID - crypt: loop until all non-busy crypt devs closed - dracut-functions: fix check=255 logic and dependencies - crypt: fix printf - mdraid: remove "local" - mdraid: remove mdadm.conf on rd_NO_MDADMCONF - dracut-lib.sh: fixed getarg for nonexistent parameters - mkdir /dev/.udev/rules.d with mode 0755 - init: create /dev/.udev/rules.d with correct permissions - dracut-functions: fixed --omit - Harden check for used modules in hostonly mode - fips: udev trigger with action=add - dracut: let --fwdir be specified multiple times - dracut-functions: use /proc/self/mountinfo, instead of /proc/mounts - dracut: add --fstab, to ignore /proc/self/mountinfo - plymouth: load dm_crypt module - crypt: depend on dm - plymouth: udev trigger with action=add - dm: install all md/dm* kernel modules - mkinitrd: do not call dracut in host only mode - dmraid: switch to rd_NO_MDIMSM, if no mdadm installed - mknod with mode and set umask for the rest - plymouth: do not create hvc0 - init: set old umask before switch_root - init: do not set umask, yet - lvm: also handle LVM1 volumes - dracut-functions: filter_kernel_modules() search in extra dirs - dracut: lib and usr/lib dirs detection - lvm: install lvm mirror and snaphot libs - lvm: support for dynamic LVM SNAPSHOT root volume - 95fstab-sys: mount all /etc/fstab.sys volumes before switch_root - TEST-12-RAID-DEG: mark test failed for multiple dummy rd_LVM_VG - test: double disk space for root images - network: kill -9 dhclient, if normal kill does not succeed - md: do not use --no-degraded for incremental mode dracut-005-5.fc12 also fixes the permissions, which were broken in dracut-005-4.fc12 and lead to selinux policy not loading. -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 6 2010 Harald Hoyer <harald@xxxxxxxxxx> 005-5 - fixed file permissions for the selinux module - fixed file permissions for all *.sh, check and install scripts which got lost in the patches * Wed Sep 22 2010 Harald Hoyer <harald@xxxxxxxxxx> 005-4 - backported a lot of bugfixes from git * Tue Apr 20 2010 Harald Hoyer <harald@xxxxxxxxxx> 005-3 - fixed network with multiple nics - fixed nfsidmap paths - do not run blkid on non active container raids - fixed cdrom polling mechanism - update to latest git -------------------------------------------------------------------------------- References: [ 1 ] Bug #573078 - System will not boot with singleton RAID1 https://bugzilla.redhat.com/show_bug.cgi?id=573078 [ 2 ] Bug #578060 - Dracut cannot resolve dns and needs numeric ip address for nfs root https://bugzilla.redhat.com/show_bug.cgi?id=578060 [ 3 ] Bug #583348 - Dracut fails in attempt to kill dhclient https://bugzilla.redhat.com/show_bug.cgi?id=583348 [ 4 ] Bug #583351 - dracut ignores fstab.sys when setting up root https://bugzilla.redhat.com/show_bug.cgi?id=583351 [ 5 ] Bug #589827 - requires elfutils-libelf? https://bugzilla.redhat.com/show_bug.cgi?id=589827 [ 6 ] Bug #593460 - dracut mdraid hostonly checking doesn't work for imsm https://bugzilla.redhat.com/show_bug.cgi?id=593460 [ 7 ] Bug #593830 - Error on boot: /init: 3: cannot create /sys/block/sr0: Is a directory https://bugzilla.redhat.com/show_bug.cgi?id=593830 [ 8 ] Bug #602649 - Add support for booting LVM snapshot root volume https://bugzilla.redhat.com/show_bug.cgi?id=602649 [ 9 ] Bug #602784 - RFE - support for dynamic LVM SNAPSHOT root volume https://bugzilla.redhat.com/show_bug.cgi?id=602784 [ 10 ] Bug #607149 - Dracut syslog support is broken https://bugzilla.redhat.com/show_bug.cgi?id=607149 [ 11 ] Bug #614971 - btrfs multi-device fs causes boot fail with "mount: wrong fs type, bad option . ." https://bugzilla.redhat.com/show_bug.cgi?id=614971 [ 12 ] Bug #622888 - dracut does not include "extra" and "weak-updates" directories in non-hostonly mode https://bugzilla.redhat.com/show_bug.cgi?id=622888 [ 13 ] Bug #626523 - /dev/hvc0 created on boot https://bugzilla.redhat.com/show_bug.cgi?id=626523 [ 14 ] Bug #627364 - After the update to udev I am no longer able to mount my encrypted home directory created using liveUSB tools https://bugzilla.redhat.com/show_bug.cgi?id=627364 [ 15 ] Bug #538079 - dracut built initramfs hanging while activating volume groups https://bugzilla.redhat.com/show_bug.cgi?id=538079 [ 16 ] Bug #557426 - "iso-scan/filename" boot option not supported in Fedora? https://bugzilla.redhat.com/show_bug.cgi?id=557426 -------------------------------------------------------------------------------- ================================================================================ erlang-getopt-0.3-2.fc12 (FEDORA-2010-15908) Erlang module to parse command line arguments using the GNU getopt syntax -------------------------------------------------------------------------------- Update Information: Initial commit (review request in rhbz #638948) -------------------------------------------------------------------------------- References: [ 1 ] Bug #638948 - Review Request: erlang-getopt - Erlang module to parse command line arguments using the GNU getopt syntax https://bugzilla.redhat.com/show_bug.cgi?id=638948 -------------------------------------------------------------------------------- ================================================================================ erlang-protobuffs-0-0.2.20100930git58ff962.fc12 (FEDORA-2010-16010) A set of Protocol Buffers tools and modules for Erlang applications -------------------------------------------------------------------------------- Update Information: Initial commit (review request in rhbz #638974) -------------------------------------------------------------------------------- References: [ 1 ] Bug #638974 - Review Request: erlang-protobuffs - A set of Protocol Buffers tools and modules for Erlang applications https://bugzilla.redhat.com/show_bug.cgi?id=638974 -------------------------------------------------------------------------------- ================================================================================ fence-agents-3.0.17-1.fc12 (FEDORA-2010-15996) Fence Agents for Red Hat Cluster -------------------------------------------------------------------------------- Update Information: This update addresses several major bugs. Everybody is recommended to update as soon as possible. -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 6 2010 Fabio M. Di Nitto <fdinitto@xxxxxxxxxx> - 3.0.17-1 - new upstream release Resolves: rhbz#632595, rhbz#633856, rhbz#632385, rhbz#628013 Resolves: rhbz#621313, rhbz#595383, rhbz#580492, rhbz#605733 Resolves: rhbz#636243, rhbz#591003, rhbz#637913, rhbz#634718 Resolves: rhbz#617247, rhbz#617247, rhbz#617234, rhbz#631943 Resolves: rhbz#639018 - spec file update: Add Requires: python-pycurl for fence_cisco_ucs. -------------------------------------------------------------------------------- ================================================================================ gnash-0.8.8-4.fc12 (FEDORA-2010-13415) GNU flash movie player -------------------------------------------------------------------------------- Update Information: An update to the latest upstream release of Gnash, providing many bugfixes and a few minor enhancements, see: http://www.gnashdev.org/?q=node/76 This update also fixes 2 issues with the documentation build (caught by the stricter make in Fedora 14). -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 6 2010 Kevin Kofler <Kevin@xxxxxxxxxxxxxxxx> - 1:0.8.8-4 - backport 2 upstream commits to make it work with libcurl >= 7.21.x (#639737) * Sat Oct 2 2010 Kevin Kofler <Kevin@xxxxxxxxxxxxxxxx> - 1:0.8.8-3 - fix FTBFS (#631181) (fix by Hicham Haouari) * Fri Aug 27 2010 Kevin Kofler <Kevin@xxxxxxxxxxxxxxxx> - 1:0.8.8-2 - fix the check for the docbook2X tools being in Perl * Wed Aug 25 2010 Kevin Kofler <Kevin@xxxxxxxxxxxxxxxx> - 1:0.8.8-1.1 - rebuild for the official release of Boost 1.44.0 (silent ABI change) * Mon Aug 23 2010 Kevin Kofler <Kevin@xxxxxxxxxxxxxxxx> - 1:0.8.8-1 - update to 0.8.8 (#626352, #574100, #606170) - update file list (patch by Jeff Smith) * Thu Jul 29 2010 Bill Nottingham <notting@xxxxxxxxxx> - 1:0.8.7-5 - Rebuilt for boost-1.44, again * Tue Jul 27 2010 Bill Nottingham <notting@xxxxxxxxxx> - 1:0.8.7-4 - Rebuilt for boost-1.44 * Wed Jul 21 2010 David Malcolm <dmalcolm@xxxxxxxxxx> - 1:0.8.7-3 - Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild * Tue Jun 8 2010 Kevin Kofler <Kevin@xxxxxxxxxxxxxxxx> - 1:0.8.7-2 - -plugin: avoid file (directory) dependency (#601942) -------------------------------------------------------------------------------- References: [ 1 ] Bug #626352 - gnash-0.8.8 is available https://bugzilla.redhat.com/show_bug.cgi?id=626352 [ 2 ] Bug #574100 - [abrt] crash in gnash-1:0.8.7-1.fc12: Process /usr/bin/gtk-gnash was killed by signal 6 (SIGABRT) [AVM2] https://bugzilla.redhat.com/show_bug.cgi?id=574100 [ 3 ] Bug #606170 - Youtube videos do not work https://bugzilla.redhat.com/show_bug.cgi?id=606170 -------------------------------------------------------------------------------- ================================================================================ gnujump-1.0.6-4.fc12 (FEDORA-2010-15919) A jumping game which is a clone of xjump -------------------------------------------------------------------------------- Update Information: Fixed implicit DSO linking -------------------------------------------------------------------------------- ChangeLog: * Fri Oct 8 2010 Vivek Shah <boni.vivek at gmail.com> - 1.0.6-4 - Fixed ImplicitDSO bug #564630 -------------------------------------------------------------------------------- References: [ 1 ] Bug #564630 - FTBFS gnujump-1.0.6-3.fc12: ImplicitDSOLinking https://bugzilla.redhat.com/show_bug.cgi?id=564630 -------------------------------------------------------------------------------- ================================================================================ gwibber-2.33.0-11.875bzr.fc12 (FEDORA-2010-15976) An open source microblogging client for GNOME developed with Python and GTK -------------------------------------------------------------------------------- Update Information: update to 875bzr, BigWhales DM fixes, fix digg, fix kitchen unicode patch, fix glib usage, right-click closes streams now, fixes identi.ca message parsing -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 7 2010 Tom "spot" Callaway <tcallawa@xxxxxxxxxx> - 1:2.33.0-11.875bzr - right click on a stream in the navigation bar and it closes - RIBBIT! * Thu Oct 7 2010 Tom "spot" Callaway <tcallawa@xxxxxxxxxx> - 1:2.33.0-10.875bzr - fix place where glib was being used without being imported - apply BigWhale's DM fixes * Thu Oct 7 2010 Tom "spot" Callaway <tcallawa@xxxxxxxxxx> - 1:2.33.0-9.875bzr - fix digg, apply kitchen changes to digg too * Wed Oct 6 2010 Tom "spot" Callaway <tcallawa@xxxxxxxxxx> - 1:2.33.0-8.875bzr - sync to bzr875 -------------------------------------------------------------------------------- ================================================================================ josm-0-0.11.3592svn.fc12 (FEDORA-2010-15929) An editor for OpenStreetMap (OSM) -------------------------------------------------------------------------------- Update Information: Update to 3592 svn revision -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 7 2010 Cedric OLIVIER <cedric.olivier@xxxxxxx> 0-0.11.3592svn - Update to 3592 svn revision -------------------------------------------------------------------------------- ================================================================================ kmplayer-0.11.2c-1.fc12 (FEDORA-2010-16001) A simple front-end for MPlayer/FFMpeg/Phonon -------------------------------------------------------------------------------- Update Information: Two crash fixes: - The youtube generator could generate an information page that crashed kmplayer - A XML document with trailing XML fragments also crashed kmplayer. A revert of the in-place playlist item title renaming in 0.11.2. There was no easy way to rename a new group for instance. -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 5 2010 Orcan Ogetbil <oget[DOT]fedora[AT]gmail[DOT]com> - 0.11.2c-1 - kmplayer-0.11.2c -------------------------------------------------------------------------------- ================================================================================ libdigidoc-2.7.0-1.fc12 (FEDORA-2010-15963) Library for handling digitally signed documents -------------------------------------------------------------------------------- Update Information: libDigiDoc is a library implementing a subset of the XAdES digital signature standard on top of Estonian specific .ddoc container format. It allows to create, sign, verify, and modify digidoc XML containers. -------------------------------------------------------------------------------- References: [ 1 ] Bug #640550 - Review Request: libdigidoc - Library for handling digitally signed documents https://bugzilla.redhat.com/show_bug.cgi?id=640550 -------------------------------------------------------------------------------- ================================================================================ libhangul-0.0.11-1.fc12 (FEDORA-2010-16013) Hangul input library -------------------------------------------------------------------------------- Update Information: new upstream release -------------------------------------------------------------------------------- ChangeLog: * Mon Oct 4 2010 Daiki Ueno <dueno@xxxxxxxxxx> - 0.0.11-1 - update to 0.0.11 -------------------------------------------------------------------------------- ================================================================================ mc-4.7.4-2.fc12 (FEDORA-2010-15958) User-friendly text console file manager and visual shell -------------------------------------------------------------------------------- Update Information: fix globbing, cons.saver and enable samba VFS -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 7 2010 Jindrich Novy <jnovy@xxxxxxxxxx> 4.7.4-2 - fix globbing (#629679), thanks to Denys Vlasenko - don't use vcsa for cons.saver (#640365) - enable samba VFS (#637059) -------------------------------------------------------------------------------- References: [ 1 ] Bug #629679 - Midnight Commander use * globbing badly https://bugzilla.redhat.com/show_bug.cgi?id=629679 [ 2 ] Bug #640365 - warning: user vcsa does not exist - using root https://bugzilla.redhat.com/show_bug.cgi?id=640365 [ 3 ] Bug #637059 - mc doesn't support smbfs https://bugzilla.redhat.com/show_bug.cgi?id=637059 -------------------------------------------------------------------------------- ================================================================================ mercurial-1.6.4-3.fc12 (FEDORA-2010-15925) Mercurial -- a distributed SCM -------------------------------------------------------------------------------- Update Information: see: http://http://mercurial.selenic.com/wiki/WhatsNew see: http://http://mercurial.selenic.com/wiki/WhatsNew -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 6 2010 Neal Becker <ndbecker2@xxxxxxxxx> - 1.6.4-3 - patch i18n.py so hg will find moved locale files * Fri Oct 1 2010 Neal Becker <ndbecker2@xxxxxxxxx> - 1.6.4-1 - Update to 1.6.4 * Fri Aug 27 2010 Neal Becker <ndbecker2@xxxxxxxxx> - 1.6.3-1 - Fix some rpmlint issues -------------------------------------------------------------------------------- ================================================================================ mg-20090107-5.fc12 (FEDORA-2010-15948) Tiny Emacs-like editor -------------------------------------------------------------------------------- References: [ 1 ] Bug #586473 - Review Request: mg - Tiny Emacs-like editor https://bugzilla.redhat.com/show_bug.cgi?id=586473 -------------------------------------------------------------------------------- ================================================================================ mimedefang-2.71-1.fc12 (FEDORA-2010-15971) E-Mail filtering framework using Sendmail's Milter interface -------------------------------------------------------------------------------- Update Information: * More spelunking in the awful innards of Perl reveals that our original fix in 2.70 for handling of $SIG{FOO}... didn't completely fix the problem. On systems where Perl was compiled to use threading, running "md-mx-ctrl reread" could result in subsequent failure by scanners to set signal dispositions. This has been fixed. * Fix typo in examples/init-script.in * Fix compatibility with Postfix (broken in 2.70.) * Fixed a bug in embedded Perl: We have to call PERL_SET_CONTEXT after forking or Perl gets confused. In particular, setting signal-handling dispositions using $SIG{FOO} = sub { ... } breaks. * Clarify wording of mimedefang-filter man page. * Remove obsolete code that used to attempt to generate working directory names. Deactivate the no-longer-needed "-M" mimedefang option. * Add new "-y" option to mimedefang-multiplexor. This limits the number of concurrent "recipok" commands on a per-domain basis. * Remove Anomy::HTMLCleaner support. * use MIME::Parser::Filer's ignore_filename() call instead of subclassing to override evil_filename(). Same effect, less code. * refactor resend_message_one_recipient() to use resend_message_specifying_mode() instead of reimplementing it. * header_timezone() now generates a strictly RFC2822-compliant timezone string without needing POSIX::strftime() * Ensure that decode_mimewords() is called in scalar context. -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 5 2010 Robert Scheck <robert@xxxxxxxxxxxxxxxxx> 2.71-1 - Upgrade to 2.71 -------------------------------------------------------------------------------- ================================================================================ mod_pubcookie-3.3.4a-3.fc12 (FEDORA-2010-15985) A solution for single sign-on authentication to websites -------------------------------------------------------------------------------- Update Information: Here is where you give an explanation of your update. -------------------------------------------------------------------------------- References: [ 1 ] Bug #490940 - Review Request: mod_pubcookie - A solution for single sign-on authentication to websites https://bugzilla.redhat.com/show_bug.cgi?id=490940 -------------------------------------------------------------------------------- ================================================================================ mongodb-1.6.3-1.fc12 (FEDORA-2010-15967) High-performance, schema-free document-oriented database -------------------------------------------------------------------------------- Update Information: - new upstream release 1.6.3 (see upstream's changelog for more information: http://jira.mongodb.org/browse/SERVER/fixforversion/10190) -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 7 2010 IonuÈ C. ArÈÄriÈi <mapleoin@xxxxxxxxxxxxxxxxx> - 1.6.3-1 - removed js Requires - new upstream release - added more excludearches: sparc s390, s390x and bugzilla pointer -------------------------------------------------------------------------------- ================================================================================ motoya-lmaru-fonts-1.00-0.1.20100928git.fc12 (FEDORA-2010-15974) Japanese Round Gothic-typeface TrueType fonts by MOTOYA Co,LTD -------------------------------------------------------------------------------- ================================================================================ nagios-plugins-1.4.15-2.fc12 (FEDORA-2010-15905) Host/service/network monitoring program plugins for Nagios -------------------------------------------------------------------------------- Update Information: Merged check_udp into check_tcp and fixed check_swap -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 7 2010 Peter Lemenkov <lemenkov@xxxxxxxxx> - 1.4.15-2 - Dropped check_udp sub-package (see rhbz #634067). Anyway it provided just a symlink to check_tcp. - Fixed weird issue with check_swap returning ok in case of missing swap (see rhbz #512559). -------------------------------------------------------------------------------- References: [ 1 ] Bug #512559 - check_swap returns OK, if no swap activated https://bugzilla.redhat.com/show_bug.cgi?id=512559 [ 2 ] Bug #634067 - nagios-plugins-udp missing dependency on nagios-plugins-tcp https://bugzilla.redhat.com/show_bug.cgi?id=634067 -------------------------------------------------------------------------------- ================================================================================ nss-3.12.8-2.fc12 (FEDORA-2010-15989) Network Security Services -------------------------------------------------------------------------------- Update Information: Update to 3.12.8 -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 6 2010 Elio Maldonado <emaldona@xxxxxxxxxx> - 3.12.8-2 - Move triggerpostun -n nss-sysinit script ahead of the other ones (#639248) * Tue Oct 5 2010 Elio Maldonado <emaldona@xxxxxxxxxx> - 3.12.8-1 - Update to 3.12.8 - Fix invalid %postun scriptlet (#639248) * Thu Sep 30 2010 Elio Maldonado <emaldona@xxxxxxxxxx> - 3.12.7-9 - Fix version on triggerpostun scriplet (#636787) * Wed Sep 29 2010 Elio Maldonado <emaldona@xxxxxxxxxx> - 3.12.7-8 - Replace posttrans sysinit scriptlet with a triggerpostun one (#636787) - Fix and cleanup the setup-nsssysinit.sh script (#636792, #636801) * Tue Sep 28 2010 Elio Maldonado <emaldona@xxxxxxxxxx> - 3.12.7-7 - Prevent of nss-sysinit disabling on package upgrade (#636787) - Create pkcs11.txt with correct permissions regardless of umask (#636792) - Setup-nsssysinit.sh reports whether nss-sysinit is turned on or off (#636801) - Add provides nss-pkcs11-devel-static to comply with packaging guidelines (#609612) -------------------------------------------------------------------------------- References: [ 1 ] Bug #636787 - nss-sysinit: sysinit disabled on package upgrade https://bugzilla.redhat.com/show_bug.cgi?id=636787 [ 2 ] Bug #636792 - nss-sysinit: setup-nsssysinit.sh should create pkcs11.txt with correct permissions regardless of current umask https://bugzilla.redhat.com/show_bug.cgi?id=636792 [ 3 ] Bug #636801 - [RFE] nss-sysinit: setup-nsssysinit.sh should be able to report current status https://bugzilla.redhat.com/show_bug.cgi?id=636801 [ 4 ] Bug #609612 - nss : does not adhere to Static Library Packaging Guidelines https://bugzilla.redhat.com/show_bug.cgi?id=609612 [ 5 ] Bug #609613 - nss-softokn : does not adhere to Static Library Packaging Guidelines https://bugzilla.redhat.com/show_bug.cgi?id=609613 -------------------------------------------------------------------------------- ================================================================================ nss-softokn-3.12.8-1.fc12 (FEDORA-2010-15989) Network Security Services Softoken Module -------------------------------------------------------------------------------- Update Information: Update to 3.12.8 -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 28 2010 Elio Maldonado <emaldona@xxxxxxxxxx> - 3.12.8-1 - Update to 3.12.8 - Add provides nss-softokn-freebl-static to adhere to static library packaging guidelines (#609613) - Cleanup some comments to address rpmlint warnings -------------------------------------------------------------------------------- References: [ 1 ] Bug #636787 - nss-sysinit: sysinit disabled on package upgrade https://bugzilla.redhat.com/show_bug.cgi?id=636787 [ 2 ] Bug #636792 - nss-sysinit: setup-nsssysinit.sh should create pkcs11.txt with correct permissions regardless of current umask https://bugzilla.redhat.com/show_bug.cgi?id=636792 [ 3 ] Bug #636801 - [RFE] nss-sysinit: setup-nsssysinit.sh should be able to report current status https://bugzilla.redhat.com/show_bug.cgi?id=636801 [ 4 ] Bug #609612 - nss : does not adhere to Static Library Packaging Guidelines https://bugzilla.redhat.com/show_bug.cgi?id=609612 [ 5 ] Bug #609613 - nss-softokn : does not adhere to Static Library Packaging Guidelines https://bugzilla.redhat.com/show_bug.cgi?id=609613 -------------------------------------------------------------------------------- ================================================================================ nss-util-3.12.8-1.fc12 (FEDORA-2010-15989) Network Security Services Utilities Library -------------------------------------------------------------------------------- Update Information: Update to 3.12.8 -------------------------------------------------------------------------------- ChangeLog: * Mon Oct 4 2010 Elio Maldonado <emaldona@xxxxxxxxxx> - 3.12.8-1 - Update to 3.12.8 -------------------------------------------------------------------------------- References: [ 1 ] Bug #636787 - nss-sysinit: sysinit disabled on package upgrade https://bugzilla.redhat.com/show_bug.cgi?id=636787 [ 2 ] Bug #636792 - nss-sysinit: setup-nsssysinit.sh should create pkcs11.txt with correct permissions regardless of current umask https://bugzilla.redhat.com/show_bug.cgi?id=636792 [ 3 ] Bug #636801 - [RFE] nss-sysinit: setup-nsssysinit.sh should be able to report current status https://bugzilla.redhat.com/show_bug.cgi?id=636801 [ 4 ] Bug #609612 - nss : does not adhere to Static Library Packaging Guidelines https://bugzilla.redhat.com/show_bug.cgi?id=609612 [ 5 ] Bug #609613 - nss-softokn : does not adhere to Static Library Packaging Guidelines https://bugzilla.redhat.com/show_bug.cgi?id=609613 -------------------------------------------------------------------------------- ================================================================================ php-domxml-php4-php5-1.21.2-1.fc12 (FEDORA-2010-15926) XML transition from PHP4 domxml to PHP5 dom module -------------------------------------------------------------------------------- Update Information: Upstream Changelog: * fix DomNode->add_child() -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 5 2010 Remi Collet <Fedora@xxxxxxxxxxxxxxxxx> - 1.21.2-1 - update to 1.21.2 (minor bugfix) * Thu Jun 3 2010 Remi Collet <Fedora@xxxxxxxxxxxxxxxxx> - 1.21.1-3 - fix URL -------------------------------------------------------------------------------- ================================================================================ php-pear-CAS-1.1.3-1.fc12 (FEDORA-2010-15970) Central Authentication Service client library in php -------------------------------------------------------------------------------- Update Information: This release contains 3 security fixes for vulnerabilities in the proxy callback mechanism. These vulnerabilities only affect phpCAS clients that are running in proxy() mode. The release is fully compatible with all versions 1.1.x versions. The changes are: Security Issue * CVE-2010-3690 phpCAS: XSS during a proxy callback [PHPCAS-80] (Joachim Fritschi) * CVE-2010-3691 phpCAS: prevent symlink attacks during a proxy callback [PHPCAS-80] (Joachim Fritschi) * CVE-2010-3692 phpCAS: directory traversal during a proxy callback [PHPCAS-80] (Joachim Fritschi) Bug Fixes * fix broken redirection with safari [PHPCAS-79] (Alex Barker) * fix missing exit() call during ticket validation [PHPCAS-76] (Igor Blanco,Joachim Fritschi) * fix a notice because REQUEST_URL is not defined on IIS [PHPCAS-81] (IÃaki Arenaza) * fix a typo in pgt-db.php [PHPCAS-75] (Julien Cochennec) * removal of the non functional pgt-db backend [PHPCAS-81] (Joachim Fritschi) -------------------------------------------------------------------------------- ChangeLog: * Mon Oct 4 2010 Remi Collet <Fedora@xxxxxxxxxxxxxxxxx> - 1.1.3-1 - update to 1.1.3 - fix CVE-2010-3690, CVE-2010-3691, CVE-2010-3692 - set timezone during build -------------------------------------------------------------------------------- ================================================================================ poppler-0.12.4-5.fc12 (FEDORA-2010-15981) PDF rendering library -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 7 2010 Marek Kasik <mkasik@xxxxxxxxxx> - 0.12.4-5 - Add poppler-0.12.4-CVE-2010-3702.patch (Properly initialize parser) - Add poppler-0.12.4-CVE-2010-3703.patch (Properly initialize stack) - Add poppler-0.12.4-CVE-2010-3704.patch (Fix crash in broken pdf (code < 0)) - Resolves: #639861 -------------------------------------------------------------------------------- References: [ 1 ] Bug #595245 - CVE-2010-3702 xpdf: uninitialized Gfx::parser pointer dereference https://bugzilla.redhat.com/show_bug.cgi?id=595245 [ 2 ] Bug #638960 - CVE-2010-3704 xpdf: array indexing error in FoFiType1::parse() https://bugzilla.redhat.com/show_bug.cgi?id=638960 [ 3 ] Bug #639356 - CVE-2010-3703 poppler: use of initialized pointer in PostScriptFunction https://bugzilla.redhat.com/show_bug.cgi?id=639356 -------------------------------------------------------------------------------- ================================================================================ postgresql-8.4.5-1.fc12 (FEDORA-2010-15954) PostgreSQL client programs -------------------------------------------------------------------------------- Update Information: Update to PostgreSQL 8.4.5, for various fixes described at http://www.postgresql.org/docs/8.4/static/release-8-4-5.html including the fix for CVE-2010-3433 -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 5 2010 Tom Lane <tgl@xxxxxxxxxx> 8.4.5-1 - Update to PostgreSQL 8.4.5, for various fixes described at http://www.postgresql.org/docs/8.4/static/release-8-4-5.html including the fix for CVE-2010-3433 Related: #639371 -------------------------------------------------------------------------------- References: [ 1 ] Bug #639371 - CVE-2010-3433 PostgreSQL (PL/Perl, PL/Tcl): SECURITY DEFINER function keyword bypass https://bugzilla.redhat.com/show_bug.cgi?id=639371 -------------------------------------------------------------------------------- ================================================================================ publican-2.2-0.fc12 (FEDORA-2010-15913) Common files and scripts for publishing with DocBook XML -------------------------------------------------------------------------------- Update Information: * Wed Oct 06 2010 Jeff Fearn <jfearn@xxxxxxxxxx> 2.2-0 - Extend callout graphics to 40; adjust colour and font BZ #629804 <r.landmann@xxxxxxxxxx> - Make keycombo example consistent with RHEL6 behaviour. BZ #618735 <r.landmann@xxxxxxxxxx> - Restrict CSS style for edition to title pages to avoid applying to bibliographies <r.landmann@xxxxxxxxxx> - Fix images/icon.svg breaking rpm build. BZ #612515 - Fix empty term breaking PDF build. BZ #614728 - Fix footnote not catching modified para. BZ #565903 - Fix SRPM not including web labels. BZ #621036 - Update tocs when home page is updated. BZ #612027 - Don't display stats for unused languages. BZ #613500 - Fix admonitions/varlistentry not having IDs. BZ #616112 - Fix procedure/itemizedlist/orderedlist not having IDs. BZ #612817 - Catch invalid revision in translation. BZ #621721 - Limit index.html redirection to installed languages. BZ #612009 - Fix smaller width being overridden by max_image_width. BZ #613140 - Fix support for def_lang for web sites. BZ #622030 - Remove ant trails from selected links. - Add --novalid option to disable validation when building. BZ #616142 - Revert change to escaping ', ", >, <. BZ #628266 - Add support for product and version splash pages. BZ #613502 - Fix unused version breaking product hiding. - Add support for alerts for parameters. - Add bash completion. - Validate revnumber for changelog. BZ #628464 - Add basic man page support. BZ #632027 - Add basic support for line numbers. BZ #629463 - Add warning messages for out of date translations. - Add productname to IGNOREBLOCKS. BZ #625316 - Add OPDS support. BZ #615831 - Fix translated labels in web nav. BZ #631647 - Remove highlighting from output of prompt tag in html. BZ #618902 <ryanlerch@xxxxxxxxx> - Resize index title font to a sane size. BZ #624392 - Fix misapplied fonts for CJK. BZ #628786 - Fix attributes breaking translation merge. BZ #638816 - Fix entities missing from RPM description. BZ #626254 - Add bridgehead_in_toc parameter. BZ #616123 - Support '--lang all' for lang_stats. - Left align CJK in PDF. BZ #639811 - Fix constraint regex on docname and productname. BZ #640082 -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 6 2010 Jeff Fearn <jfearn@xxxxxxxxxx> 2.2-0 - Extend callout graphics to 40; adjust colour and font BZ #629804 <r.landmann@xxxxxxxxxx> - Make keycombo example consistent with RHEL6 behaviour. BZ #618735 <r.landmann@xxxxxxxxxx> - Restrict CSS style for edition to title pages to avoid applying to bibliographies <r.landmann@xxxxxxxxxx> - Fix images/icon.svg breaking rpm build. BZ #612515 - Fix empty term breaking PDF build. BZ #614728 - Fix footnote not catching modified para. BZ #565903 - Fix SRPM not including web labels. BZ #621036 - Update tocs when home page is updated. BZ #612027 - Don't display stats for unused languages. BZ #613500 - Fix admonitions/varlistentry not having IDs. BZ #616112 - Fix procedure/itemizedlist/orderedlist not having IDs. BZ #612817 - Catch invalid revision in translation. BZ #621721 - Limit index.html redirection to installed languages. BZ #612009 - Fix smaller width being overridden by max_image_width. BZ #613140 - Fix support for def_lang for web sites. BZ #622030 - Remove ant trails from selected links. - Add --novalid option to disable validation when building. BZ #616142 - Revert change to escaping ', ", >, <. BZ #628266 - Add support for product and version splash pages. BZ #613502 - Fix unused version breaking product hiding. - Add support for alerts for parameters. - Add bash completion. - Validate revnumber for changelog. BZ #628464 - Add basic man page support. BZ #632027 - Add basic support for line numbers. BZ #629463 - Add warning messages for out of date translations. - Add productname to IGNOREBLOCKS. BZ #625316 - Add OPDS support. BZ #615831 - Fix translated labels in web nav. BZ #631647 - Remove highlighting from output of prompt tag in html. BZ #618902 <ryanlerch@xxxxxxxxx> - Resize index title font to a sane size. BZ #624392 - Fix misapplied fonts for CJK. BZ #628786 - Fix attributes breaking translation merge. BZ #638816 - Fix entities missing from RPM description. BZ #626254 - Add bridgehead_in_toc parameter. BZ #616123 - Support '--lang all' for lang_stats. - Left align CJK in PDF. BZ #639811 - Fix constraint regex on docname and productname. BZ #640082 -------------------------------------------------------------------------------- ================================================================================ publican-redhat-2.4-0.fc12 (FEDORA-2010-15995) Common documentation files for RedHat -------------------------------------------------------------------------------- Update Information: * Fri Oct 8 2010 RÃdiger Landmann <r.landmann@xxxxxxxxxx> 2.4-0 - Updated Italian translation Francesco Valente <fvalen@xxxxxxxxxx> - rm fuzzies caused by BZ #628266 previously" -------------------------------------------------------------------------------- ChangeLog: * Fri Oct 8 2010 RÃdiger Landmann <r.landmann@xxxxxxxxxx> 2.4-0 - Updated Italian translation Francesco Valente <fvalen@xxxxxxxxxx> - rm fuzzies caused by BZ #628266 previously" * Tue Aug 24 2010 RÃdiger Landmann <r.landmann@xxxxxxxxxx> 2.3-0 - Extend callout graphics to 40; adjust colour and font BZ #629804 <r.landmann@xxxxxxxxxx> - Restrict CSS style for edition to title pages to avoid applying to bibliographies <r.landmann@xxxxxxxxxx> * Tue Aug 24 2010 RÃdiger Landmann <r.landmann@xxxxxxxxxx> 2.2-0 - Note ownership of MySQL trademark per Pamela Chestek <pchestek@xxxxxxxxxx> * Fri Aug 6 2010 RÃdiger Landmann <r.landmann@xxxxxxxxxx> 2.1-0 - Update Feedback section to link to customer portal -------------------------------------------------------------------------------- ================================================================================ python-netaddr-0.7.5-1.fc12 (FEDORA-2010-15987) A pure Python network address representation and manipulation library -------------------------------------------------------------------------------- Update Information: Upstream bug fix release 0.7.5 -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 5 2010 John Eckersberg <jeckersb@xxxxxxxxxx> - 0.7.5-1 - New upstream release 0.7.5 - Updated summary and description to match upstream README - Updated URL and source to reflect upstream move to github * Thu Jul 22 2010 David Malcolm <dmalcolm@xxxxxxxxxx> - 0.7.4-2 - Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild * Mon May 17 2010 John Eckersberg <jeckersb@xxxxxxxxxx> - 0.7.4-1 - New upstream release 0.7.4 * Wed Sep 30 2009 John Eckersberg <jeckersb@xxxxxxxxxx> - 0.7.3-1 - New upstream release 0.7.3 -------------------------------------------------------------------------------- ================================================================================ resource-agents-3.0.17-1.fc12 (FEDORA-2010-15996) Open Source HA Resource Agents for Red Hat Cluster -------------------------------------------------------------------------------- Update Information: This update addresses several major bugs. Everybody is recommended to update as soon as possible. -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 7 2010 Fabio M. Di Nitto <fdinitto@xxxxxxxxxx> - 3.0.17-1 - new upstream release Resolves: rhbz#632595, rhbz#633856, rhbz#632385, rhbz#628013 Resolves: rhbz#621313, rhbz#595383, rhbz#580492, rhbz#605733 Resolves: rhbz#636243, rhbz#591003, rhbz#637913, rhbz#634718 Resolves: rhbz#617247, rhbz#617247, rhbz#617234, rhbz#631943 Resolves: rhbz#639018 * Thu Oct 7 2010 Andrew Beekhof <andrew@xxxxxxxxxxx> - 3.0.16-2 - new upstream release of the Pacemaker agents: 71b1377f907c -------------------------------------------------------------------------------- ================================================================================ rgmanager-3.0.17-1.fc12 (FEDORA-2010-15996) Open Source HA Resource Group Failover for Red Hat Cluster -------------------------------------------------------------------------------- Update Information: This update addresses several major bugs. Everybody is recommended to update as soon as possible. -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 6 2010 Fabio M. Di Nitto <fdinitto@xxxxxxxxxx> - 3.0.17-1 - new upstream release Resolves: rhbz#632595, rhbz#633856, rhbz#632385, rhbz#628013 Resolves: rhbz#621313, rhbz#595383, rhbz#580492, rhbz#605733 Resolves: rhbz#636243, rhbz#591003, rhbz#637913, rhbz#634718 Resolves: rhbz#617247, rhbz#617247, rhbz#617234, rhbz#631943 Resolves: rhbz#639018 -------------------------------------------------------------------------------- ================================================================================ rubygem-cairo-1.10.0-2.fc12 (FEDORA-2010-16011) Ruby bindings for cairo -------------------------------------------------------------------------------- ================================================================================ rubygem-json_pure-1.4.6-3.fc12 (FEDORA-2010-15928) JSON Implementation for Ruby -------------------------------------------------------------------------------- References: [ 1 ] Bug #616779 - Review Request: rubygem-json_pure - JSON implementation in pure Ruby https://bugzilla.redhat.com/show_bug.cgi?id=616779 -------------------------------------------------------------------------------- ================================================================================ rubygem-marc-0.4.1-1.fc12 (FEDORA-2010-16016) Ruby library for MARC catalog -------------------------------------------------------------------------------- Update Information: New version 0.4.1 is released. -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 7 2010 Mamoru Tasaka <mtasaka@xxxxxxxxxxxxxxxxxxx> - 0.4.1-1 - 0.4.1 -------------------------------------------------------------------------------- ================================================================================ rubygem-pkg-config-1.0.7-1.fc12 (FEDORA-2010-15941) A pkg-config implmenetation by Ruby -------------------------------------------------------------------------------- Update Information: New version 1.0.8 is released. -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 7 2010 Mamoru Tasaka <mtasaka@xxxxxxxxxxxxxxxxxxx> - 1.0.7-1 - 1.0.7 -------------------------------------------------------------------------------- ================================================================================ rubygem-rack-accept-0.4.3-4.fc12 (FEDORA-2010-15915) HTTP Accept* for Ruby/Rack -------------------------------------------------------------------------------- References: [ 1 ] Bug #639272 - Review Request: rubygem-rack-accept - HTTP Accept for Ruby/Rack https://bugzilla.redhat.com/show_bug.cgi?id=639272 -------------------------------------------------------------------------------- ================================================================================ smartcardpp-0.2.0-1.fc12 (FEDORA-2010-15969) Library for accessing smart cards -------------------------------------------------------------------------------- Update Information: smartcardpp is a set of C++ classes to manage smart card communications and implement basic command primitives. -------------------------------------------------------------------------------- References: [ 1 ] Bug #640557 - Review Request: smartcardpp - Library for accessing smart cards https://bugzilla.redhat.com/show_bug.cgi?id=640557 -------------------------------------------------------------------------------- ================================================================================ webkitgtk-1.2.5-1.fc12 (FEDORA-2010-15982) GTK+ Web content engine library -------------------------------------------------------------------------------- Update Information: - New stable release, API and ABI compatible with previous 1.2.x versions. - The patches to fix the following CVEs are included with help from Vincent Danen and other members of the Red Hat security team: CVE-2010-3113 CVE-2010-1814 CVE-2010-1812 CVE-2010-1815 CVE-2010-3115 CVE-2010-1807 CVE-2010-3114 CVE-2010-3116 CVE-2010-3257 CVE-2010-3259 -------------------------------------------------------------------------------- ChangeLog: * Mon Oct 4 2010 Kevin Fenzi <kevin@xxxxxxxxx> - 1.2.5-1 - Update to 1.2.5. - Fixes: CVE-2010-3113 CVE-2010-1814 CVE-2010-1812 - Fixes: CVE-2010-1815 CVE-2010-3115 CVE-2010-1807 CVE-2010-3114 - Fixes: CVE-2010-3116 CVE-2010-3257 CVE-2010-3259 -------------------------------------------------------------------------------- References: [ 1 ] Bug #628032 - CVE-2010-3113 webkit: memory corruption when handling SVG documents https://bugzilla.redhat.com/show_bug.cgi?id=628032 [ 2 ] Bug #631946 - CVE-2010-1814 webkit: memory corruption flaw when handling form menus https://bugzilla.redhat.com/show_bug.cgi?id=631946 [ 3 ] Bug #631939 - CVE-2010-1812 webkit: use-after-free flaw in handling of selections https://bugzilla.redhat.com/show_bug.cgi?id=631939 [ 4 ] Bug #631948 - CVE-2010-1815 webkit: use-after-free flaw when handling scrollbars https://bugzilla.redhat.com/show_bug.cgi?id=631948 [ 5 ] Bug #628071 - CVE-2010-3115 webkit: address bar spoofing with history bug https://bugzilla.redhat.com/show_bug.cgi?id=628071 [ 6 ] Bug #627703 - CVE-2010-1807 webkit: input validation error when parsing certain NaN values https://bugzilla.redhat.com/show_bug.cgi?id=627703 [ 7 ] Bug #628035 - CVE-2010-3114 webkit: bad cast with text editing https://bugzilla.redhat.com/show_bug.cgi?id=628035 [ 8 ] Bug #640353 - CVE-2010-3116 webkit: memory corruption with MIME types https://bugzilla.redhat.com/show_bug.cgi?id=640353 [ 9 ] Bug #640357 - CVE-2010-3257 webkit: stale pointer issue with focusing https://bugzilla.redhat.com/show_bug.cgi?id=640357 [ 10 ] Bug #640360 - CVE-2010-3259 webkit: cross-origin image theft https://bugzilla.redhat.com/show_bug.cgi?id=640360 -------------------------------------------------------------------------------- ================================================================================ xneur-0.10.0-5.fc12 (FEDORA-2010-15912) X Neural Switcher -------------------------------------------------------------------------------- Update Information: - New version 0.10.0 Initial import into Fedora xneur -------------------------------------------------------------------------------- References: [ 1 ] Bug #623604 - Review Request: xneur - X Neural Switcher https://bugzilla.redhat.com/show_bug.cgi?id=623604 -------------------------------------------------------------------------------- ================================================================================ youtube-dl-2010.10.03-1.fc12 (FEDORA-2010-15962) Small command-line program to download videos from YouTube -------------------------------------------------------------------------------- Update Information: - Fix Dailymotion and metacafe.com support - Support youtube-nocookie - Fix some other bugs Detailed changelog: http://bitbucket.org/rg3/youtube-dl/changesets -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 7 2010 Till Maas <opensource@xxxxxxxxx> - 2010.10.03-1 - Update to latest release -------------------------------------------------------------------------------- References: [ 1 ] Bug #640573 - youtube-dl-2010.10.03 is available https://bugzilla.redhat.com/show_bug.cgi?id=640573 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test