The following Fedora 14 Security updates need testing: https://admin.fedoraproject.org/updates/mailman-2.1.13-6.fc14 https://admin.fedoraproject.org/updates/apr-util-1.3.10-1.fc14 https://admin.fedoraproject.org/updates/moodle-1.9.10-1.fc14 https://admin.fedoraproject.org/updates/cvs-1.11.23-11.fc14 https://admin.fedoraproject.org/updates/monotone-0.48.1-1.fc14 https://admin.fedoraproject.org/updates/horde-3.3.9-1.fc14 https://admin.fedoraproject.org/updates/tomcat6-6.0.26-14.fc14 https://admin.fedoraproject.org/updates/gnucash-2.3.15-2.fc14 https://admin.fedoraproject.org/updates/pidgin-2.7.4-1.fc14 https://admin.fedoraproject.org/updates/perl-libwww-perl-5.837-2.fc14 https://admin.fedoraproject.org/updates/exim-4.72-2.fc14 https://admin.fedoraproject.org/updates/xpdf-3.02-16.fc14 https://admin.fedoraproject.org/updates/seamonkey-2.0.9-1.fc14 https://admin.fedoraproject.org/updates/bristol-0.40.7-7.fc14 https://admin.fedoraproject.org/updates/qt-4.7.0-8.fc14 https://admin.fedoraproject.org/updates/libguestfs-1.5.23-1 https://admin.fedoraproject.org/updates/thunderbird-3.1.5-1.fc14,sunbird-1.0-0.30.b2pre.fc14 https://admin.fedoraproject.org/updates/luci-0.22.4-2.0.b9faf868074git.fc14 The following builds have been pushed to Fedora 14 updates-testing 389-admin-1.1.12-0.2.a2.fc14 389-adminutil-1.1.13-1.fc14 389-ds-base-1.2.7-0.4.a3.fc14 389-dsgw-1.1.6-1.fc14 bluez-4.77-1.fc14 ghc-glade-0.11.1-2.fc14 ghc-gtksourceview2-0.12.1-1.fc14 hdf5-1.8.5.patch1-4.fc14 kdepim-4.4.7-1.fc14 kdepim-runtime-4.4.7-1.fc14 monotone-0.48.1-1.fc14 mozilla-firetray-0.2.8-3.fc14 perl-Mozilla-LDAP-1.5.3-3.fc14 perl-Pegex-0.11-1.fc14 php-pear-Image-Canvas-0.3.3-1.fc14 php-pear-Net-POP3-1.3.8-1.fc14 pitivi-0.13.5-1.fc14 virt-what-1.3-3.fc14 xscreensaver-5.12-6.fc14 Details about builds: ================================================================================ 389-admin-1.1.12-0.2.a2.fc14 (FEDORA-2010-16917) 389 Administration Server (admin) -------------------------------------------------------------------------------- Update Information: 389 1.2.7 alpha 3 and related packages. These packages are all built using openldap instead of mozldap. -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 26 2010 Rich Megginson <rmeggins@xxxxxxxxxx> - 1.1.12-0.2.a2 - fix mozldap build breakage * Tue Sep 28 2010 Rich Megginson <rmeggins@xxxxxxxxxx> - 1.1.12-0.1.a1 - This is the 1.1.12 alpha 1 release - with openldap support -------------------------------------------------------------------------------- References: [ 1 ] Bug #576869 - Tracking bug for 389 Directory Server 1.2.7 https://bugzilla.redhat.com/show_bug.cgi?id=576869 -------------------------------------------------------------------------------- ================================================================================ 389-adminutil-1.1.13-1.fc14 (FEDORA-2010-16917) Utility library for 389 administration -------------------------------------------------------------------------------- Update Information: 389 1.2.7 alpha 3 and related packages. These packages are all built using openldap instead of mozldap. -------------------------------------------------------------------------------- ChangeLog: * Fri Oct 22 2010 Rich Megginson <rmeggins@xxxxxxxxxx> - 1.1.13-1 - add nss_inc to libadminutil build flags * Tue Sep 28 2010 Rich Megginson <rmeggins@xxxxxxxxxx> - 1.1.12-1 - fix building with mozldap * Tue Sep 28 2010 Rich Megginson <rmeggins@xxxxxxxxxx> - 1.1.11-1 - with openldap support -------------------------------------------------------------------------------- References: [ 1 ] Bug #576869 - Tracking bug for 389 Directory Server 1.2.7 https://bugzilla.redhat.com/show_bug.cgi?id=576869 -------------------------------------------------------------------------------- ================================================================================ 389-ds-base-1.2.7-0.4.a3.fc14 (FEDORA-2010-16917) 389 Directory Server (base) -------------------------------------------------------------------------------- Update Information: 389 1.2.7 alpha 3 and related packages. These packages are all built using openldap instead of mozldap. -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 27 2010 Rich Megginson <rmeggins@xxxxxxxxxx> - 1.2.7-0.4.a3 - 1.2.7.a3 release - a2 was never released - this is a rebuild to pick up - Bug 644608 - RHDS 8.1->8.2 upgrade fails to properly migrate ACIs - Adding the ancestorid fix code to ##upgradednformat.pl. * Fri Oct 22 2010 Rich Megginson <rmeggins@xxxxxxxxxx> - 1.2.7-0.3.a3 - 1.2.7.a3 release - a2 was never released - Bug 644608 - RHDS 8.1->8.2 upgrade fails to properly migrate ACIs - Bug 629681 - Retro Changelog trimming does not behave as expected - Bug 645061 - Upgrade: 06inetorgperson.ldif and 05rfc4524.ldif - are not upgraded in the server instance schema dir * Tue Oct 19 2010 Rich Megginson <rmeggins@xxxxxxxxxx> - 1.2.7-0.2.a2 - 1.2.7.a2 release - a1 was the OpenLDAP testday release - git tag 389-ds-base-1.2.7.a2 - added openldap support on platforms that use openldap with moznss - for crypto (F-14 and later) - many bug fixes - Account Policy Plugin (keep track of last login, disable old accounts) * Fri Oct 8 2010 Rich Megginson <rmeggins@xxxxxxxxxx> - 1.2.7-0.1.a1 - added openldap support -------------------------------------------------------------------------------- References: [ 1 ] Bug #576869 - Tracking bug for 389 Directory Server 1.2.7 https://bugzilla.redhat.com/show_bug.cgi?id=576869 -------------------------------------------------------------------------------- ================================================================================ 389-dsgw-1.1.6-1.fc14 (FEDORA-2010-16917) 389 Directory Server Gateway (dsgw) -------------------------------------------------------------------------------- Update Information: 389 1.2.7 alpha 3 and related packages. These packages are all built using openldap instead of mozldap. -------------------------------------------------------------------------------- ChangeLog: * Fri Oct 8 2010 Rich Megginson <rmeggins@xxxxxxxxxx> - 1.1.6-1 - bump version to 1.1.6 - support for openldap -------------------------------------------------------------------------------- References: [ 1 ] Bug #576869 - Tracking bug for 389 Directory Server 1.2.7 https://bugzilla.redhat.com/show_bug.cgi?id=576869 -------------------------------------------------------------------------------- ================================================================================ bluez-4.77-1.fc14 (FEDORA-2010-16896) Bluetooth utilities -------------------------------------------------------------------------------- Update Information: This update fixes a number of possible crashers. -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 27 2010 Bastien Nocera <bnocera@xxxxxxxxxx> 4.77-1 - Update to 4.77 * Wed Sep 29 2010 jkeating - 4.71-5.1 - Rebuilt for gcc bug 634757 -------------------------------------------------------------------------------- ================================================================================ ghc-glade-0.11.1-2.fc14 (FEDORA-2010-16886) Haskell glade library -------------------------------------------------------------------------------- References: [ 1 ] Bug #633194 - Review Request: ghc-glade - Haskell binding to libglade2 https://bugzilla.redhat.com/show_bug.cgi?id=633194 -------------------------------------------------------------------------------- ================================================================================ ghc-gtksourceview2-0.12.1-1.fc14 (FEDORA-2010-16893) Haskell gtksourceview2 library -------------------------------------------------------------------------------- References: [ 1 ] Bug #615700 - Review Request: ghc-gtksourceview2 - Haskell gtksourceview2 binding https://bugzilla.redhat.com/show_bug.cgi?id=615700 -------------------------------------------------------------------------------- ================================================================================ hdf5-1.8.5.patch1-4.fc14 (FEDORA-2010-16889) A general purpose library and file format for storing scientific data -------------------------------------------------------------------------------- Update Information: Build parallel hdf5 packages for mpich2 and openmpi. -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 27 2010 Orion Poplawski <orion@xxxxxxxxxxxxx> 1.8.5.patch1-4 - Really fixup all permissions * Wed Oct 27 2010 Orion Poplawski <orion@xxxxxxxxxxxxx> 1.8.5.patch1-3 - Add docs to the mpi packages - Fixup example source file permissions * Tue Oct 26 2010 Orion Poplawski <orion@xxxxxxxxxxxxx> 1.8.5.patch1-2 - Build parallel hdf5 packages for mpich2 and openmpi - Rework multiarch support and drop multiarch patch * Tue Sep 7 2010 Orion Poplawski <orion@xxxxxxxxxxxxx> 1.8.5.patch1-1 - Update to 1.8.5-patch1 * Wed Jun 23 2010 Orion Poplawski <orion@xxxxxxxxxxxxx> 1.8.5-4 - Re-add rebased tstlite patch - not fixed yet * Wed Jun 23 2010 Orion Poplawski <orion@xxxxxxxxxxxxx> 1.8.5-3 - Update longdouble patch for 1.8.5 * Wed Jun 23 2010 Orion Poplawski <orion@xxxxxxxxxxxxx> 1.8.5-2 - Re-add longdouble patch on ppc64 for EPEL builds -------------------------------------------------------------------------------- References: [ 1 ] Bug #646043 - Parallel Support for HDF5 https://bugzilla.redhat.com/show_bug.cgi?id=646043 -------------------------------------------------------------------------------- ================================================================================ kdepim-4.4.7-1.fc14 (FEDORA-2010-16906) KDE PIM (Personal Information Manager) applications -------------------------------------------------------------------------------- Update Information: Bugfix release. See also, http://www.kdedevelopers.org/node/4344 -------------------------------------------------------------------------------- ChangeLog: * Fri Oct 22 2010 Thomas Janssen <thomasj@xxxxxxxxxxxxxxxxx> 4.4.7-1 - update to 4.4.7 * Tue Oct 19 2010 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> 6:4.4.6-4 - own %_libdir/akonadi/contact (#644540) * Thu Oct 14 2010 Jesse Keating <jkeating@xxxxxxxxxx> - 6:4.4.6-3.1 - Rebuild for gcc bug 634757 * Thu Sep 23 2010 Lukas Tinkl <ltinkl@xxxxxxxxxx> - 6:4.4.6-3 - s/%version/%_kde4_version/ kdelibs runtime dep -------------------------------------------------------------------------------- ================================================================================ kdepim-runtime-4.4.7-1.fc14 (FEDORA-2010-16906) KDE PIM Runtime Environment -------------------------------------------------------------------------------- Update Information: Bugfix release. See also, http://www.kdedevelopers.org/node/4344 -------------------------------------------------------------------------------- ChangeLog: * Fri Oct 22 2010 Thomas Janssen <thomasj@xxxxxxxxxxxxxxxxx> 4.4.7-1 - update to 4.4.7 -------------------------------------------------------------------------------- ================================================================================ monotone-0.48.1-1.fc14 (FEDORA-2010-16888) A free, distributed version control system -------------------------------------------------------------------------------- Update Information: Update to monotone-0.48.1, which contains a fix for a DoS: Running "mtn ''" or "mtn ls ''" doesn't cause an internal error anymore. In monotone 0.48 and earlier this behavior could be used to crash a server remotely (but only if it was configured to allow execution of remote commands). Therefore everyone running such a server should update as soon as possible. There's also a fix for a non-critical issue: Using mtn:// style URIs for netsync operations didn't work with 0.48 on systems which only have a 'monotone' entry in /etc/services. Failing to find a corresponding entry for the schema in a given URI isn't considered fatal now, instead mtn falls back to its default port. -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 27 2010 Thomas Moschny <thomas.moschny@xxxxxx> - 0.48.1-1 - Update to 0.48.1. - Add patch from upstream to support newer sqlite. -------------------------------------------------------------------------------- References: [ 1 ] Bug #647302 - CVE-2010-4098 monotone: remote DoS via empty arg to mtn command https://bugzilla.redhat.com/show_bug.cgi?id=647302 -------------------------------------------------------------------------------- ================================================================================ mozilla-firetray-0.2.8-3.fc14 (FEDORA-2010-16914) A system tray addon for mozilla -------------------------------------------------------------------------------- Update Information: Please test if update goes fine from mozilla-firetray-sunbird-0.2.8-2 -------------------------------------------------------------------------------- ChangeLog: * Sun Oct 24 2010 Hicham HAOUARI <hicham.haouari@xxxxxxxxx> - 0.2.8-3 - Symlink the extension's directory for sunbird the same way of the other applications using gecko >= 1.9.2, fixes rhbz #646185 - Add workaround for rhbz #646523 - Spec cleanup * Wed Sep 29 2010 jkeating - 0.2.8-2.1 - Rebuilt for gcc bug 634757 -------------------------------------------------------------------------------- References: [ 1 ] Bug #646185 - mozilla-firetray-sunbird prevents sunbird from starting https://bugzilla.redhat.com/show_bug.cgi?id=646185 -------------------------------------------------------------------------------- ================================================================================ perl-Mozilla-LDAP-1.5.3-3.fc14 (FEDORA-2010-16917) LDAP Perl module that wraps the OpenLDAP C SDK -------------------------------------------------------------------------------- Update Information: 389 1.2.7 alpha 3 and related packages. These packages are all built using openldap instead of mozldap. -------------------------------------------------------------------------------- ChangeLog: * Wed Sep 29 2010 jkeating - 1.5.3-3 - Rebuilt for gcc bug 634757 * Tue Sep 14 2010 Rich Megginson <rmeggins@xxxxxxxxxx> - 1.5.3-2 - added new sources * Tue Sep 14 2010 Rich Megginson <rmeggins@xxxxxxxxxx> - 1.5.3-1 - new version 1.5.3 with openldap support -------------------------------------------------------------------------------- References: [ 1 ] Bug #576869 - Tracking bug for 389 Directory Server 1.2.7 https://bugzilla.redhat.com/show_bug.cgi?id=576869 -------------------------------------------------------------------------------- ================================================================================ perl-Pegex-0.11-1.fc14 (FEDORA-2010-16890) Pegex Parser Generator -------------------------------------------------------------------------------- References: [ 1 ] Bug #639684 - Review Request: perl-Pegex - Pegex Parser Generator https://bugzilla.redhat.com/show_bug.cgi?id=639684 -------------------------------------------------------------------------------- ================================================================================ php-pear-Image-Canvas-0.3.3-1.fc14 (FEDORA-2010-16892) Common interface to image drawing -------------------------------------------------------------------------------- Update Information: QA release * Bug #16808 imagefilledpolygon(): You must have at least 3 points in your array - ghhoriuchi * Bug #16927 PDF class implementation incomplete? - daveo * Bug #17191 Deprecated: Assigning the return value of new by reference - neufeind -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 28 2010 Remi Collet <Fedora@xxxxxxxxxxxxxxxxx> - 0.3.3-1 - Version 0.3.3 (alpha) - API 0.3.2 (alpha) - QA release - rename Image_Canvas.xml to php-pear-Image-Canvas.xml - set date.timezone during build - clean define -------------------------------------------------------------------------------- ================================================================================ php-pear-Net-POP3-1.3.8-1.fc14 (FEDORA-2010-16915) Provides a POP3 class to access POP3 server -------------------------------------------------------------------------------- Update Information: QA release * Bug #17135 Deprecated use of new and reference - doconnor -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 28 2010 Remi Collet <Fedora@xxxxxxxxxxxxxxxxx> - 1.3.8-1 - Version 1.3.8 (stable) - API 1.3.7 (stable) - QA Release - add generated Changelog - rename Net_POP3.xml to php-pear-Net-POP3.xml - set date.timezone during build - clean define -------------------------------------------------------------------------------- ================================================================================ pitivi-0.13.5-1.fc14 (FEDORA-2010-16891) Non-linear video editor -------------------------------------------------------------------------------- Update Information: Update to pitivi 0.13.5 -------------------------------------------------------------------------------- ChangeLog: * Wed Sep 22 2010 Chen Lei <supercyper@xxxxxxx> - 0.13.5-1 - Update to 0.13.5 -------------------------------------------------------------------------------- ================================================================================ virt-what-1.3-3.fc14 (FEDORA-2010-16909) Detect if we are running in a virtual machine -------------------------------------------------------------------------------- Update Information: virt-what - detect if we are running in a virtual machine -------------------------------------------------------------------------------- References: [ 1 ] Bug #644259 - Review Request: virt-what - detect if we are running in a virtual machine https://bugzilla.redhat.com/show_bug.cgi?id=644259 -------------------------------------------------------------------------------- ================================================================================ xscreensaver-5.12-6.fc14 (FEDORA-2010-16908) X screen saver and locker -------------------------------------------------------------------------------- Update Information: Currently lauching xscreensaver-demo shows GTK warning about using non-zero value of page-size when using GtkSpinButton. This issue is fixed in this rpm. -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 28 2010 Mamoru Tasaka <mtasaka@xxxxxxxxxxxxxxxxxxx> - 1:5.12-6 - Remove GTK warning about non-zero page-size on GtkSpinButton -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test