The following Fedora 12 Security updates need testing: https://admin.fedoraproject.org/updates/bzip2-1.0.6-1.fc12 https://admin.fedoraproject.org/updates/mailman-2.1.12-10.fc12 https://admin.fedoraproject.org/updates/bugzilla-3.4.9-1.fc12 https://admin.fedoraproject.org/updates/gif2png-2.5.1-1202.fc12 https://admin.fedoraproject.org/updates/cups-1.4.4-11.fc12 https://admin.fedoraproject.org/updates/pam-1.1.1-6.fc12 https://admin.fedoraproject.org/updates/clamav-0.96.4-1200.fc12 https://admin.fedoraproject.org/updates/mod_fcgid-2.3.6-1.fc12 The following Fedora 12 Critical Path updates have yet to be approved: https://admin.fedoraproject.org/updates/mingetty-1.08-6.fc12 https://admin.fedoraproject.org/updates/tzdata-2010o-1.fc12 https://admin.fedoraproject.org/updates/pungi-2.0.20.1-1.fc12 https://admin.fedoraproject.org/updates/NetworkManager-0.8.1-10.git20100831.fc12 https://admin.fedoraproject.org/updates/pam-1.1.1-6.fc12 https://admin.fedoraproject.org/updates/findutils-4.4.2-7.fc12 https://admin.fedoraproject.org/updates/nss-softokn-3.12.4-16.fc12 https://admin.fedoraproject.org/updates/xorg-x11-drv-ati-6.13.0-0.22.20100316git819b4015.fc12 https://admin.fedoraproject.org/updates/binutils-2.19.51.0.14-38.fc12 https://admin.fedoraproject.org/updates/util-linux-ng-2.16.2-4.fc12 https://admin.fedoraproject.org/updates/xorg-x11-drv-synaptics-1.2.0-3.fc12 https://admin.fedoraproject.org/updates/findutils-4.4.2-5.fc12 The following builds have been pushed to Fedora 12 updates-testing b43-openfwwf-5.2-5.fc12 cups-1.4.4-11.fc12 iodine-0.6.0-0.rc1.6.fc12 mingetty-1.08-6.fc12 xscreensaver-5.12-7.fc12 Details about builds: ================================================================================ b43-openfwwf-5.2-5.fc12 (FEDORA-2010-17617) Open firmware for some Broadcom 43xx series WLAN chips -------------------------------------------------------------------------------- Update Information: * Changed directory for storing firmware (rhbz #651350) -------------------------------------------------------------------------------- ChangeLog: * Thu Nov 11 2010 Peter Lemenkov <lemenkov@xxxxxxxxx> 5.2-5 - Changed directory for storing firmware (rhbz #651350) * Tue Mar 16 2010 John W. Linville <linville@xxxxxxxxxx> 5.2-4 - Remove erroneous copyright notice from README.openfwwf -------------------------------------------------------------------------------- References: [ 1 ] Bug #651350 - B43 open firmware placed in worng directory https://bugzilla.redhat.com/show_bug.cgi?id=651350 -------------------------------------------------------------------------------- ================================================================================ cups-1.4.4-11.fc12 (FEDORA-2010-17627) Common Unix Printing System -------------------------------------------------------------------------------- Update Information: This update fixes a cupsd memory corruption vulnerability (CVE-2010-2941). -------------------------------------------------------------------------------- ChangeLog: * Thu Nov 11 2010 Tim Waugh <twaugh@xxxxxxxxxx> 1:1.4.4-11 - Applied patch to fix cupsd memory corruption vulnerability (CVE-2010-2941, bug #652161). * Fri Oct 15 2010 Tim Waugh <twaugh@xxxxxxxxxx> 1:1.4.4-10 - Don't crash when MIME database could not be loaded (bug #610088). -------------------------------------------------------------------------------- References: [ 1 ] Bug #624438 - CVE-2010-2941 cups: cupsd memory corruption vulnerability https://bugzilla.redhat.com/show_bug.cgi?id=624438 -------------------------------------------------------------------------------- ================================================================================ iodine-0.6.0-0.rc1.6.fc12 (FEDORA-2010-17613) Solution to tunnel IPv4 data through a DNS server -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 26 2010 Pavel Alexeev <Pahan@xxxxxxxxxxxxx> - 0.6.0-0.rc1.6 - Add -DLINUX to build options (BZ#644310, thanks to Andy Shevchenko) - Fix service scripts to find binaries in /usr/sbin instead of /usr/bin (BZ#644299 thanks to Andy Shevchenko) - Add 0600 file attributes to prevent password access from regular users (BZ#644305). - In comments configs add IODINE(D)_PASS variables description (BZ#644317). * Wed Sep 29 2010 jkeating - 0.6.0-0.rc1.4.2 - Rebuilt for gcc bug 634757 * Wed Sep 29 2010 jkeating - 0.6.0-0.rc1.4.1 - Rebuilt for gcc bug 634757 -------------------------------------------------------------------------------- References: [ 1 ] Bug #644305 - Password is visible to non-root users https://bugzilla.redhat.com/show_bug.cgi?id=644305 [ 2 ] Bug #644299 - mistakes in the init script and packaging make this unusable https://bugzilla.redhat.com/show_bug.cgi?id=644299 [ 3 ] Bug #644317 - [RFE] use IODINE_PASS and IODINED_PASS as a pssword holders https://bugzilla.redhat.com/show_bug.cgi?id=644317 [ 4 ] Bug #644310 - iodine is compiled wrongly, thus, totally unusable https://bugzilla.redhat.com/show_bug.cgi?id=644310 -------------------------------------------------------------------------------- ================================================================================ mingetty-1.08-6.fc12 (FEDORA-2010-17614) A compact getty program for virtual consoles only -------------------------------------------------------------------------------- ChangeLog: * Wed Nov 10 2010 Petr Pisar <ppisar@xxxxxxxxxx> - 1.08-6 - Allow login name up to LOGIN_NAME_MAX length (bug #647143) -------------------------------------------------------------------------------- References: [ 1 ] Bug #647143 - If console login, username with about 100 chars are not prompted for a passwd https://bugzilla.redhat.com/show_bug.cgi?id=647143 -------------------------------------------------------------------------------- ================================================================================ xscreensaver-5.12-7.fc12 (FEDORA-2010-17623) X screen saver and locker -------------------------------------------------------------------------------- Update Information: When the default image directory (/usr/share/backgrounds/images/) is missing (which can happen on non-GNOME desktop environment) xscreensaver-demo repeatedly raises popup window containing "Error" messages about this. With this new rpm, when image directory is missing, xscreensaver-demo "warns" about it only once. -------------------------------------------------------------------------------- ChangeLog: * Thu Nov 11 2010 Mamoru Tasaka <mtasaka@xxxxxxxxxxxxxxxxxxx> - 1:5.12-7 - Warn (not say "Error") about missing image directory, and warn only once (bug 648304) -------------------------------------------------------------------------------- References: [ 1 ] Bug #648304 - xscreensaver-demo popups warning about missing directory every time choosing hack https://bugzilla.redhat.com/show_bug.cgi?id=648304 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test