The following Fedora 13 Security updates need testing: https://admin.fedoraproject.org/updates/dhcp-4.1.1-27.P1.fc13 https://admin.fedoraproject.org/updates/udunits2-2.1.19-1.fc13 https://admin.fedoraproject.org/updates/freetype-2.3.11-7.fc13 https://admin.fedoraproject.org/updates/openssl-1.0.0b-1.fc13 https://admin.fedoraproject.org/updates/mailman-2.1.12-16.fc13 https://admin.fedoraproject.org/updates/cups-1.4.4-11.fc13 https://admin.fedoraproject.org/updates/clamav-0.96.4-1300.fc13 https://admin.fedoraproject.org/updates/libtlen-0-0.10.20060309.fc13 https://admin.fedoraproject.org/updates/mingw32-OpenSceneGraph-2.8.2-3.fc13 The following Fedora 13 Critical Path updates have yet to be approved: https://admin.fedoraproject.org/updates/openssl-1.0.0b-1.fc13 https://admin.fedoraproject.org/updates/livecd-tools-13.0-1.fc13 https://admin.fedoraproject.org/updates/gcc-4.4.5-2.fc13 https://admin.fedoraproject.org/updates/freetype-2.3.11-7.fc13 https://admin.fedoraproject.org/updates/gnome-desktop-2.30.2-1.fc13 https://admin.fedoraproject.org/updates/mingetty-1.08-6.fc13 https://admin.fedoraproject.org/updates/chkconfig-1.3.49-1.fc13 https://admin.fedoraproject.org/updates/libcap-ng-0.6.5-1.fc13 https://admin.fedoraproject.org/updates/sendmail-8.14.4-6.fc13 https://admin.fedoraproject.org/updates/hunspell-1.2.8-18.fc13 https://admin.fedoraproject.org/updates/NetworkManager-0.8.1-10.git20100831.fc13 https://admin.fedoraproject.org/updates/gnome-settings-daemon-2.30.1-9.fc13 https://admin.fedoraproject.org/updates/mash-0.5.20-1.fc13 https://admin.fedoraproject.org/updates/openldap-2.4.21-11.fc13 https://admin.fedoraproject.org/updates/nss-3.12.7-4.fc13,nss-util-3.12.7-2.fc13,nss-softokn-3.12.7-3.fc13,nspr-4.8.6-1.fc13 https://admin.fedoraproject.org/updates/xorg-x11-drv-openchrome-0.2.904-7.fc13 The following builds have been pushed to Fedora 13 updates-testing bfast-0.6.4e-1.fc13 gnome-do-docklets-0.8.2-3.fc13 levien-museum-fonts-1.0-1.fc13 openssl-1.0.0b-1.fc13 perl-Test-LeakTrace-0.13-1.fc13 perl-Try-Tiny-0.07-1.fc13 python-keyring-0.4-1.fc13 wordgroupz-0.3.1-2.fc13 xawtv-3.95-14.fc13 Details about builds: ================================================================================ bfast-0.6.4e-1.fc13 (FEDORA-2010-17848) Blat-like Fast Accurate Search Tool -------------------------------------------------------------------------------- Update Information: Upstream bugfix release -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 14 2010 Adam Huffman <bloch@xxxxxxxxxxxx> - 0.6.4e-1 - new upstream bugfix release - solid2fastq.pl removed upstream -------------------------------------------------------------------------------- ================================================================================ gnome-do-docklets-0.8.2-3.fc13 (FEDORA-2010-17830) Docklets for GNOME Do -------------------------------------------------------------------------------- Update Information: This package contains various docklets for GNOME Do. -------------------------------------------------------------------------------- References: [ 1 ] Bug #519009 - Review Request: gnome-do-docklets - Docklets for gnome-do https://bugzilla.redhat.com/show_bug.cgi?id=519009 -------------------------------------------------------------------------------- ================================================================================ levien-museum-fonts-1.0-1.fc13 (FEDORA-2010-17845) Based on historical metal Centaur fonts -------------------------------------------------------------------------------- Update Information: Including a new font -------------------------------------------------------------------------------- ================================================================================ openssl-1.0.0b-1.fc13 (FEDORA-2010-17847) A general purpose cryptography library with TLS implementation -------------------------------------------------------------------------------- Update Information: This is a minor update from upstream fixing one race condition theoretically exploitable from remote connections in some SSL servers (CVE-2010-3864). There are also a few additional bug fixes. -------------------------------------------------------------------------------- ChangeLog: * Tue Nov 16 2010 Tomas Mraz <tmraz@xxxxxxxxxx> 1.0.0b-1 - new upstream version fixing CVE-2010-3864 (#649304) * Tue Sep 7 2010 Tomas Mraz <tmraz@xxxxxxxxxx> 1.0.0a-3 - make SHLIB_VERSION reflect the library suffix * Wed Jun 30 2010 Tomas Mraz <tmraz@xxxxxxxxxx> 1.0.0a-2 - openssl man page fix (#609484) -------------------------------------------------------------------------------- References: [ 1 ] Bug #649304 - CVE-2010-3864 OpenSSL TLS extension parsing race condition https://bugzilla.redhat.com/show_bug.cgi?id=649304 -------------------------------------------------------------------------------- ================================================================================ perl-Test-LeakTrace-0.13-1.fc13 (FEDORA-2010-17837) Traces memory leaks -------------------------------------------------------------------------------- Update Information: This update to the current upstream maintenance release addresses a number of bugs, particularly CPAN RT#5813 where the previous release could generate a false-positive error related to XS code. -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- References: [ 1 ] Bug #654301 - False-positive related to XS code - please update to 0.11 or later https://bugzilla.redhat.com/show_bug.cgi?id=654301 -------------------------------------------------------------------------------- ================================================================================ perl-Try-Tiny-0.07-1.fc13 (FEDORA-2010-17850) Minimal try/catch with proper localization of $@ -------------------------------------------------------------------------------- Update Information: This update to the current upstream release provides additional functionality (multiple finally blocks, and better error handling in finally blocks). This functionality is required for the Test::Fatal module, which is a build requirement of many modern perl modules. -------------------------------------------------------------------------------- ChangeLog: * Mon Nov 1 2010 Paul Howarth <paul@xxxxxxxxxxxx> 0.07-1 - update to 0.07: - allow multiple finally blocks - pass the error, if any, to finally blocks when called - documentation fixes and clarifications - this release by RJBS -> update source URL -------------------------------------------------------------------------------- ================================================================================ python-keyring-0.4-1.fc13 (FEDORA-2010-17822) Python library to access the system keyring service -------------------------------------------------------------------------------- Update Information: Pushing python-keyring-0.4-1 to fc13 and fc14 for testing -------------------------------------------------------------------------------- References: [ 1 ] Bug #593800 - Review Request: python-keyring - keyring module for python https://bugzilla.redhat.com/show_bug.cgi?id=593800 -------------------------------------------------------------------------------- ================================================================================ wordgroupz-0.3.1-2.fc13 (FEDORA-2010-17840) A vocabulary building application -------------------------------------------------------------------------------- Update Information: Pushed wordgroupz-0.3.1-2 to fc13 and fc14 for testing -------------------------------------------------------------------------------- References: [ 1 ] Bug #607584 - Review Request: wordgroupz - A vocabulary building application https://bugzilla.redhat.com/show_bug.cgi?id=607584 -------------------------------------------------------------------------------- ================================================================================ xawtv-3.95-14.fc13 (FEDORA-2010-17841) TV applications for video4linux compliant devices -------------------------------------------------------------------------------- Update Information: Fix a double free error when the user tries to exit for a second time while xawtv is waiting for the current video frame to complete. -------------------------------------------------------------------------------- ChangeLog: * Wed Nov 17 2010 Hans de Goede <hdegoede@xxxxxxxxxx> 3.95-14 - Protect the exit code from being called twice. This fixes a double free error when the user tries to exit twice when xawtv is stuck (#608344) -------------------------------------------------------------------------------- References: [ 1 ] Bug #608344 - [abrt] crash in xawtv-3.95-13.fc13: raise: Process /usr/bin/xawtv was killed by signal 6 (SIGABRT) https://bugzilla.redhat.com/show_bug.cgi?id=608344 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test