The following Fedora 13 Security updates need testing: https://admin.fedoraproject.org/updates/bugzilla-3.4.10-1.fc13 https://admin.fedoraproject.org/updates/asterisk-1.6.2.16.1-1.fc13 https://admin.fedoraproject.org/updates/dbus-1.2.24-2.fc13 https://admin.fedoraproject.org/updates/subversion-1.6.15-1.fc13 https://admin.fedoraproject.org/updates/openoffice.org-3.2.0-12.35.fc13 https://admin.fedoraproject.org/updates/feh-1.10.1-1.fc13 https://admin.fedoraproject.org/updates/mod_auth_mysql-3.0.0-12.fc13 https://admin.fedoraproject.org/updates/wireshark-1.2.14-1.fc13 https://admin.fedoraproject.org/updates/perl-CGI-3.51-1.fc13 https://admin.fedoraproject.org/updates/tor-0.2.1.29-1300.fc13 https://admin.fedoraproject.org/updates/perl-CGI-Simple-1.113-1.fc13 The following Fedora 13 Critical Path updates have yet to be approved: https://admin.fedoraproject.org/updates/system-config-users-1.2.106-1.fc13 https://admin.fedoraproject.org/updates/python-ethtool-0.6-1.fc13 https://admin.fedoraproject.org/updates/elfutils-0.151-1.fc13 https://admin.fedoraproject.org/updates/util-linux-ng-2.17.2-10.fc13 https://admin.fedoraproject.org/updates/livecd-tools-13.1-1.fc13 https://admin.fedoraproject.org/updates/selinux-policy-3.7.19-80.fc13 https://admin.fedoraproject.org/updates/libical-0.46-2.fc13 https://admin.fedoraproject.org/updates/pm-utils-1.2.6.1-4.fc13 https://admin.fedoraproject.org/updates/mash-0.5.20-1.fc13 https://admin.fedoraproject.org/updates/nss-3.12.7-4.fc13,nss-util-3.12.7-2.fc13,nss-softokn-3.12.7-3.fc13,nspr-4.8.6-1.fc13 https://admin.fedoraproject.org/updates/xorg-x11-drv-openchrome-0.2.904-7.fc13 The following builds have been pushed to Fedora 13 updates-testing YafaRay-0.1.1-4.fc13 barry-0.17-0.6.20110126git.fc13 erlang-ibrowse-2.1.3-1.fc13 freemind-0.9.0-0.9.rc15.fc13 gnome-activity-journal-0.6.0-1.fc13 gphotoframe-1.2-0.3.rc1.fc13 openoffice.org-3.2.0-12.35.fc13 perl-CPAN-Meta-YAML-0.003-3.fc13 perl-HTML-Mason-PSGIHandler-0.52-1.fc13 perl-HTML-Quoted-0.03-1.fc13 perl-Parallel-Scoreboard-0.02-2.fc13 perl-Perl-OSType-1.002-3.fc13 qbittorrent-2.6.4-1.fc13 qlandkartegt-1.0.1-1.fc13 rear-1.9-1.fc13 saphire-1.2.5-1.fc13 signpost-core-1.2.1.1-4.fc13 sipp-3.2-1.fc13 slapi-nis-0.22-1.fc13 Details about builds: ================================================================================ YafaRay-0.1.1-4.fc13 (FEDORA-2011-0834) A free open-source raytracing render engine -------------------------------------------------------------------------------- Update Information: Initial release. -------------------------------------------------------------------------------- ================================================================================ barry-0.17-0.6.20110126git.fc13 (FEDORA-2011-0811) BlackBerry Desktop for Linux -------------------------------------------------------------------------------- Update Information: Fix udev permission rules Built to see if RC1 fixes permission issues. -------------------------------------------------------------------------------- ChangeLog: * Wed Jan 26 2011 Nathanael Noblet <nathanael@xxxxxxx> - 0.6.20110126git - fix for bz#665648 * Tue Jan 18 2011 Nathanael Noblet <nathanael@xxxxxxx> - 0.6.20110118git - New git snapshot to fix udev acl permissions * Fri Dec 31 2010 Nathanael Noblet <nathanael@xxxxxxx> - 0.6.20101231git - New git snapshot - essentially RC1 * Fri Nov 26 2010 Nathanael Noblet <nathanael@xxxxxxx> - 0.6.20101126git - New git snapshot * Thu Aug 5 2010 Nathanael Noblet <nathanael@xxxxxxx> - 0.4.20100730git - Release version bump to keep upgrade path proper * Thu Aug 5 2010 Nathanael Noblet <nathanael@xxxxxxx> - 0.3.20100730git - Version bump * Wed Aug 4 2010 Rahul Sundaram <sundaram@xxxxxxxxxxxxxxxxx> - 0.2.20100329git - Rebuild for Boost soname bump - Update spec for guidelines and drop obsolete ifdefs -------------------------------------------------------------------------------- References: [ 1 ] Bug #665648 - Barry No Longer Syncs With My BlackBerry Bold 9000 https://bugzilla.redhat.com/show_bug.cgi?id=665648 -------------------------------------------------------------------------------- ================================================================================ erlang-ibrowse-2.1.3-1.fc13 (FEDORA-2011-0810) Erlang HTTP client -------------------------------------------------------------------------------- Update Information: * Ver. 2.1.3 (required by CouchDB 1.0.2) -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 27 2011 Peter Lemenkov <lemenkov@xxxxxxxxx> - 2.1.3-1 - Ver. 2.1.3 -------------------------------------------------------------------------------- References: [ 1 ] Bug #668725 - Upgrade to 2.1.2 https://bugzilla.redhat.com/show_bug.cgi?id=668725 -------------------------------------------------------------------------------- ================================================================================ freemind-0.9.0-0.9.rc15.fc13 (FEDORA-2011-0798) Free mind mapping software -------------------------------------------------------------------------------- Update Information: Update to recent upstream version! -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 27 2011 Johannes Lips <Johannes.Lips googlemail com> 0.9.0-0.9.rc15 - update to recent upstream version -------------------------------------------------------------------------------- ================================================================================ gnome-activity-journal-0.6.0-1.fc13 (FEDORA-2011-0823) Browse and search your Zeitgeist activities -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 27 2011 Mads Villadsen <maxx@xxxxxxxxx> - 0.6.0-1 - Update to 0.6.0 - Added drag and drop support - Added support for XChat, Bazaar - Added tray icon support - Minor interface changes - Various bug fixes * Tue Sep 28 2010 Mads Villadsen <maxx@xxxxxxxxx> - 0.5.0.1-1 - Update to 0.5.0.1 - Fixes issues with hamster-applet - Removes some debug output - Minor bugfixes -------------------------------------------------------------------------------- ================================================================================ gphotoframe-1.2-0.3.rc1.fc13 (FEDORA-2011-0805) Photo Frame Gadget for the GNOME Desktop -------------------------------------------------------------------------------- Update Information: 1.2 rc1 is released. -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 27 2011 Mamoru Tasaka <mtasaka@xxxxxxxxxxxxxxxxxxx> - 1.2-0.3.rc1 - 1.2 rc1 * Tue Jan 18 2011 Mamoru Tasaka <mtasaka@xxxxxxxxxxxxxxxxxxx> - 1.2-0.2.b6 - Update to 1.2b6 * Mon Dec 27 2010 Mamoru Tasaka <mtasaka@xxxxxxxxxxxxxxxxxxx> - 1.2-0.1.b4 - Update to 1.2b4 - And pull patch from hg head to fix gnome-screensaver related dbus error -------------------------------------------------------------------------------- ================================================================================ openoffice.org-3.2.0-12.35.fc13 (FEDORA-2011-0837) OpenOffice.org comprehensive office suite -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 27 2011 CaolÃn McNamara <caolanm@xxxxxxxxxx>- 1:3.2.0-12.35 - CVE-2010-3450 Extensions and filter package files - CVE-2010-3451 / CVE-2010-3452 RTF documents - CVE-2010-3453 / CVE-2010-3454 Word documents - CVE-2010-3689 LD_LIBRARY_PATH usage - CVE-2010-4253 PNG graphics - CVE-2010-4643 TGA graphics - Resolves: rhbz#648475 Crash in scanner dialog - Resolves: rhbz#657628 divide-by-zero - Resolves: rhbz#657718 Crash in SwObjectFormatterTxtFrm - Resolves: rhbz#660312 SDK setup script creates invalid variables (dtardon) - Resolves: rhbz#663780 extend neon mutex locking - Resoves: rhbz#577525 [abrt] crash in ImplRegionBase::~ImplRegionBase (dtardon) * Tue Oct 26 2010 CaolÃn McNamara <caolanm@xxxxxxxxxx> - 1:3.2.0-12.34 - Resolves: rhbz#636521 crash in undo in sc - Resolves: rhbz#641637 [abrt] [presentation-minimizer] crash in OptimizationStats::GetStatusValue (dtardon) - make LD_PRELOAD of libsalalloc_malloc.so work again (dtardon) - Resolves: rhbz#642996 [abrt] CffSubsetterContext::readDictOp (dtardon) -------------------------------------------------------------------------------- References: [ 1 ] Bug #602324 - CVE-2010-3450 OpenOffice.org: directory traversal flaws in handling of XSLT jar filter descriptions and OXT extension files https://bugzilla.redhat.com/show_bug.cgi?id=602324 [ 2 ] Bug #641282 - CVE-2010-3451 OpenOffice.org: Array index error by insecure parsing of broken rtf tables https://bugzilla.redhat.com/show_bug.cgi?id=641282 [ 3 ] Bug #640241 - CVE-2010-3452 OpenOffice.org: Integer signedness error (crash) by processing certain RTF tags https://bugzilla.redhat.com/show_bug.cgi?id=640241 [ 4 ] Bug #640950 - CVE-2010-3453 OpenOffice.org: Heap-based buffer overflow by processing *.doc files with WW8 list styles with specially-crafted count of list levels https://bugzilla.redhat.com/show_bug.cgi?id=640950 [ 5 ] Bug #640954 - CVE-2010-3454 OpenOffice.org: Array index error by scanning document typography information of certain *.doc files https://bugzilla.redhat.com/show_bug.cgi?id=640954 [ 6 ] Bug #641224 - CVE-2010-3689 OpenOffice.org: soffice insecure LD_LIBRARY_PATH setting https://bugzilla.redhat.com/show_bug.cgi?id=641224 [ 7 ] Bug #658259 - CVE-2010-4253 OpenOffice.org: heap based buffer overflow in PPT import https://bugzilla.redhat.com/show_bug.cgi?id=658259 [ 8 ] Bug #667588 - CVE-2010-4643 OpenOffice.org: heap based buffer overflow when parsing TGA files https://bugzilla.redhat.com/show_bug.cgi?id=667588 -------------------------------------------------------------------------------- ================================================================================ perl-CPAN-Meta-YAML-0.003-3.fc13 (FEDORA-2011-0835) Read and write a subset of YAML for CPAN Meta files -------------------------------------------------------------------------------- Update Information: This module implements a subset of the YAML specification for use in reading and writing CPAN metadata files like META.yml and MYMETA.yml. It should not be used for any other general YAML parsing or generation task. -------------------------------------------------------------------------------- References: [ 1 ] Bug #672807 - Review Request: perl-CPAN-Meta-YAML - Read and write a subset of YAML for CPAN Meta files https://bugzilla.redhat.com/show_bug.cgi?id=672807 -------------------------------------------------------------------------------- ================================================================================ perl-HTML-Mason-PSGIHandler-0.52-1.fc13 (FEDORA-2011-0827) PSGI handler for HTML::Mason -------------------------------------------------------------------------------- References: [ 1 ] Bug #664932 - Review Request: perl-HTML-Mason-PSGIHandler - PSGI handler for HTML::Mason https://bugzilla.redhat.com/show_bug.cgi?id=664932 -------------------------------------------------------------------------------- ================================================================================ perl-HTML-Quoted-0.03-1.fc13 (FEDORA-2011-0833) Extract structure of quoted HTML mail message -------------------------------------------------------------------------------- References: [ 1 ] Bug #664812 - Review Request: perl-HTML-Quoted - Extract structure of quoted HTML mail message https://bugzilla.redhat.com/show_bug.cgi?id=664812 -------------------------------------------------------------------------------- ================================================================================ perl-Parallel-Scoreboard-0.02-2.fc13 (FEDORA-2011-0824) Scoreboard for monitoring status of many processes -------------------------------------------------------------------------------- References: [ 1 ] Bug #671196 - Review Request: perl-Parallel-Scoreboard - Scoreboard for monitoring status of many processes https://bugzilla.redhat.com/show_bug.cgi?id=671196 -------------------------------------------------------------------------------- ================================================================================ perl-Perl-OSType-1.002-3.fc13 (FEDORA-2011-0800) Map Perl operating system names to generic types -------------------------------------------------------------------------------- Update Information: Modules that provide OS-specific behaviors often need to know if the current operating system matches a more generic type of operating systems. For example, 'linux' is a type of 'Unix' operating system and so is 'freebsd'. This module provides a mapping between an operating system name as given by $^O and a more generic type. The initial version is based on the OS type mappings provided in Module::Build and ExtUtils::CBuilder (thus, Microsoft operating systems are given the type 'Windows' rather than 'Win32'). -------------------------------------------------------------------------------- References: [ 1 ] Bug #672801 - Review Request: perl-Perl-OSType - Map Perl operating system names to generic types https://bugzilla.redhat.com/show_bug.cgi?id=672801 -------------------------------------------------------------------------------- ================================================================================ qbittorrent-2.6.4-1.fc13 (FEDORA-2011-0809) A Bittorrent Client -------------------------------------------------------------------------------- Update Information: * Sun Jan 23 2011 - Christophe Dumez <chris@xxxxxxxxxxxxxxx> - v2.6.4 - BUGFIX: Added unicode support to email notification - BUGFIX: Improved compatibility with various SMTP servers - BUGFIX: Fix Labeling in RSS downloader - BUGFIX: Avoid main window flashing on startup (closes #703984) - BUGFIX: Improved hostname resolution code - BUGFIX: Dropped dependency on libboost-thread - BUGFIX: Display legal notice on screen center - BUGFIX: Fix renaming of single-file torrents (by Vladimir Golovnev) - I18N: More dialog buttons are now translated (by Vladimir Golovnev) - I18N: Fix translation of size units (by Vladimir Golovnev) -------------------------------------------------------------------------------- ChangeLog: * Sun Jan 23 2011 Leigh Scott <leigh123linux@xxxxxxxxxxxxxx> - 1:2.6.4-1 - update to 2.6.4 -------------------------------------------------------------------------------- ================================================================================ qlandkartegt-1.0.1-1.fc13 (FEDORA-2011-0813) GPS device mapping tool -------------------------------------------------------------------------------- Update Information: update to bug fix release with these fixes: - Minimize height of waypoint dialog - Double click point in track edit moves map - Add distance to start and end to track point information - Add all other data fields to waypoint information - Add better support for waypoint icons larger than 15x15 - Add direction arrow to route - Add direction arrow to distance polyline - Make distance polyline bullets an option - Add hide and show to distance polyline - Add info dialog for map collections (qmap) - Add resize and move to map area selection (\*.qmap) -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 27 2011 Dan HorÃk <dan[at]danny.cz> 1.0.1-1 - update to 1.0.1 -------------------------------------------------------------------------------- ================================================================================ rear-1.9-1.fc13 (FEDORA-2011-0821) Relax and Recover (ReaR) is a Linux Disaster Recovery framework -------------------------------------------------------------------------------- Update Information: rear release with cloning functionalities (P2V,...) -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 24 2011 Gratien D'haese <gdha at sourceforge.net> - 1.9-1 - New development release with P2V, V2V functionality, and more - added AUTHORS, TODO to %doc and rm from datadir -------------------------------------------------------------------------------- ================================================================================ saphire-1.2.5-1.fc13 (FEDORA-2011-0838) Yet another shell -------------------------------------------------------------------------------- Update Information: New version 1.2.5 is released. -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 27 2011 Mamoru Tasaka <mtasaka@xxxxxxxxxxxxxxxxxxx> - 1.2.5-1 - 1.2.5 -------------------------------------------------------------------------------- ================================================================================ signpost-core-1.2.1.1-4.fc13 (FEDORA-2011-0815) A simple, light-weight, and modular OAuth client library for the Java platform -------------------------------------------------------------------------------- Update Information: A simple, light-weight, and modular OAuth client library for the Java platform -------------------------------------------------------------------------------- References: [ 1 ] Bug #669858 - Review Request: signpost-core - A simple, light-weight, and modular OAuth client library for the Java platform https://bugzilla.redhat.com/show_bug.cgi?id=669858 -------------------------------------------------------------------------------- ================================================================================ sipp-3.2-1.fc13 (FEDORA-2011-0820) SIP test tool / traffic generator -------------------------------------------------------------------------------- Update Information: * Ver. 3.2 -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 27 2011 Peter Lemenkov <lemenkov@xxxxxxxxx> 3.2-1 - Ver 3.2 - Patches rebased -------------------------------------------------------------------------------- ================================================================================ slapi-nis-0.22-1.fc13 (FEDORA-2011-0816) NIS Server and Schema Compatibility plugins for Directory Server -------------------------------------------------------------------------------- Update Information: This update corrects a number of bugs found by code analysis. -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 6 2011 Nalin Dahyabhai <nalin@xxxxxxxxxx> - 0.22-1 - fix a number of scanner-uncovered defects * Thu Jan 6 2011 Nalin Dahyabhai <nalin@xxxxxxxxxx> - 0.21-2 - make sure we always pull in nss-devel and nspr-devel, and the right ldap toolkit for the Fedora or RHEL version -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test