The following Fedora 13 Security updates need testing: https://admin.fedoraproject.org/updates/bugzilla-3.4.10-1.fc13 https://admin.fedoraproject.org/updates/asterisk-1.6.2.16.1-1.fc13 https://admin.fedoraproject.org/updates/dbus-1.2.24-2.fc13 https://admin.fedoraproject.org/updates/subversion-1.6.15-1.fc13 https://admin.fedoraproject.org/updates/openoffice.org-3.2.0-12.35.fc13 https://admin.fedoraproject.org/updates/dhcp-4.1.2-2.ESV.R1.fc13 https://admin.fedoraproject.org/updates/feh-1.10.1-1.fc13 https://admin.fedoraproject.org/updates/mod_auth_mysql-3.0.0-12.fc13 https://admin.fedoraproject.org/updates/wireshark-1.2.14-1.fc13 https://admin.fedoraproject.org/updates/perl-CGI-3.51-1.fc13 https://admin.fedoraproject.org/updates/tor-0.2.1.29-1300.fc13 https://admin.fedoraproject.org/updates/perl-CGI-Simple-1.113-1.fc13 The following Fedora 13 Critical Path updates have yet to be approved: https://admin.fedoraproject.org/updates/system-config-users-1.2.106-1.fc13 https://admin.fedoraproject.org/updates/python-ethtool-0.6-1.fc13 https://admin.fedoraproject.org/updates/elfutils-0.151-1.fc13 https://admin.fedoraproject.org/updates/util-linux-ng-2.17.2-10.fc13 https://admin.fedoraproject.org/updates/livecd-tools-13.1-1.fc13 https://admin.fedoraproject.org/updates/selinux-policy-3.7.19-80.fc13 https://admin.fedoraproject.org/updates/libical-0.46-2.fc13 https://admin.fedoraproject.org/updates/pm-utils-1.2.6.1-4.fc13 https://admin.fedoraproject.org/updates/mash-0.5.20-1.fc13 https://admin.fedoraproject.org/updates/nss-3.12.7-4.fc13,nss-util-3.12.7-2.fc13,nss-softokn-3.12.7-3.fc13,nspr-4.8.6-1.fc13 https://admin.fedoraproject.org/updates/xorg-x11-drv-openchrome-0.2.904-7.fc13 The following builds have been pushed to Fedora 13 updates-testing anki-1.2.5-1.fc13 clawsker-0.7.2-2.fc13 dhcp-4.1.2-2.ESV.R1.fc13 gdesklets-0.36.3-1.fc13 ghc-xml-1.3.7-1.fc13 libmicrohttpd-0.9.6-1.fc13 perl-Eval-Closure-0.02-1.fc13 pssh-2.2.1-1.fc13 python-keyring-0.5.1-1.fc13 tcsh-6.17-9.fc13 Details about builds: ================================================================================ anki-1.2.5-1.fc13 (FEDORA-2011-0462) Flashcard program for using space repetition learning -------------------------------------------------------------------------------- Update Information: * update to new upstream version 1.2.5 * full changelog: http://www.ankisrs.net/changes.html -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 27 2011 Christian Krause <chkr@xxxxxxxxxxxxxxxxx> - 1.2.5-1 - Update to new upstream version 1.2.5 (BZ 665163) * Sun Jan 23 2011 Christian Krause <chkr@xxxxxxxxxxxxxxxxx> - 1.2.4-1 - Update to new upstream version 1.2.4 (BZ 665163) * Fri Jan 14 2011 Christian Krause <chkr@xxxxxxxxxxxxxxxxx> - 1.2.2-1 - Update to new upstream version 1.2.2 (BZ 665163) * Tue Dec 14 2010 Christian Krause <chkr@xxxxxxxxxxxxxxxxx> - 1.1.10-1 - Update to new upstream version 1.1.10 (BZ 655939) -------------------------------------------------------------------------------- References: [ 1 ] Bug #665163 - anki-1.2.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=665163 -------------------------------------------------------------------------------- ================================================================================ clawsker-0.7.2-2.fc13 (FEDORA-2011-0843) Dialog to edit Claws Mail's hidden preferences -------------------------------------------------------------------------------- Update Information: Clawsker is a Perl-GTK2 applet to edit hidden preferences for Claws Mail, and to do it in a safe and user friendly way, preventing users from raw editing of configuration files. -------------------------------------------------------------------------------- References: [ 1 ] Bug #620191 - Review Request: clawsker - Dialog to edit Claws Mail's hidden preferences https://bugzilla.redhat.com/show_bug.cgi?id=620191 -------------------------------------------------------------------------------- ================================================================================ dhcp-4.1.2-2.ESV.R1.fc13 (FEDORA-2011-0848) Dynamic host configuration protocol software -------------------------------------------------------------------------------- Update Information: A flaw was discovered in the way the dhcpd daemon processed a message for an address that had been previously declined and internally tagged as abandoned. Processing such a message could trigger an assert failure that could crash dhcpd if it was running as a DHCPv6 server. DHCPv4 servers are unaffected. (CVE-2011-0413) -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 27 2011 Jiri Popelka <jpopelka@xxxxxxxxxx> - 12:4.1.2-2.ESV.R1 - 4.1-ESV-R1: fix for CVE-2011-0413 (#672996) -------------------------------------------------------------------------------- References: [ 1 ] Bug #672755 - CVE-2011-0413 dhcp: unexpected abort caused by a DHCPv6 decline message https://bugzilla.redhat.com/show_bug.cgi?id=672755 -------------------------------------------------------------------------------- ================================================================================ gdesklets-0.36.3-1.fc13 (FEDORA-2011-0842) Architecture for desktop applets -------------------------------------------------------------------------------- Update Information: New upstream release -------------------------------------------------------------------------------- ChangeLog: * Wed Jan 26 2011 Luya Tshimbalanga <luya@xxxxxxxxxxxxxxxxx> 0.36.3-1 - New upstream version - Fixed spec -------------------------------------------------------------------------------- References: [ 1 ] Bug #657463 - [abrt] gdesklets-0.36.2-3.fc14: Process /usr/bin/python was killed by signal 11 (SIGSEGV) https://bugzilla.redhat.com/show_bug.cgi?id=657463 -------------------------------------------------------------------------------- ================================================================================ ghc-xml-1.3.7-1.fc13 (FEDORA-2011-0856) A simple XML library -------------------------------------------------------------------------------- References: [ 1 ] Bug #648100 - Review Request: ghc-xml - A simple XML library https://bugzilla.redhat.com/show_bug.cgi?id=648100 -------------------------------------------------------------------------------- ================================================================================ libmicrohttpd-0.9.6-1.fc13 (FEDORA-2011-0841) Lightweight library for embedding a webserver in applications -------------------------------------------------------------------------------- Update Information: Update to 0.9.6, fixes some bugs, introduces basic authentication. -------------------------------------------------------------------------------- ChangeLog: * Wed Jan 26 2011 Tim Niemueller <tim@xxxxxxxxxxxxx> - 0.9.6-1 - Update to new upstream release 0.9.6 * Mon Jan 24 2011 Tim Niemueller <tim@xxxxxxxxxxxxx> - 0.9.5-1 - Update to new upstream release 0.9.5 * Tue Nov 16 2010 Tim Niemueller <tim@xxxxxxxxxxxxx> - 0.9.2-3 - Add missing BR gnutls-devel and libgcrypt-devel - Added patch to fix test apps (NSS instead of GnuTLS/OpenSSL curl, implicit DSO linking) - Disable test cases for now due to false errors, reported upstream * Tue Nov 16 2010 Tim Niemueller <tim@xxxxxxxxxxxxx> - 0.9.2-2 - Re-enable HTTPS, configure flags had unexpected result * Sun Nov 7 2010 Tim Niemueller <tim@xxxxxxxxxxxxx> - 0.9.2-1 - Update to 0.9.2 -------------------------------------------------------------------------------- References: [ 1 ] Bug #659035 - libmicrohttpd-0.9.6 is available https://bugzilla.redhat.com/show_bug.cgi?id=659035 -------------------------------------------------------------------------------- ================================================================================ perl-Eval-Closure-0.02-1.fc13 (FEDORA-2011-0858) Safely and cleanly create closures via string eval -------------------------------------------------------------------------------- Update Information: -------------------------------------------------------------------------------- References: [ 1 ] Bug #672015 - Review Request: perl-Eval-Closure - Safely and cleanly create closures via string eval https://bugzilla.redhat.com/show_bug.cgi?id=672015 -------------------------------------------------------------------------------- ================================================================================ pssh-2.2.1-1.fc13 (FEDORA-2011-0847) Parallel SSH tools -------------------------------------------------------------------------------- Update Information: Update to latest upstream release pssh 2.2.1, fixing various bugs. -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 27 2011 Terje Rosten <terje.rosten@xxxxxxx> - 2.2.1-1 - 2.2.1 * Sat Jan 22 2011 Terje Rosten <terje.rosten@xxxxxxx> - 2.2-1 - 2.2 * Wed Jul 21 2010 David Malcolm <dmalcolm@xxxxxxxxxx> - 2.1.1-2 - Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #641466 - [abrt] pssh-2.1.1-1.fc13: psshutil.py:18:read_hosts:IOError: [Errno 2] No such file or directory: 'pssh/wsb22' https://bugzilla.redhat.com/show_bug.cgi?id=641466 -------------------------------------------------------------------------------- ================================================================================ python-keyring-0.5.1-1.fc13 (FEDORA-2011-0861) Python library to access the system keyring service -------------------------------------------------------------------------------- Update Information: *Remove a spurious KDE debug message when using KWallet *Fix a bug that caused an exception if the user canceled the KWallet dialog *Removed sub-packages: gnome and kwallet; removed "Requires: PyKDE4 PyQt4" Pushing python-keyring-0.4-1 to fc13 and fc14 for testing Pushing python-keyring-0.4-1 to fc13 and fc14 for testing -------------------------------------------------------------------------------- References: [ 1 ] Bug #593800 - Review Request: python-keyring - keyring module for python https://bugzilla.redhat.com/show_bug.cgi?id=593800 -------------------------------------------------------------------------------- ================================================================================ tcsh-6.17-9.fc13 (FEDORA-2011-0850) An enhanced version of csh, the C shell -------------------------------------------------------------------------------- Update Information: - Modify verbose patch to match with upstream (don't print on history -S) Resolves: #672810 - Fix error message on exit Resolves: #672810 - Make wait builtin command interruptible Resolves: #440465 - Remove fork when tcsh processes backquotes Resolves: #594536 - Don't set $REMOTEHOST on the local machine Resolves: #669176 - Don't print history in verbose mode Resolves: #583075, #658171 - Don't allow illegal variable names to be set Resolves: #436901 - Fix testsuite - Ship README file -------------------------------------------------------------------------------- ChangeLog: * Fri Jan 28 2011 Vojtech Vitek (V-Teq) <vvitek@xxxxxxxxxx> - 6.17-9 - Modify verbose patch to match with upstream (don't print on history -S) Resolves: #672810 * Wed Jan 26 2011 Vojtech Vitek (V-Teq) <vvitek@xxxxxxxxxx> - 6.17-8 - Fix error message on exit Resolves: #672810 * Tue Jan 25 2011 Vojtech Vitek (V-Teq) <vvitek@xxxxxxxxxx> - 6.17-7 - Make wait builtin command interruptible Resolves: #440465 - Remove fork when tcsh processes backquotes Resolves: #594536 - Don't set $REMOTEHOST on the local machine Resolves: #669176 - Don't print history in verbose mode Resolves: #583075, #658171 - Don't allow illegal variable names to be set Resolves: #436901 - Fix testsuite - Ship README file -------------------------------------------------------------------------------- References: [ 1 ] Bug #672810 - [tcsh] returns "verbose: Undefined variable." upon exit https://bugzilla.redhat.com/show_bug.cgi?id=672810 [ 2 ] Bug #594536 - Extra fork when tcsh processes backquotes https://bugzilla.redhat.com/show_bug.cgi?id=594536 [ 3 ] Bug #583075 - Running tcsh with '-v' option dumps contents of ~/.history https://bugzilla.redhat.com/show_bug.cgi?id=583075 [ 4 ] Bug #436901 - It should not be allowed if environment variable begins with a digit https://bugzilla.redhat.com/show_bug.cgi?id=436901 [ 5 ] Bug #440465 - the wait command in csh is not interruptible https://bugzilla.redhat.com/show_bug.cgi?id=440465 [ 6 ] Bug #669176 - $REMOTEHOST is set empty on the local machine in csh and tcsh https://bugzilla.redhat.com/show_bug.cgi?id=669176 [ 7 ] Bug #658171 - Running tcsh with '-v' option dumps contents of ~/.history https://bugzilla.redhat.com/show_bug.cgi?id=658171 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test