The following Fedora 14 Security updates need testing: https://admin.fedoraproject.org/updates/libcgroup-0.36.2-6.fc14 https://admin.fedoraproject.org/updates/wireshark-1.4.4-1.fc14 https://admin.fedoraproject.org/updates/libxml2-2.7.7-3.fc14 https://admin.fedoraproject.org/updates/subversion-1.6.16-1.fc14 https://admin.fedoraproject.org/updates/php-ZendFramework-1.11.4-1.fc14 https://admin.fedoraproject.org/updates/clamav-0.97-1400.fc14 https://admin.fedoraproject.org/updates/logwatch-7.3.6-60.fc14 https://admin.fedoraproject.org/updates/php-pear-1.9.2-1.fc14 https://admin.fedoraproject.org/updates/seamonkey-2.0.12-1.fc14 https://admin.fedoraproject.org/updates/whatsup-1.12-1.fc14 https://admin.fedoraproject.org/updates/cgit-0.9-1.fc14 https://admin.fedoraproject.org/updates/openldap-2.4.23-9.fc14 https://admin.fedoraproject.org/updates/couchdb-1.0.2-1.fc14 https://admin.fedoraproject.org/updates/mailman-2.1.13-7.fc14 https://admin.fedoraproject.org/updates/asterisk-1.6.2.17-1.fc14 https://admin.fedoraproject.org/updates/pywebdav-0.9.4.1-1.fc14 https://admin.fedoraproject.org/updates/thunderbird-3.1.8-3.fc14 https://admin.fedoraproject.org/updates/perl-Mail-Box-2.097-1.fc14 https://admin.fedoraproject.org/updates/389-admin-1.1.15-1.fc14 https://admin.fedoraproject.org/updates/tor-0.2.1.29-1400.fc14 https://admin.fedoraproject.org/updates/samba-3.5.7-73.fc14 https://admin.fedoraproject.org/updates/vsftpd-2.3.4-1.fc14 https://admin.fedoraproject.org/updates/exim-4.72-2.fc14 https://admin.fedoraproject.org/updates/feh-1.10.1-1.fc14 The following Fedora 14 Critical Path updates have yet to be approved: https://admin.fedoraproject.org/updates/gdb-7.2-46.fc14 https://admin.fedoraproject.org/updates/libxml2-2.7.7-3.fc14 https://admin.fedoraproject.org/updates/libconfig-1.4.6-1.fc14 https://admin.fedoraproject.org/updates/openldap-2.4.23-9.fc14 https://admin.fedoraproject.org/updates/lua-5.1.4-7.fc14 https://admin.fedoraproject.org/updates/mobile-broadband-provider-info-1.20110218-1.fc14 https://admin.fedoraproject.org/updates/xorg-x11-drv-geode-2.11.11-4.fc14 https://admin.fedoraproject.org/updates/libmodman-2.0.0-1.fc14 The following builds have been pushed to Fedora 14 updates-testing cgit-0.9-1.fc14 cutecw-1.0-1.fc14 dovecot-2.0.11-1.fc14 drbd-8.3.8.1-1.fc14 fedora-release-notes-14.1.2-2.fc14 fetchmail-6.3.17-3.fc14 flies-python-client-0.8.0-1.fc14 fuse-emulator-1.0.0.1-1.fc14 ghc-hamlet-0.6.1.2-1.fc14 ibus-m17n-1.3.2-1.fc14 ksh-20110208-2.fc14 microcode_ctl-1.17-8.fc14 python-pika-0.9.4-1.fc14 seamonkey-2.0.12-1.fc14 spice-vdagent-0.6.3-6.fc14 whatsup-1.12-1.fc14 xfce4-volumed-0.1.12-1.fc14 xlog-2.0.5-1.fc14 Details about builds: ================================================================================ cgit-0.9-1.fc14 (FEDORA-2011-2803) A fast web interface for git -------------------------------------------------------------------------------- Update Information: In addition to closing a DOS vulnerability (thanks to Jim Meyering), this upstream feature release adds the following enhancements: * Support for side-by-side diffs * Support for repo content in "about" view * Improved integration with gitolite/gitweb * Support for git notes in commit/log view * Support for graph in log view (similar to 'git log --graph') * Improved handling/display of path filters * Clients can modify diff view parameters * Support for directory listings in plain view * Support for remote branches * Support for range searches in log view (like 'git log master ^stable) * Support for expansion of environment vars in certain cgitrc options, which can simplify virtual hosting The release announcement has a more complete changelog: http://article.gmane.org/gmane.comp.version-control.git/168496 -------------------------------------------------------------------------------- ChangeLog: * Sun Mar 6 2011 Todd Zullinger <tmz@xxxxxxxxx> - 0.9-1 - Update to 0.9 - Fixes: CVE-2011-1027 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1027 - Generate and install man page and html docs - Use libcurl-devel on RHEL >= 6 - Include example filter scripts - Update example cgitrc * Tue Feb 8 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.8.2.1-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #680905 - CVE-2011-1027 cgit: invalid hex escape (e.g., %GG) in query triggers infinite loop https://bugzilla.redhat.com/show_bug.cgi?id=680905 -------------------------------------------------------------------------------- ================================================================================ cutecw-1.0-1.fc14 (FEDORA-2011-2817) Morse Code (CW) Training Software -------------------------------------------------------------------------------- Update Information: Updated to version 1.0 which provides significant improvements -------------------------------------------------------------------------------- ChangeLog: * Sun Mar 6 2011 Wes Hardaker <wjhns174@xxxxxxxxxxxxx> - 1.0-1 - Updated to 1.0 upstream -------------------------------------------------------------------------------- ================================================================================ dovecot-2.0.11-1.fc14 (FEDORA-2011-2808) Secure imap and pop3 server -------------------------------------------------------------------------------- Update Information: - IMAP: Fixed hangs with COMPRESS extension - IMAP: Fixed a hang when trying to COPY to a nonexistent mailbox. - IMAP: Fixed hang/crash with SEARCHRES + pipelining $. - IMAP: Fixed assert-crash if IDLE+DONE is sent in same TCP packet. -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 7 2011 Michal Hlavinka <mhlavink@xxxxxxxxxx> - 1:2.0.11-1 - IMAP: Fixed hangs with COMPRESS extension - IMAP: Fixed a hang when trying to COPY to a nonexistent mailbox. - IMAP: Fixed hang/crash with SEARCHRES + pipelining $. - IMAP: Fixed assert-crash if IDLE+DONE is sent in same TCP packet. -------------------------------------------------------------------------------- ================================================================================ drbd-8.3.8.1-1.fc14 (FEDORA-2011-2793) DRBD driver for Linux -------------------------------------------------------------------------------- Update Information: This package update brings the drbd client tools in line with the drbd module in Fedora 14's current kernel set. -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 1 2011 Major Hayden <major@xxxxxxxx - 8.3.8.1-1 - New upstream release. -------------------------------------------------------------------------------- ================================================================================ fedora-release-notes-14.1.2-2.fc14 (FEDORA-2011-2813) Release Notes -------------------------------------------------------------------------------- Update Information: This package update fixes a missing scriptlet dependency on /bin/touch. -------------------------------------------------------------------------------- ChangeLog: * Mon Feb 21 2011 Paul W. Frields <stickster@xxxxxxxxx> - 14.1.2-2 - Add /bin/touch requirement to fix post/postun noise (#669296) -------------------------------------------------------------------------------- References: [ 1 ] Bug #633137 - fedora-release-notes needs requires(post) and requires(postun) on coreutils https://bugzilla.redhat.com/show_bug.cgi?id=633137 -------------------------------------------------------------------------------- ================================================================================ fetchmail-6.3.17-3.fc14 (FEDORA-2011-2799) A remote mail retrieval and forwarding utility -------------------------------------------------------------------------------- Update Information: This update drops server(smtp) dependency. -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 7 2011 Vitezslav Crhonek <vcrhonek@xxxxxxxxxx> - 6.3.17-3 - Remove server(smtp) dependency -------------------------------------------------------------------------------- References: [ 1 ] Bug #682468 - fetchmail should not have dependency on a MTA e.g. Exim https://bugzilla.redhat.com/show_bug.cgi?id=682468 -------------------------------------------------------------------------------- ================================================================================ flies-python-client-0.8.0-1.fc14 (FEDORA-2011-2802) Python Client for Flies Server -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 7 2011 James Ni <jni@xxxxxxxxxx> - 0.8.0 - Stable release * Wed Feb 23 2011 James Ni <jni@xxxxxxxxxx> - 0.7.6-1 - Rename the command line option, add a Logger class for better output, set copytrans default value to true, make the extensions to a list of gettext and comment. * Tue Feb 22 2011 James Ni <jni@xxxxxxxxxx> - 0.7.4-1 - Fix issue 245:stop processing when type 'n', Add version service, rename the command line option and help info, add InternalServerError * Mon Feb 21 2011 James Ni <jni@xxxxxxxxxx> - 0.7.3-1 - Fix issue 244, issue 245, issue 247 and issue 30, add command list for 'flies publican', rewrite the README * Fri Feb 18 2011 James Ni <jni@xxxxxxxxxx> - 0.7.2-1 - Rename the gettextutil to publicanutil, Remove the translator from textFlowTarget, Add more help info * Tue Feb 8 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.7.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ fuse-emulator-1.0.0.1-1.fc14 (FEDORA-2011-2795) The Free UNIX Spectrum Emulator -------------------------------------------------------------------------------- Update Information: Update to latest upstream release. -------------------------------------------------------------------------------- ChangeLog: * Thu Mar 3 2011 Lucian Langa <cooly@xxxxxxxxxxxx> - 1.0.0.1-1 - new upstream release * Tue Feb 8 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.0.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ ghc-hamlet-0.6.1.2-1.fc14 (FEDORA-2011-2818) Haml-like template files that are compile-time checked -------------------------------------------------------------------------------- References: [ 1 ] Bug #630292 - Review Request: ghc-hamlet - Haml-like template files that are compile-time checked https://bugzilla.redhat.com/show_bug.cgi?id=630292 -------------------------------------------------------------------------------- ================================================================================ ibus-m17n-1.3.2-1.fc14 (FEDORA-2011-2816) The M17N engine for IBus platform -------------------------------------------------------------------------------- Update Information: new upstream release -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 7 2011 Daiki Ueno <dueno@xxxxxxxxxx> - 1.3.2-1 - New upstream release. -------------------------------------------------------------------------------- ================================================================================ ksh-20110208-2.fc14 (FEDORA-2011-2800) The Original ATT Korn Shell -------------------------------------------------------------------------------- Update Information: - fix ( ) compound list altering environment - updated to 2011-02-02 - fixed crash caused by wrong wctrans_t size -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 7 2011 Michal Hlavinka <mhlavink@xxxxxxxxxx> - 20110208-1 - fix ( ) compound list altering environment * Wed Feb 9 2011 Michal Hlavinka <mhlavink@xxxxxxxxxx> - 20110208-1 - ksh updated to 2011-02-08 - ksh updated to 2011-02-08 * Fri Feb 4 2011 Michal Hlavinka <mhlavink@xxxxxxxxxx> - 20110202-1 - ksh updated to 2011-02-02 * Wed Feb 2 2011 Michal Hlavinka <mhlavink@xxxxxxxxxx> - 20110131-1 - ksh updated to 2011-01-31 * Fri Jan 28 2011 Michal Hlavinka <mhlavink@xxxxxxxxxx> - 20110127-1 - ksh updated to 2011-01-27 * Thu Jan 20 2011 Michal Hlavinka <mhlavink@xxxxxxxxxx> - 20110118-1 - ksh updated to 2011-01-18 * Mon Jan 17 2011 Michal Hlavinka <mhlavink@xxxxxxxxxx> - 20110104-1 - ksh updated to 2011-01-04 -------------------------------------------------------------------------------- References: [ 1 ] Bug #667670 - [abrt] ksh-20110104-1.fc15: towctrans: Process /bin/ksh was killed by signal 11 (SIGSEGV) https://bugzilla.redhat.com/show_bug.cgi?id=667670 [ 2 ] Bug #664106 - Regression in ksh-20101212 https://bugzilla.redhat.com/show_bug.cgi?id=664106 -------------------------------------------------------------------------------- ================================================================================ microcode_ctl-1.17-8.fc14 (FEDORA-2011-2807) Tool to update x86/x86-64 CPU microcode. -------------------------------------------------------------------------------- Update Information: amd microcode update -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 7 2011 Anton Arapov <anton@xxxxxxxxxx> 1.17-8 - Update to amd-ucode-2011-01-11.tar -------------------------------------------------------------------------------- ================================================================================ python-pika-0.9.4-1.fc14 (FEDORA-2011-2804) AMQP 0-9-1 client library for Python -------------------------------------------------------------------------------- Update Information: Updated python-pika to version 0.9.4. -------------------------------------------------------------------------------- ChangeLog: * Sun Mar 6 2011 Ilia Cheishvili <ilia.cheishvili@xxxxxxxxx> - 0.9.4-1 - Upgrade to version 0.9.4 -------------------------------------------------------------------------------- ================================================================================ seamonkey-2.0.12-1.fc14 (FEDORA-2011-2797) Web browser, e-mail, news, IRC client, HTML editor -------------------------------------------------------------------------------- Update Information: Update to new upstream SeaMonkey version 2.0.12, fixing multiple security issues detailed in the upstream advisories: http://www.mozilla.org/security/known-vulnerabilities/seamonkey20.html#seamonkey2.0.12 -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 7 2011 Martin Stransky <stransky@xxxxxxxxxx> 2.0.12-1 - Update to 2.0.12 -------------------------------------------------------------------------------- ================================================================================ spice-vdagent-0.6.3-6.fc14 (FEDORA-2011-2798) Agent for Spice guests -------------------------------------------------------------------------------- Update Information: - Fix setting of the guest resolution from a multi monitor client - Make sysvinit script exit cleanly when not running on a spice enabled vm - Put the pid and log files into their own subdir (#648553) -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 7 2011 Hans de Goede <hdegoede@xxxxxxxxxx> 0.6.3-6 - Fix setting of the guest resolution from a multi monitor client * Wed Feb 9 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.6.3-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild * Mon Jan 10 2011 Hans de Goede <hdegoede@xxxxxxxxxx> 0.6.3-4 - Make sysvinit script exit cleanly when not running on a spice enabled vm * Fri Nov 19 2010 Hans de Goede <hdegoede@xxxxxxxxxx> 0.6.3-3 - Put the pid and log files into their own subdir (#648553) -------------------------------------------------------------------------------- ================================================================================ whatsup-1.12-1.fc14 (FEDORA-2011-2801) Node up/down detection utility -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 7 2011 Ruben Kerkhof <ruben@xxxxxxxxxxxxxxxx> 1.12-1 - Upstream released new version - Link against system-provided expat (#652981) - Fixes FTBFS (#661001) - Drop patch for incorrect open which was merged upstream * Thu Sep 30 2010 Dan HorÃk <dan[at]danny.cz> 1.10-2 - no InfiniBand on s390(x) -------------------------------------------------------------------------------- References: [ 1 ] Bug #661001 - FTBFS whatsup-1.10-1.fc14 https://bugzilla.redhat.com/show_bug.cgi?id=661001 [ 2 ] Bug #652981 - libnodeupdown-backend-ganglia contains an embedded copy of expat, prone to CVE-2009-3720 https://bugzilla.redhat.com/show_bug.cgi?id=652981 -------------------------------------------------------------------------------- ================================================================================ xfce4-volumed-0.1.12-1.fc14 (FEDORA-2011-2819) Daemon to add additional functionality to the volume keys of the keyboard -------------------------------------------------------------------------------- Update Information: This update fixes a crash when the wrong soundcard is detected as default. -------------------------------------------------------------------------------- ChangeLog: * Sun Mar 6 2011 Christoph Wickert <cwickert@xxxxxxxxxxxxxxxxx> - 0.1.12-1 - Update to 0.1.12 (fixes #680111) * Mon Feb 7 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.1.11-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild * Sat Nov 27 2010 Christoph Wickert <cwickert@xxxxxxxxxxxxxxxxx> - 0.1.11-1 - Update to 0.1.11 * Sat Nov 6 2010 Christoph Wickert <cwickert@xxxxxxxxxxxxxxxxx> - 0.1.10-2 - Fix for libnotify 0.7.0 * Wed Nov 3 2010 Christoph Wickert <cwickert@xxxxxxxxxxxxxxxxx> - 0.1.10-1 - Update to 0.1.10 (#631199) - Build requirements change: Require keybinder-devel instead of xcb-util-devel -------------------------------------------------------------------------------- References: [ 1 ] Bug #680111 - [abrt] xfce4-volumed-0.1.11-2.fc15: xvd_calculate_avg_volume: Process /usr/bin/xfce4-volumed was killed by signal 8 (SIGFPE) https://bugzilla.redhat.com/show_bug.cgi?id=680111 -------------------------------------------------------------------------------- ================================================================================ xlog-2.0.5-1.fc14 (FEDORA-2011-2810) Logging program for Hamradio Operators -------------------------------------------------------------------------------- Update Information: Update to latest upstream release. -------------------------------------------------------------------------------- ChangeLog: * Sat Mar 5 2011 Lucian Langa <cooly@xxxxxxxxxxxx> - 2.0.5-1 - new upstream release * Mon Feb 7 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.0.4-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test