The following Fedora 13 Security updates need testing: https://admin.fedoraproject.org/updates/libvirt-0.8.2-3.fc13 https://admin.fedoraproject.org/updates/dbus-1.2.24-2.fc13 https://admin.fedoraproject.org/updates/krb5-1.7.1-18.fc13 https://admin.fedoraproject.org/updates/libxml2-2.7.7-2.fc13 https://admin.fedoraproject.org/updates/dhcp-4.1.2-2.ESV.R1.fc13 https://admin.fedoraproject.org/updates/openssl-1.0.0d-1.fc13 https://admin.fedoraproject.org/updates/php-pear-1.9.2-1.fc13 https://admin.fedoraproject.org/updates/gnash-0.8.9-0.1.20110312git.fc13 https://admin.fedoraproject.org/updates/openldap-2.4.21-12.fc13 https://admin.fedoraproject.org/updates/mailman-2.1.12-17.fc13 https://admin.fedoraproject.org/updates/samba-3.5.8-74.fc13 https://admin.fedoraproject.org/updates/pidgin-2.7.11-1.fc13 https://admin.fedoraproject.org/updates/libtiff-3.9.4-3.fc13 https://admin.fedoraproject.org/updates/389-admin-1.1.15-1.fc13 https://admin.fedoraproject.org/updates/tor-0.2.1.29-1300.fc13 https://admin.fedoraproject.org/updates/libcgroup-0.35.1-5.fc13 https://admin.fedoraproject.org/updates/feh-1.10.1-1.fc13 https://admin.fedoraproject.org/updates/postfix-2.7.3-1.fc13 https://admin.fedoraproject.org/updates/mhonarc-2.6.18-3.fc13 The following Fedora 13 Critical Path updates have yet to be approved: https://admin.fedoraproject.org/updates/policycoreutils-2.0.83-33.4.fc13 https://admin.fedoraproject.org/updates/tzdata-2011d-1.fc13 https://admin.fedoraproject.org/updates/tzdata-2011b-3.fc13 https://admin.fedoraproject.org/updates/perl-ExtUtils-XSpp-0.15-2.fc13,perl-5.10.1-122.fc13,perl-Wx-0.98-5.fc13 https://admin.fedoraproject.org/updates/libxml2-2.7.7-2.fc13 https://admin.fedoraproject.org/updates/fuse-2.8.5-5.fc13 https://admin.fedoraproject.org/updates/NetworkManager-0.8.3.997-1.fc13 https://admin.fedoraproject.org/updates/libcgroup-0.35.1-5.fc13 https://admin.fedoraproject.org/updates/libtiff-3.9.4-3.fc13 https://admin.fedoraproject.org/updates/openldap-2.4.21-12.fc13 https://admin.fedoraproject.org/updates/livecd-tools-13.2-1.fc13 https://admin.fedoraproject.org/updates/lua-5.1.4-7.fc13 https://admin.fedoraproject.org/updates/librsvg2-2.26.3-3.fc13 https://admin.fedoraproject.org/updates/mobile-broadband-provider-info-1.20110218-1.fc13 https://admin.fedoraproject.org/updates/less-436-9.fc13 https://admin.fedoraproject.org/updates/dosfstools-3.0.9-4.fc13 https://admin.fedoraproject.org/updates/openssl-1.0.0d-1.fc13 https://admin.fedoraproject.org/updates/file-5.04-7.fc13 https://admin.fedoraproject.org/updates/system-config-users-1.2.107-1.fc13 https://admin.fedoraproject.org/updates/python-ethtool-0.6-1.fc13 https://admin.fedoraproject.org/updates/libical-0.46-2.fc13 https://admin.fedoraproject.org/updates/pm-utils-1.2.6.1-4.fc13 https://admin.fedoraproject.org/updates/mash-0.5.20-1.fc13 https://admin.fedoraproject.org/updates/libfprint-0.3.0-1.fc13 https://admin.fedoraproject.org/updates/xorg-x11-drv-openchrome-0.2.904-7.fc13 https://admin.fedoraproject.org/updates/lldpad-0.9.26-2.fc13 The following builds have been pushed to Fedora 13 updates-testing cabal2spec-0.22.5-1.fc13 cjkuni-ukai-fonts-0.2.20080216.1-47.fc13 cjkuni-uming-fonts-0.2.20080216.1-47.fc13 clustershell-1.4.2-1.fc13 firebird-2.1.4.18393.0-1.fc13 ghc-ConfigFile-1.0.6-4.fc13 hplip-3.11.1-3.fc13 jemalloc-2.1.3-2.fc13 krb5-1.7.1-18.fc13 libisofs-1.0.4-1.fc13 libphidget-2.1.8.20110310-1.fc13 libvirt-0.8.2-3.fc13 ndisc6-1.0.1-1.fc13 nkf-2.1.1-1.fc13 viewvc-1.1.10-1.fc13 Details about builds: ================================================================================ cabal2spec-0.22.5-1.fc13 (FEDORA-2011-3439) Tool for creating .spec files for Haskell Cabal Packages -------------------------------------------------------------------------------- Update Information: Add an option to override false binlib packages and template comments to help reviewers -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 16 2011 Jens Petersen <petersen@xxxxxxxxxx> - 0.22.5-1 - add -l option to override false binlib to lib package - add comments to templates to help reviewers - add sparcv9 port - drop setting debug_package and dynamic bcond * Tue Feb 8 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.22.4-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ cjkuni-ukai-fonts-0.2.20080216.1-47.fc13 (FEDORA-2011-3433) Chinese Unicode TrueType font in Kai face -------------------------------------------------------------------------------- ================================================================================ cjkuni-uming-fonts-0.2.20080216.1-47.fc13 (FEDORA-2011-3437) Chinese Unicode TrueType font in Ming face -------------------------------------------------------------------------------- ================================================================================ clustershell-1.4.2-1.fc13 (FEDORA-2011-3426) Python framework for efficient cluster administration -------------------------------------------------------------------------------- Update Information: CLI tools enhancement: improved clush, clubak and nodeset commands options -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 15 2011 Stephane Thiell <stephane.thiell@xxxxxx> 1.4.2-1 - update to 1.4.2 -------------------------------------------------------------------------------- ================================================================================ firebird-2.1.4.18393.0-1.fc13 (FEDORA-2011-3431) SQL relational database management system -------------------------------------------------------------------------------- Update Information: New upstream 2.1.4 fix various bugs see release notes. - added configuration for 31bit s390, required for secondary arch -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 16 2011 Philippe Makowski <makowski@xxxxxxxxxxxxxxxxx> 2.1.4.18393.0-1 - build with last upstream - fix upstream CORE-3388 * Fri Mar 26 2010 Karsten Hopp <karsten@xxxxxxxxxx> 2.1.3.18185.0-7 - add configuration for 31bit s390 -------------------------------------------------------------------------------- ================================================================================ ghc-ConfigFile-1.0.6-4.fc13 (FEDORA-2011-3440) Configuration file reading and writing -------------------------------------------------------------------------------- ================================================================================ hplip-3.11.1-3.fc13 (FEDORA-2011-3448) HP Linux Imaging and Printing Project -------------------------------------------------------------------------------- Update Information: This updates HPLIP to the latest upstream release as well as fixing a bug in the hpijs driver's supply status reporting, adding some Device IDs, and fixing a traceback in the Wi-Fi setup dialog. -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 1 2011 Jiri Popelka <jpopelka@xxxxxxxxxx> 3.11.1-3 - Avoid KeyError in ui4/wifisetupdialog.py (bug #680939). - Corrected IEEE 1284 Device IDs: LaserJet 1300 (bug #670548) LaserJet 3390 (bug #678565) LaserJet P1505 (bug #680951) * Fri Feb 4 2011 Tim Waugh <twaugh@xxxxxxxxxx> - 3.11.1-2 - Fixed typo causing ";marker-supply-low-warning" state reason to be reported by hpijs (bug #675151). * Mon Jan 24 2011 Jiri Popelka <jpopelka@xxxxxxxxxx> 3.11.1-1 - 3.11.1 -------------------------------------------------------------------------------- References: [ 1 ] Bug #680939 - [abrt] hplip-3.10.9-14.fc14: wifisetupdialog.py:304:performScan:KeyError: 'numberofscanentries' https://bugzilla.redhat.com/show_bug.cgi?id=680939 [ 2 ] Bug #670548 - Missing Device ID for HP LaserJet 1300 https://bugzilla.redhat.com/show_bug.cgi?id=670548 [ 3 ] Bug #678565 - Missing Device ID for HP LaserJet 3390 https://bugzilla.redhat.com/show_bug.cgi?id=678565 [ 4 ] Bug #680951 - Missing Device ID for HP LaserJet P1505 https://bugzilla.redhat.com/show_bug.cgi?id=680951 [ 5 ] Bug #675151 - Typo causes ";marker-supply-low-warning" state reason https://bugzilla.redhat.com/show_bug.cgi?id=675151 [ 6 ] Bug #684287 - hplip-3.10.9 lacks support for colour scanning on HP LJ Pro M1132 https://bugzilla.redhat.com/show_bug.cgi?id=684287 -------------------------------------------------------------------------------- ================================================================================ jemalloc-2.1.3-2.fc13 (FEDORA-2011-3447) General-purpose scalable concurrent malloc implementation -------------------------------------------------------------------------------- Update Information: New upstream release. A bugfix release. From the upstream changelog: Bug fixes: * Fix a cpp logic regression (due to the "thread.{de,}allocatedp" mallctl fix for OS X in 2.1.2). * Fix a "thread.arena" mallctl bug. * Fix a thread cache stats merging bug. -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 15 2011 Ingvar Hagelund <ingvar@xxxxxxxxxxxxxxxxxx> - 2.1.3-2 - New upstream release * Wed Feb 9 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.1.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ krb5-1.7.1-18.fc13 (FEDORA-2011-3464) The Kerberos network authentication system -------------------------------------------------------------------------------- Update Information: This update incorporates upstream fixes for a double-free in the KDC which could occur if the KDC needed to send back typed-data along with an error (MITKRB5-SA-2011-003, CVE-2011-0284). -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 15 2011 Nalin Dahyabhai <nalin@xxxxxxxxxx> 1.7.1-18 - add revised upstream patch to fix double-free in KDC while returning typed-data with errors (CVE-2011-0284, #674325) -------------------------------------------------------------------------------- References: [ 1 ] Bug #674325 - CVE-2011-0284 krb5 (krb5kdc): Double-free flaw by handling error messages upon receiving certain AS_REQ's (MITKRB5-SA-2011-003) https://bugzilla.redhat.com/show_bug.cgi?id=674325 -------------------------------------------------------------------------------- ================================================================================ libisofs-1.0.4-1.fc13 (FEDORA-2011-3455) Library to create ISO 9660 disk images -------------------------------------------------------------------------------- Update Information: Changes towards previous version 1.0.2: - Bug fix: Compilation failed if --disable-zlib was configured - Bug fix: isohybrid image size was not aligned to cylinder boundary - New no_md5 value 2 for API call iso_read_opts_set_no_md5() - New option bits 8 and 9 with iso_write_opts_set_system_area() -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 15 2011 Robert Scheck <robert@xxxxxxxxxxxxxxxxx> 1.0.4-1 - Upgrade to 1.0.4 -------------------------------------------------------------------------------- ================================================================================ libphidget-2.1.8.20110310-1.fc13 (FEDORA-2011-3454) Drivers and API for Phidget devices -------------------------------------------------------------------------------- Update Information: Upgrade to version 2.1.8.20100310. -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 15 2011 Rich Mattes <richmattes@xxxxxxxxx> - 2.1.8.20110310-1 - Update to version 2.1.8.20110310 -------------------------------------------------------------------------------- ================================================================================ libvirt-0.8.2-3.fc13 (FEDORA-2011-3459) Library providing a simple API virtualization -------------------------------------------------------------------------------- Update Information: fix a lack of API check on read-only connections this build fix one crash in the the error handling fix a lack of API check on read-only connections -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 16 2011 Daniel Veillard <veillard@xxxxxxxxxx> - 0.8.2-3 - fix one crash in the the error handling for previous patch * Tue Mar 15 2011 Daniel Veillard <veillard@xxxxxxxxxx> - 0.8.2-2 - Fix for CVE-2011-1146, missing checks on read-only connections bug 683655 -------------------------------------------------------------------------------- References: [ 1 ] Bug #683650 - CVE-2011-1146 libvirt: several API calls do not honour read-only connection https://bugzilla.redhat.com/show_bug.cgi?id=683650 -------------------------------------------------------------------------------- ================================================================================ ndisc6-1.0.1-1.fc13 (FEDORA-2011-3423) IPv6 diagnostic tools -------------------------------------------------------------------------------- Update Information: Sync'ed with a new upstream version. -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 15 2011 Stjepan Gros <stjepan.gros@xxxxxxxxx> - 1.0.1-1 - Bumped to a new upstream version - Removed references to isatap daemon as it is deprecated * Tue Feb 8 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.0.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ nkf-2.1.1-1.fc13 (FEDORA-2011-3451) A Kanji code conversion filter -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 16 2011 Akira TAGOH <tagoh@xxxxxxxxxx> - 1:2.1.1-1 - New upstream release. * Tue Feb 8 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1:2.0.8b-9 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild * Thu Apr 29 2010 Marcela Maslanova <mmaslano@xxxxxxxxxx> - 1:2.0.8b-8 - Mass rebuild with perl-5.12.0 -------------------------------------------------------------------------------- ================================================================================ viewvc-1.1.10-1.fc13 (FEDORA-2011-3428) Browser interface for CVS and SVN version control repositories -------------------------------------------------------------------------------- Update Information: Version 1.1.10 (released 15-Mar-2011) - fix stack trace in Subversion revision info logic (issue #475, issue #476) -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 16 2011 Bojan Smojver <bojan@xxxxxxxxxxxxx> - 1.1.10-1 - bump up to 1.1.10 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test