The following Fedora 13 Security updates need testing: https://admin.fedoraproject.org/updates/libvirt-0.8.2-3.fc13 https://admin.fedoraproject.org/updates/dbus-1.2.24-2.fc13 https://admin.fedoraproject.org/updates/krb5-1.7.1-18.fc13 https://admin.fedoraproject.org/updates/tor-0.2.1.29-1300.fc13 https://admin.fedoraproject.org/updates/php-pear-1.9.2-1.fc13 https://admin.fedoraproject.org/updates/libxml2-2.7.7-2.fc13 https://admin.fedoraproject.org/updates/dhcp-4.1.2-2.ESV.R1.fc13 https://admin.fedoraproject.org/updates/openldap-2.4.21-12.fc13 https://admin.fedoraproject.org/updates/php-5.3.6-1.fc13,maniadrive-1.2-27.fc13,php-eaccelerator-0.9.6.1-6.fc13 https://admin.fedoraproject.org/updates/389-admin-1.1.15-1.fc13 https://admin.fedoraproject.org/updates/gnash-0.8.9-1.fc13 https://admin.fedoraproject.org/updates/phpMyAdmin-3.3.10-1.fc13 https://admin.fedoraproject.org/updates/libcgroup-0.35.1-5.fc13 https://admin.fedoraproject.org/updates/wordpress-3.1-1.fc13 https://admin.fedoraproject.org/updates/feh-1.10.1-1.fc13 https://admin.fedoraproject.org/updates/postfix-2.7.3-1.fc13 https://admin.fedoraproject.org/updates/mhonarc-2.6.18-3.fc13 https://admin.fedoraproject.org/updates/libtiff-3.9.4-4.fc13 The following Fedora 13 Critical Path updates have yet to be approved: https://admin.fedoraproject.org/updates/usbmuxd-1.0.7-1.fc13 https://admin.fedoraproject.org/updates/libtiff-3.9.4-4.fc13 https://admin.fedoraproject.org/updates/libnl-1.1-14.fc13 https://admin.fedoraproject.org/updates/selinux-policy-3.7.19-101.fc13 https://admin.fedoraproject.org/updates/policycoreutils-2.0.83-33.4.fc13 https://admin.fedoraproject.org/updates/tzdata-2011d-1.fc13 https://admin.fedoraproject.org/updates/tzdata-2011b-3.fc13 https://admin.fedoraproject.org/updates/perl-ExtUtils-XSpp-0.15-2.fc13,perl-5.10.1-122.fc13,perl-Wx-0.98-5.fc13 https://admin.fedoraproject.org/updates/libxml2-2.7.7-2.fc13 https://admin.fedoraproject.org/updates/fuse-2.8.5-5.fc13 https://admin.fedoraproject.org/updates/NetworkManager-0.8.3.997-1.fc13 https://admin.fedoraproject.org/updates/libcgroup-0.35.1-5.fc13 https://admin.fedoraproject.org/updates/openldap-2.4.21-12.fc13 https://admin.fedoraproject.org/updates/livecd-tools-13.2-1.fc13 https://admin.fedoraproject.org/updates/lua-5.1.4-7.fc13 https://admin.fedoraproject.org/updates/librsvg2-2.26.3-3.fc13 https://admin.fedoraproject.org/updates/mobile-broadband-provider-info-1.20110218-1.fc13 https://admin.fedoraproject.org/updates/dosfstools-3.0.9-4.fc13 https://admin.fedoraproject.org/updates/file-5.04-7.fc13 https://admin.fedoraproject.org/updates/system-config-users-1.2.107-1.fc13 https://admin.fedoraproject.org/updates/python-ethtool-0.6-1.fc13 https://admin.fedoraproject.org/updates/libical-0.46-2.fc13 https://admin.fedoraproject.org/updates/mash-0.5.20-1.fc13 https://admin.fedoraproject.org/updates/libfprint-0.3.0-1.fc13 https://admin.fedoraproject.org/updates/xorg-x11-drv-openchrome-0.2.904-7.fc13 https://admin.fedoraproject.org/updates/lldpad-0.9.26-2.fc13 The following builds have been pushed to Fedora 13 updates-testing automaton-1.11r6-1.fc13 libnl-1.1-14.fc13 libtiff-3.9.4-4.fc13 mysql-connector-python-0.3.2-2.fc13 qbittorrent-2.7.0-1.fc13 texmakerx-2.1-1.fc13 thai-scalable-fonts-0.4.15-2.fc13 uim-1.6.1-3.fc13 usbmuxd-1.0.7-1.fc13 xfce4-cpufreq-plugin-1.0.0-1.fc13 zeroinstall-injector-0.53-1.fc13 Details about builds: ================================================================================ automaton-1.11r6-1.fc13 (FEDORA-2011-3838) A Java finite state automata/regular expression library -------------------------------------------------------------------------------- Update Information: Upstream note on this update: - performance improvement in Automaton.isFinite - thanks to R. Muir -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 21 2011 Jerry James <loganjerry@xxxxxxxxx> - 1.11r6-1 - Upgrade to 1.11-6 - Drop %clean section -------------------------------------------------------------------------------- ================================================================================ libnl-1.1-14.fc13 (FEDORA-2011-3843) Convenience library for kernel netlink sockets -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 21 2011 Dan Williams <dcbw@xxxxxxxxxx> - 1.1-14 - Fix portmap position calculation (rh #677526) (rh #677725) - Make port allocation threadsafe (rh #677527) (rh #677724) * Thu May 13 2010 Dan Williams <dcbw@xxxxxxxxxx> - 1.1-11 - Update source link for package review (rh #592042) * Fri Feb 26 2010 Dennis Gilmore <dennis@xxxxxxxx> - 1.1-10 - add patch for alignment issues * Tue Dec 22 2009 John W. Linville <linville@xxxxxxxxxx> - 1.1-9 - Install libnl into /lib64 instead of /usr/lib64 -------------------------------------------------------------------------------- References: [ 1 ] Bug #677526 - port allocation/deallocation is wrong [in libnl-1.1-12] https://bugzilla.redhat.com/show_bug.cgi?id=677526 [ 2 ] Bug #677527 - port allocation/deallocation needs to be made thread-safe https://bugzilla.redhat.com/show_bug.cgi?id=677527 -------------------------------------------------------------------------------- ================================================================================ libtiff-3.9.4-4.fc13 (FEDORA-2011-3827) Library of functions for manipulating TIFF format image files -------------------------------------------------------------------------------- Update Information: Fix incorrect fix for CVE-2011-0192 Add fix for CVE-2011-1167 Fix buffer overrun in fax decoding (CVE-2011-0192) as well as a non-security-critical crash in gif2tiff. -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 21 2011 Tom Lane <tgl@xxxxxxxxxx> 3.9.4-4 - Fix incorrect fix for CVE-2011-0192 Resolves: #684007 Related: #688825 - Add fix for CVE-2011-1167 Resolves: #689574 * Wed Mar 2 2011 Tom Lane <tgl@xxxxxxxxxx> 3.9.4-3 - Add patch for CVE-2011-0192 Resolves: #681672 - Fix non-security-critical potential SIGSEGV in gif2tiff Related: #648820 -------------------------------------------------------------------------------- References: [ 1 ] Bug #684939 - CVE-2011-1167 libtiff: heap-based buffer overflow in thunder decoder (ZDI-11-107) https://bugzilla.redhat.com/show_bug.cgi?id=684939 [ 2 ] Bug #678635 - CVE-2011-0192 libtiff: buffer overflow in Fax4Decode https://bugzilla.redhat.com/show_bug.cgi?id=678635 -------------------------------------------------------------------------------- ================================================================================ mysql-connector-python-0.3.2-2.fc13 (FEDORA-2011-3822) MySQL Connector for Python 2 -------------------------------------------------------------------------------- Update Information: MySQL Connector/Python is implementing the MySQL Client/Server protocol completely in Python. No MySQL libraries are needed, and no compilation is necessary to run this Python DB API v2.0 compliant driver. -------------------------------------------------------------------------------- References: [ 1 ] Bug #683552 - Review Request: mysql-connector-python - MySQL Connector/Python https://bugzilla.redhat.com/show_bug.cgi?id=683552 -------------------------------------------------------------------------------- ================================================================================ qbittorrent-2.7.0-1.fc13 (FEDORA-2011-3826) A Bittorrent Client -------------------------------------------------------------------------------- Update Information: * Sun Mar 20 2011 - Christophe Dumez <chris@xxxxxxxxxxxxxxx> - v2.7.0 - FEATURE: Added search field for torrent content - FEATURE: Added auto-shutdown confirmation dialog - FEATURE: Added option to skip torrent deletion confirmation (Ville Kiiskinen) - FEATURE: IP address reported to trackers is now customizable - FEATURE: Inhibit system sleep when torrents are active (Vladimir Golovnev) - FEATURE: Added option to bypass Web UI authentication for localhost - FEATURE: Added option to disable program exit confirmation - FEATURE: Added per-torrent ratio limiting (Christian Kandeler) - FEATURE: Torrent content list is now sortable - BUGFIX: Fix compilation with namespaced Qt (Christian Kandeler) - BUGFIX: Added length restriction on UI lock password - COSMETIC: Added monochrome tray icon - COSMETIC: Improved status bar's style - OTHER: Make QtDBus dependency optional (X11) -------------------------------------------------------------------------------- ChangeLog: * Sun Mar 20 2011 Leigh Scott <leigh123linux@xxxxxxxxxxxxxx> - 1:2.7.0-1 - update to 2.7.0 release -------------------------------------------------------------------------------- ================================================================================ texmakerx-2.1-1.fc13 (FEDORA-2011-3825) A feature-rich editor for LaTeX documents -------------------------------------------------------------------------------- Update Information: Update to recent upstream version 2.1 -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 21 2011 Johannes Lips <Johannes.Lips@xxxxxxxxxxxxxx> - 2.1-1 - Update to 2.1 * Sun Mar 13 2011 Marek Kasik <mkasik@xxxxxxxxxx> - 2.0-6 - Rebuild (poppler-0.16.3) * Wed Feb 9 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.0-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild * Thu Jan 27 2011 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> - 2.0-4 - rebuild (qt) * Sat Jan 1 2011 Rex Dieter <rdieter@xxxxxxxxxxxxxxxxx> - 2.0-3 - rebuild (poppler) -------------------------------------------------------------------------------- ================================================================================ thai-scalable-fonts-0.4.15-2.fc13 (FEDORA-2011-3842) Thai TrueType fonts -------------------------------------------------------------------------------- Update Information: fix summary of -common subpackage new upstream release new upstream release -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 22 2011 Daiki Ueno <dueno@xxxxxxxxxx> - 0.4.15-2 - fix summary of -common subpackage (Bug#688969) * Thu Mar 17 2011 Daiki Ueno <dueno@xxxxxxxxxx> - 0.4.15-1 - update to 0.4.15 * Wed Feb 9 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 0.4.14-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #688969 - Summary needs to be changed. https://bugzilla.redhat.com/show_bug.cgi?id=688969 [ 2 ] Bug #688123 - thai-scalable-fonts-0.4.15 is available https://bugzilla.redhat.com/show_bug.cgi?id=688123 -------------------------------------------------------------------------------- ================================================================================ uim-1.6.1-3.fc13 (FEDORA-2011-3816) A multilingual input method library -------------------------------------------------------------------------------- Update Information: Fix an issue that modeline isn't updated properly on other leim-enabled IM, such as emacs-mozc. -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 22 2011 Akira TAGOH <tagoh@xxxxxxxxxx> - 1.6.1-3 - backport patch from upstream to fix the modeline issue with other leim-enabled IM on Emacs. * Mon Feb 7 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.6.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ usbmuxd-1.0.7-1.fc13 (FEDORA-2011-3828) Daemon for communicating with Apple's iPod Touch and iPhone -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 22 2011 Peter Robinson <pbrobinson@xxxxxxxxx> 1.0.7-1 - New stable 1.0.7 release * Mon Feb 7 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 1.0.6-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ xfce4-cpufreq-plugin-1.0.0-1.fc13 (FEDORA-2011-3819) CPU frequency scaling plugin for the Xfce4 panel -------------------------------------------------------------------------------- References: [ 1 ] Bug #688408 - Review Request: xfce4-cpufreq-plugin - CPU frequency scaling plugin for the Xfce4 panel https://bugzilla.redhat.com/show_bug.cgi?id=688408 -------------------------------------------------------------------------------- ================================================================================ zeroinstall-injector-0.53-1.fc13 (FEDORA-2011-3817) The Zero Install Injector (0launch) -------------------------------------------------------------------------------- Update Information: - Removal of deprecated features - API clean-up - Better defaults for approving new keys see http://0install.net/roadmap.html New upstream release, adding: - 0install command - value attribute for <environment> - recursive use of <runner> See http://0install.net/roadmap.html -------------------------------------------------------------------------------- ChangeLog: * Thu Mar 17 2011 Michel Salim <salimma@xxxxxxxxxxxxxxxxx> - 0.53-1 - Update to 0.53 -------------------------------------------------------------------------------- References: [ 1 ] Bug #684739 - zeroinstall-injector-0.53 is available https://bugzilla.redhat.com/show_bug.cgi?id=684739 [ 2 ] Bug #626359 - zeroinstall-injector-0.52 is available https://bugzilla.redhat.com/show_bug.cgi?id=626359 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test