The following Fedora 13 Security updates need testing: https://admin.fedoraproject.org/updates/tor-0.2.1.29-1300.fc13 https://admin.fedoraproject.org/updates/SimGear-2.0.0-5.fc13 https://admin.fedoraproject.org/updates/libmodplug-0.8.7-3.fc13 https://admin.fedoraproject.org/updates/feh-1.10.1-1.fc13 https://admin.fedoraproject.org/updates/perl-Mojolicious-0.999925-3.fc13 https://admin.fedoraproject.org/updates/perl-5.10.1-123.fc13 https://admin.fedoraproject.org/updates/openldap-2.4.21-12.fc13 https://admin.fedoraproject.org/updates/wireshark-1.2.16-1.fc13 https://admin.fedoraproject.org/updates/libcgroup-0.35.1-5.fc13 https://admin.fedoraproject.org/updates/libtiff-3.9.5-1.fc13 https://admin.fedoraproject.org/updates/polkit-0.96-2.fc13 https://admin.fedoraproject.org/updates/python-feedparser-5.0.1-1.fc13 https://admin.fedoraproject.org/updates/mediawiki-1.16.4-57.fc13 https://admin.fedoraproject.org/updates/xorg-x11-server-utils-7.4-17.fc13 https://admin.fedoraproject.org/updates/krb5-1.7.1-19.fc13 https://admin.fedoraproject.org/updates/fail2ban-0.8.4-27.fc13 The following Fedora 13 Critical Path updates have yet to be approved: https://admin.fedoraproject.org/updates/NetworkManager-0.8.4-1.fc13 https://admin.fedoraproject.org/updates/polkit-0.96-2.fc13 https://admin.fedoraproject.org/updates/xorg-x11-drv-penmount-1.4.1-2.fc13 https://admin.fedoraproject.org/updates/python-ethtool-0.7-2.fc13 https://admin.fedoraproject.org/updates/libtiff-3.9.5-1.fc13 https://admin.fedoraproject.org/updates/pygtk2-2.17.0-9.fc13 https://admin.fedoraproject.org/updates/dosfstools-3.0.9-5.fc13 https://admin.fedoraproject.org/updates/tzdata-2011d-3.fc13 https://admin.fedoraproject.org/updates/policycoreutils-2.0.83-33.8.fc13 https://admin.fedoraproject.org/updates/libimobiledevice-1.0.6-1.fc13 https://admin.fedoraproject.org/updates/usbmuxd-1.0.7-1.fc13 https://admin.fedoraproject.org/updates/fuse-2.8.5-5.fc13 https://admin.fedoraproject.org/updates/libcgroup-0.35.1-5.fc13 https://admin.fedoraproject.org/updates/openldap-2.4.21-12.fc13 https://admin.fedoraproject.org/updates/livecd-tools-13.2-1.fc13 https://admin.fedoraproject.org/updates/lua-5.1.4-7.fc13 https://admin.fedoraproject.org/updates/xorg-x11-drv-openchrome-0.2.904-7.fc13 https://admin.fedoraproject.org/updates/lldpad-0.9.26-2.fc13 The following builds have been pushed to Fedora 13 updates-testing FlightGear-data-2.0.0-3.fc13 NetworkManager-0.8.4-1.fc13 SimGear-2.0.0-5.fc13 augeas-0.8.1-1.fc13 ghc-binary-shared-0.8.1-2.fc13 gtk-equinox-engine-1.40-1.fc13 perl-Module-Signature-0.67-3.fc13 rubygem-formtastic-1.2.3-4.fc13 thunderbird-3.1.9-2.fc13 thunderbird-lightning-1.0-0.41.b3pre.fc13 vim-perl-support-4.11-1.fc13 xinetd-2.3.14-34.fc13 zabbix-1.8.5-1.fc13 Details about builds: ================================================================================ FlightGear-data-2.0.0-3.fc13 (FEDORA-2011-5741) FlightGear base scenery and data files -------------------------------------------------------------------------------- Update Information: fix utf8 encoding on Aircraft/c172p/Models/Immat/immat.xml (default plane). This makes FlightGear display the plane properly on a default run. -------------------------------------------------------------------------------- ChangeLog: * Wed Apr 20 2011 Tom Callaway <spot@xxxxxxxxxxxxxxxxx> - 2.0.0-3 - fix utf8 encoding on Aircraft/c172p/Models/Immat/immat.xml (default plane) * Mon Feb 7 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.0.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ NetworkManager-0.8.4-1.fc13 (FEDORA-2011-5751) Network connection manager and user applications -------------------------------------------------------------------------------- Update Information: This build fixes a crash connecting to VPNs and a problem changing wireless encryption settings. -------------------------------------------------------------------------------- ChangeLog: * Wed Apr 20 2011 Dan Williams <dcbw@xxxxxxxxxx> - 0.8.4-1 - Update to 0.8.4 - core: fix crash starting VPN connections - core: write usable DNS configuration on shutdown when local caching nameserver is used - ifcfg-rh: fix writing out wifi connections changed from WPA to open (rh #695604) * Thu Apr 14 2011 Dan Williams <dcbw@xxxxxxxxxx> - 0.8.3.999-2.git20110414 - fix location of nm-version.h again * Thu Apr 14 2011 Dan Williams <dcbw@xxxxxxxxxx> - 0.8.3.999-1.git20110414 - Update to 0.8.3.999 (0.8.4-rc2) - core: ensure correct supplicant options are used for wired 802.1x - core: fix handling of S390/Hercules CTC network interfaces (rh #641986) - core: fix handling of infinite IPv6 RDNSS timeouts (rh #689291) - core: fix handling of WWAN enable/disable states - core: support Easytether interfaces for Android phones - editor: fix crash when scrolling through connection lists (rh #688844) - applet: fix crash after using the wifi or wired secrets dialogs (rh #688535) - applet: fix handling of "always ask" passwords (rh #692519) (rh #692578) - editor: ensure all pages are sensitive after retrieving secrets (rh #670217) - ifcfg-rh: fix handling of s390 CTC devices and configuration (rh #641986) - ifcfg-rh: harmonize handling if IPADDR/PREFIX/NETMASK with initscripts (rh #658907) -------------------------------------------------------------------------------- References: [ 1 ] Bug #697774 - NetworkManager crashes when connecting to VPN (REGRESSION) https://bugzilla.redhat.com/show_bug.cgi?id=697774 [ 2 ] Bug #695604 - cannot change wireless security options of system-wide set connection in nm-connection-editor https://bugzilla.redhat.com/show_bug.cgi?id=695604 [ 3 ] Bug #658907 - Update ifcfg-rh plugin's handling of IPv4 manual addresses to match initscripts https://bugzilla.redhat.com/show_bug.cgi?id=658907 [ 4 ] Bug #641986 - Add support for IBM CTC (pointopoint) devices https://bugzilla.redhat.com/show_bug.cgi?id=641986 [ 5 ] Bug #670217 - [abrt] NetworkManager-gnome-1:0.8.1-10.git20100831.fc14: connection_editor_validate: Process /usr/bin/nm-connection-editor was killed by signal 6 (SIGABRT) https://bugzilla.redhat.com/show_bug.cgi?id=670217 [ 6 ] Bug #692519 - nm-applet is caching password even with "ask every time" https://bugzilla.redhat.com/show_bug.cgi?id=692519 [ 7 ] Bug #688535 - [abrt] NetworkManager-gnome-1:0.8.3.997-1.fc14: stuff_changed_cb: Process /usr/bin/nm-applet was killed by signal 11 (SIGSEGV) https://bugzilla.redhat.com/show_bug.cgi?id=688535 [ 8 ] Bug #688844 - [abrt] NetworkManager-gnome-1:0.8.3.997-1.fc14: g_object_ref: Process /usr/bin/nm-connection-editor was killed by signal 11 (SIGSEGV) https://bugzilla.redhat.com/show_bug.cgi?id=688844 [ 9 ] Bug #689291 - <error> activation_source_schedule(): activation stage already scheduled https://bugzilla.redhat.com/show_bug.cgi?id=689291 -------------------------------------------------------------------------------- ================================================================================ SimGear-2.0.0-5.fc13 (FEDORA-2011-5744) Simulation library components -------------------------------------------------------------------------------- Update Information: SimGear had an old (and potentially vulnerable to CVE-2009-3720) bundled copy of expat (which was fixed for this vulnerability at Fedora 9). This update package uses the system expat library to resolve this issue. -------------------------------------------------------------------------------- ChangeLog: * Wed Apr 20 2011 Tom Callaway <spot@xxxxxxxxxxxxxxxxx> 2.0.0-5 - nuke old bundled copy of expat, use system expat (resolves 691934) * Mon Feb 7 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 2.0.0-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild * Fri Jul 2 2010 Ralf CorsÃpius <corsepiu@xxxxxxxxxxxxxxxxx> 2.0.0-3 - Rebuild against OSG-2.8.3. * Fri Jun 18 2010 Dan HorÃk <dan[at]danny.cz> 2.0.0-2 - include s390/s390x in the more-arches patch -------------------------------------------------------------------------------- References: [ 1 ] Bug #691934 - CVE-2009-3720 expat: buffer over-read and crash on XML with malformed UTF-8 sequences [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=691934 -------------------------------------------------------------------------------- ================================================================================ augeas-0.8.1-1.fc13 (FEDORA-2011-5728) A library for changing configuration files -------------------------------------------------------------------------------- Update Information: See http://augeas.net/news.html for details -------------------------------------------------------------------------------- ChangeLog: * Fri Apr 15 2011 David Lutterkort <lutter@xxxxxxxxxx> - 0.8.1-1 - New version -------------------------------------------------------------------------------- ================================================================================ ghc-binary-shared-0.8.1-2.fc13 (FEDORA-2011-5755) Haskell library for sharing binary elements -------------------------------------------------------------------------------- References: [ 1 ] Bug #648007 - Review Request: ghc-binary-shared - Haskell library for sharing binary elements https://bugzilla.redhat.com/show_bug.cgi?id=648007 -------------------------------------------------------------------------------- ================================================================================ gtk-equinox-engine-1.40-1.fc13 (FEDORA-2011-5747) Equinox theme engine for GTK+ 2.x -------------------------------------------------------------------------------- Update Information: A new engine derived from Aurora 1.4. It features smooth gradients or glassy effects, subtle shadows, rounded widgets. -------------------------------------------------------------------------------- ChangeLog: * Wed Apr 20 2011 GermÃn A. Racca <skytux@xxxxxxxxxxxxxxxxx> 1.40-1 - Updated to new version - Removed old gtk themes and added new ones - Added dependency on Faenza icons -------------------------------------------------------------------------------- ================================================================================ perl-Module-Signature-0.67-3.fc13 (FEDORA-2011-5726) CPAN signature management utilities and modules -------------------------------------------------------------------------------- Update Information: This update improves the module's handling of files with different line ending styles, as described at https://rt.cpan.org/Public/Bug/Display.html?id=46339 -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 21 2011 Paul Howarth <paul@xxxxxxxxxxxx> - 0.67-3 - Pseudo-merge EPEL-5/EPEL-6/Fedora versions * Tue Apr 19 2011 Ville Skyttà <ville.skytta@xxxxxx> - 0.67-2 - Appease rpmbuild >= 4.9 * Tue Apr 19 2011 Ville Skyttà <ville.skytta@xxxxxx> - 0.67-1 - Update to 0.67 * Tue Sep 7 2010 Ville Skyttà <ville.skytta@xxxxxx> - 0.66-1 - Update to 0.66 (#630714) * Tue Sep 7 2010 Ville Skyttà <ville.skytta@xxxxxx> - 0.65-1 - Update to 0.65 (#630714) * Wed Jun 30 2010 Ville Skyttà <ville.skytta@xxxxxx> - 0.64-2 - Rebuild * Sun May 9 2010 Ville Skyttà <ville.skytta@xxxxxx> - 0.64-1 - Update to 0.64 (#590385) * Mon May 3 2010 Marcela Maslanova <mmaslano@xxxxxxxxxx> - 0.63-2 - Mass rebuild with perl-5.12.0 * Fri Apr 23 2010 Ville Skyttà <ville.skytta@xxxxxx> - 0.63-1 - Update to 0.63 - Sync with current rpmdevtools spec template -------------------------------------------------------------------------------- ================================================================================ rubygem-formtastic-1.2.3-4.fc13 (FEDORA-2011-5753) A Rails form builder plugin with semantically rich and accessible markup -------------------------------------------------------------------------------- Update Information: Formtastic is a Rails FormBuilder DSL (with some other goodies) to make it far easier to create beautiful, semantically rich, syntactically awesome, readily stylable and wonderfully accessible HTML forms in your Rails applications. -------------------------------------------------------------------------------- References: [ 1 ] Bug #697778 - Review Request: rubygem-formtastic - A Rails form builder plugin with semantically rich and accessible markup https://bugzilla.redhat.com/show_bug.cgi?id=697778 -------------------------------------------------------------------------------- ================================================================================ thunderbird-3.1.9-2.fc13 (FEDORA-2011-5731) Mozilla Thunderbird mail/newsgroup client -------------------------------------------------------------------------------- Update Information: Split the lightning extension out of thunderbird into its own SRPM. -------------------------------------------------------------------------------- ChangeLog: * Wed Apr 20 2011 Christopher Aillon <caillon@xxxxxxxxxx> - 3.1.9-2 - Drop the -lightning subpackage, it needs to be in its own SRPM -------------------------------------------------------------------------------- ================================================================================ thunderbird-lightning-1.0-0.41.b3pre.fc13 (FEDORA-2011-5731) The calendar extension to Thunderbird -------------------------------------------------------------------------------- Update Information: Split the lightning extension out of thunderbird into its own SRPM. -------------------------------------------------------------------------------- ================================================================================ vim-perl-support-4.11-1.fc13 (FEDORA-2011-5759) Perl-IDE for VIM -------------------------------------------------------------------------------- Update Information: This update improves Perl::Critic integration - severity and verbosity will be taken from the configuration file if specified. -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 21 2011 Iain Arnell <iarnell@xxxxxxxxx> 4.11-1 - update to latest upstream version * Sun Feb 27 2011 Iain Arnell <iarnell@xxxxxxxxx> 4.10-1 - update to latest upstream version * Mon Feb 7 2011 Fedora Release Engineering <rel-eng@xxxxxxxxxxxxxxxxxxxxxxx> - 4.9-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ xinetd-2.3.14-34.fc13 (FEDORA-2011-5739) A secure replacement for inetd -------------------------------------------------------------------------------- Update Information: - Fix build warning about "dereferencing type-punned pointer" (related #695674) - Avoid possible hang while logging an unexpected signal (related #501604) - Let RPC services bind to a specific port (related #624800) -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 21 2011 Vojtech Vitek (V-Teq) <vvitek@xxxxxxxxxx> - 2:2.3.14-34 - Fix build warning about "dereferencing type-punned pointer" Related: #695674 - Avoid possible hang while logging an unexpected signal Related: #501604 - Let RPC services bind to a specific port Related: #624800 -------------------------------------------------------------------------------- References: [ 1 ] Bug #695674 - warning: dereferencing type-punned pointer will break strict-aliasing rules https://bugzilla.redhat.com/show_bug.cgi?id=695674 [ 2 ] Bug #501604 - xinetd can hang while processing unknown signal https://bugzilla.redhat.com/show_bug.cgi?id=501604 [ 3 ] Bug #624800 - bind rpc service to specific port https://bugzilla.redhat.com/show_bug.cgi?id=624800 -------------------------------------------------------------------------------- ================================================================================ zabbix-1.8.5-1.fc13 (FEDORA-2011-5758) Open-source monitoring solution for your IT infrastructure -------------------------------------------------------------------------------- Update Information: - update to 1.8.5 - upstream changelog at http://www.zabbix.com/rn1.8.5.php -------------------------------------------------------------------------------- ChangeLog: * Wed Apr 20 2011 Dan HorÃk <dan[at]danny.cz> - 1.8.5-1 - updated to 1.8.5 -------------------------------------------------------------------------------- -- test mailing list test@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test