The following Fedora EPEL 6 Security updates need testing:
Age URL
10
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13529/moodle-2.1.9-1.el6
223
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-5620/bugzilla-3.4.14-2.el6
8
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13537/claws-mail-3.9.0-1.el6,claws-mail-plugins-3.9.0-2.el6
49
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13155/cobbler-2.4.0-beta2.el6
6
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13552/seamonkey-2.14-1.el6
11
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13499/weechat-0.3.8-4.el6
10
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13525/pcp-3.6.10-1.el6
46
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13172/ssmtp-2.61-19.el6
13
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13492/sticky-notes-0.3.09062012.4-10.el6
13
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13495/cgit-0.9.1-2.el6
46
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13176/icecast-2.3.3-1.el6
0
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13610/drupal6-ctools-1.10-1.el6
145
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-6348/bcfg2-1.2.3-1.el6
15
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13478/mod_security-2.7.1-3.el6,mod_security_crs-2.2.6-3.el6
411
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2011-4701/supybot-gribble-0.83.4.1-10.el6
2
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13575/php-symfony-symfony-1.4.20-2.el6
The following builds have been pushed to Fedora EPEL 6 updates-testing
drupal6-ctools-1.10-1.el6
mod_python-3.3.1-15.el6
munin-2.0.8-2.el6
opendkim-2.7.3-1.el6
pam_mapi-0.1.2-1.el6
python-fedmsg-meta-fedora-infrastructure-0.0.3-1.el6
python-webob1.2-1.2.1-9.el6
scitools-0.9.0-1.el6
tito-0.4.10-1.el6
voms-api-java-2.0.9-1.el6
Details about builds:
================================================================================
drupal6-ctools-1.10-1.el6 (FEDORA-EPEL-2012-13610)
This suite is primarily a set of APIs and tools
--------------------------------------------------------------------------------
Update Information:
New security release, http://drupal.org/node/1841030.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Nov 30 2012 Peter Borsa <[email protected]> - 1.10-1
- Fix BZ#881987
- Fix BZ#881988
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #881986 - CVE-2012-5559 drupal6-ctools: XSS flaw
(SA-CONTRIB-2012-165)
https://bugzilla.redhat.com/show_bug.cgi?id=881986
--------------------------------------------------------------------------------
================================================================================
mod_python-3.3.1-15.el6 (FEDORA-EPEL-2012-13614)
An embedded Python interpreter for the Apache HTTP Server
--------------------------------------------------------------------------------
Update Information:
- fix #633905 - fixed AVC message caused by accessing ~/.local directory
- Add patch to use hashlib instead of md5 (#526062)
--------------------------------------------------------------------------------
ChangeLog:
* Fri Nov 30 2012 Orion Poplawski <[email protected]> - 3.3.1-15
- fix #633905 - fixed AVC message caused by accessing ~/.local directory
- Add patch to use hashlib instead of md5 (#526062)
--------------------------------------------------------------------------------
================================================================================
munin-2.0.8-2.el6 (FEDORA-EPEL-2012-13613)
Network-wide graphing framework (grapher/gatherer)
--------------------------------------------------------------------------------
Update Information:
FCGI sample files included
--------------------------------------------------------------------------------
ChangeLog:
* Tue Nov 13 2012 D. Johnson <[email protected]> - 2.0.8-2
- Added cgitmp patch c/o Diego Elio Pettenò <[email protected]>
- BZ# 861816 Add sample files for switching to FCGI
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #861816 - munin-2.x CGI support is broken without manual hacks
https://bugzilla.redhat.com/show_bug.cgi?id=861816
--------------------------------------------------------------------------------
================================================================================
opendkim-2.7.3-1.el6 (FEDORA-EPEL-2012-13604)
A DomainKeys Identified Mail (DKIM) milter to sign and/or verify mail
--------------------------------------------------------------------------------
Update Information:
Update to upstream release 2.7.3, which fixes the following bugs:
Log DB error string in dkimf_add_signrequest(), and fix a DSN handling error in
dkimf_db_strerror(). Problem noted by Simone Caruso.
LIBOPENDKIM: Ignore entries in the oversign header field name list that are
empty, and an oversign header field name list that is present but empty.
Problem noted by Alec Peterson.
LIBOPENDKIM: Allow header field lists to be empty, flushing any that were
previously defined. Problem noted by Alec Peterson.
BUILD: Improve tests for including <strl.h>. Based on a patch from Eray Aslan.
REPUTATION: Use lowercase for keywords in REPUTE query generation and handling.
STATS: Clean up a dead link in opendkim-genstats. Patch from Andreas Schulze.
Updating to newer 2.7.2 source.
Source release notes available here:
http://sourceforge.net/projects/opendkim/files/RELEASE_NOTES/view
Updating to newer 2.7.2 source.
Source release notes available here:
http://sourceforge.net/projects/opendkim/files/RELEASE_NOTES/view
--------------------------------------------------------------------------------
ChangeLog:
* Thu Nov 29 2012 Steve Jenkins <steve stevejenkins com> 2.7.3-1
- Updated to use newer upstream 2.7.3 source code
* Mon Nov 19 2012 Steve Jenkins <steve stevejenkins com> 2.7.2-1
- Updated to use newer upstream 2.7.2 source code
--------------------------------------------------------------------------------
================================================================================
pam_mapi-0.1.2-1.el6 (FEDORA-EPEL-2012-13617)
PAM module for authentication via MAPI against a Zarafa server
--------------------------------------------------------------------------------
Update Information:
- Added checks for build-time dependencies on zlib, uuid & icu to work around
the broken Zarafa binary distribution packages
- Fixed the "undefined symbol" errors appearing with GCC 4.6, thanks to Steffen
Sachse (reporter) and Tomas Mraz (Red Hat)
--------------------------------------------------------------------------------
ChangeLog:
* Thu Nov 29 2012 Robert Scheck <[email protected]> 0.1.2-1
- Upgrade to 0.1.2
* Fri Jul 20 2012 Fedora Release Engineering <[email protected]>
- 0.1.1-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
* Sun May 6 2012 Robert Scheck <[email protected]> 0.1.1-2
- Rebuilt for libicu 49.1.1
--------------------------------------------------------------------------------
================================================================================
python-fedmsg-meta-fedora-infrastructure-0.0.3-1.el6 (FEDORA-EPEL-2012-13605)
Metadata providers for Fedora Infrastructure's fedmsg deployment
--------------------------------------------------------------------------------
Update Information:
Initial import.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #880875 - Review Request: python-fedmsg-meta-fedora-infrastructure
- fedmsg metadata providers for Fedora Infrastructure's deployment
https://bugzilla.redhat.com/show_bug.cgi?id=880875
--------------------------------------------------------------------------------
================================================================================
python-webob1.2-1.2.1-9.el6 (FEDORA-EPEL-2012-13606)
WSGI request and response object
--------------------------------------------------------------------------------
Update Information:
Fixed python3 subpackage.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Nov 29 2012 Ralph Bean <[email protected]> - 1.2.1-9
- Trying pyver again with py2ver and py3ver. Getting ugly.
* Thu Nov 29 2012 Ralph Bean <[email protected]> - 1.2.1-8
- Hardcode python3 version
* Thu Nov 29 2012 Ralph Bean <[email protected]> - 1.2.1-7
- Forced rebuild.
* Tue Oct 16 2012 Ralph Bean <[email protected]> - 1.2.1-6
- Use pyver macro to use the correct easy-install.
* Tue Oct 16 2012 Ralph Bean <[email protected]> - 1.2.1-5
- Forced rebuild.
--------------------------------------------------------------------------------
================================================================================
scitools-0.9.0-1.el6 (FEDORA-EPEL-2012-13609)
A Python library for scientific computing
--------------------------------------------------------------------------------
Update Information:
New package scitools
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #871095 - RFE: Build scitools for EPEL6
https://bugzilla.redhat.com/show_bug.cgi?id=871095
--------------------------------------------------------------------------------
================================================================================
tito-0.4.10-1.el6 (FEDORA-EPEL-2012-13608)
A tool for managing rpm based git projects
--------------------------------------------------------------------------------
Update Information:
Allow specifying a build target for dist-git releasers. Added release
--no-build option to skip dist-git builds. Added first draft of a gem builder.
New RsyncReleaser (similar to YumRepo but more generic), several bug fixes.
New RsyncReleaser (similar to YumRepo but more generic), several bug fixes.
New RsyncReleaser (similar to YumRepo but more generic), several bug fixes.
New RsyncReleaser (similar to YumRepo but more generic), several bug fixes.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Nov 28 2012 Devan Goodwin <[email protected]> 0.4.10-1
- Add --no-build; this will allow scripted DistGit commits and
koji/brew chain-builds ([email protected])
- Added gembuilder, cleaned up pep8 ([email protected])
- Add a Travis configuration ([email protected])
- Update README.mkd ([email protected])
- fix: RsyncReleaser doesn't handle multiple rsync locations
([email protected])
- remove tabs and trailing whitespace. add whitespace between methods
([email protected])
- Handle stderr noise getting from remote server ([email protected])
- Can now specify a build target for fedora and distgit releasers
([email protected])
* Tue Sep 4 2012 Devan Goodwin <[email protected]> 0.4.9-1
- Stop passing --installdeps for mock builds. ([email protected])
- YumRepoReleaser feature: createrepo command can now be specified from
releasers.conf with the 'createrepo_command' config option
([email protected])
- Created new releaser called RsyncReleaser. Based heavily on YumRepoReleaser.
Refactored YumRepoReleaser to inherit most code from RsyncReleaser.
([email protected])
- Optionally print stacktrace whenever error_out is hit ([email protected])
- encourage users to push only their new tag ([email protected])
- Attempt to copy local Sources during releases. ([email protected])
--------------------------------------------------------------------------------
================================================================================
voms-api-java-2.0.9-1.el6 (FEDORA-EPEL-2012-13607)
Virtual Organization Membership Service Java API
--------------------------------------------------------------------------------
Update Information:
New upstream release.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Nov 29 2012 Mattias Ellert <[email protected]> - 2.0.9-1
- Update to version 2.0.9
* Sun Jul 22 2012 Fedora Release Engineering <[email protected]>
- 2.0.8-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
--------------------------------------------------------------------------------
_______________________________________________
epel-devel-list mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/epel-devel-list