The following Fedora EPEL 6 Security updates need testing: Age URL 620 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2011-4701/supybot-gribble-0.83.4.1-10.el6 432 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-5620/bugzilla-3.4.14-2.el6 28 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-6034/heat-jeos-9-1.el6 22 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-6090/ssmtp-2.61-20.el6 8 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-10532/python-bugzilla-0.9.0-1.el6 4 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-10586/rubygem-passenger-3.0.21-3.el6 3 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-10617/wordpress-3.5.2-1.el6 3 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-10621/openstack-keystone-2012.2.4-5.el6 2 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-10581/glpi-0.83.9.1-1.el6 0 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-10623/ReviewBoard-1.7.11-1.el6 0 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-10654/php-pecl-radius-1.2.7-1.el6
The following builds have been pushed to Fedora EPEL 6 updates-testing ReviewBoard-1.7.11-1.el6 apiextractor-0.8.0-1.el6 docco-0.6.2-1.el6 docco-0.6.2-2.el6 expresso-0.9.2-4.el6 fido-1.0.7-6.el6 generatorrunner-0.6.1-1.el6 jasmine-node-1.10.0-1.el6 libiscsi-1.7.0-5.el6 libjoedog-0.1.1-4.el6 marked-0.2.9-2.el6 mocha-1.11.0-1.el6 nodejs-i2c-0.1.3-2.el6 nodejs-ncp-0.4.2-1.el6 nodejs-package-1.0.1-1.el6 nodejs-repl-0.1.3-1.el6 nodejs-revalidator-0.1.5-1.el6 php-pecl-radius-1.2.7-1.el6 pynag-0.5.0-1.el6 python-pyside-0.4.1-3.el6 python-tahrir-0.2.0-1.el6 python-tahrir-api-0.2.3-2.el6 root-5.34.09-1.el6 shiboken-0.5.0-2.el6 sparsehash-1.7-3.el6 Details about builds: ================================================================================ ReviewBoard-1.7.11-1.el6 (FEDORA-EPEL-2013-10623) Web-based code review tool -------------------------------------------------------------------------------- Update Information: - New upstream release 1.7.11 - http://www.reviewboard.org/docs/releasenotes/reviewboard/1.7.11/ - Bug Fixes: * Fixed compatibility with Python 2.5 * Fixed the drop-down arrow by Support and the account name on older versions of Internet Explorer - New upstream release 1.7.10 - http://www.reviewboard.org/docs/releasenotes/reviewboard/1.7.10/ - Security Updates: * Fixed an XSS vulnerability where users could trigger script errors under certain conditions in auto-complete widgets - Web API Changes: * Added n ?order-by=<fieldname> query parameter for comment resources, allowing ordering by fields such as line numbers (for diff comments) * Added a filename field to screenshot resources, which provides the base filename (without path) of the screenshot * Added a review_url field to screenshot resources, which provides the URL to the screenshot review page * Added a thumbnail_url field to screenshot comment resources, which provides the URL to the snippet of the screenshot being commented on * Added a link_text field to file attachment comment resources, which shows the text for any link pointing to the file. This may differ depending on the comment * Added a review_url field to file attachment comment resources, which provides the URL to the review page for the file * Added a thumbnail_html field to file attachment comment resources, which provides HTML for rendering the thumbnail of the portion of the file being rendered, if any - UI Changes: * Improved the look and feel of the issue summary table. It’s cleaner and no longer looks odd with long comment text - Bug Fixes: * Fixed periodic but harmless JavaScript errors when removing elements with relative timestamps * Editing or reordering dashboard columns no longer breaks after the dashboard reloads * Relative timestamps in the dashboard no longer break after the dashboard reloads * The maximum size of the timezone has increased, allowing for longer timezone strings -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 27 2013 Stephen Gallagher <sgall...@redhat.com> - 1.7.11-1 - New upstream release 1.7.11 - http://www.reviewboard.org/docs/releasenotes/reviewboard/1.7.11/ - Bug Fixes: * Fixed compatibility with Python 2.5 * Fixed the drop-down arrow by Support and the account name on older versions of Internet Explorer * Mon Jun 24 2013 Stephen Gallagher <sgall...@redhat.com> - 1.7.10-1 - New upstream release 1.7.10 - http://www.reviewboard.org/docs/releasenotes/reviewboard/1.7.10/ - Security Updates: * Fixed an XSS vulnerability where users could trigger script errors under certain conditions in auto-complete widgets - Web API Changes: * Added n ?order-by=<fieldname> query parameter for comment resources, allowing ordering by fields such as line numbers (for diff comments) * Added a filename field to screenshot resources, which provides the base filename (without path) of the screenshot * Added a review_url field to screenshot resources, which provides the URL to the screenshot review page * Added a thumbnail_url field to screenshot comment resources, which provides the URL to the snippet of the screenshot being commented on * Added a link_text field to file attachment comment resources, which shows the text for any link pointing to the file. This may differ depending on the comment * Added a review_url field to file attachment comment resources, which provides the URL to the review page for the file * Added a thumbnail_html field to file attachment comment resources, which provides HTML for rendering the thumbnail of the portion of the file being rendered, if any - UI Changes: * Improved the look and feel of the issue summary table. It’s cleaner and no longer looks odd with long comment text - Bug Fixes: * Fixed periodic but harmless JavaScript errors when removing elements with relative timestamps * Editing or reordering dashboard columns no longer breaks after the dashboard reloads * Relative timestamps in the dashboard no longer break after the dashboard reloads * The maximum size of the timezone has increased, allowing for longer timezone strings * Mon Jun 3 2013 Stephen Gallagher <sgall...@redhat.com> - 1.7.9-1 - New upstream release 1.7.9 - http://www.reviewboard.org/docs/releasenotes/reviewboard/1.7.9/ - API Changes: * Added new blocks and depends_on fields to the Review Request resource - Bug Fixes: * Fixed the max_length of the new HostingServiceAccount.hosting_url field * Fixed the documentation for the cgit configuration for Git * Fixed the cgit URL for Fedora Hosted * Mon Jun 3 2013 Stephen Gallagher <sgall...@redhat.com> - 1.7.8.1-1 - New upstream release 1.7.8.1 - http://www.reviewboard.org/docs/releasenotes/reviewboard/1.7.8.1/ - Bug Fixes: * Fixed a regression with saving repositories that don't use hosting services - Misc. Changes: * Compatibility changes for the upcoming PDF review plugin - New upstream release 1.7.8 - http://www.reviewboard.org/docs/releasenotes/reviewboard/1.7.8/ - New Features: * Added Depends On and Blocks fields to review requests * Added an improved support page * Added the ability to set where Get Support takes users * Added improved logging for many operations - Performance Improvements: * Reduced the upload time for many new diffs * The templates used for rendering the various pages are now cached after the first render, speeding up the rendering for any future renders. We've seen speedups of ~100-120ms for review request pages - Usability Improvements: * The review request actions are now larger, making them more visible and easier to hit, particularly on touch screens * Clicking Fixed, Drop or Re-open now keeps the page in the same scroll position * The dashboard now reloads dynamically, without reloading the entire page * The comment dialog now tells you when you can't make a comment (due to being logged out or reviewing something that's part of a draft - API Changes * Fixed deleting pending replies to comments * Fixed some issues returning certain lists of data - Extensibility Improvements: * Extensions can now customize their metadata directly in the Extension class * TemplateHooks can now render their own content by overriding render_to_string() * NavigationBarHook can now take a url_name parameter specifying the URL name to link to * Review UIs can now specify the link and link text for any comments on a review by overriding get_comment_link_url() and get_comment_link_text() * Custom hosting services can now be registered/unregistered by extensions by using register_hosting_service() and unregister_hosting_service() (from reviewboard.hostingsvcs.service) * Added the ability to more easily write hosting services support that works for self-installable services - Bug Fixes: * Added missing repository validation for Mercurial repositories * Fixed replying to comments on file attachments that have since been removed * Fixed the display of the upload dialogs when viewing a file attachment * Comments on file attachments in e-mails now link to the correct review UI handling the file * Worked around rare issues where a reset of the Open An Issue default for a user would cause pages to break - Misc Changes: * E-mails now show the user’s full name instead of just their first name * The New Review Request page now mentions RBTools instead of just post-review -------------------------------------------------------------------------------- References: [ 1 ] Bug #977423 - CVE-2013-2209 ReviewBoard: Stored XSS due improper sanitization of user's full name in the reviews dropdown https://bugzilla.redhat.com/show_bug.cgi?id=977423 -------------------------------------------------------------------------------- ================================================================================ apiextractor-0.8.0-1.el6 (FEDORA-EPEL-2013-10650) Library headers parser to extract API information -------------------------------------------------------------------------------- Update Information: Python bindings for Qt4 -------------------------------------------------------------------------------- ================================================================================ docco-0.6.2-1.el6 (FEDORA-EPEL-2013-10668) The Quick and Dirty Literate Programming Documentation Generator -------------------------------------------------------------------------------- Update Information: Initial package -------------------------------------------------------------------------------- References: [ 1 ] Bug #978795 - docco was not released to epel testing and it's needed as build dependency https://bugzilla.redhat.com/show_bug.cgi?id=978795 -------------------------------------------------------------------------------- ================================================================================ docco-0.6.2-2.el6 (FEDORA-EPEL-2013-10659) The Quick and Dirty Literate Programming Documentation Generator -------------------------------------------------------------------------------- Update Information: Restrict to compatible arches -------------------------------------------------------------------------------- ================================================================================ expresso-0.9.2-4.el6 (FEDORA-EPEL-2013-10666) A lightweight, fast, test-driven development (TDD) framework for Node.js -------------------------------------------------------------------------------- Update Information: Restrict to compatible arches -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 27 2013 Jamie Nguyen <jamieli...@fedoraproject.org> - 0.9.2-4 - restrict to compatible arches -------------------------------------------------------------------------------- ================================================================================ fido-1.0.7-6.el6 (FEDORA-EPEL-2013-10671) Multi-threaded file watch utility -------------------------------------------------------------------------------- Update Information: A multi-threaded file watch utility. It can monitor files for changes in content or modification times. If it notices a change, it will kick off a user-defined script. -------------------------------------------------------------------------------- References: [ 1 ] Bug #977367 - Review Request: libjoedog - Repack of the common code base of fido and siege as shared library https://bugzilla.redhat.com/show_bug.cgi?id=977367 [ 2 ] Bug #972477 - Review Request: fido - A multi-threaded file watch utility https://bugzilla.redhat.com/show_bug.cgi?id=972477 -------------------------------------------------------------------------------- ================================================================================ generatorrunner-0.6.1-1.el6 (FEDORA-EPEL-2013-10650) Plugin-based application to run apiextractor-based generators -------------------------------------------------------------------------------- Update Information: Python bindings for Qt4 -------------------------------------------------------------------------------- ================================================================================ jasmine-node-1.10.0-1.el6 (FEDORA-EPEL-2013-10664) DOM-less JS behavior-driven development (BDD) testing framework for Node -------------------------------------------------------------------------------- Update Information: Update to 1.10.0 and restrict to compatible arches. Upstream changelog: * 1.10.0 - Skipped tests now show in the terminal reporter's output (thanks to kevinsawicki) * 1.9.1 - Timeout now consistent between Async and Non-Async Calls (thanks to codemnky) * 1.9.0 - Now re-throwing the file-not-found error, added info to README.md, printing version with --version * 1.8.1 - Fixed silent failure due to invalid REGEX (thanks to pimterry) * 1.8.0 - Fixed bug in autotest with multiple paths and added --watch feature (thanks to davegb3) -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 27 2013 Jamie Nguyen <jamieli...@fedoraproject.org> - 1.10.0-1 - update to upstream release 1.10.0 - restrict to compatible arches -------------------------------------------------------------------------------- ================================================================================ libiscsi-1.7.0-5.el6 (FEDORA-EPEL-2013-10667) iSCSI client library -------------------------------------------------------------------------------- Update Information: Include iscsi-test binary. -------------------------------------------------------------------------------- ChangeLog: * Wed Jun 26 2013 Andy Grover <agro...@redhat.com> - 1.7.0-5 - Add patch 4 to enable installing of iscsi-test binary -------------------------------------------------------------------------------- References: [ 1 ] Bug #978039 - rfe: build iscsi-test-cu tool https://bugzilla.redhat.com/show_bug.cgi?id=978039 -------------------------------------------------------------------------------- ================================================================================ libjoedog-0.1.1-4.el6 (FEDORA-EPEL-2013-10671) Repack of the common code base of fido and siege as shared library -------------------------------------------------------------------------------- Update Information: A multi-threaded file watch utility. It can monitor files for changes in content or modification times. If it notices a change, it will kick off a user-defined script. -------------------------------------------------------------------------------- References: [ 1 ] Bug #977367 - Review Request: libjoedog - Repack of the common code base of fido and siege as shared library https://bugzilla.redhat.com/show_bug.cgi?id=977367 [ 2 ] Bug #972477 - Review Request: fido - A multi-threaded file watch utility https://bugzilla.redhat.com/show_bug.cgi?id=972477 -------------------------------------------------------------------------------- ================================================================================ marked-0.2.9-2.el6 (FEDORA-EPEL-2013-10669) A markdown parser for Node.js built for speed -------------------------------------------------------------------------------- Update Information: Restrict to compatible arches -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 27 2013 Jamie Nguyen <jamieli...@fedoraproject.org> - 0.2.9-2 - restrict to compatible arches -------------------------------------------------------------------------------- ================================================================================ mocha-1.11.0-1.el6 (FEDORA-EPEL-2013-10657) A simple, flexible, fun test framework for Node.js -------------------------------------------------------------------------------- Update Information: Update to 1.11.0 and restrict to compatible arches. Upstream changelog: Update to fix missing npm(mocha) Provides for building other packages. -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 27 2013 Jamie Nguyen <jamieli...@fedoraproject.org> - 1.11.0-1 - update to upstream release 1.11.0 - restrict to compatible arches * Sat Jun 22 2013 Jamie Nguyen <jamieli...@fedoraproject.org> - 1.10.0-2 - rebuild for missing npm(mocha) Provides -------------------------------------------------------------------------------- ================================================================================ nodejs-i2c-0.1.3-2.el6 (FEDORA-EPEL-2013-10606) Node.js native bindings for i2c-dev -------------------------------------------------------------------------------- Update Information: Initial package -------------------------------------------------------------------------------- References: [ 1 ] Bug #976767 - Review Request: nodejs-repl - A lightweight templating library for Node.js https://bugzilla.redhat.com/show_bug.cgi?id=976767 [ 2 ] Bug #976777 - Review Request: nodejs-i2c - Node.js native bindings for i2c-dev https://bugzilla.redhat.com/show_bug.cgi?id=976777 -------------------------------------------------------------------------------- ================================================================================ nodejs-ncp-0.4.2-1.el6 (FEDORA-EPEL-2013-10658) Asynchronous recursive file copy utility for Node.js -------------------------------------------------------------------------------- Update Information: Initial package -------------------------------------------------------------------------------- References: [ 1 ] Bug #911041 - Review Request: nodejs-ncp - Asynchronous recursive file copy utility for Node.js https://bugzilla.redhat.com/show_bug.cgi?id=911041 -------------------------------------------------------------------------------- ================================================================================ nodejs-package-1.0.1-1.el6 (FEDORA-EPEL-2013-10670) Provides an easy way to export package.json data -------------------------------------------------------------------------------- Update Information: Initial package -------------------------------------------------------------------------------- References: [ 1 ] Bug #977133 - Review Request: nodejs-package - Provides an easy way to export package.json data https://bugzilla.redhat.com/show_bug.cgi?id=977133 -------------------------------------------------------------------------------- ================================================================================ nodejs-repl-0.1.3-1.el6 (FEDORA-EPEL-2013-10606) A lightweight templating library for Node.js -------------------------------------------------------------------------------- Update Information: Initial package -------------------------------------------------------------------------------- References: [ 1 ] Bug #976767 - Review Request: nodejs-repl - A lightweight templating library for Node.js https://bugzilla.redhat.com/show_bug.cgi?id=976767 [ 2 ] Bug #976777 - Review Request: nodejs-i2c - Node.js native bindings for i2c-dev https://bugzilla.redhat.com/show_bug.cgi?id=976777 -------------------------------------------------------------------------------- ================================================================================ nodejs-revalidator-0.1.5-1.el6 (FEDORA-EPEL-2013-10651) A cross-browser/Node.js validator used by resourceful -------------------------------------------------------------------------------- Update Information: Initial package -------------------------------------------------------------------------------- References: [ 1 ] Bug #911049 - Review Request: nodejs-revalidator - A cross-browser/Node.js validator used by resourceful https://bugzilla.redhat.com/show_bug.cgi?id=911049 -------------------------------------------------------------------------------- ================================================================================ php-pecl-radius-1.2.7-1.el6 (FEDORA-EPEL-2013-10654) Radius client library -------------------------------------------------------------------------------- Update Information: Version 1.2.7 - Fix a security issue in radius_get_vendor_attr() by enforcing checks of the VSA length field against the buffer size. (Adam) Version 1.2.6 - Support added for PHP 5.4 and 5.5. (Johannes) - Fixed bug #60885 (Radius module causing Apache segmentation fault). (Adam) - Fixed a crash when calling radius_server_secret() with no servers configured. (Adam) -------------------------------------------------------------------------------- ChangeLog: * Fri Jun 28 2013 Remi Collet <r...@fedoraproject.org> - 1.2.7-1 - Update to 1.2.7 (security) -------------------------------------------------------------------------------- ================================================================================ pynag-0.5.0-1.el6 (FEDORA-EPEL-2013-10655) Python modules and utilities for Nagios plugins and configuration -------------------------------------------------------------------------------- Update Information: New upstream release -------------------------------------------------------------------------------- ChangeLog: * Fri Jun 28 2013 Tomas Edwardsson <to...@tommi.org> 0.5.0-1 - New upstream version -------------------------------------------------------------------------------- ================================================================================ python-pyside-0.4.1-3.el6 (FEDORA-EPEL-2013-10650) Python bindings for Qt4 -------------------------------------------------------------------------------- Update Information: Python bindings for Qt4 -------------------------------------------------------------------------------- ================================================================================ python-tahrir-0.2.0-1.el6 (FEDORA-EPEL-2013-10656) A pyramid app for issuing your own Open Badges -------------------------------------------------------------------------------- Update Information: Massive facelift. Use forward compat sqlalchemy. -------------------------------------------------------------------------------- ChangeLog: * Wed Jun 26 2013 Ralph Bean <rb...@redhat.com> - 0.2.0-1 - Massive facelift. * Thu Jun 13 2013 Ralph Bean <rb...@redhat.com> - 0.1.9-3 - Conditionalize sqlalchemy forward compat package for epel6. -------------------------------------------------------------------------------- ================================================================================ python-tahrir-api-0.2.3-2.el6 (FEDORA-EPEL-2013-10653) An API for interacting with the Tahrir database -------------------------------------------------------------------------------- Update Information: Improved model. Stop leaking sqlalchemy sessions. Expanded user query api. Latest upstream with API enhancements. Fix deps with forward compat packages. Use forward compat sqlalchemy. New features, bugfixes, and relicense to GPLv3+. Add alembic scripts. -------------------------------------------------------------------------------- ChangeLog: * Wed Jun 26 2013 Ralph Bean <rb...@redhat.com> - 0.2.3-2 - Remove old patch. * Wed Jun 26 2013 Ralph Bean <rb...@redhat.com> - 0.2.3-1 - Latest upstream with fixes to the model. * Sun Jun 23 2013 Ralph Bean <rb...@redhat.com> - 0.2.2-1 - Add alembic upgrade scripts. - Add check section with tests. * Sun Jun 23 2013 Ralph Bean <rb...@redhat.com> - 0.2.1-1 - Bugfix - stop leaking sqlalchemy sessions. - API enhancement - can query for user by username, id, or email now. * Thu Jun 20 2013 Ralph Bean <rb...@redhat.com> - 0.2.0-1 - API enhancements. * Thu Jun 13 2013 Ralph Bean <rb...@redhat.com> - 0.1.8-6 - Use paste-deploy1.5 forward compat package. - Use zope-interface4 forward compat package. * Thu Jun 13 2013 Ralph Bean <rb...@redhat.com> - 0.1.8-5 - Added dep on zope.interface. * Thu Jun 13 2013 Ralph Bean <rb...@redhat.com> - 0.1.8-4 - Conditional mako0.4 requirement for epel6. * Thu Jun 13 2013 Ralph Bean <rb...@redhat.com> - 0.1.8-3 - More epel6 fixes. * Thu Jun 13 2013 Ralph Bean <rb...@redhat.com> - 0.1.8-2 - Conditionalize sqlalchemy forward compat package for epel6. * Fri Jun 7 2013 Ralph Bean <rb...@redhat.com> - 0.1.8-1 - New Invitations API. - Bugfixes to other API functions. - Relicense to GPLv3+ -------------------------------------------------------------------------------- ================================================================================ root-5.34.09-1.el6 (FEDORA-EPEL-2013-10652) Numerical data analysis framework -------------------------------------------------------------------------------- Update Information: - Update to 5.34.09 - New sub-package: root-montecarlo-pythia8 - Use xz compression for source tarfile - Update ancient root version in EPEL -------------------------------------------------------------------------------- ChangeLog: * Fri Jun 28 2013 Mattias Ellert <mattias.ell...@fysast.uu.se> - 5.34.09-1 - Update to 5.34.09 - New sub-package: root-montecarlo-pythia8 - Drop patch root-gfal-bits.patch - Use xz compression for source tarfile - Update ancient root version in EPEL * Sat Apr 27 2013 Mattias Ellert <mattias.ell...@fysast.uu.se> - 5.34.07-1 - Update to 5.34.07 * Sat Apr 27 2013 Mattias Ellert <mattias.ell...@fysast.uu.se> - 5.34.06-1 - Update to 5.34.06 - Drop patches root-gviz.patch, root-ruby-version.patch, root-rev48681.patch and root-rev48831.patch * Wed Mar 20 2013 Mattias Ellert <mattias.ell...@fysast.uu.se> - 5.34.05-2 - Rebuild for ruby 2.0 - Rebuild for cfitsio 3.330 -------------------------------------------------------------------------------- References: [ 1 ] Bug #977299 - RFE - update root in epel6 to something newer. https://bugzilla.redhat.com/show_bug.cgi?id=977299 [ 2 ] Bug #978038 - Compress tarball with xz https://bugzilla.redhat.com/show_bug.cgi?id=978038 -------------------------------------------------------------------------------- ================================================================================ shiboken-0.5.0-2.el6 (FEDORA-EPEL-2013-10650) CPython bindings generator for C++ libraries -------------------------------------------------------------------------------- Update Information: Python bindings for Qt4 -------------------------------------------------------------------------------- ================================================================================ sparsehash-1.7-3.el6 (FEDORA-EPEL-2013-10650) Extremely memory-efficient C++ hash_map implementation -------------------------------------------------------------------------------- Update Information: Python bindings for Qt4 -------------------------------------------------------------------------------- _______________________________________________ epel-devel mailing list epel-devel@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/epel-devel