The following Fedora EPEL 6 Security updates need testing: Age URL 170 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-6828 chicken-4.9.0.1-4.el6 152 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-7031 python-virtualenv-12.0.7-1.el6 146 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-7168 rubygem-crack-0.3.2-2.el6 78 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-8148 optipng-0.7.5-5.el6 78 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-8156 nagios-4.0.8-1.el6 66 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-68a2c2db36 python-pymongo-3.0.3-1.el6 36 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-e2b4b5b2fb mcollective-2.8.4-1.el6 18 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-49101d6eb9 imapsync-1.644-2.el6 12 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-7e6c3ce778 knot-1.6.6-1.el6 8 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-35e240edd9 thttpd-2.25b-24.el6 5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-c3b0e79630 LibRaw-0.16.2-3.el6 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-e3bc44964c libpng10-1.0.65-1.el6 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-da771a002d moodle-2.7.11-1.el6 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-c1e2a347ee xsupplicant-2.2.0-13.el6
The following builds have been pushed to Fedora EPEL 6 updates-testing clamav-0.99-3.el6 engauge-digitizer-6.2-1.el6 gnudos-1.8-5.el6 golang-github-ugorji-go-0-0.4.gitf1f1a80.el6 lighttpd-1.4.38-1.el6 mozilla-requestpolicy-1.0-0.12.20151206git490931.el6 nodejs-sprintf-js-1.0.3-4.el6 php-PsrLog-1.0.0-8.el6 php-pecl-apcu-4.0.10-1.el6 picosat-960-2.el6 sec-2.7.8-0.el6 torque-4.2.10-8.el6 xsupplicant-2.2.0-13.el6 Details about builds: ================================================================================ clamav-0.99-3.el6 (FEDORA-EPEL-2015-ebfac8f983) Anti-virus software -------------------------------------------------------------------------------- Update Information: ClamAV 0.99 contains major new features and changes. YARA rules, Perl Compatible Regular Expressions, revamped on-access scanning for Linux, and other new features join the many great features of ClamAV: - Processing of YARA rules (some limitations - see signatures.pdf). - Support in ClamAV logical signatures for many of the features added for YARA, such as Perl Compatible Regular Expressions, alternate strings, and YARA string attributes. See signatures.pdf for full details. - New and improved on-access scanning for Linux. See the recent blog post and clamdoc.pdf for details on the new on-access capabilities. - A new ClamAV API callback function that is invoked when a virus is found. This is intended primarily for applications running in all-match mode. Any applications using all-match mode must use the new callback function to record and report detected viruses. - Configurable default password list to attempt zip file decryption. - TIFF file support. - A new signature target type for designating signatures to run against files with unknown file types. - Improved fidelity of the "data loss prevention" heuristic algorithm. Code supplied by Bill Parker. - Support for LZMA decompression within Adobe Flash files. - Support for MSO attachments within Microsoft Office 2003 XML files. - A new sigtool option(--ascii-normalize) allowing signature authors to more easily generate normalized versions of ascii files. Please note: If you are using clamd on-access scanning or have applications using all-match mode, you will want to review the changes and make any necessary adjustments before using ClamAV 0.99. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1287327 - clamav-0.99 is available https://bugzilla.redhat.com/show_bug.cgi?id=1287327 -------------------------------------------------------------------------------- ================================================================================ engauge-digitizer-6.2-1.el6 (FEDORA-EPEL-2015-e609bdc835) Convert graphs or map files into numbers -------------------------------------------------------------------------------- Update Information: - Update to 6.2 -------------------------------------------------------------------------------- ================================================================================ gnudos-1.8-5.el6 (FEDORA-EPEL-2015-886d33a94f) The GnuDOS library for GNU/Linux -------------------------------------------------------------------------------- Update Information: Added show_about() and show_readme() functions -------------------------------------------------------------------------------- ================================================================================ golang-github-ugorji-go-0-0.4.gitf1f1a80.el6 (FEDORA-EPEL-2015-97f985372a) Idiomatic codec and rpc lib for msgpack, cbor, json, etc -------------------------------------------------------------------------------- Update Information: Update ---- Update for etcd-2.2.1 ---- Bump to upstream 5abd4e96a45c386928ed2ca2a7ef63e2533e18ec -------------------------------------------------------------------------------- References: [ 1 ] Bug #1250516 - Tracker for golang-github-ugorji-go https://bugzilla.redhat.com/show_bug.cgi?id=1250516 -------------------------------------------------------------------------------- ================================================================================ lighttpd-1.4.38-1.el6 (FEDORA-EPEL-2015-6652098b8d) Lightning fast webserver with light system requirements -------------------------------------------------------------------------------- Update Information: http://www.lighttpd.net/2015/12/5/1.4.38/ -------------------------------------------------------------------------------- References: [ 1 ] Bug #1288708 - lighttpd-1.4.38 is available https://bugzilla.redhat.com/show_bug.cgi?id=1288708 -------------------------------------------------------------------------------- ================================================================================ mozilla-requestpolicy-1.0-0.12.20151206git490931.el6 (FEDORA-EPEL-2015-bdf09be831) Firefox and Seamonkey extension that gives you control over cross-site requests -------------------------------------------------------------------------------- Update Information: - Update to v1.0.beta11pre2 -------------------------------------------------------------------------------- ================================================================================ nodejs-sprintf-js-1.0.3-4.el6 (FEDORA-EPEL-2015-cfdea52c51) JavaScript sprintf implementation -------------------------------------------------------------------------------- Update Information: Initial packaging -------------------------------------------------------------------------------- References: [ 1 ] Bug #1273141 - Review Request: nodejs-sprintf-js - JavaScript sprintf implementation https://bugzilla.redhat.com/show_bug.cgi?id=1273141 -------------------------------------------------------------------------------- ================================================================================ php-PsrLog-1.0.0-8.el6 (FEDORA-EPEL-2015-eb6e8b4378) Common interface for logging libraries -------------------------------------------------------------------------------- Update Information: RPM update: Added autoloader -------------------------------------------------------------------------------- ================================================================================ php-pecl-apcu-4.0.10-1.el6 (FEDORA-EPEL-2015-9c5591e529) APC User Cache -------------------------------------------------------------------------------- Update Information: ** Version 4.0.10** - be really consistent with APC in use of atomics, avoid surprises ---- Upstream changelog for **version 4.0.8** (stable) - fix inconsistent member names for entries in userland - fix race on ref_count -------------------------------------------------------------------------------- ================================================================================ picosat-960-2.el6 (FEDORA-EPEL-2015-bfb1e9b44b) A SAT solver -------------------------------------------------------------------------------- Update Information: PicoSAT solves the SAT problem, which is the classical NP complete problem of searching for a satisfying assignment of a propositional formula in conjunctive normal form (CNF). PicoSAT can generate proofs and cores in memory by compressing the proof trace. It supports the proof format of TraceCheck. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1265011 - Please branch and build picosat for EPEL6/7 https://bugzilla.redhat.com/show_bug.cgi?id=1265011 -------------------------------------------------------------------------------- ================================================================================ sec-2.7.8-0.el6 (FEDORA-EPEL-2015-602b891e4d) Simple Event Correlator script to filter log file entries -------------------------------------------------------------------------------- Update Information: New upstream release -------------------------------------------------------------------------------- ================================================================================ torque-4.2.10-8.el6 (FEDORA-EPEL-2015-1855821fe8) Tera-scale Open-source Resource and QUEue manager -------------------------------------------------------------------------------- Update Information: Resolve momctl into the right package -------------------------------------------------------------------------------- References: [ 1 ] Bug #1279565 - Torque will not allocate more than 1 CPU in a cpuset https://bugzilla.redhat.com/show_bug.cgi?id=1279565 [ 2 ] Bug #1259240 - pbs_mom init script tries to use uninstalled binary https://bugzilla.redhat.com/show_bug.cgi?id=1259240 [ 3 ] Bug #1231148 - [Wishlist] Please build torque with numa-support and cpuset https://bugzilla.redhat.com/show_bug.cgi?id=1231148 -------------------------------------------------------------------------------- ================================================================================ xsupplicant-2.2.0-13.el6 (FEDORA-EPEL-2015-c1e2a347ee) Open Source Implementation of IEEE 802.1x -------------------------------------------------------------------------------- Update Information: Fix security issue with tmp file naming. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1276614 - xsupplicant: Usage of fixed temtporary file https://bugzilla.redhat.com/show_bug.cgi?id=1276614 -------------------------------------------------------------------------------- _______________________________________________ epel-devel mailing list epel-devel@lists.fedoraproject.org http://lists.fedoraproject.org/admin/lists/epel-devel@lists.fedoraproject.org