The following Fedora EPEL 7 Security updates need testing:
 Age  URL
   4  https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2022-21ae60f43a   
java-latest-openjdk-18.0.2.0.9-1.rolling.el7


The following builds have been pushed to Fedora EPEL 7 updates-testing

    fts-rest-client-3.12.0-1.el7
    tcpreplay-4.4.2-1.el7
    tuptime-5.2.1-1.el7

Details about builds:


================================================================================
 fts-rest-client-3.12.0-1.el7 (FEDORA-EPEL-2022-c0d3e99741)
 File Transfer Service (FTS) -- Python3 Client and CLI
--------------------------------------------------------------------------------
Update Information:

First release of the FTS REST Client package
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jul 27 2022 Mihai Patrascoiu <mihai.patrasc...@cern.ch> - 3.12.0-1
- First EPEL release (v3.12.0 upstream release)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #2111607 - Review Request: fts-rest-client - FTS Python3 clients
        https://bugzilla.redhat.com/show_bug.cgi?id=2111607
--------------------------------------------------------------------------------


================================================================================
 tcpreplay-4.4.2-1.el7 (FEDORA-EPEL-2022-cf9b662b60)
 Replay captured network traffic
--------------------------------------------------------------------------------
Update Information:

This is Tcpreplay suite 4.4.2  This release contains bug fixes only. What's
changed:  - Bug #716 heap-buffer-overflow in get_l2len_protocol() by @fklassen
in #738 - Bug #721 fixed typo in tcpliveplay.c by @jonathan-dev in #721 - Bug
#717 avoid assertion in get_layer4_v6 by @fklassen in #739 - Bug #718 improved
heap-overflow protection by @fklassen in #740 - Bug #719 better overflow
protection in parse_mpls by @fklassen in #741 - Bug #725 FORCE_ALIGN on arm by
@fklassen in #742 - Bug #729 tcpreplay_edit: disallow both -K and -l options by
@fklassen in #743 - Bug #735 heap-overflow in get_l2len_protocol by @fklassen in
#744 - Bug #745 remove autogen.sh from distribution tarballs by @fklassen in
#747
--------------------------------------------------------------------------------
ChangeLog:

* Sat Aug 27 2022 Bojan Smojver <bojan@rexursive com> - 4.4.2-1
- bump up to 4.4.2
* Sat Jul 23 2022 Fedora Release Engineering <rel...@fedoraproject.org> - 
4.4.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #2071668 - CVE-2022-27939 tcpreplay: net-analyzer/tcpreplay: 
multiple vulnerabilities [epel-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=2071668
  [ 2 ] Bug #2071669 - CVE-2022-27939 tcpreplay: net-analyzer/tcpreplay: 
multiple vulnerabilities [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=2071669
  [ 3 ] Bug #2071673 - CVE-2022-27940 tcpreplay: net-analyzer/tcpreplay: 
multiple vulnerabilities [epel-8]
        https://bugzilla.redhat.com/show_bug.cgi?id=2071673
  [ 4 ] Bug #2071716 - CVE-2022-27941 tcpreplay: VUL-0: CVE-2022-27941: 
tcpreplay: tcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in 
get_l2len_protocol in common/get.c. [epel-8]
        https://bugzilla.redhat.com/show_bug.cgi?id=2071716
  [ 5 ] Bug #2071721 - CVE-2022-27942 tcpreplay: CVE-2022-27942: tcpreplay: 
tcpprep in Tcpreplay 4.4.1 has a heap-based buffer over-read in parse_mpls in 
common/get.c. [epel-8]
        https://bugzilla.redhat.com/show_bug.cgi?id=2071721
  [ 6 ] Bug #2081861 - CVE-2022-28487 tcpreplay: memory leak in 
fix_ipv6_checksums() function [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=2081861
  [ 7 ] Bug #2081862 - CVE-2022-28487 tcpreplay: memory leak in 
fix_ipv6_checksums() function [epel-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=2081862
--------------------------------------------------------------------------------


================================================================================
 tuptime-5.2.1-1.el7 (FEDORA-EPEL-2022-f0e17ffc30)
 Report historical system real time
--------------------------------------------------------------------------------
Update Information:

New upstream release  ----  New upstream release
--------------------------------------------------------------------------------
ChangeLog:

* Sat Aug 27 2022 Frank Crawford <fr...@crawford.emu.id.au> - 5.2.1-1
- New upstream release
* Sat Aug 20 2022 Frank Crawford <fr...@crawford.emu.id.au> - 5.2.0-1
- New upstream release
- Rename systemd unit files from tuptime-cron to tuptime-sync
* Sat Jul 23 2022 Fedora Release Engineering <rel...@fedoraproject.org> - 
5.1.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
--------------------------------------------------------------------------------

_______________________________________________
epel-devel mailing list -- epel-devel@lists.fedoraproject.org
To unsubscribe send an email to epel-devel-le...@lists.fedoraproject.org
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/epel-devel@lists.fedoraproject.org
Do not reply to spam, report it: 
https://pagure.io/fedora-infrastructure/new_issue

Reply via email to