The following Fedora EPEL 10.1 Security updates need testing:
Age URL
6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-3fd4fbc045
python-pydantic-core-2.23.4-2.el10_1 rust-adblock-0.9.6-1.el10_1
rust-atoi-2.0.0-2.el10_1 rust-cookie_store-0.21.1-1.el10_1
rust-detone-1.0.0-4.el10_1 rust-icu_collections-1.5.0-3.el10_1
rust-icu_locid-1.5.0-2.el10_1 rust-icu_locid_transform-1.5.0-1.el10_1
rust-icu_locid_transform_data-1.5.1-1.el10_1 rust-icu_normalizer-1.5.0-2.el10_1
rust-icu_normalizer_data-1.5.1-1.el10_1 rust-icu_properties-1.5.1-1.el10_1
rust-icu_properties_data-1.5.1-1.el10_1 rust-icu_provider-1.5.0-1.el10_1
rust-icu_provider_macros-1.5.0-1.el10_1 rust-idna-1.0.3-1.el10_1
rust-idna_adapter-1.2.0-1.el10_1 rust-litemap-0.7.3-5.el10_1
rust-ron-0.9.0-1.el10_1 rust-tinystr-0.7.6-4.el10_1
rust-unic-normal-0.9.0-4.el10_1 rust-unic-ucd-hangul-0.9.0-5.el10_1
rust-unic-ucd-normal-0.9.0-4.el10_1 rust-url-2.5.4-1.el10_1
rust-utf16_iter-1.0.5-1.el10_1 rust-version-ranges-0.1.1-2.el10_1
rust-write16-1.0.0-1.el10_1 rust-writeable-0.5.5-3.el10_1 rust-ze
rovec-0.10.4-4.el10_1 rust-zip-2.6.1-1.el10_1 uv-0.6.14-3.el10_1
6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-f8fbd7b9af
rpki-client-9.5-1.el10_1
2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-c1249be8e7
pgbouncer-1.24.1-2.el10_1
The following builds have been pushed to Fedora EPEL 10.1 updates-testing
chromium-135.0.7049.95-1.el10_1
dkms-3.1.8-1.el10_1
libmikmod-3.3.12-1.el10_1
nginx-mod-brotli-1.0.0~rc-1.el10_1
perl-Curses-1.45-7.el10_1
pythia8-8.3.14-1.el10_1
python-graphql-core-3.2.6-1.el10_1
python-parse-1.20.2-3.el10_1
python-pynamodb-6.0.2-2.el10_1
root-6.34.08-1.el10_1
rust-oxipng-9.1.4-2.el10_1
rust-zopfli-0.8.2-1.el10_1
selinux-policy-epel-40.13.29-1.el10_1
tlfloat-1.15.0-1.el10_1
voms-api-java-3.3.5-1.el10_1
voms-clients-java-3.3.5-1.el10_1
Details about builds:
================================================================================
chromium-135.0.7049.95-1.el10_1 (FEDORA-EPEL-2025-af0c337351)
A WebKit (Blink) powered web browser that Google doesn't want you to use
--------------------------------------------------------------------------------
Update Information:
Update to 135.0.7049.95
CVE-2025-3619: Heap buffer overflow in Codecs
CVE-2025-3620: Use after free in USB
--------------------------------------------------------------------------------
ChangeLog:
* Wed Apr 16 2025 Than Ngo <[email protected]> - 135.0.7049.95-1
- Update to 135.0.7049.95
* CVE-2025-3619: Heap buffer overflow in Codecs
* CVE-2025-3620: Use after free in USB
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2360898 - CVE-2025-3620 chromium: Use after free in USB
[fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2360898
[ 2 ] Bug #2360899 - CVE-2025-3620 chromium: Use after free in USB [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2360899
--------------------------------------------------------------------------------
================================================================================
dkms-3.1.8-1.el10_1 (FEDORA-EPEL-2025-8af25a31cd)
Dynamic Kernel Module Support Framework
--------------------------------------------------------------------------------
Update Information:
Update to 3.1.8.
--------------------------------------------------------------------------------
ChangeLog:
* Mon Apr 14 2025 Simone Caronni <[email protected]> - 3.1.8-1
- Update to 3.1.8
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2359147 - dkms-3.1.8 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2359147
--------------------------------------------------------------------------------
================================================================================
libmikmod-3.3.12-1.el10_1 (FEDORA-EPEL-2025-7c3c25e0e9)
A MOD music file player library
--------------------------------------------------------------------------------
Update Information:
Update to 3.3.12
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jan 9 2025 Charles R. Anderson <[email protected]> - 3.3.12-1
- Update to 3.3.12
- Regenerate patches
- Also patch configure.ac to remove non standard CFLAGS so changes
are effective after autoreconf.
--------------------------------------------------------------------------------
================================================================================
nginx-mod-brotli-1.0.0~rc-1.el10_1 (FEDORA-EPEL-2025-6a6aa0352b)
NGINX module for Brotli compression
--------------------------------------------------------------------------------
Update Information:
Initial package for nginx's brotli compression module
--------------------------------------------------------------------------------
ChangeLog:
* Fri Apr 18 2025 Mikel Olasagasti Uranga <[email protected]> - 1.0.0~rc-1
- Initial package - Closes rhbz#2360112
--------------------------------------------------------------------------------
================================================================================
perl-Curses-1.45-7.el10_1 (FEDORA-EPEL-2025-8ab6b688b2)
Perl bindings for ncurses
--------------------------------------------------------------------------------
Update Information:
First EPEL 10 release.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Apr 18 2025 Steve Traylen <[email protected]> - 1.45-7
- epel build error
* Sat Jan 18 2025 Fedora Release Engineering <[email protected]> - 1.45-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild
* Mon Aug 5 2024 Miroslav Suchý <[email protected]> - 1.45-4
- convert GPL+ or Artistic license to SPDX
* Thu Jul 18 2024 Fedora Release Engineering <[email protected]> - 1.45-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Mon Jun 10 2024 Jitka Plesnikova <[email protected]> - 1.45-2
- Perl 5.40 rebuild
* Mon Apr 29 2024 Steve Traylen <[email protected]> - 1.45-1
- Update to 1.45
- Drop i686 build patch
* Thu Apr 25 2024 Steve Traylen <[email protected]> - 1.44-7
- Build on i686 build rhbz#2261448 rhbz#2276620
* Thu Jan 25 2024 Fedora Release Engineering <[email protected]> - 1.44-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Sun Jan 21 2024 Fedora Release Engineering <[email protected]> - 1.44-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Thu Jul 20 2023 Fedora Release Engineering <[email protected]> - 1.44-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
* Tue Jul 11 2023 Jitka Plesnikova <[email protected]> - 1.44-2
- Perl 5.38 rebuild
--------------------------------------------------------------------------------
================================================================================
pythia8-8.3.14-1.el10_1 (FEDORA-EPEL-2025-c5e11c9a71)
Pythia Event Generator for High Energy Physics
--------------------------------------------------------------------------------
Update Information:
root 6.34.08
--------------------------------------------------------------------------------
ChangeLog:
* Thu Apr 17 2025 Mattias Ellert <[email protected]> - 8.3.14-1
- Update to version 8.3.14
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2358019 - root-6.34.08 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2358019
--------------------------------------------------------------------------------
================================================================================
python-graphql-core-3.2.6-1.el10_1 (FEDORA-EPEL-2025-a3627a4623)
GraphQL implementation for Python
--------------------------------------------------------------------------------
Update Information:
First EPEL 10 Package
--------------------------------------------------------------------------------
ChangeLog:
* Wed Mar 5 2025 Steve Traylen <[email protected]> - 3.2.6-1
- Update to 3.2.6 rhbz#2139936
* Sat Jan 18 2025 Fedora Release Engineering <[email protected]> -
3.2.4-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild
* Fri Sep 13 2024 Sandro <[email protected]> - 3.2.4-1
- Update to 3.2.4
* Fri Jul 19 2024 Fedora Release Engineering <[email protected]> -
3.2.3-8
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Fri Jun 7 2024 Python Maint <[email protected]> - 3.2.3-7
- Rebuilt for Python 3.13
* Fri Jan 26 2024 Fedora Release Engineering <[email protected]> -
3.2.3-6
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Mon Jan 22 2024 Fedora Release Engineering <[email protected]> -
3.2.3-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Fri Jul 21 2023 Fedora Release Engineering <[email protected]> -
3.2.3-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
* Thu Jun 15 2023 Python Maint <[email protected]> - 3.2.3-3
- Rebuilt for Python 3.12
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2345842 - Please branch and build python-graphql-core for EPEL10
https://bugzilla.redhat.com/show_bug.cgi?id=2345842
--------------------------------------------------------------------------------
================================================================================
python-parse-1.20.2-3.el10_1 (FEDORA-EPEL-2025-99b87450f2)
Opposite of format()
--------------------------------------------------------------------------------
Update Information:
First EPEL 10 Package
--------------------------------------------------------------------------------
ChangeLog:
* Sat Jan 18 2025 Fedora Release Engineering <[email protected]> -
1.20.2-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild
* Fri Jul 19 2024 Fedora Release Engineering <[email protected]> -
1.20.2-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Wed Jun 12 2024 Benjamin A. Beasley <[email protected]> - 1.20.2-1
- Update to 1.20.2 (close RHBZ#2216005)
* Wed Jun 12 2024 Benjamin A. Beasley <[email protected]> - 1.19.0-18
- Assert that the .dist-info directory contains a license file
* Wed Jun 12 2024 Benjamin A. Beasley <[email protected]> - 1.19.0-13
- Remove âPython 3 versionâ from description text
* Wed Jun 12 2024 Benjamin A. Beasley <[email protected]> - 1.19.0-11
- Correct the License (and convert to SPDX)
- Before 1.19.1, the package had an incorrect trove classifier indicating a
BSD license, but the license file had MIT text; see
https://github.com/r1chardj0n3s/parse/issues/145.
* Fri Jun 7 2024 Python Maint <[email protected]> - 1.19.0-10
- Rebuilt for Python 3.13
* Fri Jan 26 2024 Fedora Release Engineering <[email protected]> -
1.19.0-9
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Mon Jan 22 2024 Fedora Release Engineering <[email protected]> -
1.19.0-8
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Fri Jul 21 2023 Fedora Release Engineering <[email protected]> -
1.19.0-7
- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
* Tue Jun 13 2023 Python Maint <[email protected]> - 1.19.0-6
- Rebuilt for Python 3.12
* Fri Jan 20 2023 Fedora Release Engineering <[email protected]> -
1.19.0-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2345852 - Please branch and build python-parse for EPEL10
https://bugzilla.redhat.com/show_bug.cgi?id=2345852
--------------------------------------------------------------------------------
================================================================================
python-pynamodb-6.0.2-2.el10_1 (FEDORA-EPEL-2025-24787a2233)
A pythonic interface to Amazonâs DynamoDB
--------------------------------------------------------------------------------
Update Information:
Initial package for EPEL10
--------------------------------------------------------------------------------
ChangeLog:
* Thu Apr 17 2025 Benjamin A. Beasley <[email protected]> - 6.0.2-2
- Report and skip test regression with botocore>=1.37.12
* Fri Jan 24 2025 Packit <[email protected]> - 6.0.2-1
- Update to 6.0.2 upstream release
- Resolves: rhbz#2342032
* Sat Jan 18 2025 Fedora Release Engineering <[email protected]> -
6.0.1-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild
* Fri Jul 19 2024 Fedora Release Engineering <[email protected]> -
6.0.1-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Sat Jun 8 2024 Python Maint <[email protected]> - 6.0.1-2
- Rebuilt for Python 3.13
* Wed May 29 2024 Packit <[email protected]> - 6.0.1-1
- Update to 6.0.1 upstream release
- Resolves: rhbz#2283862
* Thu Feb 29 2024 Benjamin A. Beasley <[email protected]> - 6.0.0-1
- Update to 6.0.0 (close RHBZ#2258350)
* Fri Jan 26 2024 Fedora Release Engineering <[email protected]> -
5.5.1-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Mon Jan 22 2024 Fedora Release Engineering <[email protected]> -
5.5.1-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Mon Dec 18 2023 Benjamin A. Beasley <[email protected]> - 5.5.1-3
- Assert that %pyproject_files contains a license file
* Wed Nov 29 2023 Benjamin A. Beasley <[email protected]> - 5.5.1-1
- Update to 5.5.1 (close RHBZ#2252038)
* Wed Nov 29 2023 Benjamin A. Beasley <[email protected]> - 5.5.0-6
- In setup.cfg, avoid deprecated license_file
* Fri Jul 21 2023 Fedora Release Engineering <[email protected]> -
5.5.0-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
* Tue Jul 4 2023 Python Maint <[email protected]> - 5.5.0-4
- Rebuilt for Python 3.12
* Mon Jun 19 2023 Benjamin A. Beasley <[email protected]> - 5.5.0-3
- Use new (rpm 4.17.1+) bcond style
* Wed Apr 26 2023 Benjamin A. Beasley <[email protected]> - 5.5.0-1
- Update to 5.5.0 (close RHBZ#2189719)
--------------------------------------------------------------------------------
================================================================================
root-6.34.08-1.el10_1 (FEDORA-EPEL-2025-c5e11c9a71)
Numerical data analysis framework
--------------------------------------------------------------------------------
Update Information:
root 6.34.08
--------------------------------------------------------------------------------
ChangeLog:
* Thu Apr 17 2025 Mattias Ellert <[email protected]> - 6.34.08-1
- Update to 6.34.08
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2358019 - root-6.34.08 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2358019
--------------------------------------------------------------------------------
================================================================================
rust-oxipng-9.1.4-2.el10_1 (FEDORA-EPEL-2025-3483bde641)
Lossless PNG compression optimizer
--------------------------------------------------------------------------------
Update Information:
Update rust-zopfli to 0.8.2, with significant performance improvements, and
rebuild rust-oxipng to benefit from those improvements.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Apr 18 2025 Benjamin A. Beasley <[email protected]> - 9.1.4-2
- Rebuilt with rust-zopfli 0.8.2, with performance improvements
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2360972 - rust-zopfli-0.8.2 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2360972
--------------------------------------------------------------------------------
================================================================================
rust-zopfli-0.8.2-1.el10_1 (FEDORA-EPEL-2025-3483bde641)
Rust implementation of the Zopfli compression algorithm
--------------------------------------------------------------------------------
Update Information:
Update rust-zopfli to 0.8.2, with significant performance improvements, and
rebuild rust-oxipng to benefit from those improvements.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Apr 18 2025 Benjamin A. Beasley <[email protected]> - 0.8.2-1
- Update to 0.8.2 (close RHBZ#2360972)
- Remove workaround for proptest-derive OOM on s390x
* Sun Jan 19 2025 Fedora Release Engineering <[email protected]> -
0.8.1-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2360972 - rust-zopfli-0.8.2 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2360972
--------------------------------------------------------------------------------
================================================================================
selinux-policy-epel-40.13.29-1.el10_1 (FEDORA-EPEL-2025-a817d91ea0)
SELinux policy for EPEL packages
--------------------------------------------------------------------------------
Update Information:
Update of selinux-policy-epel for epel10
--------------------------------------------------------------------------------
ChangeLog:
* Tue Apr 15 2025 Zdenek Pytela <[email protected]> - 40.13.29-1
- Update to 40.13.29
--------------------------------------------------------------------------------
================================================================================
tlfloat-1.15.0-1.el10_1 (FEDORA-EPEL-2025-43c2cd5fd6)
C++ template library for floating point operations
--------------------------------------------------------------------------------
Update Information:
Initial package for tlfloat.
--------------------------------------------------------------------------------
ChangeLog:
* Sat Apr 19 2025 Benjamin A. Beasley <[email protected]> - 1.15.0-1
- Initial package (close RHBZ#2360990)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2360990 - Review Request: tlfloat - C++ template library for
floating point operations
https://bugzilla.redhat.com/show_bug.cgi?id=2360990
--------------------------------------------------------------------------------
================================================================================
voms-api-java-3.3.5-1.el10_1 (FEDORA-EPEL-2025-a6038a8ea9)
Virtual Organization Membership Service Java API
--------------------------------------------------------------------------------
Update Information:
VOMS java api and client 3.3.5
--------------------------------------------------------------------------------
ChangeLog:
* Thu Apr 17 2025 Mattias Ellert <[email protected]> - 3.3.5-1
- Update to version 3.3.5
- Do not run tests
- some scripts needed for generating the test certificates are missing
* Sun Jan 19 2025 Fedora Release Engineering <[email protected]> -
3.3.3-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
voms-clients-java-3.3.5-1.el10_1 (FEDORA-EPEL-2025-a6038a8ea9)
Virtual Organization Membership Service Java clients
--------------------------------------------------------------------------------
Update Information:
VOMS java api and client 3.3.5
--------------------------------------------------------------------------------
ChangeLog:
* Sat Apr 19 2025 Mattias Ellert <[email protected]> - 3.3.5-1
- Update to version 3.3.5
* Sun Jan 19 2025 Fedora Release Engineering <[email protected]> -
3.3.3-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild
--------------------------------------------------------------------------------
--
_______________________________________________
epel-devel mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct:
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives:
https://lists.fedoraproject.org/archives/list/[email protected]
Do not reply to spam, report it:
https://pagure.io/fedora-infrastructure/new_issue