The following Fedora 19 Security updates need testing: Age URL 188 https://admin.fedoraproject.org/updates/FEDORA-2013-19963/openstack-glance-2013.1.4-1.fc19 125 https://admin.fedoraproject.org/updates/FEDORA-2013-24023/varnish-3.0.5-1.fc19 30 https://admin.fedoraproject.org/updates/FEDORA-2014-4676/a2ps-4.14-23.fc19 17 https://admin.fedoraproject.org/updates/FEDORA-2014-5024/smb4k-1.1.1-2.fc19 14 https://admin.fedoraproject.org/updates/FEDORA-2014-5308/srm-1.2.13-1.fc19 6 https://admin.fedoraproject.org/updates/FEDORA-2014-5609/kernel-3.13.11-100.fc19 5 https://admin.fedoraproject.org/updates/FEDORA-2014-5715/qt-4.8.6-2.fc19 5 https://admin.fedoraproject.org/updates/FEDORA-2014-5691/mediawiki-1.21.9-1.fc19 5 https://admin.fedoraproject.org/updates/FEDORA-2014-5680/qt5-qtbase-5.2.1-8.fc19 3 https://admin.fedoraproject.org/updates/FEDORA-2014-5751/mumble-1.2.5-1.fc19 3 https://admin.fedoraproject.org/updates/FEDORA-2014-5759/cups-filters-1.0.53-1.fc19 2 https://admin.fedoraproject.org/updates/FEDORA-2014-5783/fish-2.1.0-9.fc19 2 https://admin.fedoraproject.org/updates/FEDORA-2014-5795/dmlite-0.6.2-2.fc19 2 https://admin.fedoraproject.org/updates/FEDORA-2014-5801/python-lxml-3.3.5-1.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-5896/nrpe-2.15-2.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-5903/miniupnpc-1.9-1.fc19,megaglest-3.9.1-2.fc19,0ad-0.0.15-4.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-5938/rxvt-unicode-9.20-1.fc19 0 https://admin.fedoraproject.org/updates/FEDORA-2014-5941/xen-4.2.4-4.fc19
The following Fedora 19 Critical Path updates have yet to be approved: Age URL 136 https://admin.fedoraproject.org/updates/FEDORA-2013-22326/fedora-bookmarks-15-5.fc19 63 https://admin.fedoraproject.org/updates/FEDORA-2014-3245/testdisk-6.14-2.fc19.1,ntfs-3g-2014.2.15-1.fc19 6 https://admin.fedoraproject.org/updates/FEDORA-2014-5620/abrt-2.2.1-1.fc19,libreport-2.2.2-2.fc19 6 https://admin.fedoraproject.org/updates/FEDORA-2014-5609/kernel-3.13.11-100.fc19 5 https://admin.fedoraproject.org/updates/FEDORA-2014-5665/curl-7.29.0-18.fc19 5 https://admin.fedoraproject.org/updates/FEDORA-2014-5715/qt-4.8.6-2.fc19 2 https://admin.fedoraproject.org/updates/FEDORA-2014-5809/xorg-x11-drv-synaptics-1.7.4-9.fc19 2 https://admin.fedoraproject.org/updates/FEDORA-2014-5788/xorg-x11-drv-evdev-2.8.3-1.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2014-5818/libssh2-1.4.3-7.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2014-5867/kde-workspace-4.11.9-2.fc19 1 https://admin.fedoraproject.org/updates/FEDORA-2014-5448/ibus-1.5.7-1.fc19 The following builds have been pushed to Fedora 19 updates-testing SDL2_mixer-2.0.0-5.fc19 emacs-mew-6.6-1.fc19 gnome-disk-utility-3.8.2-3.fc19 jd-2.8.8-0.4.rc140429.fc19 lyx-2.1.0-2.fc19 perl-Perl-Critic-PetPeeves-JTRAMMELL-0.04-1.fc19 python-libturpial-1.7.0-1.fc19 rxvt-unicode-9.20-1.fc19 subscription-manager-1.11.6-1.fc19 tlp-0.5-2.fc19 utf8cpp-2.3.4-4.fc19 xen-4.2.4-4.fc19 xfdashboard-0.1.90-1.fc19 Details about builds: ================================================================================ SDL2_mixer-2.0.0-5.fc19 (FEDORA-2014-5933) Simple DirectMedia Layer - Sample Mixer Library -------------------------------------------------------------------------------- Update Information: Add patch for properly include modplug -------------------------------------------------------------------------------- ChangeLog: * Thu May 1 2014 Igor Gnatenko <i.gnatenko.br...@gmail.com> - 2.0.0-5 - Fix FTBFS with autoreconf * Thu May 1 2014 Igor Gnatenko <i.gnatenko.br...@gmail.com> - 2.0.0-4 - Add patch for properly include modplug (RHBZ #1093378) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1093378 - Please add patches to correct libmodplug header include https://bugzilla.redhat.com/show_bug.cgi?id=1093378 -------------------------------------------------------------------------------- ================================================================================ emacs-mew-6.6-1.fc19 (FEDORA-2014-5908) Email client for GNU Emacs -------------------------------------------------------------------------------- Update Information: New upstream release -------------------------------------------------------------------------------- ChangeLog: * Thu May 1 2014 Akira TAGOH <ta...@redhat.com> - 6.6-1 - New upstream release. (#1092918) * Sat Aug 3 2013 Fedora Release Engineering <rel-...@lists.fedoraproject.org> - 6.5-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1092918 - emacs-mew-6.6 is available https://bugzilla.redhat.com/show_bug.cgi?id=1092918 -------------------------------------------------------------------------------- ================================================================================ gnome-disk-utility-3.8.2-3.fc19 (FEDORA-2014-5934) Disks -------------------------------------------------------------------------------- Update Information: Fix desktop database scriptlet (#685030) -------------------------------------------------------------------------------- ChangeLog: * Fri May 2 2014 David King <amigad...@amigadave.com> - 3.8.2-3 - Fix desktop database scriptlet (#685030) -------------------------------------------------------------------------------- References: [ 1 ] Bug #685030 - Scriptlet warnings/errors on install and erase https://bugzilla.redhat.com/show_bug.cgi?id=685030 -------------------------------------------------------------------------------- ================================================================================ jd-2.8.8-0.4.rc140429.fc19 (FEDORA-2014-5922) A 2ch browser -------------------------------------------------------------------------------- Update Information: New version 2.8.8 rc140429 is released. -------------------------------------------------------------------------------- ChangeLog: * Fri May 2 2014 Mamoru TASAKA <mtas...@fedoraproject.org> - 2.8.8-0.4.rc140429 - 2.8.8 rc 140429 * Thu Apr 17 2014 Mamoru TASAKA <mtas...@fedoraproject.org> - Update to the latest trunk -------------------------------------------------------------------------------- ================================================================================ lyx-2.1.0-2.fc19 (FEDORA-2014-5935) WYSIWYM (What You See Is What You Mean) document processor -------------------------------------------------------------------------------- Update Information: This update has Back port fixes from the stable branch that will become 2.1.1. Among those fixes we have: * improved support to convert to and from the current lyx file format; * fixes crashes under some circumstances; * reduces memory usage for large documents. -------------------------------------------------------------------------------- ChangeLog: * Thu May 1 2014 José Matos <jama...@fedoraproject.org> - 2.1.0-2 - update to latest from the stable series picking several important fixes in the process (current 2.1.x source) * Thu Apr 17 2014 José Matos <jama...@fedoraproject.org> - 2.1.0-1 - 2.1.0 is a stable release so set release number to 1 -------------------------------------------------------------------------------- ================================================================================ perl-Perl-Critic-PetPeeves-JTRAMMELL-0.04-1.fc19 (FEDORA-2014-5912) Policies to prohibit/require my pet peeves -------------------------------------------------------------------------------- Update Information: This release fixes parsing some assignments. -------------------------------------------------------------------------------- ChangeLog: * Fri May 2 2014 Petr Pisar <ppi...@redhat.com> - 0.04-1 - 0.04 bump -------------------------------------------------------------------------------- References: [ 1 ] Bug #1092971 - perl-Perl-Critic-PetPeeves-JTRAMMELL-0.04 is available https://bugzilla.redhat.com/show_bug.cgi?id=1092971 -------------------------------------------------------------------------------- ================================================================================ python-libturpial-1.7.0-1.fc19 (FEDORA-2014-5929) Micro blogging python library, needed for turpial (twitter client) -------------------------------------------------------------------------------- Update Information: Version 1.7.0 of libturpial -------------------------------------------------------------------------------- ChangeLog: * Thu May 1 2014 Richzendy <richze...@fedoraproject.org> - 1.7.0-1 - Version 1.7.0 of libturpial -------------------------------------------------------------------------------- References: [ 1 ] Bug #1092167 - Unable to access my direct messages and turpial settings https://bugzilla.redhat.com/show_bug.cgi?id=1092167 [ 2 ] Bug #1051949 - [abrt] turpial: worker.py:509:get_window_size:KeyError: 'Window' https://bugzilla.redhat.com/show_bug.cgi?id=1051949 -------------------------------------------------------------------------------- ================================================================================ rxvt-unicode-9.20-1.fc19 (FEDORA-2014-5938) Unicode version of rxvt -------------------------------------------------------------------------------- Update Information: * Update to 9.20: http://cvs.schmorp.de/rxvt-unicode/Changes * Fix CVE-2014-3121: user-assisted arbitrary commands execution -------------------------------------------------------------------------------- ChangeLog: * Thu May 1 2014 Jamie Nguyen <jamieli...@fedoraproject.org> - 9.20-1 - update to upstream release 9.20, which includes a fix for security bug CVE-2014-3121 (#1093287, #1093288, #1093289) - include man pages for new extension (selection-to-clipboard) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1093287 - CVE-2014-3121 rxvt-unicode: user-assisted arbitrary commands execution https://bugzilla.redhat.com/show_bug.cgi?id=1093287 -------------------------------------------------------------------------------- ================================================================================ subscription-manager-1.11.6-1.fc19 (FEDORA-2014-5931) Tools and libraries for subscription and repository management -------------------------------------------------------------------------------- Update Information: Massive refactoring to reorganize module structure and use dependency injection. Numerous bug fixes. -------------------------------------------------------------------------------- ChangeLog: * Thu May 1 2014 Alex Wood <aw...@redhat.com> 1.11.6-1 - s/certmgr/action_client in spec (alik...@redhat.com) * Thu May 1 2014 Alex Wood <aw...@redhat.com> 1.11.5-1 - Removing CVS properties since CVS is dead. (aw...@redhat.com) - CertSorter syncs installed prods before super init. (alik...@redhat.com) - Add more entcertlib class and method docs. (alik...@redhat.com) - Reorder methods in roughly exec order (alik...@redhat.com) - entcertlib docstring cleanup (alik...@redhat.com) - TestDataLib -> TestBaseActionInvoker (alik...@redhat.com) - repolib.RepoUpdateAction ->RepoUpdateActionCommand (alik...@redhat.com) - repolib.RepoLib -> RepoActionInvoker (alik...@redhat.com) - InstalledProductsLib -> InstalledProductsActionInvoker (alik...@redhat.com) - IdentityCertLib -> IdentityCertActionInvoker (alik...@redhat.com) - healiblib.HealingLib -> HealingActionInvoker (alik...@redhat.com) - FactAction -> FactsActionCommand (alik...@redhat.com) - FactActionReport -> FactsActionReport (alik...@redhat.com) - FactLib -> FactsActionInvoker (alik...@redhat.com) - entcertlib.EntCertLib -> EntCertActionInvoker (alik...@redhat.com) - certlib.DataLib -> certlib.BaseActionInvoker (alik...@redhat.com) - rename certmgr.py to action_client (alik...@redhat.com) - Rename CertManager to ActionClient (alik...@redhat.com) - Rename CertManager to CertActionClient (alik...@redhat.com) - Update docstrings. (alik...@redhat.com) - Remove no longer used old_install. (alik...@redhat.com) - Add entcertlib docs (alik...@redhat.com) - update copyright info (alik...@redhat.com) - s/entdir/ent_dir since we use that slightly more (alik...@redhat.com) - factsgui identity now injected at the last minute (alik...@redhat.com) - SubManFixture's mock identity now NonCallable (alik...@redhat.com) - test_async does not need to mock Facts (alik...@redhat.com) - Store default inject stub Facts on SubManFixture (alik...@redhat.com) - Remove unneeded Facts() init. (alik...@redhat.com) - Replace Facts() with injected facts in managercli (alik...@redhat.com) - Start replacing use of Facts() with inj'ed facts (alik...@redhat.com) - Stop passing facts to ReleaseBackend. (alik...@redhat.com) - Make repolib use inject ent_dir/prod_dir (alik...@redhat.com) - Make cp_provider manage ContentConnection (alik...@redhat.com) - Make ReleaseBackend use inj'ed ent/prod dirs (alik...@redhat.com) - split migrates basic/consumer connection methods (alik...@redhat.com) - migrate.py now uses inj'ed CP_PROVIDER (alik...@redhat.com) - ReleaseBackend doesn't need a uep, remove it. (alik...@redhat.com) - Stop passing a uep into CertManager and friends. (alik...@redhat.com) - Don't pass cp to RepoLib from cli, use inj (alik...@redhat.com) - update Overrides to use inject uep (alik...@redhat.com) - Split IdentityCertLib into Lib+Action (alik...@redhat.com) - Use the mock cp_provider inject with the fixture (alik...@redhat.com) - certlib.DataLib doesn't need a uep now (alik...@redhat.com) - Fix testcase to use injected uep (alik...@redhat.com) - Use inj'ed UEP in healinglib (alik...@redhat.com) - Use inj'ed UEP in repolib (alik...@redhat.com) - Use inj'ed UEP in packageprofilelib (alik...@redhat.com) - Use inject uep in installedproductslib (alik...@redhat.com) - Remove unneeded mock Facts in test_certmgr (alik...@redhat.com) - Make certmgr let FactLib use inj uep (alik...@redhat.com) - Make FactActionReport use inj'ed UEP (alik...@redhat.com) - Start letting EntCertLib use injected UEP (alik...@redhat.com) - Move entcertlib to use inj'ed cp_proivder (alik...@redhat.com) - Remove now wrong comment (alik...@redhat.com) - Remove late import of repolib (alik...@redhat.com) - Remove incorrect docstrings (alik...@redhat.com) - Remove initial entcertlib invocation (alik...@redhat.com) - Don't pass in a facts object, inject it (alik...@redhat.com) - We don't use the passed in entdir, don't pass it (alik...@redhat.com) - Handle ActionReport lists having None (alik...@redhat.com) - Remove commented out code (alik...@redhat.com) - Fix up for now, but need to remove these tests (alik...@redhat.com) - certdata merge cleanups (alik...@redhat.com) - merge cleanups (alik...@redhat.com) - Add new files to spec (alik...@redhat.com) - stylish cleanups (alik...@redhat.com) - Use injected identity instead of consumer object (alik...@redhat.com) - Update to use Caputure() instead of MockStdout (alik...@redhat.com) - Fix v1 cert exp cert output for catcert tests (alik...@redhat.com) - self.installed is a property now, fix references (alik...@redhat.com) - merge cleanups (alik...@redhat.com) - make stylish cleanups (alik...@redhat.com) - Update repolib tests for certlib refactor (alik...@redhat.com) - Repo/override cli tests use injected identity (alik...@redhat.com) - Update Repos and overrides for injected identity (alik...@redhat.com) - Update RepoLib to use new DataLib init (alik...@redhat.com) - Fix mismerge and merge cleanups (alik...@redhat.com) - Stylish cleanups, mostly no longer used imports (alik...@redhat.com) - Remove unused ProductCertRepo bits (alik...@redhat.com) - Keep certmgr update_reports as a instance variable (alik...@redhat.com) - Remove certlib.ConsumerIdentity. (alik...@redhat.com) - Move firstboot to use injected identity. (alik...@redhat.com) - Move 'subscription-manager' yum plugin to inj (alik...@redhat.com) - Remove unused ConsumerIdentity from test_unreg (alik...@redhat.com) - Using injection in migration for prod_dir/identity (alik...@redhat.com) - Remove _get_consumer_id from EntUpdateAction (alik...@redhat.com) - Move old test_certlib to test_entcertlib (alik...@redhat.com) - Fix fetch_certificates for entcert Report (alik...@redhat.com) - Add some comments about id error logging (alik...@redhat.com) - Add a certmgr.UnregisterCertMgr class (alik...@redhat.com) - Add a RepoActionReport formatter (alik...@redhat.com) - Add a RepoActionReport (alik...@redhat.com) - More injected id, clean check_registration use (alik...@redhat.com) - Test fixes and merge/rebase cleanup (alik...@redhat.com) - Make string equals show expected/actual (alik...@redhat.com) - identitycertlib now uses injected identity (alik...@redhat.com) - certmgr tests were hitting real rpmdb (alik...@redhat.com) - PackageProfileManager/InstalledProductsManager inj (alik...@redhat.com) - Move PackageProfileLib and InstalledProductsLib (alik...@redhat.com) - Make rhsm_d use injection consumer identity (alik...@redhat.com) - Convert test_async to use SubManFixture (alik...@redhat.com) - test_certmgr calls uep.getRelease, so mock it (alik...@redhat.com) - Use injected consumer identity in firstboot (alik...@redhat.com) - Use injected consume identity in factlib (alik...@redhat.com) - Use ConsumerIdentity from identity not certlib (alik...@redhat.com) - Fix self.exceptions reference (alik...@redhat.com) - _valid_consumer to _inject_mock_valid_consumer (alik...@redhat.com) - Move _[in]valid_consumer to test/fixture.py (alik...@redhat.com) - Use injected Identity in repolib (alik...@redhat.com) - Remove certlib.ConsumerIdentity from managerlib (alik...@redhat.com) - Inject identity in utils for version check (alik...@redhat.com) - Give a name to Mock()s created in test/fixture (alik...@redhat.com) - Re add the new slimmer fitter certlib.py (alik...@redhat.com) - Make entcertlib uses injected identity (alik...@redhat.com) - Split certlib into entcertlib and certlib (alik...@redhat.com) - Make IdentityCertLib use inj IDENTITY (alik...@redhat.com) - Move IdentityCertLib to identitycertlib.py (alik...@redhat.com) - Split Healing* into healinglib.py (alik...@redhat.com) - repolib.UpdateAction is now RepoUpdateAction (alik...@redhat.com) - Checkout idcertlib._status from it's report (alik...@redhat.com) - Inject an ActionLock, and a Facts class. (alik...@redhat.com) - Add ActionReports, certlib cleanup, lock cleanup (alik...@redhat.com) - The Action subclass is unneeded now. (alik...@redhat.com) - CertManager split CertManager/HealingCertManager (alik...@redhat.com) - HealingAction just uses an EntCertUpdateReport atm (alik...@redhat.com) - reAction()'ify repolib, add RepoReport (alik...@redhat.com) - reAction()'ify Factlib, add FactUpdateReport (alik...@redhat.com) - certmgr expects a ActionReport from Action.perform (alik...@redhat.com) - Rename CertLib->EntCertLib (alik...@redhat.com) - Split UpdateReport into base class and sub classes (alik...@redhat.com) - Create UpdateReport in Certlib.CertLib and pass it (alik...@redhat.com) - Start refactoring certlib (alik...@redhat.com) - Add product certs with os_name in certdata (alik...@redhat.com) - Add ProductIdRepoMap as core of ProductDatabase (alik...@redhat.com) - Add a DefaultDict (defaultdict with pretty print) (alik...@redhat.com) * Mon Apr 28 2014 ckozak <cko...@redhat.com> 1.11.4-1 - Move atspi locator to correct element (cko...@redhat.com) - 1090560: readd locator to the all subs view (cko...@redhat.com) - test_cert_sorter could fail based on test order (alik...@redhat.com) - 1058383: widgets are added and removed dynamically (cko...@redhat.com) -------------------------------------------------------------------------------- ================================================================================ tlp-0.5-2.fc19 (FEDORA-2014-5916) Advanced power management tool for Linux -------------------------------------------------------------------------------- Update Information: official fedora support -------------------------------------------------------------------------------- References: [ 1 ] Bug #1089559 - Review Request: tlp - Advanced power management tool for Linux https://bugzilla.redhat.com/show_bug.cgi?id=1089559 -------------------------------------------------------------------------------- ================================================================================ utf8cpp-2.3.4-4.fc19 (FEDORA-2014-5923) A simple, portable and lightweight library for handling UTF-8 encoded strings -------------------------------------------------------------------------------- Update Information: Initial package. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1091636 - Review Request: utf8cpp - A simple, portable and lightweight library for handling UTF-8 encoded strings https://bugzilla.redhat.com/show_bug.cgi?id=1091636 -------------------------------------------------------------------------------- ================================================================================ xen-4.2.4-4.fc19 (FEDORA-2014-5941) Xen is a virtual machine monitor -------------------------------------------------------------------------------- Update Information: HVMOP_set_mem_type allows invalid P2M entries to be created -------------------------------------------------------------------------------- ChangeLog: * Thu May 1 2014 Michael Young <m.a.yo...@durham.ac.uk> - 4.3.2-4 - HVMOP_set_mem_type allows invalid P2M entries to be created [XSA-92, CVE-2014-3124] (#1093315) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1088243 - CVE-2014-3124 xen: hypervisor: HVMOP_set_mem_type allows invalid P2M entries to be created (XSA-92) https://bugzilla.redhat.com/show_bug.cgi?id=1088243 -------------------------------------------------------------------------------- ================================================================================ xfdashboard-0.1.90-1.fc19 (FEDORA-2014-5914) GNOME shell like dashboard for Xfce -------------------------------------------------------------------------------- Update Information: Updated to 0.1.90 -------------------------------------------------------------------------------- ChangeLog: * Fri May 2 2014 Mukundan Ragavan <nonamed...@fedoraproject.org> - 0.1.90-1 - Update to 0.1.90 - multiple bug fixes and improvements -------------------------------------------------------------------------------- References: [ 1 ] Bug #1078815 - xfdashboard-0.1.90 is available https://bugzilla.redhat.com/show_bug.cgi?id=1078815 -------------------------------------------------------------------------------- -- test mailing list test@lists.fedoraproject.org To unsubscribe: https://admin.fedoraproject.org/mailman/listinfo/test