The following Fedora EPEL 6 Security updates need testing: https://admin.fedoraproject.org/updates/ocsinventory-1.3.3-5.el6 https://admin.fedoraproject.org/updates/phpldapadmin-1.2.1.1-2.20111006git.el6 https://admin.fedoraproject.org/updates/moodle-2.1.2-1.el6 https://admin.fedoraproject.org/updates/clamav-0.97.3-1.el6 https://admin.fedoraproject.org/updates/supybot-gribble-0.83.4.1-10.el6 https://admin.fedoraproject.org/updates/asterisk-1.8.7.1-1.el6 https://admin.fedoraproject.org/updates/puppet-2.6.12-1.el6 https://admin.fedoraproject.org/updates/cherokee-1.2.101-1.el6
The following builds have been pushed to Fedora EPEL 6 updates-testing bodhi-0.8.3-1.el6 collectl-3.6.0-1.el6 crudminer-0.3.2-2.el6 freetds-0.91-1.el6 gnucash-2.4.8-1.el6 iec16022-0.2.4-7.el6 nginx-1.0.8-1.el6 nordugrid-arc-1.1.0-2.el6 nordugrid-arc-doc-1.1.0-1.el6 ocsinventory-1.3.3-5.el6 openstack-glance-2011.3-1.el6 perl-Devel-PatchPerl-0.58-1.el6 phpldapadmin-1.2.1.1-2.20111006git.el6 puppet-2.6.12-1.el6 python-postman-0.5.2-3.el6 python-prettytable-0.5-2.el6 python-vatnumber-1.0-1.el6 samtools-0.1.18-2.el6 ssldump-0.9-0.4.b3.el6 tryton-1.8.3-1.el6 trytond-1.8.4-1.el6 trytond-account-1.8.3-1.el6 trytond-analytic-invoice-1.8.1-1.el6 trytond-analytic-purchase-1.8.1-1.el6 trytond-analytic-sale-1.8.1-1.el6 trytond-calendar-1.8.2-1.el6 trytond-calendar-scheduling-1.8.1-1.el6 trytond-company-1.8.1-1.el6 trytond-party-1.8.1-1.el6 trytond-project-1.8.2-1.el6 trytond-project-plan-1.8.1-1.el6 trytond-purchase-1.8.4-1.el6 trytond-sale-1.8.3-1.el6 trytond-sale-opportunity-1.8.2-1.el6 trytond-stock-forecast-1.8.1-1.el6 trytond-stock-supply-1.8.2-1.el6 xdvik-22.84.14-9.el6 yumex-3.0.4-2.el6 Details about builds: ================================================================================ bodhi-0.8.3-1.el6 (FEDORA-EPEL-2011-4773) A modular framework that facilitates publishing software updates -------------------------------------------------------------------------------- Update Information: Latest bodhi release containing a variety of bugfixes, mostly server-side. -------------------------------------------------------------------------------- ChangeLog: * Mon Oct 24 2011 Luke Macken <lmac...@redhat.com> - 0.8.3-1 - Update to 0.8.3 * Fri Aug 12 2011 Luke Macken <lmac...@redhat.com> - 0.8.1-1 - Update our build requirements to make the test suite happy. - Pull in the new python-fedora-turbogears subpackage * Thu Jun 9 2011 Luke Macken <lmac...@redhat.com> - 0.8.0-1 - Update to 0.8.0 * Thu Mar 24 2011 Luke Macken <lmac...@redhat.com> - 0.7.15-1 - Update to 0.7.15 * Fri Mar 11 2011 Luke Macken <lmac...@redhat.com> - 0.7.14-1 - Update to 0.7.14 * Fri Mar 4 2011 Luke Macken <lmac...@redhat.com> - 0.7.13-1 - Update to 0.7.13 * Mon Feb 28 2011 Luke Macken <lmac...@redhat.com> - 0.7.12-1 - Update to 0.7.12 * Thu Feb 24 2011 Luke Macken <lmac...@redhat.com> - 0.7.11-1 - Update to 0.7.11 * Mon Feb 7 2011 Fedora Release Engineering <rel-...@lists.fedoraproject.org> - 0.7.10-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #746780 - [abrt] bodhi-client-0.8.0-1.fc16: bodhi:374:<lambda>:IndexError: list index out of range https://bugzilla.redhat.com/show_bug.cgi?id=746780 [ 2 ] Bug #743975 - bodhi-server should require python-fedora-turbogears https://bugzilla.redhat.com/show_bug.cgi?id=743975 -------------------------------------------------------------------------------- ================================================================================ collectl-3.6.0-1.el6 (FEDORA-EPEL-2011-4756) A utility to collect various Linux performance data -------------------------------------------------------------------------------- Update Information: update to upstream version 3.6.0 -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 20 2011 Dan Horák <dan[at]danny.cz> 3.6.0-1 - upgrade to upstream version 3.6.0 -------------------------------------------------------------------------------- ================================================================================ crudminer-0.3.2-2.el6 (FEDORA-EPEL-2011-4783) Find and report insecure web software in a web root -------------------------------------------------------------------------------- Update Information: New package. -------------------------------------------------------------------------------- References: [ 1 ] Bug #748446 - Review Request: crudminer - Find known-vulnerable software in a web root https://bugzilla.redhat.com/show_bug.cgi?id=748446 -------------------------------------------------------------------------------- ================================================================================ freetds-0.91-1.el6 (FEDORA-EPEL-2011-4789) Implementation of the TDS (Tabular DataStream) protocol -------------------------------------------------------------------------------- Update Information: Update to 0.91 Note, that instead of tds version numbers 8.0 and 9.0, you should use now 7.1 and 7.2 respectively (8.0 is still allowed for compatibility). -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 26 2011 Dmitry Butskoy <dmi...@butskoy.name> - 0.91-1 - Upgrade to 0.91 - Drop shared-libtds support * Wed Mar 9 2011 Dmitry Butskoy <dmi...@butskoy.name> - 0.82.1-0.3.20110306dev - update to the latest stable snapshot 0.82.1.dev.20110306 - make build with shared-libtds conditional - disable shared-libtds patch by default (seems noone uses it for now) * Mon Feb 14 2011 Dmitry Butskoy <dmi...@butskoy.name> - 0.82.1-0.2.20100810dev - fix again shared-libtds patch to provide increased library version * Thu Feb 10 2011 Dmitry Butskoy <dmi...@butskoy.name> - 0.82.1-0.1.20100810dev - update to the latest stable snapshot 0.82.1.dev.20100810 - fix shared-libtds patch to provide properly library names * Tue Feb 8 2011 Fedora Release Engineering <rel-...@lists.fedoraproject.org> - 0.82-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ gnucash-2.4.8-1.el6 (FEDORA-EPEL-2011-4777) Finance management application -------------------------------------------------------------------------------- Update Information: This updates GnuCash to the latest upstream release, which fixes assorted bugs. For more information, see the upstream release announcement at: http://www.gnucash.org/#n-111023-2.4.8.news -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 25 2011 Bill Nottingham <nott...@redhat.com> - 2.4.8-1 - update to 2.4.8 * Tue Aug 9 2011 Bill Nottingham <nott...@redhat.com> - 2.4.7-2 - fix python bindings on 64bit (#729454) -------------------------------------------------------------------------------- ================================================================================ iec16022-0.2.4-7.el6 (FEDORA-EPEL-2011-4776) Generate ISO/IEC 16022 2D barcodes -------------------------------------------------------------------------------- Update Information: iec16022 is a program for producing ISO/IEC 16022 2D barcodes, also known as Data Matrix. These barcodes are defined in the ISO/IEC 16022 standard. -------------------------------------------------------------------------------- References: [ 1 ] Bug #594844 - Review Request: iec16022 - Generate ISO/IEC 16022 2D barcodes https://bugzilla.redhat.com/show_bug.cgi?id=594844 -------------------------------------------------------------------------------- ================================================================================ nginx-1.0.8-1.el6 (FEDORA-EPEL-2011-4758) Robust, small and high performance HTTP and reverse proxy server -------------------------------------------------------------------------------- Update Information: Update to latest stable version -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 27 2011 Keiran "Affix" Smith <fed...@affix.me> - 1.0.8-1 - Update to new 1.0.8 stable release -------------------------------------------------------------------------------- ================================================================================ nordugrid-arc-1.1.0-2.el6 (FEDORA-EPEL-2011-4779) Advanced Resource Connector Grid Middleware -------------------------------------------------------------------------------- Update Information: Update to NorduGrid ARC 11.05 update 2 http://www.nordugrid.org/arc/releases/11.05u2/ -------------------------------------------------------------------------------- ChangeLog: * Mon Oct 24 2011 Mattias Ellert <mattias.ell...@fysast.uu.se> - 1.1.0-2 - Backport fixes for endian independent md5 checksum * Mon Oct 3 2011 Mattias Ellert <mattias.ell...@fysast.uu.se> - 1.1.0-1 - 1.1.0 Final Release - Drop patches accepted upstream: nordugrid-arc-perl-switch.patch and nordugrid-arc-run-full.patch * Mon Oct 3 2011 Rex Dieter <rdie...@fedoraproject.org> - 1.0.1-3.1 - rebuild (java), rel-eng#4932 -------------------------------------------------------------------------------- ================================================================================ nordugrid-arc-doc-1.1.0-1.el6 (FEDORA-EPEL-2011-4779) Advanced Resource Connector Documentation -------------------------------------------------------------------------------- Update Information: Update to NorduGrid ARC 11.05 update 2 http://www.nordugrid.org/arc/releases/11.05u2/ -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 19 2011 Mattias Ellert <mattias.ell...@fysast.uu.se> - 1.1.0-1 - 1.1.0 Final Release -------------------------------------------------------------------------------- ================================================================================ ocsinventory-1.3.3-5.el6 (FEDORA-EPEL-2011-4763) Open Computer and Software Inventory Next Generation -------------------------------------------------------------------------------- Update Information: Fix a XSS vulnerability -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 25 2011 Remi Collet <fed...@famillecollet.com> - 1.3.3-5 - fix XSS vulnerabity (Bug #748072, CVE-2011-4024) - Don't require php-zip for F16 and up. -------------------------------------------------------------------------------- References: [ 1 ] Bug #748072 - CVE-2011-4024 ocsinventory: XSS flaw https://bugzilla.redhat.com/show_bug.cgi?id=748072 -------------------------------------------------------------------------------- ================================================================================ openstack-glance-2011.3-1.el6 (FEDORA-EPEL-2011-4766) OpenStack Image Service -------------------------------------------------------------------------------- Update Information: el6 build for openstack glance. -------------------------------------------------------------------------------- ================================================================================ perl-Devel-PatchPerl-0.58-1.el6 (FEDORA-EPEL-2011-4774) Patch perl source à la Devel::PPPort's buildperl.pl -------------------------------------------------------------------------------- Update Information: This update adds patching of make_ext.pl for virtualisation fixes. -------------------------------------------------------------------------------- ChangeLog: * Sat Oct 22 2011 Iain Arnell <iarn...@gmail.com> 0.58-1 - update to latest upstream version * Sat Sep 24 2011 Iain Arnell <iarn...@gmail.com> 0.52-1 - update to latest upstream version -------------------------------------------------------------------------------- ================================================================================ phpldapadmin-1.2.1.1-2.20111006git.el6 (FEDORA-EPEL-2011-4788) Web-based tool for managing LDAP servers -------------------------------------------------------------------------------- Update Information: Update to the latest upstream development code to fix CVE-2011-4074 and CVE-2011-4075 (XSS and code injection vulnerabilities in versions <= 1.2.1.1) -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 25 2011 Dmitry Butskoy <dmi...@butskoy.name> - 1.2.1.1-2.20111006git - update to the latest git #cddf783 to fix security issues (XSS and code injection vulnerabilities, #748538) -------------------------------------------------------------------------------- References: [ 1 ] Bug #748537 - CVE-2011-4074 CVE-2011-4075 phpldapadmin: XSS and code injection vulnerabilities in <= 1.2.1.1 https://bugzilla.redhat.com/show_bug.cgi?id=748537 -------------------------------------------------------------------------------- ================================================================================ puppet-2.6.12-1.el6 (FEDORA-EPEL-2011-4768) A network tool for managing many disparate systems -------------------------------------------------------------------------------- Update Information: A bug in puppet's SSL certificate handling could allow nodes with a valid certificate to impersonate the puppet master. To be vulnerable, a user would have had to set the certdnsnames variable and generated certificates. This setting is not set by default in the Fedora/EPEL packages. This update closes the vulnerability in newly generated certificates, but cannot prevent existing certificates from being used to exploit the vulnerability. Please refer to the upstream documentation for more details on mitigation and remediation of this issue, if you have generate certificates that are vulnerable to this issue: http://puppetlabs.com/security/cve/cve-2011-3872/ -------------------------------------------------------------------------------- ChangeLog: * Sun Oct 23 2011 Todd Zullinger <t...@pobox.com> - 2.6.12-1 - Update to 2.6.12, fixes CVE-2011-3872 - Add upstream patch to restore Mongrel XMLRPC functionality (upstream #10244) - Apply partial fix for upstream #9167 (tagmail report sends email when nothing happens) -------------------------------------------------------------------------------- ================================================================================ python-postman-0.5.2-3.el6 (FEDORA-EPEL-2011-4786) Postman is a command line utility for working with Amazon SES -------------------------------------------------------------------------------- Update Information: This is a new package that provides a cli utility for interfacing with Amazon SES. -------------------------------------------------------------------------------- References: [ 1 ] Bug #747050 - Review Request: python-postman - cli for working with Amazon SES https://bugzilla.redhat.com/show_bug.cgi?id=747050 -------------------------------------------------------------------------------- ================================================================================ python-prettytable-0.5-2.el6 (FEDORA-EPEL-2011-4752) Python library to display tabular data in tables -------------------------------------------------------------------------------- Update Information: required by python-novaclient -------------------------------------------------------------------------------- ================================================================================ python-vatnumber-1.0-1.el6 (FEDORA-EPEL-2011-4787) Python module to validate VAT numbers -------------------------------------------------------------------------------- Update Information: update to version 1.0 with these fixes: - Fix UK VAT check - Fix UK VAT 9755 validation - Fix Sweden 2 last numbers validation - Add 999 and 888 as valide IT province of residence -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- ================================================================================ samtools-0.1.18-2.el6 (FEDORA-EPEL-2011-4784) Tools for nucleotide sequence alignments in the SAM format -------------------------------------------------------------------------------- Update Information: Ensure new seqtk tool is included -------------------------------------------------------------------------------- ChangeLog: * Wed Oct 26 2011 Adam Huffman <verdu...@fedoraproject.org> - 0.1.18-2 - make sure new seqtk tool included -------------------------------------------------------------------------------- ================================================================================ ssldump-0.9-0.4.b3.el6 (FEDORA-EPEL-2011-4751) An SSLv3/TLS network protocol analyzer -------------------------------------------------------------------------------- Update Information: Fixed wrong decoder table ends to avoid many segfaults -------------------------------------------------------------------------------- ChangeLog: * Mon Oct 24 2011 Robert Scheck <rob...@fedoraproject.org> 0.9-0.4.b3 - Fixed wrong decoder table ends to avoid many segfaults (#747398) * Wed Feb 9 2011 Fedora Release Engineering <rel-...@lists.fedoraproject.org> - 0.9-0.3.b3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #747398 - ssldump segfaults within minutes after running it https://bugzilla.redhat.com/show_bug.cgi?id=747398 -------------------------------------------------------------------------------- ================================================================================ tryton-1.8.3-1.el6 (FEDORA-EPEL-2011-4780) Client for the Tryton application framework -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sun Oct 23 2011 Dan Horák <d...@danny.cz> - 1.8.3-1 - new upstream version 1.8.3 -------------------------------------------------------------------------------- ================================================================================ trytond-1.8.4-1.el6 (FEDORA-EPEL-2011-4780) Server for the Tryton application framework -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sun Oct 23 2011 Dan Horák <d...@danny.cz> - 1.8.4-1 - new upstream version 1.8.4 -------------------------------------------------------------------------------- ================================================================================ trytond-account-1.8.3-1.el6 (FEDORA-EPEL-2011-4780) account module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sun Oct 23 2011 Dan Horák <d...@danny.cz> - 1.8.3-1 - new upstream version 1.8.3 -------------------------------------------------------------------------------- ================================================================================ trytond-analytic-invoice-1.8.1-1.el6 (FEDORA-EPEL-2011-4780) analytic-invoice module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- ================================================================================ trytond-analytic-purchase-1.8.1-1.el6 (FEDORA-EPEL-2011-4780) analytic-purchase module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- ================================================================================ trytond-analytic-sale-1.8.1-1.el6 (FEDORA-EPEL-2011-4780) analytic-sale module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- ================================================================================ trytond-calendar-1.8.2-1.el6 (FEDORA-EPEL-2011-4780) calendar module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sun Oct 23 2011 Dan Horák <d...@danny.cz> - 1.8.2-1 - new upstream version 1.8.2 -------------------------------------------------------------------------------- ================================================================================ trytond-calendar-scheduling-1.8.1-1.el6 (FEDORA-EPEL-2011-4780) calendar-scheduling module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- ================================================================================ trytond-company-1.8.1-1.el6 (FEDORA-EPEL-2011-4780) company module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- ================================================================================ trytond-party-1.8.1-1.el6 (FEDORA-EPEL-2011-4780) party module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sun Oct 23 2011 Dan Horák <d...@danny.cz> - 1.8.1-1 - new upstream version 1.8.1 -------------------------------------------------------------------------------- ================================================================================ trytond-project-1.8.2-1.el6 (FEDORA-EPEL-2011-4780) project module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sun Oct 23 2011 Dan Horák <d...@danny.cz> - 1.8.2-1 - new upstream version 1.8.2 -------------------------------------------------------------------------------- ================================================================================ trytond-project-plan-1.8.1-1.el6 (FEDORA-EPEL-2011-4780) project-plan module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- ================================================================================ trytond-purchase-1.8.4-1.el6 (FEDORA-EPEL-2011-4780) purchase module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sun Oct 23 2011 Dan Horák <d...@danny.cz> - 1.8.4-1 - new upstream version 1.8.4 -------------------------------------------------------------------------------- ================================================================================ trytond-sale-1.8.3-1.el6 (FEDORA-EPEL-2011-4780) sale module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sun Oct 23 2011 Dan Horák <d...@danny.cz> - 1.8.3-1 - new upstream version 1.8.3 -------------------------------------------------------------------------------- ================================================================================ trytond-sale-opportunity-1.8.2-1.el6 (FEDORA-EPEL-2011-4780) sale-opportunity module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sun Oct 23 2011 Dan Horák <d...@danny.cz> - 1.8.2-1 - new upstream version 1.8.2 -------------------------------------------------------------------------------- ================================================================================ trytond-stock-forecast-1.8.1-1.el6 (FEDORA-EPEL-2011-4780) stock-forecast module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- ================================================================================ trytond-stock-supply-1.8.2-1.el6 (FEDORA-EPEL-2011-4780) stock-supply module for Tryton -------------------------------------------------------------------------------- Update Information: update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog: * Sun Oct 23 2011 Dan Horák <d...@danny.cz> - 1.8.2-1 - new upstream version 1.8.2 -------------------------------------------------------------------------------- ================================================================================ xdvik-22.84.14-9.el6 (FEDORA-EPEL-2011-4791) An X viewer for DVI files -------------------------------------------------------------------------------- Update Information: First build for EL6. -------------------------------------------------------------------------------- References: [ 1 ] Bug #747883 - Adding to EPEL in order to get texmaker https://bugzilla.redhat.com/show_bug.cgi?id=747883 -------------------------------------------------------------------------------- ================================================================================ yumex-3.0.4-2.el6 (FEDORA-EPEL-2011-4750) Yum Extender graphical package management tool -------------------------------------------------------------------------------- Update Information: Fix glade file not working on RHEL6 New upstream release - Better url handling - filter packages in a sesrch - fix multi arch issues in groups -------------------------------------------------------------------------------- ChangeLog: * Sat Oct 22 2011 Tim Lauridsen <tim...@fedoraproject.org> 3.0.4-2 - install special yumex.glade on el6 * Tue Oct 11 2011 Tim Lauridsen <tim...@fedoraproject.org> 3.0.4-1 - bumped version to 3.0.4-1 -------------------------------------------------------------------------------- References: [ 1 ] Bug #733204 - [abrt] yumex-3.0.3-1.fc15: gui.py:227:_url_handler:Error: The specified location is not mounted https://bugzilla.redhat.com/show_bug.cgi?id=733204 [ 2 ] Bug #678842 - Yum Extender doesn't let me filter queries based on their installed/uninstalled/available status https://bugzilla.redhat.com/show_bug.cgi?id=678842 [ 3 ] Bug #716668 - yumex wants to install i686 packages on x86_64 system https://bugzilla.redhat.com/show_bug.cgi?id=716668 -------------------------------------------------------------------------------- _______________________________________________ epel-devel-list mailing list epel-devel-list@redhat.com https://www.redhat.com/mailman/listinfo/epel-devel-list