The following Fedora EPEL 5 Security updates need testing:
Age URL
783
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-5630/bugzilla-3.2.10-5.el5
238
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-11893/libguestfs-1.20.12-1.el5
118
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0581/augeas-1.2.0-1.el5
14
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1544/python26-mod_wsgi-3.5-1.el5,mod_wsgi-3.5-1.el5
9
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1575/chkrootkit-0.49-9.el5
2
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1626/puppet-2.7.26-1.el5
0
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1651/python-jinja2-2.2.1-2.el5
0
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1646/python26-jinja2-2.5.5-5.el5
The following builds have been pushed to Fedora EPEL 5 updates-testing
python-jinja2-2.2.1-2.el5
python26-jinja2-2.5.5-5.el5
Details about builds:
================================================================================
python-jinja2-2.2.1-2.el5 (FEDORA-EPEL-2014-1651)
General purpose template engine
--------------------------------------------------------------------------------
Update Information:
Add patch to fix CVE-2014-1402.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Jun 13 2014 Thomas Moschny <[email protected]> - 2.2.1-2
- Fix CVE-2014-1402 (using patch from RHSA-2014:0747).
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1051421 - CVE-2014-1402 python-jinja2: FileSystemBytecodeCache
insecure cache temporary file use
https://bugzilla.redhat.com/show_bug.cgi?id=1051421
--------------------------------------------------------------------------------
================================================================================
python26-jinja2-2.5.5-5.el5 (FEDORA-EPEL-2014-1646)
General purpose template engine
--------------------------------------------------------------------------------
Update Information:
Add patch to fix CVE-2014-1402.
--------------------------------------------------------------------------------
ChangeLog:
* Sat Jun 14 2014 Thomas Moschny <[email protected]> - 2.5.5-5
- Fix CVE-2014-1402 (using patch from RHSA-2014:0747).
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1051421 - CVE-2014-1402 python-jinja2: FileSystemBytecodeCache
insecure cache temporary file use
https://bugzilla.redhat.com/show_bug.cgi?id=1051421
--------------------------------------------------------------------------------
_______________________________________________
epel-devel mailing list
[email protected]
https://admin.fedoraproject.org/mailman/listinfo/epel-devel