The following Fedora EPEL 7 Security updates need testing:
Age URL
54
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3621/php-Smarty-3.1.21-1.el7
38
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3989/cross-binutils-2.23.88.0.1-2.el7.1
10
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-4536/firebird-2.5.3.26778.0-2.el7
2
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-4765/unrtf-0.21.7-1.el7
2
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-4757/mingw-jasper-1.900.1-25.el7
2
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-4759/rabbitmq-server-3.3.5-4.el7
1
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-4800/libssh-0.6.4-1.el7
0
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-4830/roundcubemail-1.0.4-2.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
cminpack-1.3.1-1.el7
eigen3-3.2.3-1.el7
metslib-0.5.3-4.el7
openni-1.5.7.10-1.el7
owncloud-7.0.4-2.el7
pcl-1.7.2-1.el7
php-google-apiclient-1.0.6-0.3.beta.el7
phpMyAdmin-4.3.3-1.el7
python-tilestache-1.49.11-3.el7
roundcubemail-1.0.4-2.el7
waf-1.8.5-1.el7
Details about builds:
================================================================================
cminpack-1.3.1-1.el7 (FEDORA-EPEL-2014-4828)
Solver for nonlinear equations and nonlinear least squares problems
--------------------------------------------------------------------------------
Update Information:
Adding PCL, openni, metslib, and cminpack builds to epel 7. This update also
contains an update of eigen3 to the latest upstream version.
--------------------------------------------------------------------------------
================================================================================
eigen3-3.2.3-1.el7 (FEDORA-EPEL-2014-4828)
A lightweight C++ template library for vector and matrix math
--------------------------------------------------------------------------------
Update Information:
Adding PCL, openni, metslib, and cminpack builds to epel 7. This update also
contains an update of eigen3 to the latest upstream version.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 18 2014 Sandro Mani <[email protected]> - 3.2.3-1
- Update to release 3.2.3
- Drop upstreamed eigen3-ppc64.patch
--------------------------------------------------------------------------------
================================================================================
metslib-0.5.3-4.el7 (FEDORA-EPEL-2014-4828)
Metaheuristic modeling framework and optimization toolkit in modern C++
--------------------------------------------------------------------------------
Update Information:
Adding PCL, openni, metslib, and cminpack builds to epel 7. This update also
contains an update of eigen3 to the latest upstream version.
--------------------------------------------------------------------------------
================================================================================
openni-1.5.7.10-1.el7 (FEDORA-EPEL-2014-4828)
Library for human-machine Natural Interaction
--------------------------------------------------------------------------------
Update Information:
Adding PCL, openni, metslib, and cminpack builds to epel 7. This update also
contains an update of eigen3 to the latest upstream version.
--------------------------------------------------------------------------------
================================================================================
owncloud-7.0.4-2.el7 (FEDORA-EPEL-2014-4832)
Private file sync and share server
--------------------------------------------------------------------------------
Update Information:
This update backports ownCloud support for v1.x of the Google API PHP library
(plus some associated bug fixes) from upstream (it will be a part of the 8.x
upstream release series), and drops ownCloud's bundled copy of the 0.6 version
of the library. The update to the library package itself is a minor one which
simply provides a new dependency according to the packaging
guidelines.\r\n\r\nThe 0.6 version of the library is deprecated and has been
for some time, and bundling is to be avoided when possible. There are many bug
fixes in v1.x of the library compared to 0.6, and combined with the bug fixes
to ownCloud's integration code, this update should substantially improve the
experience of using Google Drive as an external storage provider with the
Fedora ownCloud packages.
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 20 2014 Adam Williamson <[email protected]> - 7.0.4-2
- backport upstream support for google PHP lib 1.x and unbundle it
* Tue Dec 9 2014 Adam Williamson <[email protected]> - 7.0.4-1
- new release 7.0.4
--------------------------------------------------------------------------------
================================================================================
pcl-1.7.2-1.el7 (FEDORA-EPEL-2014-4828)
Library for point cloud processing
--------------------------------------------------------------------------------
Update Information:
Adding PCL, openni, metslib, and cminpack builds to epel 7. This update also
contains an update of eigen3 to the latest upstream version.
--------------------------------------------------------------------------------
================================================================================
php-google-apiclient-1.0.6-0.3.beta.el7 (FEDORA-EPEL-2014-4832)
Client library for Google APIs
--------------------------------------------------------------------------------
Update Information:
This update backports ownCloud support for v1.x of the Google API PHP library
(plus some associated bug fixes) from upstream (it will be a part of the 8.x
upstream release series), and drops ownCloud's bundled copy of the 0.6 version
of the library. The update to the library package itself is a minor one which
simply provides a new dependency according to the packaging
guidelines.\r\n\r\nThe 0.6 version of the library is deprecated and has been
for some time, and bundling is to be avoided when possible. There are many bug
fixes in v1.x of the library compared to 0.6, and combined with the bug fixes
to ownCloud's integration code, this update should substantially improve the
experience of using Google Drive as an external storage provider with the
Fedora ownCloud packages.
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 20 2014 Adam Williamson <[email protected]> - 1.0.6-0.3.beta
- use new ASL 2.0 directory
- add Packagist/Composer provide
* Fri Nov 7 2014 Adam Williamson <[email protected]> - 1.0.6-0.2.beta
- apply CA trust store path substitution to Curl as well as Stream
* Fri Nov 7 2014 Adam Williamson <[email protected]> - 1.0.6-0.1.beta
- new upstream release 1.0.6-beta
* Sat Jun 7 2014 Fedora Release Engineering <[email protected]>
- 1.0.3-0.3.beta
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
phpMyAdmin-4.3.3-1.el7 (FEDORA-EPEL-2014-4831)
Handle the administration of MySQL over the World Wide Web
--------------------------------------------------------------------------------
Update Information:
phpMyAdmin 4.3.3.0 (2014-12-21)\r\n===============================\r\n\r\n -
The "Recently used tables" setting should be with Nav panel\r\n - Can't
disable Favorites\r\n - Version Check Broken\r\n - AJAX request infinite
loop\r\n - Attributes field size smaller than others\r\n - Cannot remove
table ordering on a Mac\r\n - Fix initial replication configuration\r\n -
Undefined index central_columnswork\r\n - Don't have default
blowfish_secret\r\n - Some error popups fade away too quickly\r\n -
Consistency in borders\r\n - $cfg['Error_Handler']['display'] no longer
necessary\r\n - Leading and trailing whitespace in column name
--------------------------------------------------------------------------------
ChangeLog:
* Sun Dec 21 2014 Robert Scheck <[email protected]> 4.3.3-1
- Upgrade to 4.3.3
--------------------------------------------------------------------------------
================================================================================
python-tilestache-1.49.11-3.el7 (FEDORA-EPEL-2014-4833)
A stylish alternative for caching your map tiles
--------------------------------------------------------------------------------
Update Information:
New package python-tilestache
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1147356 - Review Request: python-tilestache - A stylish
alternative for caching your map tiles
https://bugzilla.redhat.com/show_bug.cgi?id=1147356
--------------------------------------------------------------------------------
================================================================================
roundcubemail-1.0.4-2.el7 (FEDORA-EPEL-2014-4830)
Round Cube Webmail is a browser-based multilingual IMAP client
--------------------------------------------------------------------------------
Update Information:
This update provides Roundcube 1.0.4. This is a stable security update: the
security fix is described by upstream as "Fix possible CSRF attacks to some
address book operations as well as to the ACL and Managesieve plugins." More
details on the update are available at
http://roundcube.net/news/2014/12/18/update-1.0.4-released/ . The update should
apply without any special handling by the system administrator.
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 20 2014 Adam Williamson <[email protected]> - 1.0.4-2
- drop tinymce bbcode plugin for safety (CVE-2012-4230)
* Sat Dec 20 2014 Adam Williamson <[email protected]> - 1.0.4-1
- new release 1.0.4 (security update)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1091438 - CVE-2012-4230 tinymce: XSS attacks via security policy
bypass
https://bugzilla.redhat.com/show_bug.cgi?id=1091438
--------------------------------------------------------------------------------
================================================================================
waf-1.8.5-1.el7 (FEDORA-EPEL-2014-4834)
A Python-based build system
--------------------------------------------------------------------------------
Update Information:
Update to the latest stable version.\r\n\r\nChanges in waf 1.8.5:\r\n\r\n*
Enhanced Sun compiler detection #1510\r\n* Fixed a regression in Emacs shell
support #1511\r\n* Fixed a regression in cross-directory builds (Linux only)
#1512\r\n* Executable wscript files #1517\r\n* Generic script signing utility
#1520\r\n
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 18 2014 Thomas Moschny <[email protected]> - 1.8.5-1
- Update to 1.8.5.
--------------------------------------------------------------------------------
_______________________________________________
epel-devel mailing list
[email protected]
https://admin.fedoraproject.org/mailman/listinfo/epel-devel