The following Fedora EPEL 5 Security updates need testing:
Age URL
1062
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-5630/bugzilla-3.2.10-5.el5
516
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-11893/libguestfs-1.20.12-1.el5
281
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1626/puppet-2.7.26-1.el5
135
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3784/mantis-1.2.17-3.el5
130
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3849/sblim-sfcb-1.3.8-2.el5
39
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-0695/drupal7-path_breadcrumbs-3.2-1.el5
20
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-1001/drupal7-entity-1.6-1.el5
11
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-1098/librsync-1.0.0-1.el5,duplicity-0.6.21-2.el5,rdiff-backup-1.0.5-3.el5
11
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-1121/dokuwiki-0-0.24.20140929c.el5
11
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-1044/putty-0.63-4.el5
11
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-1029/phpMyAdmin4-4.0.10.9-1.el5
0
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-1326/drupal7-ctools-1.7-1.el5
The following builds have been pushed to Fedora EPEL 5 updates-testing
drupal7-ctools-1.7-1.el5
mksh-50e-1.el5
Details about builds:
================================================================================
drupal7-ctools-1.7-1.el5 (FEDORA-EPEL-2015-1326)
Primarily a set of APIs and tools to improve the developer experience
--------------------------------------------------------------------------------
Update Information:
Update to upstream 1.7 release for security fixes
## 7.x-1.6
* Issue #2415709 by maximpodorov: Use drupal_static_fast pattern in
ctools_get_plugins()
* Issue #813754 by mrjmd, japerry, DamienMcKenna, Michelle, anon, hiphip:
Ability to set variant machine name in Panels UI
* Issue #1596720 by joel_osc: Undefined property: stdClass::$nid in
ctools_node_created_content_type_render()
* Issue #2288741 by dobe, mrjmd, japerry: Title Headings
* Issue #2410815 by DamienMcKenna, mrjmd: Access plugin for node comments
* Issue #1928054 by mrjmd, yannickoo, Dave Reid, magicmyth: Field formatter
settings with CTools content_type entity_field plugin
* Issue #2400915 by DamienMcKenna, japerry: Hardcode the last released CTools
version in the info file
* Issue #1909408 by gmclelland, mrjmd: ctools_modal_form_wrapper returns form
array instead of ajax_commands array
* Issue #2307025 by chemical, mrjmd: jQuery object always represent value true
whether object is empty or not
* Issue #1760384 by DamienMcKenna, meba: Update node_view.inc to execute the
normal Drupal hooks
* Issue #1907242 by mrjmd, logaritmisk: Strict check if
ctools_context_handler_render is returning FALSE
* Issue #2328787 by Elijah Lynn, mrjmd: In ctools_block_content_type_render()
if (empty($block)) is never true
* Issue #1844086 by mrjmd, InternetDevels: display content type when adding
existing node
* Issue #2062603 by dixon_, Michelle: Provide user links content type plugin
* Issue #2396171 by plopesc: Pass Plugin info array to hook_plugin()
implementations
* Issue #2058501 by dixon_: Provide comment links content type plugin
* Issue #2247071 by ohthehugemanatee, DamienMcKenna: Add option for Page Site
Name pane to link to the homepage
* Issue #1652060 by mrfelton, andrewmacpherson: 'Disable Drupal blocks/regions'
setting doesn't work when blocks are placed into regions with systems other
than core blocks
* Issue #2231535 by izus: Show which module provides a page
* Issue #2399033 by niko-, japerry: In string length access plugin "Equal to"
option not work
* Issue #2381681 by maximpodorov: Incorrect unbinding in dependent.js
* Issue #2336985 by Dave Reid: ctools_entity_field_content_type_render()
unnecessarily alters field deltas
* Issue #1686868 by gantenx, iSylence: Keyword subtitution in exposed filter
form
* Issue #870938 by DamienMcKenna, lokapujya: Add new permission for controlling
imports
* Issue #2228083 by AndrewsizZ: Delete not needed element from array in
existing node plugin
* Issue #2397709 by maximpodorov, kristiaanvandeneynde: Set #tree property in
the proper place
* Issue #2380253 by japerry, pc-wurm: Remove deprecated
views_content_views_content_type_content_type() function
* Issue #1300562 by DamienMcKenna, smk-ka, zilverdistel: More control over
wizard trail theming
* Issue #2155443 by das-peter: Enhancement of content type "List of related
terms" (term_list)
* Issue #2063977 by maximpodorov: Broken form data generated by
_ctools_context_selector()
* Issue #2186167 by maximpodorov: Undefined index notices in context-admin.inc
* Issue #1901946 by bangpound: ctools_export_ui_list_form argument should be
passed by reference
* Issue #2207881 by tim.plunkett: Allow menu items with %ctools_js to work with
drupal_valid_path()
* Issue #1163168 by kobee: Custom string context substitution
* Issue #1058786 by vgoodvin, Stevel, rooby: Caveat About Plugin Name Length
and Export UI
* Issue #2059039 by B-Prod: Fallback behavior for user edit page omits the
category parameter
* Issue #1820882 by DamienMcKenna: Make node revisions use the node_view display
* Issue #2273025 by alextdk: Fatal error in user context settings form
* Issue #1771088 by jenlampton, IshaDakota: Provide equivalent content pane for
comment-wrapper.tpl.php content
* Issue #1532054 by dubois: Term from View Relationship problems
* Issue #2152405 by das-peter:
ctools_fields_get_field_formatter_settings_form() not fully compatible to
field_ui
* Issue #2168849 by jhedstrom: Add a selection rule based on whether a node is
in a book or not
* Issue #2070217 by DYdave: Pass Entity Field Panes display settings to field
formatters: offset, limit and reversed
* Minor whitespace JS cleanup related to #805704
* Issue #1823834 by prinds, jerrylow, joelpittet: Modal windows disable
keyboard shortcuts in firefox and chrome
* Issue #1313368 by pfrenssen: remove $GLOBALS['lock'] usage in
ctools_flush_caches()
* Issue #2296553 by DamienMcKenna: Pane plugin for displaying the taxonomy
term's name
* Issue #2222543 by tom friedhof: hook_block_view_MODULE_DELTA_alter not called
when placing blocks in panels
* Issue #954942 by Jorrit, MegaChriz, merlinofchaos: Fatal error: Call to
undefined method stdClass::is_type() in includes/context.inc on line 147
* Issue #2374831 by korgik: set weight of Parent item if Panel menu item is
default tab
* Issue #1948278 by MiSc, maximpodorov, gmclelland: Get an edit link for the
view panes in Page Manger
* Issue #1669756 by dawehner, gmclelland, tim.plunkett: Provide a contextual
link for view panes
* Issue #1630820 by maximpodorov, andypost, Dave Reid, japerry, mikeytown2:
entity_field_value is completely broken
* Issue #2319515 by mrjmd, Silicon.Valet: Entity id context placeholder form
(for use with panels preview)
* Issue #742832 by pounard, c960657, das-peter: ctools_plugin_load_includes()
can set cache on every request
* Issue #2012188 by joelpittet, hefox, mpotter: IPE tries getting title for
removed entity fields content, resulting in PHP warning
* Issue #2312505 by dsnopek: Views panes using invalid Views display option
"more_link" (is actually called "use_more")
* Issue #1565782 by djdevin, adam-delaney: Exclude fields for Allowed Settings
Fields Override
* Issue #2055785 by roberttstephens, mpotter, dsnopek: Modal window top and
left style values are incorrect after resizing
* Issue #1978378 by Samvel, dsnopek: Page title check plained twice
--------------------------------------------------------------------------------
ChangeLog:
* Thu Mar 19 2015 Jared Smith <[email protected]> - 1.7-1
- Update to upstream 1.7 release for security fixes
- SA-CONTRIB-2015-079 details at https://www.drupal.org/node/2454909
- Full upstream changelog at https://www.drupal.org/node/2454883
* Sat Feb 7 2015 Shawn Iwinski <[email protected]> - 1.6-1
- Updated to 1.6 (BZ #1187880)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1203480 - drupal7-ctools-1.7 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1203480
[ 2 ] Bug #1187880 - drupal7-ctools-1.6 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1187880
--------------------------------------------------------------------------------
================================================================================
mksh-50e-1.el5 (FEDORA-EPEL-2015-1336)
MirBSD enhanced version of the Korn Shell
--------------------------------------------------------------------------------
Update Information:
R50e is a required bugfix release:
* Add more tests detailing behaviour difference from GNU bash
* Introduce a memory leak for x=<< fixing use of freed memory instead, bug
tracked as LP#1380389 still live
* Add x+=<< parallel to x=<<
* POSIX “command” loses builtin special-ness
* Fix LP#1381965 and LP#1381993 (more field splitting)
* Update location of FreeBSD testsuite for test(1)
* Remove dead NULL elements from Emacs keybindings
* Change several testcases for $*/$@ expansion with/without quotes to
expected-fail, with even more to come ☹
* Fix miscalculating required memory for encoding the double-quoted parts of
a here document or here string delimiter, leading to a buffer overflow;
discovered by zacts from IRC
* Rename a function conflicting with a MacRelix system header
* Use size_t (and ssize_t) consistently, stop using ptrdiff_t; fixes some
arithmetics and S/390 bugs
* Remove old workarounds for Clang 3.2 scan-build
* Remove all Clang/Coverity assertions, making room for new checks
* Fix NSIG generation on Debian sid gcc-snapshot
* Make a testcase not fail in a corner case
* Fix issues detected by GCC’s new sanitisers: data type of a value to be
shifted constantly must be unsigned (what not, in C…); shebang check array
accesses are always unsigned char
* Be even more explicit wrt. POSIX in the manpage
* Fix shebang / file magic decoding
* More int → bool conversion
* Let Build.sh be run by GNU bash 1.12.1 (Slackware 1.01)
* Fix here string parsing issue
* Point out more future changes in the manpage
* Call setgid(2), setegid(2), setuid(2) before seteuid(2)
* Fix spurious empty line after ENOENT “whence -v”, found by Ypnose
* Optimise dot.mkshrc and modernise it a bit
* Use MAXPATHLEN from <sys/param.h> for PATH_MAX fallback
* Some code cleanup and warnings fixes
* Add options -a argv0 and -c to exec
* Prevent use-after-free when hitting multiple errors unwinding
* Fix use of $* and $@ in scalar context: within [[ … ]] and after case
(spotted by Stéphane Chazelas) and in here documents (spotted by tg@); fix here
document expansion
* Unbreak when $@ shares double quotes with others
* Fix set -x in PS4 expansion infinite loop
--------------------------------------------------------------------------------
ChangeLog:
* Thu Mar 19 2015 Robert Scheck <[email protected]> 50e-1
- Upgrade to 50e
- Apply https://fedoraproject.org/wiki/Features/UsrMove
--------------------------------------------------------------------------------
_______________________________________________
epel-devel mailing list
[email protected]
https://admin.fedoraproject.org/mailman/listinfo/epel-devel