The following Fedora EPEL 8 Security updates need testing:
Age URL
6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2022-08012668ea
libbsd-0.11.7-2.el8
5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2022-40b38de6f9
xfce4-settings-4.16.5-2.el8
The following builds have been pushed to Fedora EPEL 8 updates-testing
anope-2.0.12-1.el8
xrdp-0.9.21-1.el8
Details about builds:
================================================================================
anope-2.0.12-1.el8 (FEDORA-EPEL-2022-5cd04ddcf8)
IRC services designed for flexibility and ease of use
--------------------------------------------------------------------------------
Update Information:
# Anope 2.0.12 * Added the `regex_pcre2` module which provides `regex/pcre`
with PCRE2 * Documented the `cs_no_expire` channel default * Fixed config
validation mistakenly allowing spaces in some fields * Fixed the bahamut
protocol module not knowing about halfops * Fixed writing a flatfile database
not being atomic * Updated the hybrid protocol module for recent protocol
changes
--------------------------------------------------------------------------------
ChangeLog:
* Sat Dec 10 2022 Robert Scheck <[email protected]> 2.0.12-1
- Upgrade to 2.0.12 (#2152287)
- Switch from deprecated pcre to pcre2 (#2128270)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2128270 - Please port your pcre dependency to pcre2. Pcre has been
deprecated
https://bugzilla.redhat.com/show_bug.cgi?id=2128270
[ 2 ] Bug #2152287 - anope-2.0.12 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2152287
--------------------------------------------------------------------------------
================================================================================
xrdp-0.9.21-1.el8 (FEDORA-EPEL-2022-aaf428feb8)
Open source remote desktop protocol (RDP) server
--------------------------------------------------------------------------------
Update Information:
Release notes for xrdp v0.9.21 (2022/12/10) General announcements - Running
xrdp and xrdp-sesman on separate hosts is still supported by this release, but
is now deprecated. This is not secure. A future v1.0 release will replace the
TCP socket used between these processes with a Unix Domain Socket, and then
cross-host running will not be possible. Security fixes This update is
recommended for all xrdp users and provides following important security fixes:
- CVE-2022-23468 - CVE-2022-23477 - CVE-2022-23478 - CVE-2022-23479 -
CVE-2022-23480 - CVE-2022-23481 - CVE-2022-23483 - CVE-2022-23482 -
CVE-2022-23484 - CVE-2022-23493 These security issues are reported by Team BT5
(BoB 11th). We appreciate their great help with making and reviewing patches.
New features - openSuSE Tumbleweed move to /usr/lib/pam.d is now supported in
the installation scripts (#2413) - VNC backend session now supports extra mouse
buttons 6, 7 and 8 (#2426) Bug fixes - Passwords are no longer left on the
heap in sesman (#1599 #2439) - Set permissions on pcsc socket dir to owner only
(#2454 #2460) Internal changes - CI updates to cope with github upgrades
(#2395) Changes for packagers or developers Nothing this time. Known issues
- On-the-fly resolution change requires the Microsoft Store version of Remote
Desktop client but sometimes crashes on connect (#1869) - xrdp's login dialog is
not relocated at the center of the new resolution after on-the-fly resolution
change happens (#1867)
--------------------------------------------------------------------------------
ChangeLog:
* Sun Dec 11 2022 Bojan Smojver <[email protected]> - 1:0.9.21-1
- Bump up to 0.9.21
--------------------------------------------------------------------------------
_______________________________________________
epel-devel mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct:
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives:
https://lists.fedoraproject.org/archives/list/[email protected]
Do not reply to spam, report it:
https://pagure.io/fedora-infrastructure/new_issue