The following Fedora EPEL 6 Security updates need testing:
Age URL
9 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-8905ccaea7 libidn2-2.3.0-1.el6
The following builds have been pushed to Fedora EPEL 6 updates-testing
hitch-1.5.0-4.el6
php-theseer-autoload-1.25.8-1.el6
tnef-1.4.18-1.el6
Details about builds:
================================================================================
hitch-1.5.0-4.el6 (FEDORA-EPEL-2019-d72e8adb23)
Network proxy that terminates TLS/SSL connections
--------------------------------------------------------------------------------
Update Information:
* Added a systemd limit.conf with defaults LimitCORE=infinity, LimitNOFILE=10240
* Hitch now supports a directory of certificate pem files; added pem-dir =
"/etc/pki/tls/private" to the example config. * Changed systemd Type=forking
matching the example config * This version is also packed for epel8
--------------------------------------------------------------------------------
ChangeLog:
* Tue Nov 12 2019 Ingvar Hagelund <ingvar(a)redpill-linpro.com> - 1.5.0-4
- Added support for epel8
- Added a systemd limit.conf with defaults LimitCORE=infinity, LimitNOFILE=10240
- Added pem-dir = "/etc/pki/tls/private" to the example config
- Changed systemd Type=forking matching the example config, fixes bz #1731420
- Simplified handling of the _docdir macro
* Thu Jul 25 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.5.0-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
* Fri Feb 1 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.5.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1731420 - Hitch service file not configured to detect error during initialization (Type=simple)
https://bugzilla.redhat.com/show_bug.cgi?id=1731420
--------------------------------------------------------------------------------
================================================================================
php-theseer-autoload-1.25.8-1.el6 (FEDORA-EPEL-2019-3b231130df)
A tool and library to generate autoload code
--------------------------------------------------------------------------------
Update Information:
**Release 1.25.8** * Fix Regression
[#92](https://github.com/theseer/Autoload/issues/92): PHPAB 1.25.7 generates
broken PHAR for PHPUnit ---- **Release 1.25.7** * Fix: Static require or
compile lists now properly process pathes relative to and above the base
directory
--------------------------------------------------------------------------------
ChangeLog:
* Mon Nov 25 2019 Remi Collet <remi(a)remirepo.net> - 1.25.8-1
- update to 1.25.8
* Fri Nov 15 2019 Remi Collet <remi(a)remirepo.net> - 1.25.7-1
- update to 1.25.7
--------------------------------------------------------------------------------
================================================================================
tnef-1.4.18-1.el6 (FEDORA-EPEL-2019-070e713b93)
Extract files from email attachments like WINMAIL.DAT
--------------------------------------------------------------------------------
Update Information:
tnef release 1.4.18. Security release to resolve
[CVE-2019-18849](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-188…
in which it may be possible to attack via a crafted email message extracted via
tnef.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Nov 26 2019 David Timms <iinet.net.au@dtimms> - 1.4.18-1
- Update to release 1.4.18. Fixes CVE-2019-18849 - bug #1771891
- Add global builddolphin to enable -dolphin subpackage when available.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1771892 - CVE-2019-18849 tnef: security bypass in .ssh/authorized_keys file via an e-mail message [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1771892
[ 2 ] Bug #1771893 - CVE-2019-18849 tnef: security bypass in .ssh/authorized_keys file via an e-mail message [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1771893
--------------------------------------------------------------------------------
Dear all,
You are kindly invited to the meeting:
EPEL Steering Co on 2019-11-27 from 18:00:00 to 19:00:00 GMT
At freenode@fedora-meeting
The meeting will be about:
This is the weekly EPEL Steering Committee Meeting. A general agenda is the following:
#meetingname EPEL
#topic Intros
#topic Old Business
#topic EPEL-6
#topic EPEL-7
#topic EPEL-8
#topic Openfloor
#endmeeting
Source: https://apps.fedoraproject.org/calendar/meeting/9364/
The following Fedora EPEL 8 Security updates need testing:
Age URL
9 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-1563c1eaf3 chromium-78.0.3904.97-1.el8
8 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-d9bc350179 mingw-libidn2-2.3.0-1.el8
1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-288e46f2d9 jhead-3.04-1.el8
The following builds have been pushed to Fedora EPEL 8 updates-testing
clamav-0.101.5-1.el8
pspg-2.6.0-1.el8
Details about builds:
================================================================================
clamav-0.101.5-1.el8 (FEDORA-EPEL-2019-52445f11c2)
End-user tools for the Clam Antivirus scanner
--------------------------------------------------------------------------------
Update Information:
- Drop clamd(a)scan.service file (bz#1725810) ClamAV 0.101.5 is a security patch
release that addresses the following issues. - CVE-2019-15961:
A Denial-of-Service (DoS) vulnerability may occur when scanning a specially
crafted email file as a result of excessively long scan times. The issue is
resolved by implementing several maximums in parsing MIME messages and by
optimizing use of memory allocation. - Added the zip scanning improvements
found in v0.102.0 where it scans files using zip records from a sorted catalogue
which provides deduplication of file records resulting in faster extraction and
scan time and reducing the likelihood of alerting on non-malicious duplicate
file entries as overlapping files. - Signature load time is significantly
reduced by changing to a more efficient algorithm for loading signature patterns
and allocating the AC trie. Patch courtesy of Alberto Wu. - Introduced a new
configure option to statically link libjson-c with libclamav. Static linking
with libjson is highly recommended to prevent crashes in applications that use
libclamav alongside another JSON parsing library. - Null-dereference fix in
email parser when using the --gen-json metadata option. ---- Add
TimeoutStartSec=420 to clamd@.service to match upstream
--------------------------------------------------------------------------------
ChangeLog:
* Sat Nov 23 2019 Orion Poplawski <orion(a)nwra.com> - 0.101.5-1
- Update to 0.101.5 (CVE-2019-15961) (bz#1775550)
* Mon Nov 18 2019 Orion Poplawski <orion(a)nwra.com> - 0.101.4-3
- Drop clamd(a)scan.service file (bz#1725810)
- Change /var/run to /run
* Mon Nov 18 2019 Orion Poplawski <orion(a)nwra.com> - 0.101.4-2
- Add TimeoutStartSec=420 to clamd@.service to match upstream (bz#1764835)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1631525 - clamav: clamscan --get-json does not output JSON
https://bugzilla.redhat.com/show_bug.cgi?id=1631525
[ 2 ] Bug #1775550 - Request to build clamav 0.101.5 for EPEL 7
https://bugzilla.redhat.com/show_bug.cgi?id=1775550
[ 3 ] Bug #1725810 - /usr/lib/systemd/system/clamd@scan.service:1: .include directives are deprecated
https://bugzilla.redhat.com/show_bug.cgi?id=1725810
[ 4 ] Bug #1764835 - clamd at 100% CPU and SystemD keeps restarting clamd
https://bugzilla.redhat.com/show_bug.cgi?id=1764835
--------------------------------------------------------------------------------
================================================================================
pspg-2.6.0-1.el8 (FEDORA-EPEL-2019-72ef432359)
A unix pager optimized for psql
--------------------------------------------------------------------------------
Update Information:
new upstream release, per release notes:
https://github.com/okbob/pspg/releases/tag/2.6.0 ---- new upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Sun Nov 24 2019 Pavel Raiskup <praiskup(a)redhat.com> - 2.6.0-1
- new upstream release, per release notes:
https://github.com/okbob/pspg/releases/tag/2.6.0
* Tue Nov 19 2019 Pavel Raiskup <praiskup(a)redhat.com> - 2.5.5-1
- new upstream release, per release notes:
https://github.com/okbob/pspg/releases/tag/2.5.3https://github.com/okbob/pspg/releases/tag/2.5.4https://github.com/okbob/pspg/releases/tag/2.5.5
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1775977 - pspg-2.6.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1775977
[ 2 ] Bug #1768349 - pspg-2.5.5 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1768349
--------------------------------------------------------------------------------
The following Fedora EPEL 7 Security updates need testing:
Age URL
467 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-3c9292b62d condor-8.6.11-1.el7
209 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-c499781e80 python-gnupg-0.4.4-1.el7
206 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-bc0182548b bubblewrap-0.3.3-2.el7
11 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-5fecd4c331 libmodbus-3.0.8-1.el7
9 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-d8f3c6a443 chromium-78.0.3904.97-1.el7
9 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-58be818bb4 thunderbird-enigmail-2.1.3-1.el7
7 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-8a7207a341 libidn2-2.3.0-1.el7
7 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-aff200699c mingw-libidn2-2.3.0-1.el7
6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-b1761c2898 imapfilter-2.6.15-1.el7
1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-1a5ac407f8 jhead-3.04-1.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
clamav-0.101.5-1.el7
gammu-1.41.0-1.el7
opentrep-0.07.4-1.el7
pspg-2.6.0-1.el7
Details about builds:
================================================================================
clamav-0.101.5-1.el7 (FEDORA-EPEL-2019-d6b0a398c2)
End-user tools for the Clam Antivirus scanner
--------------------------------------------------------------------------------
Update Information:
- Drop clamd(a)scan.service file (bz#1725810) ClamAV 0.101.5 is a security patch
release that addresses the following issues. - CVE-2019-15961:
A Denial-of-Service (DoS) vulnerability may occur when scanning a specially
crafted email file as a result of excessively long scan times. The issue is
resolved by implementing several maximums in parsing MIME messages and by
optimizing use of memory allocation. - Added the zip scanning improvements
found in v0.102.0 where it scans files using zip records from a sorted catalogue
which provides deduplication of file records resulting in faster extraction and
scan time and reducing the likelihood of alerting on non-malicious duplicate
file entries as overlapping files. - Signature load time is significantly
reduced by changing to a more efficient algorithm for loading signature patterns
and allocating the AC trie. Patch courtesy of Alberto Wu. - Introduced a new
configure option to statically link libjson-c with libclamav. Static linking
with libjson is highly recommended to prevent crashes in applications that use
libclamav alongside another JSON parsing library. - Null-dereference fix in
email parser when using the --gen-json metadata option. ---- Add
TimeoutStartSec=420 to clamd@.service to match upstream
--------------------------------------------------------------------------------
ChangeLog:
* Sat Nov 23 2019 Orion Poplawski <orion(a)nwra.com> - 0.101.5-1
- Update to 0.101.5 (CVE-2019-15961) (bz#1775550)
* Mon Nov 18 2019 Orion Poplawski <orion(a)nwra.com> - 0.101.4-3
- Drop clamd(a)scan.service file (bz#1725810)
- Change /var/run to /run
* Mon Nov 18 2019 Orion Poplawski <orion(a)nwra.com> - 0.101.4-2
- Add TimeoutStartSec=420 to clamd@.service to match upstream (bz#1764835)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1631525 - clamav: clamscan --get-json does not output JSON
https://bugzilla.redhat.com/show_bug.cgi?id=1631525
[ 2 ] Bug #1775550 - Request to build clamav 0.101.5 for EPEL 7
https://bugzilla.redhat.com/show_bug.cgi?id=1775550
[ 3 ] Bug #1725810 - /usr/lib/systemd/system/clamd@scan.service:1: .include directives are deprecated
https://bugzilla.redhat.com/show_bug.cgi?id=1725810
[ 4 ] Bug #1764835 - clamd at 100% CPU and SystemD keeps restarting clamd
https://bugzilla.redhat.com/show_bug.cgi?id=1764835
--------------------------------------------------------------------------------
================================================================================
gammu-1.41.0-1.el7 (FEDORA-EPEL-2019-5c1d075f96)
Command Line utility to work with mobile phones
--------------------------------------------------------------------------------
Update Information:
New upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Fri Sep 27 2019 Fedora Release Monitoring <release-monitoring(a)fedoraproject.org> - 1.41.0-1
- Update to 1.41.0 (#1756318)
* Thu Jul 25 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.40.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
* Fri Jun 14 2019 S��rgio Basto <sergio(a)serjux.com> - 1.40.0-1
- Update to 1.40.0 (#1670142)
* Thu Jan 31 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.39.0-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.39.0-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Thu Jun 21 2018 S��rgio Basto <sergio(a)serjux.com> - 1.39.0-3
- Remove old udev rule nokiadku2 because use the unknown group pludev (#1592452)
* Wed Feb 7 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.39.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1756318 - gammu-1.41.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1756318
--------------------------------------------------------------------------------
================================================================================
opentrep-0.07.4-1.el7 (FEDORA-EPEL-2019-8252c50d83)
C++ library providing a clean API for parsing travel-focused requests
--------------------------------------------------------------------------------
Update Information:
Upgrade to upstream 0.07.4
--------------------------------------------------------------------------------
ChangeLog:
* Sun Nov 24 2019 Denis Arnaud <denis.arnaud_fedora(a)m4x.org> - 0.07.4-1
- Upstream update to 0.07.4
--------------------------------------------------------------------------------
================================================================================
pspg-2.6.0-1.el7 (FEDORA-EPEL-2019-1b5eb60c44)
A unix pager optimized for psql
--------------------------------------------------------------------------------
Update Information:
new upstream release, per release notes:
https://github.com/okbob/pspg/releases/tag/2.6.0 ---- new upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Sun Nov 24 2019 Pavel Raiskup <praiskup(a)redhat.com> - 2.6.0-1
- new upstream release, per release notes:
https://github.com/okbob/pspg/releases/tag/2.6.0
* Tue Nov 19 2019 Pavel Raiskup <praiskup(a)redhat.com> - 2.5.5-1
- new upstream release, per release notes:
https://github.com/okbob/pspg/releases/tag/2.5.3https://github.com/okbob/pspg/releases/tag/2.5.4https://github.com/okbob/pspg/releases/tag/2.5.5
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1775977 - pspg-2.6.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1775977
[ 2 ] Bug #1768349 - pspg-2.5.5 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1768349
--------------------------------------------------------------------------------
The following Fedora EPEL 7 Security updates need testing:
Age URL
466 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-3c9292b62d condor-8.6.11-1.el7
207 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-c499781e80 python-gnupg-0.4.4-1.el7
205 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-bc0182548b bubblewrap-0.3.3-2.el7
12 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-136fa99185 limnoria-20191109-2.el7
10 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-5fecd4c331 libmodbus-3.0.8-1.el7
8 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-d8f3c6a443 chromium-78.0.3904.97-1.el7
8 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-58be818bb4 thunderbird-enigmail-2.1.3-1.el7
6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-8a7207a341 libidn2-2.3.0-1.el7
6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-aff200699c mingw-libidn2-2.3.0-1.el7
4 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-b1761c2898 imapfilter-2.6.15-1.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
fail2ban-0.10.4-1.el7
jhead-3.04-1.el7
radsecproxy-1.8.0-1.el7
Details about builds:
================================================================================
fail2ban-0.10.4-1.el7 (FEDORA-EPEL-2019-dac149ad76)
Daemon to ban hosts that cause multiple authentication errors
--------------------------------------------------------------------------------
Update Information:
Update to 0.10.4 --- Incompatibility list (compared to v.0.9): * Filter (or
`failregex`) internal capture-groups: - If you've your own `failregex` or
custom filters using conditional match `(?P=host)`, you should rewrite the regex
like in example below resp. using `(?:(?P=ip4)|(?P=ip6)` instead of `(?P=host)`
(or `(?:(?P=ip4)|(?P=ip6)|(?P=dns))` corresponding your `usedns` and `raw`
settings). Of course you can always define your own capture-group (like
below `_cond_ip_`) to do this. ``` testln="1500000000 failure from
192.0.2.1: bad host 192.0.2.1" fail2ban-regex "$testln" "^\s*failure from
(?P<_cond_ip_><HOST>): bad host (?P=_cond_ip_)$" ``` - New internal groups
(currently reserved for internal usage): `ip4`, `ip6`, `dns`, `fid`,
`fport`, additionally `user` and another captures in lower case if mapping from
tag `<F-*>` used in failregex (e. g. `user` by `<F-USER>`). * v.0.10 uses more
precise date template handling, that can be theoretically incompatible to some
user configurations resp. `datepattern`. * Since v0.10 fail2ban supports the
matching of IPv6 addresses, but not all ban actions are IPv6-capable now.
Also: - Define banaction_allports for firewalld, update banaction (bz#1775175)
- Update sendmail-reject with TLSMTA & MSA port IDs (bz#1722625) - Remove config
files for other distros (bz#1533113)
--------------------------------------------------------------------------------
ChangeLog:
* Sat Nov 23 2019 Orion Poplawski <orion(a)nwra.com> - 0.10.4-1
- Update to 0.10.4
- Define banaction_allports for firewalld, update banaction (bz#1775175)
- Update sendmail-reject with TLSMTA & MSA port IDs (bz#1722625)
- Remove config files for other distros (bz#1533113)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1725975 - ssh jail bans the same IP for all log messages
https://bugzilla.redhat.com/show_bug.cgi?id=1725975
[ 2 ] Bug #1733363 - The default ssd filter file /etc/fail2ban/filter.d/sshd.conf does not protect against brute force password guessing if using pam_sss for authentication.
https://bugzilla.redhat.com/show_bug.cgi?id=1733363
[ 3 ] Bug #1401360 - postfix-rbl.conf regex for "454 4.7.1" should be "554 5.7.1" for default postfix reject_rbl_client
https://bugzilla.redhat.com/show_bug.cgi?id=1401360
[ 4 ] Bug #1775175 - fail2ban-firewalld should define banaction_allports
https://bugzilla.redhat.com/show_bug.cgi?id=1775175
--------------------------------------------------------------------------------
================================================================================
jhead-3.04-1.el7 (FEDORA-EPEL-2019-1a5ac407f8)
Tool for displaying EXIF data embedded in JPEG images
--------------------------------------------------------------------------------
Update Information:
updated to 3.04 (CVE-2019-19035)
--------------------------------------------------------------------------------
ChangeLog:
* Fri Nov 22 2019 Adrian Reber <adrian(a)lisas.de> - 3.04-1
- updated to 3.04 (CVE-2019-19035)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1775098 - CVE-2019-19035 jhead: heap based over-read in ReadJpegSections and process_SOFn in jpgfile.c leads to denial of service
https://bugzilla.redhat.com/show_bug.cgi?id=1775098
--------------------------------------------------------------------------------
================================================================================
radsecproxy-1.8.0-1.el7 (FEDORA-EPEL-2019-34fead3896)
Generic RADIUS proxy with RadSec support
--------------------------------------------------------------------------------
Update Information:
radsecproxy is a generic RADIUS proxy that in addition to usual RADIUS UDP
transport, also supports TLS (RadSec), as well as RADIUS over TCP and DTLS. The
aim is for the proxy to have sufficient features to be flexible, while at the
same time to be small, efficient and easy to configure.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Sep 17 2019 Robert Scheck <robert(a)fedoraproject.org> 1.8.0-1
- Upgrade to 1.8.0 (#1753052)
- Initial spec file for Fedora and Red Hat Enterprise Linux
--------------------------------------------------------------------------------
The following Fedora EPEL 8 Security updates need testing:
Age URL
8 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-1563c1eaf3 chromium-78.0.3904.97-1.el8
6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-d9bc350179 mingw-libidn2-2.3.0-1.el8
The following builds have been pushed to Fedora EPEL 8 updates-testing
fail2ban-0.10.4-8.el8
jhead-3.04-1.el8
milter-regex-2.6-2.el8
python-cram-0.7-4.el8
radsecproxy-1.8.0-1.el8
wine-4.0.2-2.el8
Details about builds:
================================================================================
fail2ban-0.10.4-8.el8 (FEDORA-EPEL-2019-f54efa75cb)
Daemon to ban hosts that cause multiple authentication errors
--------------------------------------------------------------------------------
Update Information:
- Define banaction_allports for firewalld, update banaction (bz#1775175) -
Update sendmail-reject with TLSMTA & MSA port IDs (bz#1722625) - Remove config
files for other distros (bz#1533113)
--------------------------------------------------------------------------------
ChangeLog:
* Thu Nov 21 2019 Orion Poplawski <orion(a)nwra.com> - 0.10.4-8
- Define banaction_allports for firewalld, update banaction (bz#1775175)
- Update sendmail-reject with TLSMTA & MSA port IDs (bz#1722625)
* Thu Oct 31 2019 Orion Poplawski <orion(a)nwra.com> - 0.10.4-7
- Remove config files for other distros (bz#1533113)
* Thu Oct 3 2019 Miro Hron��ok <mhroncok(a)redhat.com> - 0.10.4-6
- Rebuilt for Python 3.8.0rc1 (#1748018)
--------------------------------------------------------------------------------
================================================================================
jhead-3.04-1.el8 (FEDORA-EPEL-2019-288e46f2d9)
Tool for displaying EXIF data embedded in JPEG images
--------------------------------------------------------------------------------
Update Information:
updated to 3.04 (CVE-2019-19035)
--------------------------------------------------------------------------------
ChangeLog:
* Fri Nov 22 2019 Adrian Reber <adrian(a)lisas.de> - 3.04-1
- updated to 3.04 (CVE-2019-19035)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1775098 - CVE-2019-19035 jhead: heap based over-read in ReadJpegSections and process_SOFn in jpgfile.c leads to denial of service
https://bugzilla.redhat.com/show_bug.cgi?id=1775098
--------------------------------------------------------------------------------
================================================================================
milter-regex-2.6-2.el8 (FEDORA-EPEL-2019-135dbd95e5)
Milter plug-in for regular expression filtering
--------------------------------------------------------------------------------
Update Information:
This is the first EPEL-8 build of milter-regex.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jul 25 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.6-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
* Mon Apr 29 2019 Paul Howarth <paul(a)city-fan.org> - 2.6-1
- Update to 2.6
- Treat socket file name without prefix like local file
- Make pid file writeable only by root
* Tue Apr 23 2019 Paul Howarth <paul(a)city-fan.org> - 2.5-1
- Update to 2.5
- Add -r option to write pid file, based on FreeBSD port patches
* Wed Apr 3 2019 Paul Howarth <paul(a)city-fan.org> - 2.4-1
- Update to 2.4
- Bug fix: for actions followed by multiple expressions (not just one
arbitrarily complex expression), when multiple expressions become defined
during the same sequence point, but with different values (e.g. one true,
another false), depending on the expression order, the action might not be
taken, when it should be
- Add -f option to set syslog facility
* Sun Mar 24 2019 Paul Howarth <paul(a)city-fan.org> - 2.2-3
- Fix ownership of /var/spool/milter-regex so that dac_override isn't needed
(#1678040)
* Fri Feb 1 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.2-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
* Fri Aug 24 2018 Paul Howarth <paul(a)city-fan.org> - 2.2-1
- Update to 2.2
- Add -U, -G, and -P options to set pipe user, group, and permissions
* Fri Aug 24 2018 Paul Howarth <paul(a)city-fan.org> - 2.1-1
- Update to 2.1
- Default maximum log level to 6 (LOG_INFO), i.e. exclude LOG_DEBUG
- Upstream switched from benezedrine.cx to bezendrine.ch
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.0-13
- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Thu Feb 8 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.0-12
- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
* Fri Jan 26 2018 Paul Howarth <paul(a)city-fan.org> - 2.0-11
- Drop dependencies on systemd-units and use %{?systemd_requires} instead
- Use forward-looking conditionals
- List build requirements one per line
- Don't use full paths for commands in scriptlets, to improve readability
- Drop legacy Group: tag
* Thu Aug 3 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.0-10
- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild
* Wed Jul 26 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.0-9
- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
* Fri Feb 10 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.0-8
- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild
* Fri Aug 5 2016 Paul Howarth <paul(a)city-fan.org> - 2.0-7
- sendmail-devel renamed to sendmail-milter-devel from Fedora 26
- Specify all build requirements
* Thu Feb 4 2016 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.0-6
- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild
* Wed Jun 17 2015 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> - 2.0-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild
* Mon Mar 2 2015 Paul Howarth <paul(a)city-fan.org> - 2.0-4
- Use %license
* Sun Aug 17 2014 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> - 2.0-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
* Sat Jun 7 2014 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> - 2.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Mon Nov 25 2013 Paul Howarth <paul(a)city-fan.org> - 2.0-1
- Update to 2.0
- Add -l option to specify maximum log level
- Drop upstreamed cleanup and starttls patches
* Sat Aug 3 2013 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> - 1.9-7
- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
* Thu Feb 14 2013 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> - 1.9-6
- Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild
* Fri Sep 7 2012 Paul Howarth <paul(a)city-fan.org> - 1.9-5
- Drop SysV-to-systemd migration support from F-18 onwards
- Use systemd scriptlet macros for preset support (#850207)
* Fri Jul 20 2012 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> - 1.9-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
* Tue Jul 17 2012 Paul Howarth <paul(a)city-fan.org> - 1.9-3
- Add support for STARTTLS macro checking (#840665)
- Defer d��mon startup until network is available
* Fri Jan 6 2012 Paul Howarth <paul(a)city-fan.org> - 1.9-2
- Rebuilt for gcc 4.7
* Tue Nov 22 2011 Paul Howarth <paul(a)city-fan.org> - 1.9-1
- Update to 1.9
- Add -j option to chroot
- Improve building on various platforms
- Fix some typos in documentation and example config
- Drop upstreamed strlcat patch
- Drop gcc patch, no longer needed
- Build with additional warnings enabled, and add patch to fix warnings where
possible (libmilter API is missing some 'const' attributes, so it's not
possible to get rid of all of them)
* Mon Jul 25 2011 Paul Howarth <paul(a)city-fan.org> - 1.8-4
- Requires(post): systemd-sysv for sysv-to-systemd migration
* Sat Jul 16 2011 Paul Howarth <paul(a)city-fan.org> - 1.8-3
- Switch from SysV initscript to systemd unit file
- Clean up for modern rpmbuild
- Drop Sendmail references as the milter should work with Postfix too
- Nobody else likes macros for commands
* Tue Feb 8 2011 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> - 1.8-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
* Fri Aug 13 2010 Paul Howarth <paul(a)city-fan.org> - 1.8-1
- Update to 1.8 (log symbolic host name together with numeric IP address)
- Add missing function strlcat from openbsd libc
- Fix %postun to restart the milter properly on package upgrades
- Use %{_initddir} rather than the deprecated %{_initrddir} where possible
* Sat Jul 25 2009 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> - 1.7-6
- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild
* Wed Feb 25 2009 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> - 1.7-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild
* Fri Feb 13 2009 Paul Howarth <paul(a)city-fan.org> - 1.7-4
- Rebuild for shared libmilter in Fedora 11 development
* Mon Feb 18 2008 Paul Howarth <paul(a)city-fan.org> - 1.7-3
- Support config files with more than 507 rules (#304071)
* Wed Aug 22 2007 Paul Howarth <paul(a)city-fan.org> - 1.7-2
- Rebuild for BuildID inclusion
(http://fedoraproject.org/wiki/Releases/FeatureBuildId)
* Mon Aug 6 2007 Paul Howarth <paul(a)city-fan.org> - 1.7-1
- Update to 1.7 (sendmail macro filtering support added)
- Tarball now includes a versioned directory name
- Split milter-regex.conf out from being a here document in the spec and have
it as a separate source file instead
- Unexpand tabs
- Use the standard scriptlet for user/group creation in %pre
- Use %{_initrddir} rather than %{_sysconfdir}/rc.d/init.d for initscript
- Use %{__install} rather than %{__cp} in %install
- Drop scriptlet dependencies on /sbin/service by calling initscript directly
- LSB-ize initscript (#246983)
* Wed Apr 18 2007 Paul Howarth <paul(a)city-fan.org> - 1.6-7
- Add patch for compile errors on Fedora 7
- Use sed rather than perl for quick scripted edits
* Tue Aug 29 2006 Paul Howarth <paul(a)city-fan.org> - 1.6-6
- Rebuild for dynamic linking speedups (FE6)
* Thu May 25 2006 Paul Howarth <paul(a)city-fan.org> - 1.6-5
- Address issues raised in review (#189611)
- Add sendmail dependency
- Honor %{optflags}
* Fri Apr 21 2006 Paul Howarth <paul(a)city-fan.org> - 1.6-4
- Minor cosmetic changes for resubmission for Fedora Extras
* Fri Nov 18 2005 Paul Howarth <paul(a)city-fan.org> - 1.6-3
- Remove redundant ver_ and rel_ macros
- Don't include package name in the summary
- Use macros consistently
- Generate LICENSE file in %prep rather than %install
- Don't strip binary, so debuginfo package is useful
- Combine groupadd+useradd into a single useradd command
- Use /sbin/nologin for mregex shell instead of non-existent /bin/nologin
- Don't delete user+group on package removal (see
http://www.redhat.com/archives/fedora-extras-commits/2005-June/msg00271.html)
- Install initscript in %{_sysconfdir} rather than /etc/init.d
- Don't enable service by default on installation
- Add scriptlet dependencies
- Add buildreq groff
- Use full URL for source
- Edit username in man page as well as in code
- Use install rather than cp to install %{SOURCE1} and %{SOURCE2} so
that permissions don't need to be set in SRPM
- Ghost the socket for clean package removal
- Buildreq sendmail-devel ��� 8.13.0 because of the use of SMFIF_QUARANTINE
- Use dist tag
* Tue Jan 25 2005 Victor Ramirez <vramirez(a)gmail.com> - 1.6-2
- Initial rpm release
- Modified user and configuration file location.
--------------------------------------------------------------------------------
================================================================================
python-cram-0.7-4.el8 (FEDORA-EPEL-2019-752544bfa9)
Simple testing framework for command line applications
--------------------------------------------------------------------------------
Update Information:
Build for EPEL8
--------------------------------------------------------------------------------
ChangeLog:
* Sat Nov 23 2019 Orion Poplawski <orion(a)nwra.com> - 0.7-4
- Fix cram shebang
* Fri Nov 22 2019 Orion Poplawski <orion(a)nwra.com> - 0.7-3
- Fix license (GPLv2+)
* Thu Nov 21 2019 Orion Poplawski <orion(a)nwra.com> - 0.7-2
- Run tests properly in mock
* Thu Nov 21 2019 Orion Poplawski <orion(a)nwra.com> - 0.7-1
- Update to 0.7
* Thu Oct 3 2019 Miro Hron��ok <mhroncok(a)redhat.com> - 0.6-22
- Rebuilt for Python 3.8.0rc1 (#1748018)
* Mon Aug 19 2019 Miro Hron��ok <mhroncok(a)redhat.com> - 0.6-21
- Rebuilt for Python 3.8
* Fri Jul 26 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.6-20
- Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
* Sat Feb 2 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.6-19
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
* Wed Oct 17 2018 Zbigniew J��drzejewski-Szmek <zbyszek(a)in.waw.pl> - 0.6-18
- Subpackage python2-cram has been removed
See https://fedoraproject.org/wiki/Changes/Mass_Python_2_Package_Removal
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.6-17
- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Tue Jun 19 2018 Miro Hron��ok <mhroncok(a)redhat.com> - 0.6-16
- Rebuilt for Python 3.7
* Fri Feb 9 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.6-15
- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
* Thu Jul 27 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.6-14
- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
* Sat Feb 11 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.6-13
- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild
* Mon Dec 19 2016 Miro Hron��ok <mhroncok(a)redhat.com> - 0.6-12
- Rebuild for Python 3.6
* Tue Jul 19 2016 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> - 0.6-11
- https://fedoraproject.org/wiki/Changes/Automatic_Provides_for_Python_RPM_Pa…
* Thu Feb 4 2016 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.6-10
- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild
* Mon Dec 7 2015 Ken Dreyer <ktdreyer(a)ktdreyer.com> - 0.6-9
- Use %{summary} macro in py2/py3 subpackages (thanks zbyszek(a)in.waw.pl)
(rhbz#1179484)
- Drop old py3 minimum version numbers (thanks zbyszek(a)in.waw.pl)
(rhbz#1179484)
* Mon Dec 7 2015 Ken Dreyer <ktdreyer(a)ktdreyer.com> - 0.6-8
- BR: python2-devel instead of python-devel (thanks zbyszek(a)in.waw.pl)
(rhbz#1179484)
- rm Group tag from py3 subpackage (thanks zbyszek(a)in.waw.pl) (rhbz#1179484)
- Only package a single executable, /usr/bin/cram (thanks zbyszek(a)in.waw.pl)
(rhbz#1179484)
* Sun Dec 6 2015 Ken Dreyer <ktdreyer(a)ktdreyer.com> - 0.6-7
- Correct Summary for python3-cram subpackage (thanks zbyszek(a)in.waw.pl)
(rhbz#1179484)
- rm py3dir macro (thanks zbyszek(a)in.waw.pl) (rhbz#1179484)
* Sun Dec 6 2015 Ken Dreyer <ktdreyer(a)ktdreyer.com> - 0.6-6
- Update for latest Python packaging guidelines (thanks zbyszek(a)in.waw.pl)
(rhbz#1179484)
- rm Group tag
- drop support for el6
* Sat Apr 4 2015 Ken Dreyer <ktdreyer(a)ktdreyer.com> - 0.6-5
- Use %license macro (RHBZ #1179484)
* Thu Jan 8 2015 Ken Dreyer <ktdreyer(a)ktdreyer.com> - 0.6-4
- Correct License tag (RHBZ #1179484)
* Wed Jan 7 2015 Ken Dreyer <ktdreyer(a)ktdreyer.com> - 0.6-3
- Do not ship examples files in package. These are more like test files.
(RHBZ #1179484)
* Tue Jan 6 2015 Ken Dreyer <ktdreyer(a)ktdreyer.com> - 0.6-2
- Fix bad copy-and-paste for %description in python3 subpackage
- Fix shebangs to satisfy rpmlint's non-executable-script errors
* Tue Jan 6 2015 Ken Dreyer <ktdreyer(a)ktdreyer.com> - 0.6-1
- initial package
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1775407 - Build python-cram for EPEL8
https://bugzilla.redhat.com/show_bug.cgi?id=1775407
--------------------------------------------------------------------------------
================================================================================
radsecproxy-1.8.0-1.el8 (FEDORA-EPEL-2019-26808390e9)
Generic RADIUS proxy with RadSec support
--------------------------------------------------------------------------------
Update Information:
radsecproxy is a generic RADIUS proxy that in addition to usual RADIUS UDP
transport, also supports TLS (RadSec), as well as RADIUS over TCP and DTLS. The
aim is for the proxy to have sufficient features to be flexible, while at the
same time to be small, efficient and easy to configure.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Sep 17 2019 Robert Scheck <robert(a)fedoraproject.org> 1.8.0-1
- Upgrade to 1.8.0 (#1753052)
- Initial spec file for Fedora and Red Hat Enterprise Linux
--------------------------------------------------------------------------------
================================================================================
wine-4.0.2-2.el8 (FEDORA-EPEL-2019-b45c7e9299)
A compatibility layer for windows applications
--------------------------------------------------------------------------------
Update Information:
Remove capi package as isdn4k package has been dropped from RHEL 8. Kernel is
also dropping ISDN support so this package will be dropped from Fedora soon,
too.
--------------------------------------------------------------------------------
ChangeLog:
* Sat Nov 23 2019 Michael Cronenworth <mike(a)cchtml.com> 4.0.2-2
- drop capi package (rhbz#1775582)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1775582 - Missing dependency for wine-capi (isdn4k-utils)
https://bugzilla.redhat.com/show_bug.cgi?id=1775582
--------------------------------------------------------------------------------
The following Fedora EPEL 6 Security updates need testing:
Age URL
13 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-89d09bcf60 php-robrichards-xmlseclibs-2.1.1-1.el6
13 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-800a69997a djvulibre-3.5.25.3-18.el6
5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-8905ccaea7 libidn2-2.3.0-1.el6
The following builds have been pushed to Fedora EPEL 6 updates-testing
recap-2.1.0-6.el6
wp-cli-2.4.0-2.el6
Details about builds:
================================================================================
recap-2.1.0-6.el6 (FEDORA-EPEL-2019-a184e4de27)
Generates reports of various system information
--------------------------------------------------------------------------------
Update Information:
Remove dependency (`elinks`), instead use `Recommends` where supported. ----
Adds obsolete for rs-sysmon package
--------------------------------------------------------------------------------
ChangeLog:
* Wed Nov 20 2019 Tony Garcia <tony.garcia(a)rackspace.com> - 2.1.0-6
- Use Recommends only in RPM supported versions (4.12.0)
* Tue Nov 19 2019 Tony Garcia <tony.garcia(a)rackspace.com> - 2.1.0-5
- Update dependencies, set elinks to recommends
* Thu Oct 17 2019 Pete Travis <immanetize(a)fedoraproject.org> - 2.1.0-4
- Add obsoletes and provides for 'rs-sysmon', upstream predecessor of recap
--------------------------------------------------------------------------------
================================================================================
wp-cli-2.4.0-2.el6 (FEDORA-EPEL-2019-25c6659fbf)
The command line interface for WordPress
--------------------------------------------------------------------------------
Update Information:
update upstream version to 2.4.0
--------------------------------------------------------------------------------
ChangeLog:
* Fri Nov 22 2019 Luis M. Segundo <blackfile(a)fedoraproject.org> - 2.4.0-2
- update release.
* Fri Nov 22 2019 Luis M. Segundo <blackfile(a)fedoraproject.org> - 2.4.0-1
- update to 2.4.0.
--------------------------------------------------------------------------------