The following Fedora EPEL 8 Security updates need testing:
Age URL
12 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-24ab212ee8 p7zip-16.02-20.el8
8 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-3a1aaec707 pngcheck-2.4.0-8.el8
8 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-b308580516 perl-Image-ExifTool-12.16-3.el8
8 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-bbc31e5925 java-latest-openjdk-16.0.1.0.9-1.rolling.el8
8 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-33433b2f22 python-yara-4.1.0-1.el8 yara-4.1.0-1.el8
4 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-a3a4866065 libopenmpt-0.5.8-1.el8
3 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-9be66bdb10 python-markdown2-2.4.0-1.el8
0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-e8421e33b3 chromium-90.0.4430.93-1.el8
The following builds have been pushed to Fedora EPEL 8 updates-testing
gparted-1.3.0-1.el8
python-IPy-1.00-3.el8
python-typeshed-0.1-0.20191011git2.el8
screen-4.6.2-12.el8
slurm-20.11.6-1.el8
snapd-2.50-1.el8
Details about builds:
================================================================================
gparted-1.3.0-1.el8 (FEDORA-EPEL-2021-ac01807e66)
Gnome Partition Editor
--------------------------------------------------------------------------------
Update Information:
update gparted to 1.3.0
--------------------------------------------------------------------------------
ChangeLog:
* Tue May 4 2021 Mukundan Ragavan <nonamedotc(a)fedoraproject.org> - 1.3.0-1
- Update to 1.3.0
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1840291 - [abrt] gparted: std::__replacement_assert(char const*, int, char const*, char const*)(): gpartedbin killed by SIGABRT
https://bugzilla.redhat.com/show_bug.cgi?id=1840291
[ 2 ] Bug #1853290 - Request to build polkit-gnome for EPEL 8
https://bugzilla.redhat.com/show_bug.cgi?id=1853290
[ 3 ] Bug #1956400 - gparted-1.3.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1956400
--------------------------------------------------------------------------------
================================================================================
python-IPy-1.00-3.el8 (FEDORA-EPEL-2021-6fc90def99)
Python module for handling IPv4 and IPv6 Addresses and Networks
--------------------------------------------------------------------------------
Update Information:
initial version for epel8
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1955581 - Provide python-IPy package in EPEL-8
https://bugzilla.redhat.com/show_bug.cgi?id=1955581
--------------------------------------------------------------------------------
================================================================================
python-typeshed-0.1-0.20191011git2.el8 (FEDORA-EPEL-2021-b58b10e474)
Static type information for python modules
--------------------------------------------------------------------------------
Update Information:
Initial EL-8 build.
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1913141 - Please build python-typeshed for EPEL 8
https://bugzilla.redhat.com/show_bug.cgi?id=1913141
--------------------------------------------------------------------------------
================================================================================
screen-4.6.2-12.el8 (FEDORA-EPEL-2021-e393e03d96)
A screen manager that supports multiple logins on one terminal
--------------------------------------------------------------------------------
Update Information:
Security fix for CVE-2021-26937
--------------------------------------------------------------------------------
ChangeLog:
* Wed May 5 2021 Josef Ridky <jridky(a)redhat.com> - 4.6.2-12
- fix CVE-2021-26937 (#1926952)
* Mon Feb 10 2020 Carl George <carl(a)george.computer> - 4.6.2-11
- Add patch7 to fix out of bounds access when setting w_xtermosc rhbz#1801408
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1926949 - screen: Segmentation fault while displaying UTF-8 characters
https://bugzilla.redhat.com/show_bug.cgi?id=1926949
--------------------------------------------------------------------------------
================================================================================
slurm-20.11.6-1.el8 (FEDORA-EPEL-2021-f06db8686b)
Simple Linux Utility for Resource Management
--------------------------------------------------------------------------------
Update Information:
Release of 20.11.6. Added subpackage slurm-slurmrestd now that libjwt is
available in EPEL.
--------------------------------------------------------------------------------
ChangeLog:
* Tue May 4 2021 Philip Kovacs <pkfed(a)fedoraproject.org> - 20.11.6-1
- Release of 20.11.6
* Mon Apr 12 2021 Philip Kovacs <pkfed(a)fedoraproject.org> - 20.11.5-2
- Add subpackage slurm-slurmrestd (Slurm REST API daemon)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1947878 - Request to package Slurmrestd for EPEL7 and EPEL8
https://bugzilla.redhat.com/show_bug.cgi?id=1947878
--------------------------------------------------------------------------------
================================================================================
snapd-2.50-1.el8 (FEDORA-EPEL-2021-78788674fe)
A transactional software package manager
--------------------------------------------------------------------------------
Update Information:
Update to the 2.50 (latest) upstream release.
--------------------------------------------------------------------------------
ChangeLog:
* Wed May 5 2021 Maciek Borzecki <maciek.borzecki(a)gmail.com> - 2.50-1
- Release 2.50 to Fedora (RHBZ#1936784)
* Sat Apr 24 2021 Michael Vogt <mvo(a)ubuntu.com>
- New upstream release 2.50
- overlord: properly mock usr-lib-snapd tests to mimic an Ubuntu
Core system
- o/configstate/configcore/vitality: fix RequireMountedSnapdSnap bug
- o/servicestate/servicemgr.go: add ensure loop for snap service
units
- wrappers/services.go: introduce EnsureSnapServices()
- snapstate: add "kernel-assets" to featureSet
- systemd: wait for zfs mounts
- overlord: make servicestate responsible to compute
SnapServiceOptions
- boot,tests: move where we write boot-flags one level up
- o/configstate: don't pass --root=/ when
masking/unmasking/enabling/disabling services
- cmd/snap-bootstrap/initramfs-mounts: write active boot-flags to
/run
- gadget: be more flexible with kernel content resolving
- boot, cmd/snap: include extra cmdline args in debug boot-vars
output
- boot: support read/writing boot-flags from userspace/initramfs
- interfaces/pwm: add PWM interface
- tests/lib/prepare-restore.sh: clean out snapd changes and snaps
before purging
- systemd: enrich UnitStatus returned by systemd.Status() with
Installed flag
- tests: updated restore phase of spread tests - part 1
- gadget: add support for kernel command line provided by the gadget
- tests: Using GO111MODULE: "off" in spread.yaml
- features: add gate-auto-refresh-hook feature flag
- spread: ignore linux kernel upgrade in early stages for arch
preparation
- tests: use snaps-state commands and remove them from the snaps
helper
- o/configstate: fix panic with a sequence of config unset ops over
same path
- api: provide meaningful error message on connect/disconnect for
non-installed snap
- interfaces/u2f-devices: add HyperFIDO Pro
- tests: add simple sanity check for systemctl show
--property=UnitFileState for unknown service
- tests: use tests.session tool on interfaces-desktop-document-
portal test
- wrappers: install D-Bus service activation files for snapd session
tools on core
- many: add x-gvfs-hide option to mount units
- interfaces/builtin/gpio_test.go: actually test the generated gpio
apparmor
- spread: tentative workaround for arch failure caused by libc
upgrade and cgroups v2
- tests: add spread test for snap validate against store assertions
- tests: remove snaps which are not used in any test
- ci: set the accept-existing-contributors parameter for the cla-
check action
- daemon: introduce apiBaseSuite.(json|sync|async|error)Req (and
some apiBaseSuite cosmetics)
- o/devicestate/devicemgr: register install-device hook, run if
present in install
- o/configstate/configcore: simple refactors in preparation for new
function
- tests: unifying the core20 nested suite with the core nested suite
- tests: uboot-unpacked-assets updated to reflect the real path used
to find the kernel
- daemon: switch api_test.go to daemon_test and various other
cleanups
- o/configstate/configcore/picfg.go: add hdmi_cvt support
- interfaces/apparmor: followup cleanups, comments and tweaks
- boot: cmd/snap-bootstrap: handle a candidate recovery system v2
- overlord/snapstate: skip catalog refresh when snappy testing is
enabled
- overlord/snapstate, overlord/ifacestate: move late security
profile removal to ifacestate
- snap-seccomp: fix seccomp test on ppc64el
- interfaces, interfaces/apparmor, overlord/snapstate: late removal
of snap-confine apparmor profiles
- cmd/snap-bootstrap/initramfs-mounts: move time forward using
assertion times
- tests: reset the system while preparing the test suite
- tests: fix snap-advise-command check for 429
- gadget: policy for gadget/kernel refreshes
- o/configstate: deal with no longer valid refresh.timer=managed
- interfaces/udisks2: allow locking /run/mount/utab for udisks 2.8.4
- cla-check: Use has-signed-canonical-cla GitHub Action
- tests: validation sets spread test
- tests: simplify the reset.sh logic by removing not needed command
- overlord/snapstate: make sure that snapd current symlink is not
removed during refresh
- tests/core/fsck-on-boot: unmount /run/mnt/snapd directly on uc20
- tests/lib/fde-setup-hook: also verify that fde-reveal-key key data
is base64
- o/devicestate: split off ensuring next boot goes to run mode into
new task
- tests: fix cgroup-tracking test
- boot: export helper for clearing tried system state, add tests
- cmd/snap: use less aggressive client timeouts in unit tests
- daemon: fix signing key validity timestamp in unit tests
- o/{device,hook}state: encode fde-setup-request key as base64
string
- packaging: drop dh-systemd from build-depends on ubuntu-16.04+
- cmd/snap/pack: unhide the compression option
- boot: extend set try recovery system unit tests
- cmd/snap-bootstrap: refactor handling of ubuntu-save, do not use
secboot's implicit fallback
- o/configstate/configcore: add hdmi_timings to pi-config
- snapstate: reduce reRefreshRetryTimeout to 1/2 second
- interfaces/tee: add TEE/OPTEE interface
- o/snapstate: update validation sets assertions with auto-refresh
- vendor: update go-tpm2/secboot to latest version
- seed: ReadSystemEssentialAndBetterEarliestTime
- tests: replace while commands with the retry tool
- interfaces/builtin: update unit tests to use proper distro's
libexecdir
- tests: run the reset.sh helper and check test invariants while the
test is restored
- daemon: switch preexisting daemon_test tests to apiBaseSuite and
.req
- boot, o/devicestate: split makeBootable20 into two parts
- interfaces/docker-support: add autobind unix rules to docker-
support
- interfaces/apparmor: allow reading
/proc/sys/kernel/random/entropy_avail
- tests: use retry tool instead a loops
- tests/main/uc20-create-partitions: fix tests cleanup
- asserts: mode where Database only assumes cur time >= earliest
time
- daemon: validation sets/api tests cleanup
- tests: improve tests self documentation for nested test suite
- api: local assertion fallback when it's not in the store
- api: validation sets monitor mode
- tests: use fs-state tool in interfaces tests
- daemon: move out /v2/login|logout and errToResponse tests from
api_test.go
- boot: helper for inspecting the outcome of a recovery system try
- o/configstate, o/snapshotstate: fix handling of nil snap config on
snapshot restore
- tests: update documentation and checks for interfaces tests
- snap-seccomp: add new `close_range` syscall
- boot: revert #10009
- gadget: remove `device-tree{,-origin}` from gadget tests
- boot: simplify systems test setup
- image: write resolved-content from snap prepare-image
- boot: reseal the run key for all recovery systems, but recovery
keys only for the good ones
- interfaces/builtin/network-setup-{control,observe}: allow using
netplan directly
- tests: improve sections prepare and restore - part 1
- tests: update details on task.yaml files
- tests: revert os.query usage in spread.yaml
- boot: export bootAssetsMap as AssetsMap
- tests/lib/prepare: fix repacking of the UC20 kernel snap for with
ubuntu-core-initramfs 40
- client: protect against reading too much data from stdin
- tests: improve tests documentation - part 2
- boot: helper for setting up a try recover system
- tests: improve tests documentation - part 1
- tests/unit/go: use tests.session wrapper for running tests as a
user
- tests: improvements for snap-seccomp-syscalls
- gadget: simplify filterUpdate (thanks to Maciej)
- tests/lib/prepare.sh: use /etc/group and friends from the core20
snap
- tests: fix tumbleweed spread tests part 2
- tests: use new commands of os.query tool on tests
- o/snapshotstate: create snapshots directory on import
- tests/main/lxd/prep-snapd-in-lxd.sh: dump contents of sources.list
- packaging: drop 99-snapd.conf via dpkg-maintscript-helper
- osutil: add SetTime() w/ 32-bit and 64-bit implementations
- interfaces/wayland: rm Xwayland Xauth file access from wayland
slot
- packaging/ubuntu-16.04/rules: turn modules off explicitly
- gadget,devicestate: perform kernel asset update for $kernel: style
refs
- cmd/recovery: small fix for `snap recovery` tab output
- bootloader/lkenv: add recovery systems related variables
- tests: fix new tumbleweed image
- boot: fix typo, should be systems
- o/devicestate: test that users.create.automatic is configured
early
- asserts: use Fetcher in AddSequenceToUpdate
- daemon,o/c/configcore: introduce users.create.automatic
- client, o/servicestate: expose enabled state of user daemons
- boot: helper for checking and marking tried recovery system status
from initramfs
- asserts: pool changes for validation-sets (#9930)
- daemon: move the last api_foo_test.go to daemon_test
- asserts: include the assertion timestamp in error message when
outside of signing key validity range
- ovelord/snapshotstate: keep a few of the last line tar prints
before failing
- gadget/many: rm, delay sector size + structure size checks to
runtime
- cmd/snap-bootstrap/triggerwatch: fix returning wrong errors
- interfaces: add allegro-vcu and media-control interfaces
- interfaces: opengl: add Xilinx zocl bits
- mkversion: check that version from changelog is set before
overriding the output version
- many: fix new ineffassign warnings
- .github/workflows/labeler.yaml: try work-around to not sync
labels
- cmd/snap, boot: add debug set-boot-vars
- interfaces: allow reading the Xauthority file KDE Plasma writes
for Wayland sessions
- tests/main/snap-repair: test running repair assertion w/ fakestore
- tests: disable lxd tests for 21.04 until the lxd images are
published for the system
- tests/regression/lp-1910456: cleanup the /snap symlink when done
- daemon: move single snap querying and ops to api_snaps.go
- tests: fix for preseed and dbus tests on 21.04
- overlord/snapshotstate: include the last message printed by tar in
the error
- interfaces/system-observe: Allow reading /proc/zoneinfo
- interfaces: remove apparmor downgrade feature
- snap: fix unit tests on Go 1.16
- spread: disable Go modules support in environment
- tests: use new path to find kernel.img in uc20 for arm devices
- tests: find files before using cat command when checking broadcom-
asic-control interface
- boot: introduce good recovery systems, provide compatibility
handling
- overlord: add manager gadget refresh test
- tests/lib/fakestore: support repair assertions too
- github: temporarily disable action labeler due to issues with
labels being removed
- o/devicestate,many: introduce DeviceManager.preloadGadget for
EarlyConfig
- tests: enable ubuntu 21.04 for spread tests
- snap: provide a useful error message if gdbserver is not installed
- data/selinux: allow system dbus to watch /var/lib/snapd/dbus-1
- tests/lib/prepare.sh: split reflash.sh into two parts
- packaging/opensuse: sync with openSUSE packaging
- packaging: disable Go modules in snapd.mk
- snap: add deprecation noticed to "snap run --gdb"
- daemon: add API for checking and installing available theme snaps
- tests: using labeler action to add automatically a label to run
nested tests
- gadget: improve error handling around resolving content sources
- asserts: repeat the authority cross-check in CheckSignature as
well
- interfaces/seccomp/template.go: allow copy_file_range
- o/snapstate/check_snap.go: add support for many subversions in
assumes snapdX..
- daemon: move postSnap and inst.dispatch tests to api_snaps_test.go
- wrappers: use proper paths for mocked mount units in tests
- snap: rename gdbserver option to `snap run --gdbserver`
- store: support validation sets with fetch-assertions action
- snap-confine.apparmor.in: support tmp and log dirs on Yocto/Poky
- packaging/fedora: sync with downstream packaging in Fedora
- many: add Delegate=true to generated systemd units for special
interfaces (master)
- boot: use a common helper for mocking boot assets in cache
- api: validate snaps against validation set assert from the store
- wrappers: don't generate an [Install] section for timer or dbus
activated services
- tests/nested/core20/boot-config-update: skip when snapd was not
built with test features
- o/configstate,o/devicestate: introduce devicestate.EarlyConfig
implemented by configstate.EarlyConfig
- cmd/snap-bootstrap/initramfs-mounts: fix typo in func name
- interfaces/builtin: mock distribution in fontconfig cache unit
tests
- tests/lib/prepare.sh: add another console= to the reflash magic
grub entry
- overlord/servicestate: expose dbus activators of a service
- desktop/notification: test against a real session bus and
notification server implementation
- cmd/snap-bootstrap/initramfs-mounts: write realistic modeenv for
recover+install
- HACKING.md: explain how to run UC20 spread tests with QEMU
- asserts: introduce AtSequence
- overlord/devicestate: task for updating boot configs, spread test
- gadget: fix documentation/typos
- gadget: cleanup MountedFilesystem{Writer,Updater}
- gadget: use ResolvedSource in MountedFilesystemWriter
- snap/info.go: add doc-comment for SortServices
- interfaces: add an optional mount-host-font-cache plug attribute
to the desktop interface
- osutil: skip TestReadBuildGo inside sbuild
- o/hookstate/ctlcmd: add optional --pid and --apparmor-label
arguments to "snapctl is-connected"
- data/env/snapd: use quoting in case PATH contains spaces
- boot: do not observe successful boot assets if not in run mode
- tests: fix umount for snapd snap on fsck-on-boot testumount:
/run/mnt/ubuntu-seed/systems/*/snaps/snapd_*.snap: no mount
- misc: little tweaks
- snap/info.go: ignore unknown daemons in SortSnapServices
- devicestate: keep log from install-mode on installed system
- seed: add LoadEssentialMeta to seed16 and allow all of its
implementations to be called multiple times
- cmd/snap-preseed: initialize snap.SanitizePlugsSlots for gadget in
seeds
- tests/core/uc20-recovery: move recover mode helpers to generic
testslib script
- interfaces/fwupd: allow any distros to access fw files via fwupd
- store: method for fetching validation set assertion
- store: switch to v2/assertions api
- gadget: add new ResolvedContent and populate from LayoutVolume()
- spread: use full format when listing processes
- osutil/many: make all test pkgs osutil_test instead of "osutil"
- tests/unit/go: drop unused environment variables, skip coverage
- OpenGL interface: Support more Tegra libs
- gadget,overlord: pass kernelRoot to install.Run()
- tests: run unit tests in Focal instead of Xenial
- interfaces/browser-support: allow sched_setaffinity with browser-
sandbox: true
- daemon: move query /snaps/<name> tests to api_snaps_test.go
- cmd/snap-repair/runner.go: add SNAP_SYSTEM_MODE to env of repair
runner
- systemd/systemd.go: support journald JSON messages with arrays for
values
- cmd: make string/error code more robust against errno leaking
- github, run-checks: do not collect coverage data on subsequent
test runs
- boot: boot config update & reseal
- o/snapshotstate: handle conflicts between snapshot forget, export
and import
- osutil/stat.go: add RegularFileExists
- cmd/snapd-generator: don't create mount overrides for snap-try
snaps inside lxc
- gadget/gadget.go: rename ubuntu-* to system-* in doc-comment
- tests: use 6 spread workers for centos8
- bootloader/assets: support injecting bootloader assets in testing
builds of snapd
- gadget: enable multi-volume uc20 gadgets in
LaidOutSystemVolumeFromGadget; rename too
- overlord/devicestate, sysconfig: do nothing when cloud-init is not
present
- cmd/snap-repair: filter repair assertions based on bases + modes
- snap-confine: make host /etc/ssl available for snaps on classic
* Fri Mar 26 2021 Michael Vogt <mvo(a)ubuntu.com>
- New upstream release 2.49.2
- interfaces/tee: add TEE/OPTEE interface
- o/configstate/configcore: add hdmi_timings to pi-config
- interfaces/udisks2: allow locking /run/mount/utab for udisks 2.8.4
- snap-seccomp: fix seccomp test on ppc64el
- interfaces{,/apparmor}, overlord/snapstate:
late removal of snap-confine apparmor profiles
- overlord/snapstate, wrappers: add dependency on usr-lib-
snapd.mount for services on core with snapd snap
- o/configstate: deal with no longer valid refresh.timer=managed
- overlord/snapstate: make sure that snapd current symlink is not
removed during refresh
- packaging: drop dh-systemd from build-depends on ubuntu-16.04+
- o/{device,hook}state: encode fde-setup-request key as base64
- snapstate: reduce reRefreshRetryTimeout to 1/2 second
- tests/main/uc20-create-partitions: fix tests cleanup
- o/configstate, o/snapshotstate: fix handling of nil snap config on
snapshot restore
- snap-seccomp: add new `close_range` syscall
* Mon Mar 8 2021 Michael Vogt <mvo(a)ubuntu.com>
- New upstream release 2.49.1
- tests: turn modules off explicitly in spread go unti test
- o/snapshotstate: create snapshots directory on import
- cmd/snap-bootstrap/triggerwatch: fix returning wrong errors
- interfaces: add allegro-vcu and media-control interfaces
- interfaces: opengl: add Xilinx zocl bits
- many: fix new ineffassign warnings
- interfaces/seccomp/template.go: allow copy_file_range
- interfaces: allow reading the Xauthority file KDE Plasma writes
for Wayland sessions
- data/selinux: allow system dbus to watch
/var/lib/snapd/dbus-1
- Remove apparmor downgrade feature
- Support tmp and log dirs on Yocto/Poky
* Tue Mar 2 2021 Zbigniew J��drzejewski-Szmek <zbyszek(a)in.waw.pl> - 2.49-3
- Rebuilt for updated systemd-rpm-macros
See https://pagure.io/fesco/issue/2583.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1936784 - snapd-2.50 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1936784
--------------------------------------------------------------------------------
Dear all,
You are kindly invited to the meeting:
EPEL Steering Committee on 2021-05-05 from 16:00:00 to 17:00:00 US/Eastern
At fedora-meeting(a)irc.freenode.net
The meeting will be about:
This is the weekly EPEL Steering Committee Meeting.
A general agenda is the following:
#meetingname EPEL
#topic Intros
#topic Old Business
#topic EPEL-7
#topic EPEL-8
#topic EPEL-9
#topic Openfloor
#endmeeting
Source: https://calendar.fedoraproject.org//meeting/9854/
Dear all,
You are kindly invited to the meeting:
EPEL Steering Committee on 2021-05-05 from 16:00:00 to 17:00:00 US/Eastern
At fedora-meeting(a)irc.freenode.net
The meeting will be about:
This is the weekly EPEL Steering Committee Meeting.
A general agenda is the following:
#meetingname EPEL
#topic Intros
#topic Old Business
#topic EPEL-7
#topic EPEL-8
#topic EPEL-9
#topic Openfloor
#endmeeting
Source: https://apps.fedoraproject.org/calendar/meeting/9854/
The following Fedora EPEL 7 Security updates need testing:
Age URL
13 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-044df87bd4 rust-1.51.0-3.el7
9 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-3c8a5a400b p7zip-16.02-20.el7
8 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-a46e72f139 radare2-5.2.1-1.el7
8 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-3370d4396b ansible-2.9.20-1.el7
7 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-255f12d77d zarafa-7.1.14-5.el7
6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-b6ffea264a perl-Image-ExifTool-12.16-3.el7
5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-9cfa4ffd25 java-latest-openjdk-16.0.1.0.9-1.rolling.el7
5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-9cf47c841c python-yara-4.1.0-1.el7 yara-4.1.0-1.el7
2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-3f4ec3ba2a sympa-6.2.62-1.el7
2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-23a46d718e libopenmpt-0.5.8-1.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
nohang-0.2.0-5.el7
python-apprise-0.9.2-1.el7
tcpreplay-4.3.4-1.el7
Details about builds:
================================================================================
nohang-0.2.0-5.el7 (FEDORA-EPEL-2021-f82d1204c2)
Sophisticated low memory handler for Linux
--------------------------------------------------------------------------------
Update Information:
Fix version file (`/usr/share/nohang/version`).
--------------------------------------------------------------------------------
ChangeLog:
* Sun May 2 2021 ElXreno <elxreno(a)gmail.com> - 0.2.0-5
- Don't install some docs via Makefile
* Sun May 2 2021 ElXreno <elxreno(a)gmail.com> - 0.2.0-4
- * Format spec
* Replace git command via echo in Makefile
* Don't exec chcon in Makefile
* Don't exec systemctl in Makefile
* Disable search of debuginfo
* Drop not required build macros
* Tue Mar 2 2021 Zbigniew J��drzejewski-Szmek <zbyszek(a)in.waw.pl> - 0.2.0-3
- Rebuilt for updated systemd-rpm-macros
See https://pagure.io/fesco/issue/2583.
* Tue Jan 26 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.2.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
python-apprise-0.9.2-1.el7 (FEDORA-EPEL-2021-6878c7c279)
A simple wrapper to many popular notification services used today
--------------------------------------------------------------------------------
Update Information:
Updated to v0.9.2
--------------------------------------------------------------------------------
ChangeLog:
* Sun May 2 2021 Chris Caron <lead2gold(a)gmail.com> - 0.9.2-1
- Updated to v0.9.2
--------------------------------------------------------------------------------
================================================================================
tcpreplay-4.3.4-1.el7 (FEDORA-EPEL-2021-9088e73b4a)
Replay captured network traffic
--------------------------------------------------------------------------------
Update Information:
This is a bug-fix only release.
https://github.com/appneta/tcpreplay/releases/tag/v4.3.4 - ASAN reports memory
leaks while running tests (#662) - local libopts compiler warnings (#658) - DLT
name for DLT_C_JNPR_ETHER in documentation (#649) - clean up new_cidr_map()
string manipulation on error exit (#648) - fix gcc 8.3.0 build warnings (#634) -
invalid --pps value protection (#632) - packets slowly drift further and further
behind when they should be sent (#630) - 64 bit rollover can cause pps replay
issues after several hours (#629) - typo fixes (#626) (#627) - DLT_NULL/DLT_LOOP
support for cross-platform PF_INET6 (#624) - armv5 Freescale compile (#623) -
heap buffer overflow in tcpreplay fast_edit_packet (#620) - heap buffer overflow
in tcpreplay get_next_packet (#619) - CVE-2020-24266 heap buffer overflow in
tcpprep get_l2len (#617) - CVE-2020-24265 heap buffer overflow in tcpprep (#616)
- fix UNUSED macro declaration (#614) - handle malformed and unsupported packets
as soft errors (#613) - compile failure on aarch64-linux-android (#612) -
tcprewrite --fixlen not working on DLT conversion (#582) - fix configure
--without-libdnet (#567) - ensure automake version is at least 1.15 (#553) -
with multiplier option only first file can be sent and hang (#472) - do not
create tap0 if device already exists (#411) (#651)
--------------------------------------------------------------------------------
ChangeLog:
* Sun May 2 2021 Bojan Smojver <bojan@rexursive com> - 4.3.4-1
- bump up to 4.3.4
* Wed Jan 27 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 4.3.3-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
--------------------------------------------------------------------------------
The following Fedora EPEL 8 Security updates need testing:
Age URL
11 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-0754fdd085 openvpn-2.4.11-1.el8
9 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-24ab212ee8 p7zip-16.02-20.el8
6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-3a1aaec707 pngcheck-2.4.0-8.el8
6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-b308580516 perl-Image-ExifTool-12.16-3.el8
5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-bbc31e5925 java-latest-openjdk-16.0.1.0.9-1.rolling.el8
5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-33433b2f22 python-yara-4.1.0-1.el8 yara-4.1.0-1.el8
2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-a3a4866065 libopenmpt-0.5.8-1.el8
1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-9be66bdb10 python-markdown2-2.4.0-1.el8
The following builds have been pushed to Fedora EPEL 8 updates-testing
nohang-0.2.0-5.el8
python-apprise-0.9.2-1.el8
python-impacket-0.9.22-1.el8
tcpreplay-4.3.4-1.el8
Details about builds:
================================================================================
nohang-0.2.0-5.el8 (FEDORA-EPEL-2021-94782f7b66)
Sophisticated low memory handler for Linux
--------------------------------------------------------------------------------
Update Information:
Fix version file (`/usr/share/nohang/version`).
--------------------------------------------------------------------------------
ChangeLog:
* Sun May 2 2021 ElXreno <elxreno(a)gmail.com> - 0.2.0-5
- Don't install some docs via Makefile
* Sun May 2 2021 ElXreno <elxreno(a)gmail.com> - 0.2.0-4
- * Format spec
* Replace git command via echo in Makefile
* Don't exec chcon in Makefile
* Don't exec systemctl in Makefile
* Disable search of debuginfo
* Drop not required build macros
* Tue Mar 2 2021 Zbigniew J��drzejewski-Szmek <zbyszek(a)in.waw.pl> - 0.2.0-3
- Rebuilt for updated systemd-rpm-macros
See https://pagure.io/fesco/issue/2583.
* Tue Jan 26 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.2.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
python-apprise-0.9.2-1.el8 (FEDORA-EPEL-2021-8c825f276d)
A simple wrapper to many popular notification services used today
--------------------------------------------------------------------------------
Update Information:
Updated to v0.9.2
--------------------------------------------------------------------------------
ChangeLog:
* Sun May 2 2021 Chris Caron <lead2gold(a)gmail.com> - 0.9.2-1
- Updated to v0.9.2
--------------------------------------------------------------------------------
================================================================================
python-impacket-0.9.22-1.el8 (FEDORA-EPEL-2021-4639d8d16c)
Collection of Python classes providing access to network packets
--------------------------------------------------------------------------------
Update Information:
Updated to new upstream release 0.9.22
--------------------------------------------------------------------------------
ChangeLog:
* Wed Apr 14 2021 Michal Ambroz <rebus _AT seznam.cz> - 0.9.22-1
- Updated to new upstream release 0.9.22
- modernize specfile with bconds
- upstream patch for python39 compatibility (needed for FC34+)
* Wed Jan 27 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.9.21-8
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
* Wed Jul 29 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.9.21-7
- Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
* Tue May 26 2020 Miro Hron��ok <mhroncok(a)redhat.com> - 0.9.21-6
- Rebuilt for Python 3.9
--------------------------------------------------------------------------------
================================================================================
tcpreplay-4.3.4-1.el8 (FEDORA-EPEL-2021-0c7bde0617)
Replay captured network traffic
--------------------------------------------------------------------------------
Update Information:
This is a bug-fix only release.
https://github.com/appneta/tcpreplay/releases/tag/v4.3.4 - ASAN reports memory
leaks while running tests (#662) - local libopts compiler warnings (#658) - DLT
name for DLT_C_JNPR_ETHER in documentation (#649) - clean up new_cidr_map()
string manipulation on error exit (#648) - fix gcc 8.3.0 build warnings (#634) -
invalid --pps value protection (#632) - packets slowly drift further and further
behind when they should be sent (#630) - 64 bit rollover can cause pps replay
issues after several hours (#629) - typo fixes (#626) (#627) - DLT_NULL/DLT_LOOP
support for cross-platform PF_INET6 (#624) - armv5 Freescale compile (#623) -
heap buffer overflow in tcpreplay fast_edit_packet (#620) - heap buffer overflow
in tcpreplay get_next_packet (#619) - CVE-2020-24266 heap buffer overflow in
tcpprep get_l2len (#617) - CVE-2020-24265 heap buffer overflow in tcpprep (#616)
- fix UNUSED macro declaration (#614) - handle malformed and unsupported packets
as soft errors (#613) - compile failure on aarch64-linux-android (#612) -
tcprewrite --fixlen not working on DLT conversion (#582) - fix configure
--without-libdnet (#567) - ensure automake version is at least 1.15 (#553) -
with multiplier option only first file can be sent and hang (#472) - do not
create tap0 if device already exists (#411) (#651)
--------------------------------------------------------------------------------
ChangeLog:
* Sun May 2 2021 Bojan Smojver <bojan@rexursive com> - 4.3.4-1
- bump up to 4.3.4
* Wed Jan 27 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 4.3.3-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
--------------------------------------------------------------------------------
The following Fedora EPEL 7 Security updates need testing:
Age URL
12 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-044df87bd4 rust-1.51.0-3.el7
8 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-3c8a5a400b p7zip-16.02-20.el7
7 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-a46e72f139 radare2-5.2.1-1.el7
7 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-3370d4396b ansible-2.9.20-1.el7
6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-255f12d77d zarafa-7.1.14-5.el7
5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-b6ffea264a perl-Image-ExifTool-12.16-3.el7
4 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-9cfa4ffd25 java-latest-openjdk-16.0.1.0.9-1.rolling.el7
4 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-9cf47c841c python-yara-4.1.0-1.el7 yara-4.1.0-1.el7
0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-3f4ec3ba2a sympa-6.2.62-1.el7
0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-23a46d718e libopenmpt-0.5.8-1.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
openbgpd-6.9p0-1.el7
wireguard-tools-1.0.20210424-1.el7
xorgxrdp-0.2.16-1.el7
zchunk-1.1.11-1.el7
Details about builds:
================================================================================
openbgpd-6.9p0-1.el7 (FEDORA-EPEL-2021-c5d9c88ef3)
OpenBGPD Routing Daemon
--------------------------------------------------------------------------------
Update Information:
OpenBGPD 6.9p0 ============== This is the first stable release for the 6.9
version. It includes the following changes: * Introduced `bgpd(8)` `rde
evaluate all` to reduce path hiding in IXP route-server environments. * Added
RTR support to OpenBGPD. * Added `bgpctl(8)` `show rtr` to display basic
information about RTR sessions. * Added `bgpctl(8)` `show sets` to display
information about the `roa-set`, `as-sets` and `prefix-sets` loaded into
`bgpd(8)`. * Properly implemented `rde med compare strict` in `bgpd(8)` and
ensured that the order of prefixes is always correct. * Introduced the
`bgpd.conf(5)` per neighbor and global config option `reject as-set yes/no` to
allow rejection of received `UPDATES` with `AS_SET` segments. These rejected
prefixes can be viewed with `bgpctl show rib in error`. * No longer allow
configuration of the same neighbor multiple times. * Introduced a send hold
timer in `bgpd(8)` to detect stalls on the sending side of a TCP connection,
acting as a last resort to detect faulty peers. * `pf(4)` tables track now
prefixes correctly even when received by multiple sessions.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Apr 30 2021 Robert Scheck <robert(a)fedoraproject.org> 6.9p0-1
- Upgrade to 6.9p0 (#1955524)
* Tue Mar 2 2021 Zbigniew J��drzejewski-Szmek <zbyszek(a)in.waw.pl> - 6.8p1-3
- Rebuilt for updated systemd-rpm-macros
See https://pagure.io/fesco/issue/2583.
* Tue Jan 26 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 6.8p1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1955524 - openbgpd-6.9p0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1955524
--------------------------------------------------------------------------------
================================================================================
wireguard-tools-1.0.20210424-1.el7 (FEDORA-EPEL-2021-37b30a38e1)
Fast, modern, secure VPN tunnel
--------------------------------------------------------------------------------
Update Information:
- wg-quick: freebsd: check for socket using -S, not -f - wg-quick: freebsd: do
not assume point-to-point interface flag - wg-quick: freebsd: use ifconfig for
determining if interface is up - wg-quick: kill route monitor when loop
terminates
--------------------------------------------------------------------------------
ChangeLog:
* Fri Apr 30 2021 Joe Doss <joe(a)solidadmin.com> - 1.0.20210424-1
- wg-quick: freebsd: check for socket using -S, not -f
- wg-quick: freebsd: do not assume point-to-point interface flag
- wg-quick: freebsd: use ifconfig for determining if interface is up
- wg-quick: kill route monitor when loop terminates
--------------------------------------------------------------------------------
================================================================================
xorgxrdp-0.2.16-1.el7 (FEDORA-EPEL-2021-2890dcee6d)
Implementation of xrdp backend as Xorg modules
--------------------------------------------------------------------------------
Update Information:
xorgxrdp v0.2.16 has been released. This version includes following features &
fixes: - Move to GitHub Actions for CI (#182, #191) - Improve stability of
xorgxrdp when resolution changes during a session ("dynamic resolution") (#183)
- Add client_info version check (#184) - Add some glamor build checks/help
(#185)
--------------------------------------------------------------------------------
ChangeLog:
* Sat May 1 2021 Bojan Smojver <bojan(a)rexursive.com> - 0.2.16-1
- Bump up to 0.2.16
* Wed Apr 14 2021 Bojan Smojver <bojan(a)rexursive.com> - 0.2.15-2
- Rebuild against xorg-x11-server 1.20.11
* Thu Jan 28 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.2.15-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
zchunk-1.1.11-1.el7 (FEDORA-EPEL-2021-7debafd53c)
Compressed file format that allows easy deltas
--------------------------------------------------------------------------------
Update Information:
Fix rare bug that occurs when trying to download separate chunks for certain
specific webservers
--------------------------------------------------------------------------------
ChangeLog:
* Sat May 1 2021 Jonathan Dieter <jdieter(a)gmail.com> - 1.1.11-1
- Fix multipart download failures on rare web servers
* Thu Jan 28 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.1.9-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
--------------------------------------------------------------------------------