The following Fedora EPEL 7 Security updates need testing:
Age URL
8 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-f005e1b879 debmirror-2.35-1.el7
4 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-2f9b2cf4af ckeditor-4.16.2-1.el7
3 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-d179a438bc libspf2-1.2.11-1.20210922git4915c308.el7
2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-37f81a6244 golang-github-prometheus-2.26.1-1.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
reg-0.16.1-5.el7
Details about builds:
================================================================================
reg-0.16.1-5.el7 (FEDORA-EPEL-2021-8c05a51855)
Docker registry v2 command line client
--------------------------------------------------------------------------------
Update Information:
Update to 1.16.1
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 19 2021 Robert-Andr�� Mauchin <zebob.m(a)gmail.com> - 0.16.1-5
- Fix vendoring for devel package
- Make compatible with EPEL8
- Close: rhbz#1941017, rhbz#1933618
* Fri Jul 23 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.16.1-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
* Tue Feb 23 2021 Mattia Verga <mattia.verga(a)protonmail.com> - 0.16.1-3
- Use bundled modules for EPEL8
* Sun Feb 21 2021 Mattia Verga <mattia.verga(a)protonmail.com> - 0.16.1-2
- Use modules from Fedora repository where possible
* Sat Feb 20 2021 Mattia Verga <mattia.verga(a)protonmail.com> - 0.16.1-1
- Update to 0.16.1
- Fix FTB in F34
- Make use of some Golang macros
--------------------------------------------------------------------------------
The following Fedora EPEL 8 Security updates need testing:
Age URL
3 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-7d0a7b6146 libspf2-1.2.11-1.20210922git4915c308.el8
3 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-3dbdaa5f12 golang-github-prometheus-2.26.1-1.el8
The following builds have been pushed to Fedora EPEL 8 updates-testing
ansible-collection-community-general-3.7.0-1.el8
dr_libs-0-0.2.20210924git8900af1.el8
reg-0.16.1-5.el8
Details about builds:
================================================================================
ansible-collection-community-general-3.7.0-1.el8 (FEDORA-EPEL-2021-ac47c4c857)
Modules and plugins supported by Ansible community
--------------------------------------------------------------------------------
Update Information:
New upstream bugfix release.
--------------------------------------------------------------------------------
ChangeLog:
* Sat Sep 25 2021 Kevin Fenzi <kevin(a)scrye.com> - 3.7.0-1
- Update to 3.7.0. Fixes rhbz#1999899
* Thu Sep 23 2021 Alfredo Moralejo <amoralej(a)redhat.com> - 3.5.0-2
- Use ansible or ansible-core as BuildRequires
* Wed Aug 11 2021 Kevin Fenzi <kevin(a)scrye.com> - 3.5.0-1
- Update to 3.5.0. Fixes rhbz#1992481
* Wed Aug 4 2021 Maxwell G <gotmax(a)e.email> - 3.4.0-1
- Update to 3.4.0. Fixes rhbz#1983969 .
* Wed Jul 21 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.3.2-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
dr_libs-0-0.2.20210924git8900af1.el8 (FEDORA-EPEL-2021-95be3032a8)
Single-file audio decoding libraries for C/C++
--------------------------------------------------------------------------------
Update Information:
Update to 8900af1 with dr_mp3 0.6.31 Fix a bug in dr_mp3 when loading from
memory.
--------------------------------------------------------------------------------
ChangeLog:
* Sat Sep 25 2021 Benjamin A. Beasley <code(a)musicinmybrain.net> - 0-0.2.20210924git8900af1
- Update to 8900af1 with dr_mp3 0.6.31
Fix a bug in dr_mp3 when loading from memory.
--------------------------------------------------------------------------------
================================================================================
reg-0.16.1-5.el8 (FEDORA-EPEL-2021-81f78a3c98)
Docker registry v2 command line client
--------------------------------------------------------------------------------
Update Information:
Initial release in epel8
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
The following Fedora EPEL 8 Security updates need testing:
Age URL
2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-7d0a7b6146 libspf2-1.2.11-1.20210922git4915c308.el8
2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-3dbdaa5f12 golang-github-prometheus-2.26.1-1.el8
The following builds have been pushed to Fedora EPEL 8 updates-testing
gnome-shell-extension-appindicator-29-8.el8
openbgpd-7.2-1.el8
python-flexmock-0.10.10-1.el8
rpki-client-7.3-1.el8
sassc-3.4.5-2.el8
utf8proc-epel-2.1.1-5.el8
Details about builds:
================================================================================
gnome-shell-extension-appindicator-29-8.el8 (FEDORA-EPEL-2021-0802fa5b60)
AppIndicator/KStatusNotifierItem support for GNOME Shell
--------------------------------------------------------------------------------
Update Information:
fix(downgrade): v29 for EPEL 8 | rh#2007408
--------------------------------------------------------------------------------
ChangeLog:
* Fri Sep 24 2021 Artem Polishchuk <ego.cordatus(a)gmail.com> - 1:29-8
- fix(downgrade): v29 for EPEL 8 | rh#2007408
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2007408 - Offered package is version 30 but supported is only 29.
https://bugzilla.redhat.com/show_bug.cgi?id=2007408
--------------------------------------------------------------------------------
================================================================================
openbgpd-7.2-1.el8 (FEDORA-EPEL-2021-c2f0402734)
OpenBGPD Routing Daemon
--------------------------------------------------------------------------------
Update Information:
OpenBGPD 7.2 ============ This release includes the following changes to the
previous release: * Support for RFC 9072 - Extended Optional Parameters
Length for `BGP OPEN` Message * Support for RFC 8050 - MRT Format with BGP
Additional Path Extensions * Implement receive side of RFC 7911 -
Advertisement of Multiple Paths in BGP. OpenBGPD is currently not able to send
multiple paths out. * Improve checks of VRPs loaded via RTR or from the roa-
set table. * Allow to optionally specify an expiry time for `roa-set` entries
to mitigate BGP route decision making based on outdated RPKI data. OpenBGPD's
companion `rpki-client` produces `roa-set`s with the new `expires` property.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Sep 23 2021 Robert Scheck <robert(a)fedoraproject.org> 7.2-1
- Upgrade to 7.2 (#2007210)
* Thu Jul 22 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 7.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2007210 - openbgpd-7.2 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2007210
--------------------------------------------------------------------------------
================================================================================
python-flexmock-0.10.10-1.el8 (FEDORA-EPEL-2021-c9e05041dd)
Testing library that makes it easy to create mocks, stubs and fakes
--------------------------------------------------------------------------------
Update Information:
Update to 0.10.10
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 22 2021 Hunor Csomort��ni <csomh(a)redhat.com> - 0.10.10-1
- Update to 0.10.10 (#2001223)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2001223 - python-flexmock-0.10.10 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2001223
--------------------------------------------------------------------------------
================================================================================
rpki-client-7.3-1.el8 (FEDORA-EPEL-2021-c2362a6c0f)
RPKI validator to support BGP Origin Validation
--------------------------------------------------------------------------------
Update Information:
rpki-client 7.3 =============== * Improve the HTTP client code (status code
handling, http proxy support, keep-alive). * In RRDP, do not access URI with
userinfo (`@`-sign). * Improve RRDP syncing by considering a notification file
serial jumping backwards as synced repository. * Make `-R` (`rsync` only) also
apply to the fetching of TA files. * Only sync `*.{cer,crl,gbr,mft,roa}` files
via `rsync` and exclude all others. * When producing output for OpenBGPd, make
use of the `roa-set expires` attribute to prevent machines from loading outdated
`roa-set`s. * In RRDP, limit the number of deltas to 300 per repo. If more
deltas exist, downloading a full snapshot is faster. * Limit the validation
depth of X509 certificate chains to 12, double the current depth seen in RPKI.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Sep 23 2021 Robert Scheck <robert(a)fedoraproject.org> 7.3-1
- Upgrade to 7.3 (#2007447)
* Tue Sep 14 2021 Sahana Prasad <sahana(a)redhat.com> - 7.2-2
- Rebuilt with OpenSSL 3.0.0
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2007447 - rpki-client-7.3 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2007447
--------------------------------------------------------------------------------
================================================================================
sassc-3.4.5-2.el8 (FEDORA-EPEL-2021-e8bf6162d1)
Wrapper around libsass to compile CSS stylesheet
--------------------------------------------------------------------------------
Update Information:
First epel8 build. Use version that matches rhel8 libsass version
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
================================================================================
utf8proc-epel-2.1.1-5.el8 (FEDORA-EPEL-2021-7f14a5cc70)
Library for processing UTF-8 encoded Unicode strings
--------------------------------------------------------------------------------
Update Information:
Provide utf8proc-devel for EPEL8
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
The following Fedora EPEL 7 Security updates need testing:
Age URL
7 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-f005e1b879 debmirror-2.35-1.el7
3 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-2f9b2cf4af ckeditor-4.16.2-1.el7
2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-d179a438bc libspf2-1.2.11-1.20210922git4915c308.el7
1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-37f81a6244 golang-github-prometheus-2.26.1-1.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
openbgpd-7.2-1.el7
rpki-client-7.3-1.el7
Details about builds:
================================================================================
openbgpd-7.2-1.el7 (FEDORA-EPEL-2021-d380aed307)
OpenBGPD Routing Daemon
--------------------------------------------------------------------------------
Update Information:
OpenBGPD 7.2 ============ This release includes the following changes to the
previous release: * Support for RFC 9072 - Extended Optional Parameters
Length for `BGP OPEN` Message * Support for RFC 8050 - MRT Format with BGP
Additional Path Extensions * Implement receive side of RFC 7911 -
Advertisement of Multiple Paths in BGP. OpenBGPD is currently not able to send
multiple paths out. * Improve checks of VRPs loaded via RTR or from the roa-
set table. * Allow to optionally specify an expiry time for `roa-set` entries
to mitigate BGP route decision making based on outdated RPKI data. OpenBGPD's
companion `rpki-client` produces `roa-set`s with the new `expires` property.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Sep 23 2021 Robert Scheck <robert(a)fedoraproject.org> 7.2-1
- Upgrade to 7.2 (#2007210)
* Thu Jul 22 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 7.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2007210 - openbgpd-7.2 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2007210
--------------------------------------------------------------------------------
================================================================================
rpki-client-7.3-1.el7 (FEDORA-EPEL-2021-dab7665591)
RPKI validator to support BGP Origin Validation
--------------------------------------------------------------------------------
Update Information:
rpki-client 7.3 =============== * Improve the HTTP client code (status code
handling, http proxy support, keep-alive). * In RRDP, do not access URI with
userinfo (`@`-sign). * Improve RRDP syncing by considering a notification file
serial jumping backwards as synced repository. * Make `-R` (`rsync` only) also
apply to the fetching of TA files. * Only sync `*.{cer,crl,gbr,mft,roa}` files
via `rsync` and exclude all others. * When producing output for OpenBGPd, make
use of the `roa-set expires` attribute to prevent machines from loading outdated
`roa-set`s. * In RRDP, limit the number of deltas to 300 per repo. If more
deltas exist, downloading a full snapshot is faster. * Limit the validation
depth of X509 certificate chains to 12, double the current depth seen in RPKI.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Sep 23 2021 Robert Scheck <robert(a)fedoraproject.org> 7.3-1
- Upgrade to 7.3 (#2007447)
* Tue Sep 14 2021 Sahana Prasad <sahana(a)redhat.com> - 7.2-2
- Rebuilt with OpenSSL 3.0.0
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2007447 - rpki-client-7.3 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2007447
--------------------------------------------------------------------------------
I believe this is a recommendation, versus a policy.
I wanted to get people's thoughts on it, and if ya'll like it, put it in
the documentation.
----
In Red Hat Enterprise Linux (RHEL) 8, Red Hat decided to not ship all
packages that are built from RHEL spec files. This will also be true of
RHEL 9, and possibly future RHEL releases. These missing packages are
usually -devel packages and may impact an EPEL package build.
If your EPEL package is impacted by a missing -devel package, do the
following.
1 - Request the package be added to RHEL 8 and 9 CRB repository.
-- To initiate this process, please file a bug in
https://bugzilla.redhat.com and request it be added to RHEL 8 and 9. Report
the bug against the "CentOS Stream" version of the "Red Hat Enterprise
Linux 8" and/or "Red Hat Enterprise Linux 9" product.
-- Be sure to say that it is impacting an EPEL build, and which package it
is impacting.
2 - Create an epel package that only has the missing packages.
-- Be prepared to maintain this package as long as it is needed.
-- It is recommended that you name it <package>-epel
-- It is recommended that you add the epel-packaging-sig group as a
co-maintainer
-- It qualifies for an exception to the review process[1] so you can
request the repo with
--- fedpkg request-repo --exception <package>-epel
-- If you need help building this, ask for help. We have some examples.
3 - When/If the missing package(s) are added to RHEL CRB, retire your -epel
package.
---
Sorry, this is a little rushed. I wanted to get something out sooner,
rather than later.
Troy
[1] -
https://docs.fedoraproject.org/en-US/packaging-guidelines/ReviewGuidelines/…
- Third bullet point
The following Fedora EPEL 8 Security updates need testing:
Age URL
5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2021-d5cf26cbeb python-rsa-4.7.2-1.el8
The following builds have been pushed to Fedora EPEL 8 updates-testing
charliecloud-0.25-1.el8
golang-github-prometheus-2.26.1-1.el8
libspf2-1.2.11-1.20210922git4915c308.el8
libwbxml-0.11.7-5.el8
supybot-meetbot-0.4-1.el8
wireguard-tools-1.0.20210914-1.el8
Details about builds:
================================================================================
charliecloud-0.25-1.el8 (FEDORA-EPEL-2021-0ec207f547)
Lightweight user-defined software stacks for high-performance computing
--------------------------------------------------------------------------------
Update Information:
New version. Bundle working lark-parser.
--------------------------------------------------------------------------------
ChangeLog:
* Mon Sep 20 2021 Jordan Ogas <jogas(a)lanl.gov 0.25-1
- bundle python lark parser
- new version
--------------------------------------------------------------------------------
================================================================================
golang-github-prometheus-2.26.1-1.el8 (FEDORA-EPEL-2021-3dbdaa5f12)
Prometheus monitoring system and time series database
--------------------------------------------------------------------------------
Update Information:
Update to 2.26.1
--------------------------------------------------------------------------------
ChangeLog:
* Mon Sep 20 2021 Robert-Andr�� Mauchin <zebob.m(a)gmail.com> - 2.26.1-1
- Update to 2.26.1
- Add additional variable to pass options to the service
- Security fix for CVE-2021-29622
- Close: rhbz#1928323, rhbz#2005296, rhbz#1962720, rhbz#1962718
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1962718 - CVE-2021-29622 prometheus: open redirect under the /new endpoint
https://bugzilla.redhat.com/show_bug.cgi?id=1962718
--------------------------------------------------------------------------------
================================================================================
libspf2-1.2.11-1.20210922git4915c308.el8 (FEDORA-EPEL-2021-7d0a7b6146)
An implementation of the SPF specification
--------------------------------------------------------------------------------
Update Information:
Update to latest in git.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 22 2021 Bojan Smojver <bojan(a)rexursive.com> - 1.2.11-1.20210922git4915c308
- Build latest upstream git HEAD
- CVE-2021-20314
* Thu Jul 22 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.2.10-30.20150405gitd57d79fd
- Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
* Fri May 21 2021 Jitka Plesnikova <jplesnik(a)redhat.com> - 1.2.10-29.20150405gitd57d79fd
- Perl 5.34 rebuild
* Tue Jan 26 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.2.10-28.20150405gitd57d79fd
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
* Tue Jul 28 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.2.10-27.20150405gitd57d79fd
- Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
* Tue Jun 23 2020 Jitka Plesnikova <jplesnik(a)redhat.com> - 1.2.10-26.20150405gitd57d79fd
- Perl 5.32 rebuild
* Wed Jan 29 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.2.10-25.20150405gitd57d79fd
- Rebuilt for https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1993071 - CVE-2021-20314 libspf2: stack buffer overflow when processing SPF explanation macros [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1993071
[ 2 ] Bug #1993072 - CVE-2021-20314 libspf2: stack buffer overflow when processing SPF explanation macros [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1993072
--------------------------------------------------------------------------------
================================================================================
libwbxml-0.11.7-5.el8 (FEDORA-EPEL-2021-5f7c1954dc)
Library and tools to parse, encode and handle WBXML documents
--------------------------------------------------------------------------------
Update Information:
This update brings a new libwbxml package for handling WBXML documents.
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2006152 - Please build libwbxml for EPEL 8
https://bugzilla.redhat.com/show_bug.cgi?id=2006152
--------------------------------------------------------------------------------
================================================================================
supybot-meetbot-0.4-1.el8 (FEDORA-EPEL-2021-e681cb1233)
Plugin for Supybot for handling IRC meetings
--------------------------------------------------------------------------------
Update Information:
Update to upstream version 0.4 This is a bugfix release that fixes the
following issues: * Previously, the body format of the message sent out via
Fedora Messaging was not complete. The URL was not including the prefix, and the
details key did not include the nick. This caused FMN to not parse the message
correctly. [see commit 1151b06](https://github.com/fedora-infra/supybot-
meetbot/commit/1151b06fe61931e65bc2a3f346705f47b989c6ed) * Previously when the
MeetBot plugin was installed, any command that was not recognised by Supybot or
its plugins would result in an exception being thrown
[#18](https://github.com/fedora-infra/supybot-meetbot/issues/18). Additionally,
none of the non-meeting commands (like .listmeetings and .recent) were working
[#20](https://github.com/fedora-infra/supybot-meetbot/issues/20). Both these
issues were related to a piece of experimental code that was causing some
issues. This was removed in [#21](https://github.com/fedora-infra/supybot-
meetbot/issues/21), and the commands work as expected now.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 22 2021 Ryan Lerch <rlerch(a)redhat.com> - 0.4-1
- Fix message body format when sending a Fedora message
- Fix standard commands like .listmeetings and .recent
--------------------------------------------------------------------------------
================================================================================
wireguard-tools-1.0.20210914-1.el8 (FEDORA-EPEL-2021-dbd920f706)
Fast, modern, secure VPN tunnel
--------------------------------------------------------------------------------
Update Information:
Update to 1.0.20210914
--------------------------------------------------------------------------------
ChangeLog:
* Tue Sep 21 2021 Joe Doss <joe(a)solidadmin.com> - 1.0.20210914-1
- contrib/launchd: fix xml syntax error
- wg-quick: darwin: account for "link#XX" gateways
- ipc: add wireguard-nt support
- ipc: cache windows lookups to avoid O(n^2) with nested lookups
- ipc: remove windows elevation
- ipc: windows: don't display disabled adapters
- ipc: windows: use devpkey instead of nci for name
- wg-quick: android: adjust for android 12
- wg-quick: openbsd: set DNS with resolvd(8)
* Fri Jul 23 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.0.20210424-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2003848 - wireguard-tools-1.0.20210914 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2003848
--------------------------------------------------------------------------------
Dear all,
You are kindly invited to the meeting:
EPEL Steering Committee on 2021-09-22 from 16:00:00 to 17:00:00 US/Eastern
At fedora-meeting(a)irc.libera.chat
The meeting will be about:
This is the weekly EPEL Steering Committee Meeting.
A general agenda is the following:
#meetingname EPEL
#topic Intros
#topic Old Business
#topic EPEL-7
#topic EPEL-8
#topic EPEL-9
#topic Openfloor
#endmeeting
Source: https://calendar.fedoraproject.org//meeting/9854/