The following Fedora EPEL 7 Security updates need testing:
Age URL
143
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-3835d39d1a
unrtf-0.21.9-8.el7
94
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-f9d6ff695a
bibutils-6.6-1.el7 ghc-hs-bibutils-6.6.0.0-1.el7 pandoc-citeproc-0.3.0.1-4.el7
77
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-3c9292b62d
condor-8.6.11-1.el7
50
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-3492a96896
myrepos-1.20180726-1.el7
8
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-1104372fa7
teeworlds-0.6.5-1.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
drupal7-7.60-2.el7
git-publish-1.4.4-4.el7
jglobus-2.1.0-11.el7
libgit2-0.26.8-1.el7
libmodulemd-1.7.0-1.el7
nnn-2.0-1.el7
perl-Convert-Base32-0.06-2.el7
php-pear-CAS-1.3.6-1.el7
php-pecl-psr-0.5.1-1.el7
Details about builds:
================================================================================
drupal7-7.60-2.el7 (FEDORA-EPEL-2018-bdb21ebc3f)
An open-source content-management platform
--------------------------------------------------------------------------------
Update Information:
*
https://www.drupal.org/project/drupal/releases/7.60 * [SA-
CORE-2018-006](https://www.drupal.org/SA-CORE-2018-006)
--------------------------------------------------------------------------------
ChangeLog:
* Sun Oct 28 2018 Shawn Iwinski <shawn.iwinski(a)gmail.com> - 7.60-2
- Explicit python dependencies
- Explicit python2 except el5
- See
https://koji.fedoraproject.org/koji/buildinfo?buildID=1156502
* Sat Oct 27 2018 Shawn Iwinski <shawn.iwinski(a)gmail.com> - 7.60-1
- Update to 7.60 (RHBZ #1643121 / RHBZ #1643122 / RHBZ #1643124 / SA-CORE-2018-006)
- Remove patch drupal-7.14-CVE-2012-2922 (see
https://groups.drupal.org/node/230373)
* Thu Jul 12 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 7.59-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1643121 - drupal: Multiple Vulnerabilities - SA-CORE-2018-006
https://bugzilla.redhat.com/show_bug.cgi?id=1643121
--------------------------------------------------------------------------------
================================================================================
git-publish-1.4.4-4.el7 (FEDORA-EPEL-2018-7a52f40459)
Prepare and store patch revisions as git tags
--------------------------------------------------------------------------------
Update Information:
Add missing git-email package dependency
--------------------------------------------------------------------------------
ChangeLog:
* Mon Oct 29 2018 Stefan Hajnoczi <stefanha(a)gmail.com> - 1.4.4-4
- Add missing git-email package dependency
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.4.4-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Tue Jun 19 2018 Miro Hron��ok <mhroncok(a)redhat.com> - 1.4.4-2
- Rebuilt for Python 3.7
* Mon Jun 18 2018 Stefan Hajnoczi <stefanha(a)gmail.com> - 1.4.4-1
- Merge To: list but offer --override-to to stop this behavior
- Add --blurb-template for cover-letter templates
- Pass through extra arguments to git-format-patch(1)
- Add missing UTF-8 encoding for 's'elect menu item
- Don't treat config strings as lists in Python 3
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1640197 - Missing dep on git-email package
https://bugzilla.redhat.com/show_bug.cgi?id=1640197
--------------------------------------------------------------------------------
================================================================================
jglobus-2.1.0-11.el7 (FEDORA-EPEL-2018-6ac48be2a0)
Globus Java client libraries
--------------------------------------------------------------------------------
Update Information:
Apply patches from OSG/WLCG.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Oct 30 2018 Mattias Ellert <mattias.ellert(a)physics.uu.se> - 2.1.0-11
- Apply patches from OSG/WLCG
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.1.0-10
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Wed May 2 2018 Mattias Ellert <mattias.ellert(a)physics.uu.se> - 2.1.0-9
- Disble axis and tomcat modules for Fedora >= 28 (missing dependencies)
* Wed Feb 7 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.1.0-8
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
* Wed Jul 26 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.1.0-7
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
libgit2-0.26.8-1.el7 (FEDORA-EPEL-2018-8876f503ce)
C implementation of the Git core methods as a library with a solid API
--------------------------------------------------------------------------------
Update Information:
Update to 0.26.8
--------------------------------------------------------------------------------
ChangeLog:
* Fri Oct 26 2018 Pete Walter <pwalter(a)fedoraproject.org> - 0.26.8-1
- Update to 0.26.8
- Update upstream URL
--------------------------------------------------------------------------------
================================================================================
libmodulemd-1.7.0-1.el7 (FEDORA-EPEL-2018-866df6a86b)
Module metadata manipulation library
--------------------------------------------------------------------------------
Update Information:
Update to 1.7.0 * Enhance YAML parser for use with `fedmod lint` * Support
running unit tests against installed packages * Include all NSVCs for
ModuleStreams in Modulemd.ImprovedModule
--------------------------------------------------------------------------------
ChangeLog:
* Fri Oct 26 2018 Stephen Gallagher <sgallagh(a)redhat.com> - 1.7.0-1
- Update to 1.7.0
- Enhance YAML parser for use with `fedmod lint`
- Support running unit tests against installed packages
- Include all NSVCs for ModuleStreams in ImprovedModule
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1611460 - Man page scan results for libmodulemd
https://bugzilla.redhat.com/show_bug.cgi?id=1611460
--------------------------------------------------------------------------------
================================================================================
nnn-2.0-1.el7 (FEDORA-EPEL-2018-c9ef7ce43d)
The missing terminal file browser for X
--------------------------------------------------------------------------------
Update Information:
Release 2.0
--------------------------------------------------------------------------------
================================================================================
perl-Convert-Base32-0.06-2.el7 (FEDORA-EPEL-2018-f72ee77191)
Encoding and decoding of base32 strings
--------------------------------------------------------------------------------
Update Information:
First build.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1640640 - Review Request: perl-Convert-Base32 - Encoding and decoding of
base32 strings
https://bugzilla.redhat.com/show_bug.cgi?id=1640640
--------------------------------------------------------------------------------
================================================================================
php-pear-CAS-1.3.6-1.el7 (FEDORA-EPEL-2018-29716ed12f)
Central Authentication Service client library in php
--------------------------------------------------------------------------------
Update Information:
**Version 1.3.6** **Security Fixes:** * Fix XSS in proxy mode [#271]
(Joachim Fritschi) **Bug Fixes:** * Fix bad condition [#252] (Brice
Vercoustre) * Hash ticket strings to generate valid-length session-ids [#224,
#244, #248] (Adam Franco) * Fix "phpCAS" class capitalization in code [#273,
#277] (phy25) **Improvement:** * Remove fallback for __autoload [#247]
(marinaglancy) * More robust check for Windows OS in File.php [#275]
(xamount) * Fix continue statement within switch/case for php 7.3
compatibility [#278] (stonk7)
--------------------------------------------------------------------------------
ChangeLog:
* Fri Oct 26 2018 Remi Collet <remi(a)remirepo.net> - 1.3.6-1
- update to 1.3.6
- new github and packagist owner
--------------------------------------------------------------------------------
================================================================================
php-pecl-psr-0.5.1-1.el7 (FEDORA-EPEL-2018-246fff35af)
PSR interfaces
--------------------------------------------------------------------------------
Update Information:
**Version 0.5.1** - Fix `Psr\Http\Message\ServerRequestInterface` not actually
extending `Psr\Http\Message\RequestInterface`
--------------------------------------------------------------------------------
ChangeLog:
* Tue Oct 30 2018 Remi Collet <remi(a)remirepo.net> - 0.5.1-1
- update to 0.5.1
--------------------------------------------------------------------------------