The following Fedora EPEL 7 Security updates need testing:
Age URL
859
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-1087
dokuwiki-0-0.24.20140929c.el7
622
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-dac7ed832f
mcollective-2.8.4-1.el7
204
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-04bc9dd81d
libbsd-0.8.3-1.el7
101
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-d241156dfe
mod_cluster-1.3.3-10.el7
100
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-5f9a6163b4
tnef-1.4.14-1.el7
99
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-7ecb12e378
python-XStatic-jquery-ui-1.12.0.1-1.el7
33
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-4aae1e22f1
lxc-1.0.10-2.el7
13
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-ffb0e00f3b
mosquitto-1.4.13-1.el7
11
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-a427bcb775
yara-3.6.2-1.el7
9
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-7678ea423a
jabberd-2.6.1-1.el7
9
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-86125e7897
GraphicsMagick-1.3.26-1.el7
8
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-52b6bc17c1
globus-ftp-client-8.36-1.el7 globus-gass-cache-program-6.7-1.el7
globus-gass-copy-9.27-1.el7 globus-gram-client-13.18-1.el7
globus-gram-job-manager-14.36-1.el7 globus-gram-job-manager-condor-2.6-5.el7
globus-gridftp-server-12.2-1.el7 globus-gssapi-gsi-12.17-1.el7 globus-io-11.9-1.el7
globus-net-manager-0.17-1.el7 globus-xio-5.16-1.el7 globus-xio-gsi-driver-3.11-1.el7
globus-xio-pipe-driver-3.10-1.el7 globus-xio-udt-driver-1.28-1.el7 myproxy-6.1.28-1.el7
8
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-d13b9e8413
cacti-1.1.12-2.el7
2
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-47be021843
heimdal-7.4.0-1.el7
1
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-a8886eb42e
cross-binutils-2.27-9.el7.1 cross-gcc-4.8.5-16.el7.1
0
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-93f422baa0
nodejs-6.11.1-1.el7
0
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-491dd51db6
phpldapadmin-1.2.3-10.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
lynis-2.5.2-1.el7
nodejs-6.11.1-1.el7
phpldapadmin-1.2.3-10.el7
uptimed-0.4.0-6.el7
xosd-2.2.14-24.el7
Details about builds:
================================================================================
lynis-2.5.2-1.el7 (FEDORA-EPEL-2017-07f310c73a)
Security and system auditing tool
--------------------------------------------------------------------------------
Update Information:
Update to 2.5.2
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1469320 - lynis-2.5.2 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1469320
--------------------------------------------------------------------------------
================================================================================
nodejs-6.11.1-1.el7 (FEDORA-EPEL-2017-93f422baa0)
JavaScript runtime
--------------------------------------------------------------------------------
Update Information:
[Security
update](https://nodejs.org/en/blog/vulnerability/july-2017-security-
releases/) ---- Fix typo from previous update. ---- Update to new version.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1463137 - CVE-2017-1000381 nodejs: c-ares: NAPTR parser out of bounds access
[fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1463137
--------------------------------------------------------------------------------
================================================================================
phpldapadmin-1.2.3-10.el7 (FEDORA-EPEL-2017-491dd51db6)
Web-based tool for managing LDAP servers
--------------------------------------------------------------------------------
Update Information:
Fix CVE-2017-11107 (#1471112)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1471112 - CVE-2017-11107 phpldapadmin: XSS in htdocs/entry_chooser.php via
form, element, rdn, or container parameter
https://bugzilla.redhat.com/show_bug.cgi?id=1471112
--------------------------------------------------------------------------------
================================================================================
uptimed-0.4.0-6.el7 (FEDORA-EPEL-2017-89b8f93f46)
A daemon to record and keep track of system up times
--------------------------------------------------------------------------------
Update Information:
Uptimed is an up time record daemon keeping track of the highest up times the
system ever had.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1470857 - Make package also available in EPEL7 for RHEL and CentOS 7
https://bugzilla.redhat.com/show_bug.cgi?id=1470857
--------------------------------------------------------------------------------
================================================================================
xosd-2.2.14-24.el7 (FEDORA-EPEL-2017-203bf9e58e)
On-screen display library for X
--------------------------------------------------------------------------------
Update Information:
This is a tool for displaying messages in X11 displays.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #756780 - Review Request: xosd - On-screen display library for X
https://bugzilla.redhat.com/show_bug.cgi?id=756780
--------------------------------------------------------------------------------