The following Fedora EPEL 6 Security updates need testing: Age URL 247 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-6828 chicken-4.9.0.1-4.el6 229 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-7031 python-virtualenv-12.0.7-1.el6 223 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-7168 rubygem-crack-0.3.2-2.el6 154 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-8148 optipng-0.7.5-5.el6 154 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-8156 nagios-4.0.8-1.el6 113 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-e2b4b5b2fb mcollective-2.8.4-1.el6 84 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-35e240edd9 thttpd-2.25b-24.el6 12 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-cb3b95bd2f firebird-2.5.5.26952.0-2.el6 12 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-8aee7a9340 php-horde-horde-5.2.9-1.el6 12 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-f61ec30f9f poco-1.4.2p1-3.el6 11 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-791080c274 nodejs-0.10.42-4.el6 7 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-eb24bfea0d octave-3.4.3-2.el6 gdl-0.9.5-4.el6 GraphicsMagick-1.3.23-4.el6 5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-46c6b5e4d4 botan-1.8.15-1.el6 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-58b3766907 libebml-1.2.2-1.el6
The following builds have been pushed to Fedora EPEL 6 updates-testing
libebml-1.2.2-1.el6 php-nette-2.3.9-1.el6 php-nette-caching-2.3.5-1.el6 php-tracy-2.3.9-1.el6 salt-2015.5.9-4.el6
Details about builds:
================================================================================ libebml-1.2.2-1.el6 (FEDORA-EPEL-2016-58b3766907) Extensible Binary Meta Language library -------------------------------------------------------------------------------- Update Information:
New in 1.2.2 version: * fix usage of the DEBUG #define (use LIBEBML_DEBUG instead) * The EbmlCodeVersion variable now resides in the library instead of being declared static in the header file. * only use the test element to read once in the loop Backported fixes for: * CVE-2015-8789 libebml: Usa-after-free vulnerability in EblMaster::Read() * CVE-2015-8790 CVE-2015-8791 libebml: information leaks in two functions -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1276337 - CVE-2015-8789 libebml: Usa-after-free vulnerability in EblMaster::Read() [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=1276337 [ 2 ] Bug #1303854 - CVE-2015-8791 CVE-2015-8790 libebml: information leaks in two functions [epel-6] https://bugzilla.redhat.com/show_bug.cgi?id=1303854 --------------------------------------------------------------------------------
================================================================================ php-nette-2.3.9-1.el6 (FEDORA-EPEL-2016-22d9369b13) Nette Framework -------------------------------------------------------------------------------- Update Information:
Nette Framework is a popular tool for PHP web development It is designed to be as usable and as friendly as possible. It focuses on security and performance and is definitely one of the safest PHP frameworks. Nette Framework speaks your language and helps you to easily build better websites. Cache accelerates your application by storing data, once hardly retrieved, for future use. To use this library, you just have to add, in your project: require_once '/usr/share/php/Nette/autoload.php'; -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1277484 - Review Request: php-nette - Nette Framework https://bugzilla.redhat.com/show_bug.cgi?id=1277484 --------------------------------------------------------------------------------
================================================================================ php-nette-caching-2.3.5-1.el6 (FEDORA-EPEL-2016-4b45707f19) Nette Caching Component -------------------------------------------------------------------------------- Update Information:
**Released version 2.3.5** * added NewMemcachedStorage using memcached extension #38 * CacheMacro: better error message --------------------------------------------------------------------------------
================================================================================ php-tracy-2.3.9-1.el6 (FEDORA-EPEL-2016-86402e2f37) Tracy: useful PHP debugger -------------------------------------------------------------------------------- Update Information:
**Released version 2.3.9** * bar.js: MouseEvent.buttons is not supported by Safari #134 * Dumper: support for general object exporter which is called for every object * Dumper: object exporters are called in order from most specific to general * Debugger: removes output buffer for Bar, Bluescreen and production error. It decides whether clean or flush output buffers. * Dumper: variable term=xterm-256color enables colors ---- **Released version 2.3.8** * added Debugger::$showBar, can disable debug bar #132 #83 #82 * Bluescreen: link to google opens in new window * Bar: add xdebug version to info panel * Dumper::encodeString() is independent on iconv #126 * Dumper: fixed dumping INF in PHP 7.0.2 --------------------------------------------------------------------------------
================================================================================ salt-2015.5.9-4.el6 (FEDORA-EPEL-2016-5309a37299) A parallel remote execution system -------------------------------------------------------------------------------- Update Information:
Updated dnf patch ---- Corrected Requires for salt-syndic package ---- Updated dnf patch ---- Update to bugfix release 2015.5.9, patched with proper dnf support --------------------------------------------------------------------------------
epel-devel@lists.fedoraproject.org