The following Fedora EPEL 6 Security updates need testing:
https://admin.fedoraproject.org/updates/bugzilla-3.4.11-1.el6
https://admin.fedoraproject.org/updates/rt3-3.8.10-2.el6.1
https://admin.fedoraproject.org/updates/phpMyAdmin-3.4.4-1.el6
https://admin.fedoraproject.org/updates/erlang-R14B-03.3.el6
The following builds have been pushed to Fedora EPEL 6 updates-testing
gyp-0.1-0.6.1010svn.el6
nagios-plugins-rhev-1.0.0-2.el6
nginx-1.0.5-1.el6
perl-POE-Component-Client-DNS-1.051-1.el6
perl-POE-Component-Client-Keepalive-0.2620-1.el6
phpMyAdmin-3.4.4-1.el6
python-mygpoclient-1.6-1.el6
sems-1.4.2-1.el6
yourls-1.5-4.el6
Details about builds:
================================================================================
gyp-0.1-0.6.1010svn.el6 (FEDORA-EPEL-2011-4263)
Generate Your Projects
--------------------------------------------------------------------------------
Update Information:
* port from Fedora.
--------------------------------------------------------------------------------
================================================================================
nagios-plugins-rhev-1.0.0-2.el6 (FEDORA-EPEL-2011-4261)
Nagios Plugin - check_rhev
--------------------------------------------------------------------------------
Update Information:
Nagios plugin for RHEV
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #730888 - Review Request: nagios-plugins-rhev - Nagios Plugin to monitor RHEV
https://bugzilla.redhat.com/show_bug.cgi?id=730888
--------------------------------------------------------------------------------
================================================================================
nginx-1.0.5-1.el6 (FEDORA-EPEL-2011-4258)
Robust, small and high performance HTTP and reverse proxy server
--------------------------------------------------------------------------------
Update Information:
Update to 1.0.5 stable release
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
================================================================================
perl-POE-Component-Client-DNS-1.051-1.el6 (FEDORA-EPEL-2011-4257)
Non-blocking/concurrent DNS queries using Net::DNS and POE
--------------------------------------------------------------------------------
Update Information:
POE::Component::Client::DNS provides a facility for non-blocking, concurrent DNS requests.
Using POE, it allows other tasks to run while waiting for name servers to respond.
--------------------------------------------------------------------------------
================================================================================
perl-POE-Component-Client-Keepalive-0.2620-1.el6 (FEDORA-EPEL-2011-4259)
Manages and keeps alive client connections
--------------------------------------------------------------------------------
Update Information:
POE::Component::Client::Keepalive creates and manages connections for other components. It
maintains a cache of kept-alive connections for quick reuse. It is written specifically
for clients that can benefit from kept-alive connections, such as HTTP clients. Using it
for one-shot connections would probably be silly.
--------------------------------------------------------------------------------
================================================================================
phpMyAdmin-3.4.4-1.el6 (FEDORA-EPEL-2011-4255)
Handle the administration of MySQL over the World Wide Web
--------------------------------------------------------------------------------
Update Information:
Changes for 3.4.4.0 (2011-08-24):
- [parser] SQL parser breaks AJAX requests if query has unclosed quotes
- [parser] Invalid escape sequence in SQL parser
- [config] $cfg['Export']['asfile'] set to false does not select as Text
option
- [export] Working SQL query exports error page
- [interface] "Create an index on X columns" form not validated
- [interface] JS error in Table->Structure->Index->Edit
- [interface] Info message has "error" class
- [interface] TABbing through a NULL field in the inline mode resets NULL
- [various] remove version number in /setup
- [usability] Missing "Generate Password" button
- [display] Missing Server Parameter on inline sql query
- [navi] Drop field -> lost active table
- [various] remove misleading comment on the "Rename database" interface
- [interface] Fix footnote for inexact count while browsing
- [interface] Fix security warning link in setup
- [display] Backquotes in normal text on import page
- [core] With Suhosin, urls are too long in edit links
- [security] Missing sanitization on the table, column and index names leads to XSS
vulnerabilities, see PMASA-2011-13
(
http://www.phpmyadmin.net/home_page/security/PMASA-2011-13.php)
--------------------------------------------------------------------------------
ChangeLog:
* Thu Aug 25 2011 Robert Scheck <robert(a)fedoraproject.org> 3.4.4-1
- Upgrade to 3.4.4 (#733475, #733477, #733480)
* Tue Jul 26 2011 Robert Scheck <robert(a)fedoraproject.org> 3.4.3.2-2
- Disabled the warning for missing internal database relation
- Reworked spec file to build phpMyAdmin3 for RHEL 5 (#725885)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #733475 - CVE-2011-3181 phpMyAdmin XSS flaw
https://bugzilla.redhat.com/show_bug.cgi?id=733475
--------------------------------------------------------------------------------
================================================================================
python-mygpoclient-1.6-1.el6 (FEDORA-EPEL-2011-4254)
Python module to connect to the
my.gpodder.org webservice
--------------------------------------------------------------------------------
Update Information:
New upstream update.
--------------------------------------------------------------------------------
ChangeLog:
* Sat Aug 6 2011 Ville-Pekka Vainio <vpvainio AT iki.fi> 1.6-1
- New upstream release
--------------------------------------------------------------------------------
================================================================================
sems-1.4.2-1.el6 (FEDORA-EPEL-2011-4253)
SIP Express Media Server, an extensible SIP media server
--------------------------------------------------------------------------------
Update Information:
Ver. 1.4.2
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 26 2011 Peter Lemenkov <lemenkov(a)gmail.com> - 1.4.2-1
- Ver. 1.4.2 (bugfix release in 1.4.x branch)
* Thu Jul 21 2011 Peter Lemenkov <lemenkov(a)gmail.com> - 1.4.1-1
- Ver. 1.4.1
- Removed obsolete b2b apps: auth_b2b, call_timer, sst_b2b, sw_prepaid_sip
- Disabled gateway module
* Wed Feb 9 2011 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
1.3.1-5
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
yourls-1.5-4.el6 (FEDORA-EPEL-2011-4260)
Your Own URL Shortener
--------------------------------------------------------------------------------
Update Information:
YOURLS is a small set of PHP scripts that will allow you to run your own URL
shortening service (a la TinyURL). You can make it private or public,
you can pick custom keyword URLs, it comes with its own API.
--------------------------------------------------------------------------------