The following Fedora EPEL 4 Security updates need testing:
https://admin.fedoraproject.org/updates/mediawiki116-1.16.5-1.el4
The following builds have been pushed to Fedora EPEL 4 updates-testing
ldapvi-1.7-12.el4
mediawiki116-1.16.5-1.el4
nawk-20110506-1.el4
perl-Module-Signature-0.68-1.el4
perl-Test-CheckChanges-0.14-2.el4
testdisk-6.12-1.el4
vile-9.8e-1.el4
Details about builds:
================================================================================
ldapvi-1.7-12.el4 (FEDORA-EPEL-2011-3305)
An interactive LDAP client
--------------------------------------------------------------------------------
Update Information:
Don't try to change file encoding, it is depreceated and
wrong most of the time anyway.
--------------------------------------------------------------------------------
ChangeLog:
* Thu May 12 2011 Matěj Cepl <mcepl(a)redhat.com> - 1.7-12
- don't play with the file encoding (#691958)
* Mon Feb 7 2011 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
1.7-11
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #691958 - ldapvi illegally tries to set vim encoding option in a modeline
(with patch)
https://bugzilla.redhat.com/show_bug.cgi?id=691958
--------------------------------------------------------------------------------
================================================================================
mediawiki116-1.16.5-1.el4 (FEDORA-EPEL-2011-3322)
A wiki engine
--------------------------------------------------------------------------------
Update Information:
Security update to 1.16.5, fixes:
- CVE-2011-1578 CVE-2011-1579 CVE-2011-1580 CVE-2011-1765 (Bug 696362)
- CVE-2011-0047 (Bug 674457)
--------------------------------------------------------------------------------
ChangeLog:
* Wed May 11 2011 Orion Poplawski <orion(a)cora.nwra.com> - 1.16.5-1
- Security update to 1.16.5, fixes:
CVE-2011-1578 CVE-2011-1579 CVE-2011-1580 CVE-2011-1765 (Bug 696362)
CVE-2011-0047 (Bug 674457)
* Sat Jan 15 2011 Stephen Smoogen <ssmoogen(a)ponyo.int.smoogespace.com> - 1.16.1-2
- Security update to 1.16.1
http://lists.wikimedia.org/pipermail/mediawiki-announce/2011-January/0000...
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #696362 - CVE-2011-1578 CVE-2011-1579 CVE-2011-1580 CVE-2011-1765 mediawiki116
various flaws [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=696362
[ 2 ] Bug #674457 - CVE-2011-0047 mediawiki: multiple vulnerabilities corrected in
mediawiki 1.16.2 [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=674457
--------------------------------------------------------------------------------
================================================================================
nawk-20110506-1.el4 (FEDORA-EPEL-2011-3316)
"The one true awk" descended from UNIX V7
--------------------------------------------------------------------------------
ChangeLog:
* Wed May 11 2011 Mark McKinstry <mmckinst(a)nexcess.net> 20110506-1
- upgrade to 20110506 version
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #702887 - a new release is available
https://bugzilla.redhat.com/show_bug.cgi?id=702887
--------------------------------------------------------------------------------
================================================================================
perl-Module-Signature-0.68-1.el4 (FEDORA-EPEL-2011-3293)
CPAN signature management utilities and modules
--------------------------------------------------------------------------------
Update Information:
This update fixes upstream bug CPAN RT#68150 in which the previous version (0.67) fails to
verify properly signature files created using older versions (0.66 or earlier) of
Module::Signature.
--------------------------------------------------------------------------------
ChangeLog:
* Fri May 13 2011 Paul Howarth <paul(a)city-fan.org> - 0.68-1
- Update to 0.68
- Fix breakage introduced by 0.67 (CPAN RT#68150)
--------------------------------------------------------------------------------
================================================================================
perl-Test-CheckChanges-0.14-2.el4 (FEDORA-EPEL-2011-3303)
Check that the Changes file matches the distribution
--------------------------------------------------------------------------------
Update Information:
This is the first release of perl-Test-CheckChanges.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #702692 - Review Request: perl-Test-CheckChanges - Check that the Changes file
matches the distribution
https://bugzilla.redhat.com/show_bug.cgi?id=702692
--------------------------------------------------------------------------------
================================================================================
testdisk-6.12-1.el4 (FEDORA-EPEL-2011-3301)
Tool to check and undelete partition, PhotoRec recovers lost files
--------------------------------------------------------------------------------
Update Information:
TestDisk and PhotoRec 6.12 now supports exFAT: partition recovery was possible since 6.11,
now you can list files from a exFAT filesystem, copy files, undelete files, recover data
from the "free" space...
More than 60 new file formats have been added to PhotoRec.
It's also possible to create your own custom signature to recover
more file formats. PhotoRec now generates Digital Forensics XML reports.
--------------------------------------------------------------------------------
ChangeLog:
* Thu May 12 2011 Christophe Grenier <grenier(a)cgsecurity.org> - 6.12.1
- Update to latest version
--------------------------------------------------------------------------------
================================================================================
vile-9.8e-1.el4 (FEDORA-EPEL-2011-3288)
VI Like Emacs
--------------------------------------------------------------------------------
ChangeLog:
* Wed May 11 2011 Mark McKinstry <mmckinst(a)nexcess.net> 9.8e-1
- upgrade to 9.8e
- fix dependency
--------------------------------------------------------------------------------