The following Fedora EPEL 9 Security updates need testing:
Age URL
6
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-97d6b10e34
rnp-0.16.3-1.el9
6
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-4894f94aaa
dr_libs-0^20230324git4b3d078-0.1.el9
6
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-e5d244075e
suricata-6.0.11-1.el9
The following builds have been pushed to Fedora EPEL 9 updates-testing
cinnamon-5.6.8-2.el9
cinnamon-settings-daemon-5.6.2-1.el9
gnome-shell-extension-system-monitor-applet-38-23.20230420git21d7b4e.el9
libsignal-protocol-c-2.3.3-8.el9
muffin-5.6.4-1.el9
mxml-3.3.1-2.el9
nemo-5.6.4-1.el9
remmina-1.4.30-2.el9
rubygem-yaml-lint-0.1.2-1.el9
rust-libc-0.2.142-1.el9
xapps-2.4.3-1.el9
Details about builds:
================================================================================
cinnamon-5.6.8-2.el9 (FEDORA-EPEL-2023-94612d3a99)
Window management and application launching for GNOME
--------------------------------------------------------------------------------
Update Information:
Assorted minor updates to Cinnamon Desktop for EPEL 9
--------------------------------------------------------------------------------
ChangeLog:
* Thu Apr 13 2023 Leigh Scott <leigh123linux(a)gmail.com> - 5.6.8-2
- Fix settings on aarch64
* Mon Mar 20 2023 Leigh Scott <leigh123linux(a)gmail.com> - 5.6.8-1
- Update to 5.6.8 release
--------------------------------------------------------------------------------
================================================================================
cinnamon-settings-daemon-5.6.2-1.el9 (FEDORA-EPEL-2023-94612d3a99)
The daemon sharing settings from CINNAMON to GTK+/KDE applications
--------------------------------------------------------------------------------
Update Information:
Assorted minor updates to Cinnamon Desktop for EPEL 9
--------------------------------------------------------------------------------
ChangeLog:
* Fri Mar 17 2023 Leigh Scott <leigh123linux(a)gmail.com> - 5.6.2-1
- Update to 5.6.2 release
--------------------------------------------------------------------------------
================================================================================
gnome-shell-extension-system-monitor-applet-38-23.20230420git21d7b4e.el9
(FEDORA-EPEL-2023-e38d252d89)
A Gnome shell system monitor extension
--------------------------------------------------------------------------------
Update Information:
Migrated to SPDX license
--------------------------------------------------------------------------------
ChangeLog:
* Thu Apr 20 2023 Nicolas Vi��ville <nicolas.vieville(a)uphf.fr> -
1:38-23.20230420git21d7b4e
- Migrated to SPDX license
- Add patch for gnome-shell < 3.34 (rhel 8) - RHBZ#2184351
- Add patch for compatibility with gnome-shell 44 - RHBZ#2188339
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2184351 - Regression / Update breaks ext in RHEL8 / TypeError:
GObject.registerClass() used with invalid base class
https://bugzilla.redhat.com/show_bug.cgi?id=2184351
[ 2 ] Bug #2188339 - system-monitor-applet not compatible with GNOME 44
https://bugzilla.redhat.com/show_bug.cgi?id=2188339
--------------------------------------------------------------------------------
================================================================================
libsignal-protocol-c-2.3.3-8.el9 (FEDORA-EPEL-2023-85fa59ae88)
Signal Protocol C library
--------------------------------------------------------------------------------
Update Information:
Backport a fix for [
CVE-2022-48468](https://cve.mitre.org/cgi-
bin/cvename.cgi?name=CVE-2022-48468) for
[
protobuf-c](https://github.com/protobuf-c/protobuf-c), which is bundled in
`libsignal-protocol-c`.
https://github.com/protobuf-c/protobuf-
c/commit/ec3d900001a13ccdaa8aef996b34c61159c76217
https://github.com/protobuf-c/protobuf-c/issues/499
https://github.com/protobuf-c/protobuf-c/pull/513
https://github.com/protobuf-c/protobuf-c/releases/tag/v1.4.1
--------------------------------------------------------------------------------
ChangeLog:
* Wed Apr 19 2023 Randy Barlow <bowlofeggs(a)fedoraproject.org> - 2.3.3-8
- Fix CVE-2022-48468: unsigned integer overflow (#2186673).
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2186674 - CVE-2022-48468 libsignal-protocol-c: protobuf-c: an unsigned
integer overflow in parse_required_member [epel-8]
https://bugzilla.redhat.com/show_bug.cgi?id=2186674
[ 2 ] Bug #2186675 - CVE-2022-48468 libsignal-protocol-c: protobuf-c: an unsigned
integer overflow in parse_required_member [fedora-36]
https://bugzilla.redhat.com/show_bug.cgi?id=2186675
--------------------------------------------------------------------------------
================================================================================
muffin-5.6.4-1.el9 (FEDORA-EPEL-2023-94612d3a99)
Window and compositing manager based on Clutter
--------------------------------------------------------------------------------
Update Information:
Assorted minor updates to Cinnamon Desktop for EPEL 9
--------------------------------------------------------------------------------
ChangeLog:
* Fri Mar 17 2023 Leigh Scott <leigh123linux(a)gmail.com> - 5.6.4-1
- Update to 5.6.4 release
--------------------------------------------------------------------------------
================================================================================
mxml-3.3.1-2.el9 (FEDORA-EPEL-2023-9460586086)
Miniature XML development library
--------------------------------------------------------------------------------
Update Information:
Initial version for epel9
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jan 19 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.3.1-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild
* Sat Jan 7 2023 Kevin Fenzi <kevin(a)scrye.com> - 3.3.1-1
- Update to 3.3.1. Fixes rhbz#2110721
* Fri Jul 22 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.3-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
* Thu Jan 20 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.3-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
* Sun Nov 7 2021 Kevin Fenzi <kevin(a)scrye.com> - 3.3-1
- Update to 3.3. Fixes rhbz#2020915
* Thu Jul 22 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.2-5
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
* Tue Jan 26 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.2-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2186881 - Please branch and build mxml in epel9
https://bugzilla.redhat.com/show_bug.cgi?id=2186881
--------------------------------------------------------------------------------
================================================================================
nemo-5.6.4-1.el9 (FEDORA-EPEL-2023-94612d3a99)
File manager for Cinnamon
--------------------------------------------------------------------------------
Update Information:
Assorted minor updates to Cinnamon Desktop for EPEL 9
--------------------------------------------------------------------------------
ChangeLog:
* Mon Mar 20 2023 Leigh Scott <leigh123linux(a)gmail.com> - 5.6.4-1
- Update to 5.6.4 release
* Sat Feb 4 2023 Leigh Scott <leigh123linux(a)gmail.com> - 5.6.2-3
- Add Budgie to OnlyShowIn
--------------------------------------------------------------------------------
================================================================================
remmina-1.4.30-2.el9 (FEDORA-EPEL-2023-483a55d932)
Remote Desktop Client
--------------------------------------------------------------------------------
Update Information:
Add patch: 0010_remmina_fix_vnc_crash_domain_socket_c6adb35b.patch
--------------------------------------------------------------------------------
ChangeLog:
* Thu Apr 20 2023 Phil Wyett <philip.wyett(a)kathenas.org> - 1.4.30-2
- Add patch: 0001_remmina_fix_vnc_crash_domain_socket.patch
--------------------------------------------------------------------------------
================================================================================
rubygem-yaml-lint-0.1.2-1.el9 (FEDORA-EPEL-2023-74fa53c99b)
Really simple YAML lint
--------------------------------------------------------------------------------
Update Information:
* Update to 0.1.2.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Apr 20 2023 Steve Traylen <steve.traylen(a)cern.ch> - 0.1.2-1
- Upstream to 0.1.2
- Include README, LICENSE and tests(and run them) from upstream
- Clean up .spec file indentation and alignment
--------------------------------------------------------------------------------
================================================================================
rust-libc-0.2.142-1.el9 (FEDORA-EPEL-2023-bcd198fec6)
Raw FFI bindings to platform libraries like libc
--------------------------------------------------------------------------------
Update Information:
Update to version 0.2.142.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Apr 20 2023 Fabio Valentini <decathorpe(a)gmail.com> - 0.2.142-1
- Update to version 0.2.142; Fixes RHBZ#2188389
--------------------------------------------------------------------------------
================================================================================
xapps-2.4.3-1.el9 (FEDORA-EPEL-2023-94612d3a99)
Common files for XApp desktop apps
--------------------------------------------------------------------------------
Update Information:
Assorted minor updates to Cinnamon Desktop for EPEL 9
--------------------------------------------------------------------------------
ChangeLog:
* Wed Mar 29 2023 Leigh Scott <leigh123linux(a)gmail.com> - 2.4.3-1
- Update to 2.4.3 release
--------------------------------------------------------------------------------