The following Fedora EPEL 9 Security updates need testing:
Age URL
6
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2022-e4e5ecabcf
w3m-0.5.3-58.git20220429.el9
The following builds have been pushed to Fedora EPEL 9 updates-testing
GitPython-3.1.30-1.el9
hamlib-4.5.2-1.el9
innoextract-1.9-8.el9
keychain-2.8.5-6.el9
nfdump-1.7.1-1.el9
perl-Fsdb-3.1-1.el9
python-pystemd-0.11.0-1.el9
rdiff-backup-2.2.2-2.el9
rednotebook-2.28.1-1.el9
singularity-ce-3.10.4-2.el9
Details about builds:
================================================================================
GitPython-3.1.30-1.el9 (FEDORA-EPEL-2022-1dfe84c7fe)
Python Git Library
--------------------------------------------------------------------------------
Update Information:
Latest upstream release with security fix for CVE-2022-24439.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 29 2022 Lubom��r Sedl���� <lsedlar(a)redhat.com> - 3.1.30-1
- Rebase to latest version
* Wed Jul 20 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.1.27-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
* Mon Jun 13 2022 Python Maint <python-maint(a)redhat.com> - 3.1.27-2
- Rebuilt for Python 3.11
* Sat May 28 2022 Kevin Fenzi <kevin(a)scrye.com> - 3.1.27-1
- Update to 3.1.27. Fixes rhbz#2056218
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2151583 - CVE-2022-24439 GitPython: improper user input validation leads into
a RCE
https://bugzilla.redhat.com/show_bug.cgi?id=2151583
--------------------------------------------------------------------------------
================================================================================
hamlib-4.5.2-1.el9 (FEDORA-EPEL-2022-b5f505fa81)
Run-time library to control radio transceivers and receivers
--------------------------------------------------------------------------------
Update Information:
Initial package for EL 9.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Dec 25 2022 Richard Shaw <hobbes1069(a)gmail.com> - 4.5.2-1
- Update to 4.5.2.
* Mon Nov 7 2022 Richard Shaw <hobbes1069(a)gmail.com> - 4.5-1
- Update to 4.5.
* Thu Jul 21 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 4.4-5
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
* Mon Jun 13 2022 Python Maint <python-maint(a)redhat.com> - 4.4-4
- Rebuilt for Python 3.11
* Mon May 30 2022 Jitka Plesnikova <jplesnik(a)redhat.com> - 4.4-3
- Perl 5.36 rebuild
* Thu Jan 20 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 4.4-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
* Wed Dec 22 2021 Richard Shaw <hobbes1069(a)gmail.com> - 4.4-1
- Update to 4.4.
* Mon Oct 11 2021 Richard Shaw <hobbes1069(a)gmail.com> - 4.3.1-1
- Update to 4.3.1.
* Thu Jul 22 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 4.2-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
* Fri Jun 4 2021 Python Maint <python-maint(a)redhat.com> - 4.2-2
- Rebuilt for Python 3.10
* Sun May 30 2021 Richard Shaw <hobbes1069(a)gmail.com> - 4.2-1
- Update to 4.2.
* Fri May 21 2021 Jitka Plesnikova <jplesnik(a)redhat.com> - 4.1-2
- Perl 5.34 rebuild
* Mon Feb 1 2021 Richard Shaw <hobbes1069(a)gmail.com> - 4.1-1
- Update to 4.1.
* Tue Jan 26 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 4.0-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
* Fri Dec 25 2020 Richard Shaw <hobbes1069(a)gmail.com> - 4.0-2
- Add additional modes known to flrig but not hamlib.
* Fri Dec 25 2020 Richard Shaw <hobbes1069(a)gmail.com> - 4.0-1
- Update to 4.0 final.
--------------------------------------------------------------------------------
================================================================================
innoextract-1.9-8.el9 (FEDORA-EPEL-2022-c31a63b2ac)
Tool to extract installers created by Inno Setup
--------------------------------------------------------------------------------
Update Information:
first build for EPEL 9
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jul 21 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.9-8
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
* Wed May 4 2022 Thomas Rodgers <trodgers(a)redhat.com> - 1.9-7
- Rebuilt for Boost 1.78
* Thu Jan 20 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.9-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
* Fri Aug 6 2021 Jonathan Wakely <jwakely(a)redhat.com> - 1.9-5
- Rebuilt for Boost 1.76
* Thu Jul 22 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.9-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
* Tue Jan 26 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.9-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
* Fri Jan 22 2021 Jonathan Wakely <jwakely(a)redhat.com> - 1.9-2
- Rebuilt for Boost 1.75
* Thu Dec 3 2020 Alexandre Detiste <alexandre(a)detiste.be> - 1.9-1
- New upstream release
* Wed Sep 23 2020 Jeff Law <law(a)redhat.com> - 1.8-7
- Use cmake_in_source_build to fix FTBFS due to recent cmake macro changes
* Sat Aug 1 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.8-6
- Second attempt - Rebuilt for
https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
* Tue Jul 28 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.8-5
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
keychain-2.8.5-6.el9 (FEDORA-EPEL-2022-1d707ab28c)
Agent manager for OpenSSH,
ssh.com, Sun SSH, and GnuPG
--------------------------------------------------------------------------------
Update Information:
build keychain in epel9
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jul 21 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.8.5-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
* Thu Jan 20 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.8.5-5
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
* Thu Jul 22 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.8.5-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
* Tue Jan 26 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.8.5-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
* Tue Jul 28 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.8.5-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2156140 - Please build keychain in epel9
https://bugzilla.redhat.com/show_bug.cgi?id=2156140
--------------------------------------------------------------------------------
================================================================================
nfdump-1.7.1-1.el9 (FEDORA-EPEL-2022-4c5b349970)
NetFlow collecting and processing tools
--------------------------------------------------------------------------------
Update Information:
**nfdump-1.7.1** This release fixes mostly bugs from 1.7.0 and is now the
recommended version for production. It works together with well advanced in
years NfSen 1.3.9
https://github.com/phaag/nfsen. Changelog: - Fix #394.
Event labeling - Implement #393 consistent logging - Remove extra ':' in
getopt of nfcapd - Add feature #391. Add country code aggregation - Fix
#392. Fix format options with IPv6 - Implement #390. Aggregation for GeoDB's
enriched AS data - Add OpenBSD pflog decoding in nfpcapd and nfdump - Fix
Ident change - Sync nfcapd, sfcapd code - Fix #389 receiving IPv4 on IPv6
socket in sfcapd - Fix #385 bug when compiled on i386 arch - 32bit alignment
- Fix #384 bug when compile with --enable-nsel - Implement #366 Linux
NFLOG link layer protocol in nfpcapd - Fix #381 pcap overwrite in nfpcapd
fixed - Fix #380 nbar string validation - Implement #377. Rework sampling
code in general. Switch to packet interval/space notation. Map older sampling to
new notation. - Fix #375 relative timestamps with sysUptime id 160 -
Rework nbar code. Use new array records and fix nbar bug in older versions. -
Fix #370. Help shows correct option -A - Fix #369. Legacy -M for NfSen works
again - Improve nbar handling. Add private enterprise number decoding -
Merge pull request #357 **nfdump-1.7.0** NFDUMP switches to new release 1.7.0
A lot of old code has beed remove, and was rewritten. nfdump-1.7.0 replaces
nfdump-1.6.x. A lot of code has been improved and new features have been added.
The nfpcapd collector has been reworked completely. It allows to merge pcap and
flow data. - nfdump is now a multi-threaded program and uses parallel
threads mainly for reading, writing and processing flows as well as for sorting.
This may result in a 2 to 3 times faster flow processing, depending on the
tasks. The speed improvement also heavily depends on the hardware (SSD/HD) and
flow compression option. - For netflow v9 and IPFIX, nfdump now supports
flexible length fields. This improves compatibility with some exporters such as
yaf and others. The netflow v9 decoder is more flexible in decoding. -
Support for Cisco Network Based Application Recognition (NBAR). - Supports
Maxmind geo location information to tag/geolocate IP addresses and AS numbers. -
nfpcapd automatically uses TPACKET_V3 for Linux or direct BPF sockets for *BSD.
This improves packet processing. It adds new options to collect MAC and VLAN
information as well as the first packet of the payload. - Metric exports: By
default, every 60s a flow summary statistics can be sent to a UNIX socket. The
corresponding program may be nfinflux to insert these metrics into an influxDB
or nfexporter for Prometheus monitoring.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 29 2022 Denis Fateyev <denis(a)fateyev.com> - 1.7.1-1
- Update to version 1.7.1
* Fri Jul 22 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.6.24-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2131205 - nfdump-1.7.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2131205
--------------------------------------------------------------------------------
================================================================================
perl-Fsdb-3.1-1.el9 (FEDORA-EPEL-2022-d2a8ba2e4f)
A set of commands for manipulating flat-text databases from the shell
--------------------------------------------------------------------------------
Update Information:
See
http://www.isi.edu/~johnh/SOFTWARE/FSDB/
--------------------------------------------------------------------------------
ChangeLog:
* Tue Nov 22 2022 John Heidemann <johnh(a)isi.edu> 3.1-1
- See
http://www.isi.edu/~johnh/SOFTWARE/FSDB/
--------------------------------------------------------------------------------
================================================================================
python-pystemd-0.11.0-1.el9 (FEDORA-EPEL-2022-d14ed8bc3a)
A thin Cython-based wrapper on top of libsystemd
--------------------------------------------------------------------------------
Update Information:
Update `pystemd` to the latest upstream release. Changes: - native support
for stop_cmd, (pre|post)_start_cmd and post_stop_cmd in pystemd.run. - adding
lxml as a dependency. - drop support for python 3.4 and 3.5 (yey welcome
f-strings) - change using select.select to use DefaultSelector in pystemd.run
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 6 2022 Davide Cavalca <dcavalca(a)fedoraproject.org> - 0.11.0-1
- Update to 0.11.0 (#2151054)
- Convert license tag to SPDX
* Fri Jul 22 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.10.0-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2151054 - python-pystemd-0.11.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2151054
--------------------------------------------------------------------------------
================================================================================
rdiff-backup-2.2.2-2.el9 (FEDORA-EPEL-2022-653e93b8cd)
Convenient and transparent local/remote incremental mirror/backup
--------------------------------------------------------------------------------
Update Information:
Bugfix Oops release v2.2.2 - Fedora/EPEL Release
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 29 2022 Frank Crawford <frank(a)crawford.emu.id.au> - 2.2.2-2
- Bugfix Oops release v2.2.2 - Fedora/EPEL Release
* Thu Dec 29 2022 Frank Crawford <frank(a)crawford.emu.id.au> - 2.2.2-1
- Bugfix Oops release v2.2.2 - COPR Release
* Wed Dec 28 2022 Frank Crawford <frank(a)crawford.emu.id.au> - 2.2.1-1
- Bugfix release v2.2.1 - COPR Release
* Wed Dec 28 2022 Frank Crawford <frank(a)crawford.emu.id.au> - 2.2.0-3
- Patch to fix issue with function in debug mode
--------------------------------------------------------------------------------
================================================================================
rednotebook-2.28.1-1.el9 (FEDORA-EPEL-2022-9846c046d7)
Daily journal with calendar, templates and keyword searching
--------------------------------------------------------------------------------
Update Information:
New upstream version 2.28.1. ---- New upstream version 2.28.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 29 2022 Phil Wyett <philip.wyett(a)kathenas.org> - 2.28.1-1
- New upstream version 2.28.1
* Wed Dec 28 2022 Phil Wyett <philip.wyett(a)kathenas.org> - 2.28-1
- New upstream version 2.28
--------------------------------------------------------------------------------
================================================================================
singularity-ce-3.10.4-2.el9 (FEDORA-EPEL-2022-214e5fedb6)
Application and environment virtualization
--------------------------------------------------------------------------------
Update Information:
Add pivot provides/conflict of sif-runtime
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 13 2022 Carl George <carl(a)george.computer> - 3.10.4-2
- Add pivot provides/conflict of sif-runtime
--------------------------------------------------------------------------------