The following Fedora EPEL 7 Security updates need testing:
Age URL
290
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-1087
dokuwiki-0-0.24.20140929c.el7
82
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-925e9374c9
python-pymongo-3.0.3-1.el7
52
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-dac7ed832f
mcollective-2.8.4-1.el7
15
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-f82c6fc04a
p7zip-15.09-4.el7
15
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-e45e108151
php-twig-1.23.1-2.el7 php-symfony-2.7.7-2.el7
11
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-67166d0519
shellinabox-2.19-1.el7
9
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-0272adfe4b
gwenhywfar-4.13.1-2.el7
8
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-31d852eeac
php-horde-Horde-Core-2.22.4-1.el7 php-horde-Horde-Perms-2.1.6-1.el7
php-horde-Horde-Service-Weather-2.3.1-1.el7
7
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-3a5146ccf7
nodejs-handlebars-4.0.5-1.el7
0
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-fe8f5408df
moodle-3.0.1-1.el7
0
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-e943f1deb9
mediawiki123-1.23.13-1.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
arprec-2.2.18-1.el7
lmdb-0.9.17-1.el7
mediawiki123-1.23.13-1.el7
mimetex-1.74-6.el7
moodle-3.0.1-1.el7
nodejs-deferred-0.7.4-1.el7
nsd-4.1.7-1.el7
qd-2.3.15-3.el7
ripright-0.11-1.el7
rubber-1.4-1.el7
tcl-mysqltcl-3.052-1.el7
tlsdate-0.0.13-1.el7
waf-1.8.17-1.el7
wxPython-2.8.12.0-9.el7
Details about builds:
================================================================================
arprec-2.2.18-1.el7 (FEDORA-EPEL-2015-69f2523612)
Software package for performing arbitrary precision arithmetic
--------------------------------------------------------------------------------
Update Information:
update qd and arprec to recent version
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1290979 - arprec-2.2.18 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1290979
--------------------------------------------------------------------------------
================================================================================
lmdb-0.9.17-1.el7 (FEDORA-EPEL-2015-02a0628f0c)
Memory-mapped key-value database
--------------------------------------------------------------------------------
Update Information:
Update to 0.9.17
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1287357 - lmdb-0.9.17 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1287357
--------------------------------------------------------------------------------
================================================================================
mediawiki123-1.23.13-1.el7 (FEDORA-EPEL-2015-e943f1deb9)
A wiki engine
--------------------------------------------------------------------------------
Update Information:
Security update to upstream 1.23.13
--------------------------------------------------------------------------------
================================================================================
mimetex-1.74-6.el7 (FEDORA-EPEL-2015-d50e4ab3d8)
Easily embed LaTeX math in web pages
--------------------------------------------------------------------------------
Update Information:
First EL7 build.
--------------------------------------------------------------------------------
================================================================================
moodle-3.0.1-1.el7 (FEDORA-EPEL-2015-fe8f5408df)
A Course Management System
--------------------------------------------------------------------------------
Update Information:
Latest upstream. ---- Security update.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1288159 - CVE-2015-5331 CVE-2015-5332 CVE-2015-5335 CVE-2015-5336
CVE-2015-5337 CVE-2015-5338 CVE-2015-5339 CVE-2015-5340 CVE-2015-5341 CVE-2015-5342
moodle: Multiple security issues fixed in 2.7.11, 2.8.9, 2.9.3 [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1288159
[ 2 ] Bug #1264868 - CVE-2015-5264 CVE-2015-5265 CVE-2015-5266 CVE-2015-5267
CVE-2015-5272 CVE-2015-5268 CVE-2015-5269 moodle: Multiple security issues (MSA-15-0030,
MSA-15-0031, MSA-15-0032, MSA-15-0033, MSA-15-0034, MSA-15-0035, MSA-15-0036)
[fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1264868
--------------------------------------------------------------------------------
================================================================================
nodejs-deferred-0.7.4-1.el7 (FEDORA-EPEL-2015-1a95bb0e2a)
Modular and fast Promises implementation for JavaScript
--------------------------------------------------------------------------------
Update Information:
Initial package
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1293047 - Review Request: nodejs-deferred - Modular and fast Promises
implementation for JavaScript
https://bugzilla.redhat.com/show_bug.cgi?id=1293047
--------------------------------------------------------------------------------
================================================================================
nsd-4.1.7-1.el7 (FEDORA-EPEL-2015-694dbcc01a)
Fast and lean authoritative DNS Name Server
--------------------------------------------------------------------------------
Update Information:
This is the first release of NSD4.X in Fedora/EL. This version is known to not
work with the current SELinux policy (see
https://bugzilla.redhat.com/show_bug.cgi?id=1293140)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1123911 - please add epel7 branch
https://bugzilla.redhat.com/show_bug.cgi?id=1123911
[ 2 ] Bug #1048796 - nsd-4.1.7 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1048796
--------------------------------------------------------------------------------
================================================================================
qd-2.3.15-3.el7 (FEDORA-EPEL-2015-69f2523612)
Double-Double and Quad-Double Arithmetic
--------------------------------------------------------------------------------
Update Information:
update qd and arprec to recent version
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1290979 - arprec-2.2.18 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1290979
--------------------------------------------------------------------------------
================================================================================
ripright-0.11-1.el7 (FEDORA-EPEL-2015-48752120b5)
Minimal CD to FLAC ripper
--------------------------------------------------------------------------------
Update Information:
* Fix error when ripping to all (-a) and requiring cover art (-a). In such a
case only the first cover art would be retrieved, and only the first returned
result would therefore be ripped. * Fix compiler warning in ripCallback().
(Thanks to David Binderman for the report).
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1235810 - Ripright confuses MUSICBRAINZ_ALBUMID and
MUSICBRAINZ_RELEASEGROUPID
https://bugzilla.redhat.com/show_bug.cgi?id=1235810
[ 2 ] Bug #1289553 - ripright-0.11 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1289553
--------------------------------------------------------------------------------
================================================================================
rubber-1.4-1.el7 (FEDORA-EPEL-2015-6d14ee39d4)
An automated system for building LaTeX documents
--------------------------------------------------------------------------------
Update Information:
Updated to version 1.4 of rubber.
--------------------------------------------------------------------------------
================================================================================
tcl-mysqltcl-3.052-1.el7 (FEDORA-EPEL-2015-bd6c2c4b56)
MySQL interface for Tcl
--------------------------------------------------------------------------------
Update Information:
New package for EPEL-7 which was available in EPEL-6. This includes an update to
release 3.052 to bugfix an issue related to multi-statement selects
--------------------------------------------------------------------------------
================================================================================
tlsdate-0.0.13-1.el7 (FEDORA-EPEL-2015-a1f57beecb)
Secure parasitic rdate replacement
--------------------------------------------------------------------------------
Update Information:
Initial package
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #969723 - Review Request: tlsdate - Secure parasitic rdate replacement
https://bugzilla.redhat.com/show_bug.cgi?id=969723
--------------------------------------------------------------------------------
================================================================================
waf-1.8.17-1.el7 (FEDORA-EPEL-2015-4e6f212a3a)
A Python-based build system
--------------------------------------------------------------------------------
Update Information:
Update to the latest release. New in WAF 1.8.17: * Added customizations that
enable building whole projects from the build folder instead of * Added a
project generator for Xcode 6 #1648 * Force scanner functions to run after task
failures #1660 * Improved the Intel Fortran compiler detection #1655 * Added
processing of chmod attributes on subst and rule when provided #1650 * Enabled
global_define in conf.check() tests * Enabled usage of home folder/tilde ~ in
Configure.find_files * Added usage of options.enable_gccdeps when provided by
user scripts * Enabled 'waf -v' to catch invalid string on hcode values in
Python3 * Fixed the function names returned by the `@conf` and `@run_once`
decorators * Let 'subst' change permissions for all its files with chmod (not
just the first one) * Added quoting for space-containing-arguments in
print_commands.py
--------------------------------------------------------------------------------
================================================================================
wxPython-2.8.12.0-9.el7 (FEDORA-EPEL-2015-eeacd3b2e5)
GUI toolkit for the Python programming language
--------------------------------------------------------------------------------
Update Information:
Rebuilt due to wxGTK rebuild to remove gnomeprint support (#1293162)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1293162 - Latest update of wxPython seems to be broken
https://bugzilla.redhat.com/show_bug.cgi?id=1293162
--------------------------------------------------------------------------------