The following Fedora EPEL 8 Security updates need testing:
Age URL
6
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2022-f2ae791306
xpra-4.3.2-1.el8
The following builds have been pushed to Fedora EPEL 8 updates-testing
HepMC3-3.2.5-2.el8
barrier-2.4.0-1.el8
distribution-gpg-keys-1.65-1.el8
mongo-c-driver-1.21.0-1.el8
python-sphinx-bootstrap-theme-0.8.1-1.el8
stressapptest-1.0.9-1.20220222git6714c57.el8
tito-0.6.20-1.el8
ultimarc-1.2.0-1.el8
Details about builds:
================================================================================
HepMC3-3.2.5-2.el8 (FEDORA-EPEL-2022-25f378ce70)
C++ Event Record for Monte Carlo Generators
--------------------------------------------------------------------------------
Update Information:
HepMC3 3.2.5
--------------------------------------------------------------------------------
ChangeLog:
* Tue Feb 22 2022 Mattias Ellert <mattias.ellert(a)physics.uu.se> - 3.2.5-2
- Fix detection of installed Pythia HepMC3 interface
- Fix endian issue in HEPEVT wrappers
- Fix doxygen markup syntax
* Mon Feb 21 2022 Mattias Ellert <mattias.ellert(a)physics.uu.se> - 3.2.5-1
- Update to version 3.2.5
- Update License tag for bxzstr
* Wed Jan 19 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.2.4-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
barrier-2.4.0-1.el8 (FEDORA-EPEL-2022-333b5cbf08)
Use a single keyboard and mouse to control multiple computers
--------------------------------------------------------------------------------
Update Information:
- Upstream update to 2.4.0 - Fixed CVE-2021-42072 (RHBZ 2022094) -
BuildDepends added: gmock-devel, gulrak-filesystem-devel - Address the issue
from pull request #1, thanks aekoroglu.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Feb 22 2022 Ding-Yi Chen <dchen(a)redhat.com> - 2.4.0-1
- Upstream update to 2.4.0
- Fixed CVE-2021-42072 (RHBZ 2022094)
- BuildDepends added: gmock-devel, gulrak-filesystem-devel
- Address the issue from pull request #1, thanks aekoroglu.
* Wed Jan 19 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.3.3-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
* Tue Sep 14 2021 Sahana Prasad <sahana(a)redhat.com> - 2.3.3-5
- Rebuilt with OpenSSL 3.0.0
* Wed Jul 21 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.3.3-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
* Tue Jan 26 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.3.3-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2022096 - CVE-2021-42072 barrier: server-side implementation does not
sufficiently verify the identify of connecting clients [epel-8]
https://bugzilla.redhat.com/show_bug.cgi?id=2022096
--------------------------------------------------------------------------------
================================================================================
distribution-gpg-keys-1.65-1.el8 (FEDORA-EPEL-2022-08eac37eb8)
GPG keys of various Linux distributions
--------------------------------------------------------------------------------
Update Information:
- update copr keys - Add remi 2022 key
--------------------------------------------------------------------------------
ChangeLog:
* Tue Feb 22 2022 Miroslav Such�� <msuchy(a)redhat.com> 1.65-1
- update copr keys
- Add remi 2022 key
--------------------------------------------------------------------------------
================================================================================
mongo-c-driver-1.21.0-1.el8 (FEDORA-EPEL-2022-926b2b0d33)
Client library written in C for MongoDB
--------------------------------------------------------------------------------
Update Information:
**libmongoc 1.21.0** Bug Fixes: * Addressed VS 2013 build failures due to
missing C99 features. Features: * Support conditional $merge and $out
aggregation on secondaries. * Bump minimum wire protocol version from 3
(MongoDB 3.0) to 6 (MongoDB 3.6). * Bump maximum wire protocol version from
14 (MongoDB 5.1) to 15 (MongODB 5.2). Improvements: * Update algorithm used
for generation of OID values to reduce collisions. ---- **libmongoc 1.20.1**
Bug fixes: * Fix bug where first hello command on a single-threaded client
may not include full handshake ---- **libbson 1.21.0** Bug Fixes: *
Addressed VS 2013 build failures due to missing C99 features. Improvements: *
Addressed -Wstrict-prototype warnings in bson-atomic.h. * Addressed
incompatible pointer warnings in bson-atomic.h on GCC 4.8.5. ---- **libbson
1.20.1** Bug fixes: * Fix implicit declarations causing build failures on
macOS.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Feb 2 2022 Remi Collet <remi(a)remirepo.net> - 1.21.0-1
- update to 1.21.0
--------------------------------------------------------------------------------
================================================================================
python-sphinx-bootstrap-theme-0.8.1-1.el8 (FEDORA-EPEL-2022-3c3de9712f)
A sphinx theme that integrates the Bootstrap framework
--------------------------------------------------------------------------------
Update Information:
Update to 0.8.1
--------------------------------------------------------------------------------
ChangeLog:
* Tue Feb 22 2022 Stuart Campbell <stuart(a)stuartcampbell.me> - 0.8.1-1
- Update to 0.8.1
* Fri Jan 21 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.8.0-10
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
* Fri Jul 23 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.8.0-9
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
* Fri Jun 4 2021 Python Maint <python-maint(a)redhat.com> - 0.8.0-8
- Rebuilt for Python 3.10
* Wed Jan 27 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.8.0-7
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
* Thu Aug 20 2020 Stuart Campbell <stuart(a)stuartcampbell.me> - 0.8.0-6
- Always bundle JQuery (#1866729)
- Only bundle fonts on RHEL
* Fri Aug 14 2020 Stuart Campbell <stuart(a)stuartcampbell.me> - 0.8.0-5
- Do not use system webassets for F33+
* Wed Jul 29 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.8.0-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
* Tue May 26 2020 Miro Hron��ok <mhroncok(a)redhat.com> - 0.8.0-3
- Rebuilt for Python 3.9
* Thu Jan 30 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.8.0-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2050692 - python-sphinx-bootstrap-theme-0.8.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2050692
[ 2 ] Bug #2054178 - python-sphinx-bootstrap-theme for EPEL 9
https://bugzilla.redhat.com/show_bug.cgi?id=2054178
--------------------------------------------------------------------------------
================================================================================
stressapptest-1.0.9-1.20220222git6714c57.el8 (FEDORA-EPEL-2022-f3560b7ac9)
Stressful Application Test - userspace memory and IO test
--------------------------------------------------------------------------------
Update Information:
Initial import; Fixes: RHBZ#2057018
--------------------------------------------------------------------------------
ChangeLog:
* Tue Feb 22 2022 Davide Cavalca <dcavalca(a)fedoraproject.org> 1.0.9-1
- Initial import; Fixes: RHBZ#2057018
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2057018 - Review Request: stressapptest - Stressful Application Test -
userspace memory and IO test
https://bugzilla.redhat.com/show_bug.cgi?id=2057018
--------------------------------------------------------------------------------
================================================================================
tito-0.6.20-1.el8 (FEDORA-EPEL-2022-2143123539)
A tool for managing rpm based git projects
--------------------------------------------------------------------------------
Update Information:
- If failing because of unexpected binary files, we print them for easier
debugging - When releasing to DistGit, the git config of the current project is
considered (therefore allowing to use different than global name, email, etc) -
Fix #194 - Mead builds are able to push different branches than master
--------------------------------------------------------------------------------
ChangeLog:
* Wed Feb 23 2022 Jakub Kadlcik <frostyx(a)email.cz> 0.6.20-1
- Sync repo (in addition to tag) during mead build (nmoumoul(a)redhat.com)
- Add 'Building RHEL packages with Tito' as external doc (frostyx(a)email.cz)
- Consider the current project git config when releasing to DistGit
(frostyx(a)email.cz)
- Print the problematic binary files (frostyx(a)email.cz)
--------------------------------------------------------------------------------
================================================================================
ultimarc-1.2.0-1.el8 (FEDORA-EPEL-2022-206e63747a)
Library and command line utility to configure Ultimarc boards
--------------------------------------------------------------------------------
Update Information:
Update to 1.2.0; Fixes: RHBZ#2057019
--------------------------------------------------------------------------------
ChangeLog:
* Tue Feb 22 2022 Davide Cavalca <dcavalca(a)fedoraproject.org> 1.2.0-1
- Update to 1.2.0; Fixes: RHBZ#2057019
* Sat Jan 22 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.1.0-5
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
* Fri Jul 23 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.1.0-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
* Sat Jul 10 2021 Bj��rn Esser <besser82(a)fedoraproject.org> - 1.1.0-3
- Rebuild for versioned symbols in json-c
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2057019 - ultimarc-1.2.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2057019
--------------------------------------------------------------------------------