The following Fedora EPEL 6 Security updates need testing: Age URL 796 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-5620/bugzilla-3.4.1... 143 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0440/fwsnort-1.6.4-... 128 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0590/oath-toolkit-2... 87 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1011/php-ZendFramew... 37 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1471/chicken-4.8.0.... 33 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1477/drupal7-views-... 23 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1563/mono-2.10.8-2.... 17 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1584/python-djblets... 15 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1616/puppet-2.7.26-... 15 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1608/mcollective-2.... 15 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1628/hiera-1.0.0-4.... 14 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1634/python-django-... 12 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1648/owncloud-6.0.3... 12 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1649/python-jinja2-... 10 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1657/lynis-1.5.6-1.... 8 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1627/php-horde-Hord... 5 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1694/zabbix-1.8.20-... 5 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1693/perl-Email-Add... 5 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1698/zabbix20-2.0.1... 1 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1732/seamonkey-2.21... 0 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1753/ansible-1.6.5-... 0 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1745/mediawiki119-1...
The following builds have been pushed to Fedora EPEL 6 updates-testing
CGSI-gSOAP-1.3.6-2.el6 amavisd-new-2.9.0-1.el6 ansible-1.6.5-1.el6 createrepo_c-0.4.1-1.el6 drupal7-languageicons-1.1-1.el6 drupal7-taxonomy_access_fix-2.1-1.el6 gccxml-0.9.0-0.23.20140610.gita012b8fe.el6 gle-4.2.4c-14.el6 mediawiki119-1.19.17-1.el6 mozilla-adblockplus-2.6.3-1.el6 mozilla-https-everywhere-3.5.3-1.el6 mysql-proxy-0.8.4-1.el6 php-horde-Horde-Mapi-1.0.3-1.el6 php-horde-Horde-Pack-1.0.2-1.el6 python-docker-registry-core-1.0.6-2.el6 python-okaara-1.0.35-1.el6 python-stem-1.2.2-3.el6 voms-2.0.11-6.el6
Details about builds:
================================================================================ CGSI-gSOAP-1.3.6-2.el6 (FEDORA-EPEL-2014-1756) GSI plugin for gSOAP -------------------------------------------------------------------------------- Update Information:
Updated to 1.3.6 release -------------------------------------------------------------------------------- ChangeLog:
* Fri Jun 27 2014 Mattias Ellert mattias.ellert@fysast.uu.se - 1.3.6-2 - Update the source description for the new release * Fri Jun 27 2014 Alejandro Alvarez Ayllon aalvarez@cern.ch - 1.3.6-1 - Update for new upstream release * Fri Jun 6 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 1.3.5-8 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Fri Oct 18 2013 Adrien Devresse <adevress at cern.ch> - 1.3.5-7 - Rebuilt for gsoap release * Thu Aug 8 2013 Mattias Ellert mattias.ellert@fysast.uu.se - 1.3.5-6 - Use _pkgdocdir * Fri Aug 2 2013 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 1.3.5-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Wed Feb 13 2013 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 1.3.5-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild * Wed Jul 18 2012 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 1.3.5-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ amavisd-new-2.9.0-1.el6 (FEDORA-EPEL-2014-1741) Email filter with virus scanner and spamassassin support -------------------------------------------------------------------------------- Update Information:
Update to version 2.9.0 -------------------------------------------------------------------------------- ChangeLog:
* Thu Jun 26 2014 Juan Orti Alcaine jorti@fedoraproject.org - 2.9.0-1 - Update to version 2.9.0 - Rework amavisd-new-2.9.0-conf.patch - Fix missing dependencies --------------------------------------------------------------------------------
================================================================================ ansible-1.6.5-1.el6 (FEDORA-EPEL-2014-1753) SSH-based configuration management, deployment, and task execution system -------------------------------------------------------------------------------- Update Information:
Update to 1.6.5. Further fixes on security issue. Update to 1.6.4 with a security fix Update to 1.6.3. See https://github.com/ansible/ansible/blob/release1.6.3/CHANGELOG.md for details -------------------------------------------------------------------------------- ChangeLog:
* Wed Jun 25 2014 Kevin Fenzi kevin@scrye.com 1.6.5-1 - Update to 1.6.5 * Wed Jun 25 2014 Kevin Fenzi kevin@scrye.com 1.6.4-1 - Update to 1.6.4 * Mon Jun 9 2014 Kevin Fenzi kevin@scrye.com 1.6.3-1 - Update to 1.6.3 * Sat Jun 7 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 1.6.2-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ createrepo_c-0.4.1-1.el6 (FEDORA-EPEL-2014-1755) Creates a common metadata repository -------------------------------------------------------------------------------- Update Information:
Initialize threads correctly on old versions of GLib2 (RhBug: 1108787) -------------------------------------------------------------------------------- ChangeLog:
* Thu Jun 26 2014 Tomas Mlcoch <tmlcoch at redhat.com> - 0.4.1-1 - Initialize threads correctly on old versions of GLib2 (RhBug: 1108787) - Do not print log domain (get rid off C_CREATEREPOLIB prefix in log messages) - Implements support for --cachedir - New option --retain-old-md-by-age - Few small API changes -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1108787 - mergerepo_c sets wrong <size>0</size> in repodata/repomd.xml https://bugzilla.redhat.com/show_bug.cgi?id=1108787 --------------------------------------------------------------------------------
================================================================================ drupal7-languageicons-1.1-1.el6 (FEDORA-EPEL-2014-1751) Adds icons to language links -------------------------------------------------------------------------------- Update Information:
[1.1](https://www.drupal.org/node/2264675) ------------------------------------------ * Fixed passing of Image class attribute. (#2230323) * Removed unnecessary file list in info file. (#1554200) * Set the module category to "Multilingual". (#2047503) * Add link to the configuration page via the info file. (#1626648) * Renamed the module back to "Language Icons". (#1954058) * New flags: * Filipino (#1796274) * Afrikaans (South African) (#1471600) * Malaysian (#2230379) * Tibetan (#1961450) * Belarus (#1309930) * Somali (#551092)
See the [Git log](http://drupalcode.org/project/languageicons.git/log/7.x-1.0..7.x-1.1) for a full changelog. -------------------------------------------------------------------------------- ChangeLog:
* Thu Jun 26 2014 Shawn Iwinski shawn.iwinski@gmail.com - 1.1-1 - Updated to 1.1 (BZ #1096599; release notes = https://www.drupal.org/node/2264675) * Sat Jun 7 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 1.0-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Sat Aug 3 2013 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 1.0-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ drupal7-taxonomy_access_fix-2.1-1.el6 (FEDORA-EPEL-2014-1746) Fixes the crooked access checks for Taxonomy pages -------------------------------------------------------------------------------- Update Information:
[2.1](https://www.drupal.org/node/2274235) ------------------------------------------ * Issue #2157451 * Issue #2211281
See the [Git log](http://cgit.drupalcode.org/taxonomy_access_fix/log/?id=7.x-2.0..7.x-2.1) for a full changelog. -------------------------------------------------------------------------------- ChangeLog:
* Thu Jun 26 2014 Shawn Iwinski shawn.iwinski@gmail.com - 2.1-1 - Updated to 2.1 (BZ #1101179; release notes https://www.drupal.org/node/2274235) * Sat Jun 7 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 2.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1101179 - drupal7-taxonomy_access_fix-2.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=1101179 --------------------------------------------------------------------------------
================================================================================ gccxml-0.9.0-0.23.20140610.gita012b8fe.el6 (FEDORA-EPEL-2014-1738) XML output extension to GCC -------------------------------------------------------------------------------- Update Information:
Now contains upstream's support files for gcc 4.9 -------------------------------------------------------------------------------- ChangeLog:
* Thu Jun 26 2014 Mattias Ellert mattias.ellert@fysast.uu.se - 0.9.0-0.23.20140610.gita012b8fe - Updated git snapshot - Now contains support files for gcc 4.9 * Sat Jun 7 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 0.9.0-0.22.20131209.git9a114c0c - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Fri May 23 2014 Brent Baude baude@us.ibm.com - 0.9.0-0.21.20131209.git9a114c0c - Adding ppc64le support --------------------------------------------------------------------------------
================================================================================ gle-4.2.4c-14.el6 (FEDORA-EPEL-2014-1740) Graphics Layout Engine -------------------------------------------------------------------------------- Update Information:
First releases in EPEL5 and EPEL6. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #229676 - Review Request: gle - Graphics Layout Engine https://bugzilla.redhat.com/show_bug.cgi?id=229676 --------------------------------------------------------------------------------
================================================================================ mediawiki119-1.19.17-1.el6 (FEDORA-EPEL-2014-1745) A wiki engine -------------------------------------------------------------------------------- Update Information:
Update to 1.19.17. Fixes various security issues. -------------------------------------------------------------------------------- ChangeLog:
* Thu Jun 26 2014 Patrick Uiterwijk puiterwijk@redhat.com - 1.19.17-1 - Update to 1.19.17 - (bug 65839) SECURITY: Prevent external resources in SVG files - (bug 66428) MimeMagic: Don't seek before BOF. This has weird side effects like only extracting the tail of the file partially or not at all * Wed Jun 25 2014 Patrick Uiterwijk puiterwijk@redhat.com - 1.19.16-1 - Update to 1.19.16 - (bug 65501) SECURITY: Don't parse usernames as wikitext on Special:PasswordReset -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1113134 - mediawiki: security update https://bugzilla.redhat.com/show_bug.cgi?id=1113134 [ 2 ] Bug #1104222 - CVE-2014-3966 mediawiki: XSS flaw due to improper parsing of Special:PasswordReset https://bugzilla.redhat.com/show_bug.cgi?id=1104222 --------------------------------------------------------------------------------
================================================================================ mozilla-adblockplus-2.6.3-1.el6 (FEDORA-EPEL-2014-1761) Adblocking extension for Mozilla Firefox, Thunderbird, and SeaMonkey -------------------------------------------------------------------------------- Update Information:
Lots of performance improvements. -------------------------------------------------------------------------------- ChangeLog:
* Thu Jun 26 2014 Russell Golden niveusluna@niveusluna.org - 2.6.3-1 - Many performance improvements * Sat Jun 7 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 2.4.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ mozilla-https-everywhere-3.5.3-1.el6 (FEDORA-EPEL-2014-1733) HTTPS/HSTS enforcement extension for Mozilla Firefox and SeaMonkey -------------------------------------------------------------------------------- Update Information:
The cake is not a lie! -------------------------------------------------------------------------------- ChangeLog:
* Wed Jun 25 2014 Russell Golden niveusluna@niveusluna.org - 3.5.3-1 - Now works when installed globally! - Various ruleset fixes, including PCWorld. * Sat Jun 7 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 3.5.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Fri May 30 2014 Russell Golden niveusluna@niveusluna.org - 3.5.1-1 - Revert https://github.com/EFForg/https-everywhere/pull/134 due to YouTube -- breakage. - Re-enable ability to see all rulesets in enable/disable dialog. - Added more Debian coverage. - Fixes to Doubleclick, Guardian, Heroku, Home Depot, HypeMachine, IMDB, -- Justin.tv, Kikatek, Mozilla, MyFitnessPal, Pinterest, XKCD, Reuters, -- Technet, Tumblr, Wordpress, Yandex, Youtube, Flickr. - Fix Australis icon positioning: -- https://github.com/EFForg/https-everywhere/pull/216 * Wed Apr 16 2014 Russell Golden niveusluna@niveusluna.org - 3.5-1 - Merge all non-ruleset changes from 4.0development.16 - Merge all new/modified rulesets from 4.0development.16 that are -- in the Alexa Top 1000 using utils/alexa-ruleset-checker.py. For a full list, -- see utils/alexa-logs/07042014.log. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1100493 - can't access http://www.pcworld.com with mozilla-https-everywhere enabled https://bugzilla.redhat.com/show_bug.cgi?id=1100493 --------------------------------------------------------------------------------
================================================================================ mysql-proxy-0.8.4-1.el6 (FEDORA-EPEL-2014-1759) A proxy for the MySQL Client/Server protocol -------------------------------------------------------------------------------- Update Information:
New upstream release MySQL-Proxy 0.8.4 This fixes RHBZ#902456 where MySQL-Proxy would not start up properly. -------------------------------------------------------------------------------- ChangeLog:
* Fri Jun 27 2014 Dominic Hopf dmaphy@fedoraproject.org - 0.8.4-1 - New upstream release MySQL-Proxy 0.8.4 * Mon Aug 26 2013 Teguh DC dheche@fedoraproject.org - 0.8.2-2 - Move configuration to /etc/mysql-proxy.cnf (using defaults-file option in initscript) - Call admin and proxy plugins by default -------------------------------------------------------------------------------- References:
[ 1 ] Bug #902456 - mysql-proxy Init script is incorrect, so service doesn't start https://bugzilla.redhat.com/show_bug.cgi?id=902456 --------------------------------------------------------------------------------
================================================================================ php-horde-Horde-Mapi-1.0.3-1.el6 (FEDORA-EPEL-2014-1744) MAPI utility library -------------------------------------------------------------------------------- Update Information:
Horde_Mapi 1.0.3 * [mjr] Make bcmath an optional, not required, extension (Bug #13285).
-------------------------------------------------------------------------------- ChangeLog:
* Fri Jun 27 2014 Remi Collet remi@fedoraproject.org - 1.0.3-1 - Update to 1.0.3 --------------------------------------------------------------------------------
================================================================================ php-horde-Horde-Pack-1.0.2-1.el6 (FEDORA-EPEL-2014-1752) Horde Pack Utility -------------------------------------------------------------------------------- Update Information:
Horde_Pack 1.0.2 * [mms] Don't use JSON driver to pack if input contains non-UTF8 data (Bug #13275).
-------------------------------------------------------------------------------- ChangeLog:
* Thu Jun 26 2014 Remi Collet remi@fedoraproject.org - 1.0.2-1 - Update to 1.0.2 --------------------------------------------------------------------------------
================================================================================ python-docker-registry-core-1.0.6-2.el6 (FEDORA-EPEL-2014-1757) Core package for docker-registry (drivers) developers -------------------------------------------------------------------------------- Update Information:
Resolves: rhbz#1111917 - change files section as per review -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1111917 - Review Request: python-docker-registry-core - Core package for docker-registry (drivers) developers https://bugzilla.redhat.com/show_bug.cgi?id=1111917 --------------------------------------------------------------------------------
================================================================================ python-okaara-1.0.35-1.el6 (FEDORA-EPEL-2014-1739) Python command line utilities -------------------------------------------------------------------------------- Update Information:
Release 1.0.35 Fix for python 2.4 incompatibility -------------------------------------------------------------------------------- ChangeLog:
* Thu Jun 26 2014 Jay Dobies jason.dobies@redhat.com 1.0.35-1 - fixing a bug where Prompt.prompt_password passes the wrong arguments to another function. (mhrivnak@redhat.com) --------------------------------------------------------------------------------
================================================================================ python-stem-1.2.2-3.el6 (FEDORA-EPEL-2014-1760) Python controller library for Tor -------------------------------------------------------------------------------- Update Information:
Stem is a python controller library for Tor --------------------------------------------------------------------------------
================================================================================ voms-2.0.11-6.el6 (FEDORA-EPEL-2014-1735) Virtual Organization Membership Service -------------------------------------------------------------------------------- Update Information:
Fix stack smashing from SHA2 certificates. -------------------------------------------------------------------------------- ChangeLog:
* Thu Jun 26 2014 Mattias Ellert mattias.ellert@fysast.uu.se - 2.0.11-6 - Clean up SHA2 patch * Thu Jun 26 2014 Mattias Ellert mattias.ellert@fysast.uu.se - 2.0.11-5 - Fix compilation problems when strndup is already defined * Thu Jun 26 2014 Mattias Ellert mattias.ellert@fysast.uu.se - 2.0.11-4 - Patch that fixes a stack smash when SHA2 certificates are used * Sun Jun 8 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 2.0.11-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild --------------------------------------------------------------------------------
epel-devel@lists.fedoraproject.org