The following Fedora EPEL 7 Security updates need testing:
Age URL
1053
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-1087
dokuwiki-0-0.24.20140929c.el7
815
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-dac7ed832f
mcollective-2.8.4-1.el7
397
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-04bc9dd81d
libbsd-0.8.3-1.el7
295
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-d241156dfe
mod_cluster-1.3.3-10.el7
127
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-e27758bd23
libmspack-0.6-0.1.alpha.el7
64
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-e64eeb6ece
nagios-4.3.4-5.el7
28
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-8d57a2487b
monit-5.25.1-1.el7
14
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-28611aa33f
python-bottle-0.12.13-1.el7
13
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-73ee944e65
rootsh-1.5.3-17.el7
7
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-73feedd767
wordpress-4.9.2-1.el7
7
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-11ba3bced1
clamav-0.99.2-18.el7
1
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-ce6223e559
GraphicsMagick-1.3.28-1.el7
1
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-9eb18da891
moodle-3.1.10-1.el7
1
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-c0d5d190b0
transmission-2.92-12.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
cacti-1.1.33-1.el7
gnome-shell-extension-freon-33-1.el7
knot-resolver-1.5.3-1.el7
konversation-1.5.1-4.el7
lcov-1.13-1.el7
purple-discord-0-15.20171227git9b7c3ad.el7
purple-libsteam-1.6.1-19.20171225git7f761df.el7
python-betamax-0.7.1-1.el7
rpkg-1.51-3.el7
youtube-dl-2018.01.21-1.el7
Details about builds:
================================================================================
cacti-1.1.33-1.el7 (FEDORA-EPEL-2018-b40716c230)
An rrd based graphing tool
--------------------------------------------------------------------------------
Update Information:
- Update to 1.1.33 Release notes:
https://www.cacti.net/release_notes.php?version=1.1.29
https://www.cacti.net/release_notes.php?version=1.1.30
https://www.cacti.net/release_notes.php?version=1.1.31
https://www.cacti.net/release_notes.php?version=1.1.32
https://www.cacti.net/release_notes.php?version=1.1.33
--------------------------------------------------------------------------------
================================================================================
gnome-shell-extension-freon-33-1.el7 (FEDORA-EPEL-2018-fb1a11b7a5)
GNOME Shell extension to display system temperature, voltage, and fan speed
--------------------------------------------------------------------------------
Update Information:
Bump to upstream version 33, which fixes typos in the Russian and Ukrainian
locales, and fixes an instability issue that could cause GNOME Shell to crash.
--------------------------------------------------------------------------------
================================================================================
knot-resolver-1.5.3-1.el7 (FEDORA-EPEL-2018-24ac4ff7df)
Caching full DNS Resolver
--------------------------------------------------------------------------------
Update Information:
Knot Resolver 1.5.3 (2018-01-23) ================================ Bugfixes
-------- - fix the hints module on some systems, e.g. Fedora. Symptom:
`undefined symbol: engine_hint_root_file` Knot Resolver 1.5.2 (2018-01-22)
================================ Security -------- - fix CVE-2018-1000002:
insufficient DNSSEC validation, allowing attackers to deny existence of some
data by forging packets. Some combinations pointed out in RFC 6840 sections
4.1 and 4.3 were not taken into account. Bugfixes -------- - memcached: fix
fallout from module rename in 1.5.1 Knot Resolver 1.5.1 (2017-12-12)
================================ Incompatible changes -------------------- -
script supervisor.py was removed, please migrate to a real process manager -
module ketcd was renamed to etcd for consistency - module kmemcached was renamed
to memcached for consistency Bugfixes -------- - fix SIGPIPE crashes (#271) -
tests: work around out-of-space for platforms with larger memory pages - lua:
fix mistakes in bindings affecting 1.4.0 and 1.5.0 (and 1.99.1-alpha),
potentially causing problems in dns64 and workarounds modules - predict module:
various fixes (!399) Improvements ------------ - add priming module to
implement RFC 8109, enabled by default (#220) - add modules helping with system
time problems, enabled by default; for details see documentation of
detect_time_skew and detect_time_jump
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1537462 - CVE-2018-1000002 knot-resolver: Insufficient DNSSEC validation
https://bugzilla.redhat.com/show_bug.cgi?id=1537462
--------------------------------------------------------------------------------
================================================================================
konversation-1.5.1-4.el7 (FEDORA-EPEL-2018-dd0bc449d7)
A user friendly IRC client
--------------------------------------------------------------------------------
Update Information:
Security update for CVE-2017-15923
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1516531 - CVE-2017-15923 konversation: Denial of service while parsing IRC
color formatting codes
https://bugzilla.redhat.com/show_bug.cgi?id=1516531
--------------------------------------------------------------------------------
================================================================================
lcov-1.13-1.el7 (FEDORA-EPEL-2018-13f813e4ee)
LTP GCOV extension code coverage tool
--------------------------------------------------------------------------------
Update Information:
Update to the latest upstream.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1537958 - lcov update
https://bugzilla.redhat.com/show_bug.cgi?id=1537958
--------------------------------------------------------------------------------
================================================================================
purple-discord-0-15.20171227git9b7c3ad.el7 (FEDORA-EPEL-2018-1162756b5b)
Discord plugin for libpurple
--------------------------------------------------------------------------------
Update Information:
Updated plugins to latest Git snapshots.
--------------------------------------------------------------------------------
================================================================================
purple-libsteam-1.6.1-19.20171225git7f761df.el7 (FEDORA-EPEL-2018-1162756b5b)
Steam plugin for Pidgin/Adium/libpurple
--------------------------------------------------------------------------------
Update Information:
Updated plugins to latest Git snapshots.
--------------------------------------------------------------------------------
================================================================================
python-betamax-0.7.1-1.el7 (FEDORA-EPEL-2018-9c4bf5b9c7)
VCR imitation for python-requests
--------------------------------------------------------------------------------
Update Information:
Initial packaging
--------------------------------------------------------------------------------
================================================================================
rpkg-1.51-3.el7 (FEDORA-EPEL-2018-389d1e9c76)
Python library for interacting with rpm+git
--------------------------------------------------------------------------------
Update Information:
- Add compose-id and signing-intent arguments - Change type of compose id from
string to int
--------------------------------------------------------------------------------
================================================================================
youtube-dl-2018.01.21-1.el7 (FEDORA-EPEL-2018-0a5b4a3d5a)
A small command-line program to download online videos
--------------------------------------------------------------------------------
Update Information:
Update to the latest upstream.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1529821 - youtube-dl-2018.01.21 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1529821
--------------------------------------------------------------------------------