The following Fedora EPEL 6 Security updates need testing:
https://admin.fedoraproject.org/updates/couchdb-1.0.2-4.el6 https://admin.fedoraproject.org/updates/erlang-R14B-02.1.el6 https://admin.fedoraproject.org/updates/syslog-ng-3.2.4-1.el6 https://admin.fedoraproject.org/updates/unbound-1.4.4-3.el6 https://admin.fedoraproject.org/updates/drupal6-6.22-1.el6 https://admin.fedoraproject.org/updates/drupal7-7.2-1.el6 https://admin.fedoraproject.org/updates/libmodplug-0.8.8.3-2.el6 https://admin.fedoraproject.org/updates/phpMyAdmin-3.4.1-1.el6 https://admin.fedoraproject.org/updates/exim-4.72-2.el6 https://admin.fedoraproject.org/updates/jabberd-2.2.14-1.el6 https://admin.fedoraproject.org/updates/ejabberd-2.1.8-1.el6
The following builds have been pushed to Fedora EPEL 6 updates-testing
389-admin-1.1.17-1.el6 389-admin-console-1.1.7-1.el6 389-adminutil-1.1.14-2.el6 389-ds-console-1.2.5-1.el6 389-dsgw-1.1.6-1.el6 ejabberd-2.1.8-1.el6 idm-console-framework-1.1.7-1.el6 libidn2-0.6-1.el6 lua-expat-1.2.0-1.el6 mmseq-0.9.11-1.el6 nemiver-0.8.2el6-1.el6 python-asciitable-0.6.0-2.el6 python-vobject-0.8.1c-4.el6 scapy-2.0.0.10-5.el6 sheepdog-0.2.3-2.el6 tryton-1.8.2-1.el6 trytond-1.8.3-1.el6 trytond-account-1.8.2-1.el6 trytond-product-cost-fifo-1.8.2-1.el6 trytond-project-1.8.1-1.el6 trytond-purchase-1.8.2-1.el6 trytond-sale-1.8.2-1.el6 trytond-stock-1.8.1-1.el6 trytond-stock-supply-1.8.1-1.el6 trytond-stock-supply-day-1.8.1-1.el6
Details about builds:
================================================================================ 389-admin-1.1.17-1.el6 (FEDORA-EPEL-2011-3516) 389 Administration Server (admin) -------------------------------------------------------------------------------- Update Information:
The 1.1.17 release -------------------------------------------------------------------------------- ChangeLog:
* Fri May 13 2011 Rich Megginson rmeggins@redhat.com - 1.1.17-1 - 1.1.17 - support "in-place" upgrade and rebranding from Red Hat to 389 - many fixes for coverity issues * Tue Mar 29 2011 Rich Megginson rmeggins@redhat.com - 1.1.16-1 - 389-admin-1.1.16 - Bug 476925 - Admin Server: Do not allow 8-bit passwords for the admin user - Bug 614690 - Don't use exec to call genrb - Bug 158926 - Unable to install CA certificate when using - hardware token ( LunaSA ) - Bug 211296 - Clean up all HTML pages (Admin Express, Repl Monitor, etc) * Wed Feb 23 2011 Rich Megginson rmeggins@redhat.com - 1.1.15-1 - 1.1.15 release - git tag 389-admin-1.1.15 - Bug 493424 - remove unneeded modules for admin server apache config - Bug 618897 - Wrong permissions when creating instance from Console - Bug 672468 - Don't use empty path elements in LD_LIBRARY_PATH - Bug 245278 - Changing to a password with a single quote does not work - Bug 604881 - admin server log files have incorrect permissions/ownerships - Bug 387981 - plain files can be chosen on the Restore Directory dialog - Bug 668950 - Add posix group support to Console - Bug 618858 - move start-ds-admin env file into main admin server config path - Bug 616260 - libds-admin-serv linking fails due to unresolved link-time depe ndencies - start-ds-admin.in -- replaced "return 1" with "exit 1" - Bug 151705 - Need to update Console Cipher Preferences with new ciphers - Bug 470576 - Migration could do addition checks before commiting actions * Wed Jan 5 2011 Rich Megginson rmeggins@redhat.com - 1.1.14-1 - 1.1.14 release - Bug 664671 - Admin server segfault when full SSL access (http+ldap+console) required - Bug 638511 - dirsrv-admin crashes at startup with SELinux enabled * Mon Nov 29 2010 Rich Megginson rmeggins@redhat.com - 1.1.13-2 - fix Conflicts for selinux policy * Tue Nov 23 2010 Rich Megginson rmeggins@redhat.com - 1.1.13-1 - This is the final 1.1.13 release - git tag 389-admin-1.1.13 - Bug 656441 - Missing library path entry causes LD_PRELOAD error - setup-ds-admin.pl -u exits with ServerAdminID and as_uid related error * Thu Nov 18 2010 Nathan Kinder nkinder@redhat.com - 1.1.12-2 - This is the final 1.1.12 release - git tag 389-admin-1.1.12 - Corrected conflict version for selinux-policy * Fri Nov 12 2010 Nathan Kinder nkinder@redhat.com - 1.1.1.12-1 - This is the final 1.1.12 release - git tag 389-admin-1.1.12 * Fri Nov 12 2010 Nathan Kinder nkinder@redhat.com - 1.1.1.12-1 - Bug 648949 - Merge dirsrv and dirsrv-admin policy modules into base policy * Tue Oct 26 2010 Rich Megginson rmeggins@redhat.com - 1.1.12-0.2.a2 - fix mozldap build breakage * Tue Sep 28 2010 Rich Megginson rmeggins@redhat.com - 1.1.12-0.1.a1 - This is the 1.1.12 alpha 1 release - with openldap support * Thu Aug 26 2010 Rich Megginson rmeggins@redhat.com - 1.1.11-1 - This is the final 1.1.11 release * Wed Aug 4 2010 Rich Megginson rmeggins@redhat.com - 1.1.11-0.6.rc2 - 1.1.11.rc2 release - git tag 389-admin-1.1.11.rc2 - Bug 594745 - Get rid of dirsrv_lib_t label --------------------------------------------------------------------------------
================================================================================ 389-admin-console-1.1.7-1.el6 (FEDORA-EPEL-2011-3506) 389 Admin Server Management Console -------------------------------------------------------------------------------- Update Information:
The 1.1.7 release -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 30 2011 Rich Megginson rmeggins@redhat.com - 1.1.7-1 - the 1.1.7 release - git tag 389-admin-console-1.1.7 - Bug 476925 - Admin Server: Do not allow 8-bit passwords for - the admin user - Bug 211296 - Clean up all HTML pages (Admin Express, Repl Monitor, etc) * Wed Feb 23 2011 Rich Megginson rmeggins@redhat.com - 1.1.6-1 - the 1.1.6 release - git tag 389-admin-console-1.1.6 - Bug 668950 - Add posix group support to Console - Bug 151705 - Need to update Console Cipher Preferences with new ciphers * Wed Jun 2 2010 Rich Megginson rmeggins@redhat.com - 1.1.5-1 - the 1.1.5 release --------------------------------------------------------------------------------
================================================================================ 389-adminutil-1.1.14-2.el6 (FEDORA-EPEL-2011-3500) Utility library for 389 administration -------------------------------------------------------------------------------- Update Information:
The new 1.1.14 release -------------------------------------------------------------------------------- ChangeLog:
* Thu Jun 2 2011 Rich Megginson rmeggins@redhat.com - 1.1.14-2 - use openldap instead of mozldap * Tue May 31 2011 Rich Megginson rmeggins@redhat.com - 1.1.14-1 - many fixes for coverity issues * Fri Oct 22 2010 Rich Megginson rmeggins@redhat.com - 1.1.13-1 - add nss_inc to libadminutil build flags * Tue Oct 19 2010 Rich Megginson rmeggins@redhat.com - 1.1.12-1 - fix building with mozldap * Tue Oct 19 2010 Rich Megginson rmeggins@redhat.com - 1.1.11-1 - the 1.1.11 release --------------------------------------------------------------------------------
================================================================================ 389-ds-console-1.2.5-1.el6 (FEDORA-EPEL-2011-3507) 389 Directory Server Management Console -------------------------------------------------------------------------------- Update Information:
The 1.2.5 release --------------------------------------------------------------------------------
================================================================================ 389-dsgw-1.1.6-1.el6 (FEDORA-EPEL-2011-3502) 389 Directory Server Gateway (dsgw) -------------------------------------------------------------------------------- Update Information:
The 1.1.6 release -------------------------------------------------------------------------------- ChangeLog:
* Fri Oct 8 2010 Rich Megginson rmeggins@redhat.com - 1.1.6-1 - bump version to 1.1.6 - support for openldap --------------------------------------------------------------------------------
================================================================================ ejabberd-2.1.8-1.el6 (FEDORA-EPEL-2011-3497) A distributed, fault-tolerant Jabber/XMPP server -------------------------------------------------------------------------------- Update Information:
- Ver. 2.1.8 -------------------------------------------------------------------------------- ChangeLog:
* Fri Jun 3 2011 Peter Lemenkov lemenkov@gmail.com - 2.1.8-1 - Ver. 2.1.8 (very urgent bugfix for 2.1.7) * Wed Jun 1 2011 Peter Lemenkov lemenkov@gmail.com - 2.1.7-1 - Ver. 2.1.7 (bugfixes and security) * Wed Jun 1 2011 Paul Whalen paul.whalen@senecac.on.ca - 2.1.6-5 - Added arm to conditional to build without hevea. * Thu Feb 24 2011 Peter Lemenkov lemenkov@gmail.com - 2.1.6-4 - Updated @online@ patch * Tue Feb 8 2011 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 2.1.6-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild * Tue Jan 25 2011 Martin Langhoff martin@laptop.org 2.1.6-2 - Apply rebased @online@ patch from OLPC - EJAB-1391 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #700454 - CVE-2011-1753 ejabberd: DoS via the XML "billion laughs attack" https://bugzilla.redhat.com/show_bug.cgi?id=700454 --------------------------------------------------------------------------------
================================================================================ idm-console-framework-1.1.7-1.el6 (FEDORA-EPEL-2011-3517) Identity Management Console Framework -------------------------------------------------------------------------------- Update Information:
New 1.1.7 release --------------------------------------------------------------------------------
================================================================================ libidn2-0.6-1.el6 (FEDORA-EPEL-2011-3509) Library to support IDNA2008 internationalized domain names -------------------------------------------------------------------------------- Update Information:
Upstream fix: Use -no-install instead of -static to fix --disable-static at tests -------------------------------------------------------------------------------- ChangeLog:
* Sat Jun 4 2011 Robert Scheck robert@fedoraproject.org 0.6-1 - Upgrade to 0.6 --------------------------------------------------------------------------------
================================================================================ lua-expat-1.2.0-1.el6 (FEDORA-EPEL-2011-3519) SAX XML parser based on the Expat library -------------------------------------------------------------------------------- Update Information:
New upstream release (billion laughs DOS vulnerability) -------------------------------------------------------------------------------- ChangeLog:
* Fri Jun 3 2011 Matěj Cepl mcepl@redhat.com - 1.2-1 - New upstream release, fixing "The Billion Laughs Attack" for XMPP servers. - Fix tests so that we actually pass them. * Tue Feb 8 2011 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 1.1-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ mmseq-0.9.11-1.el6 (FEDORA-EPEL-2011-3512) Haplotype and isoform specific expression estimation for RNA-seq --------------------------------------------------------------------------------
================================================================================ nemiver-0.8.2el6-1.el6 (FEDORA-EPEL-2011-3501) A GNOME C/C++ Debugger -------------------------------------------------------------------------------- Update Information:
Update the new upstream version 0.8.2, backported into the EL6 environment -------------------------------------------------------------------------------- ChangeLog:
* Fri Jun 3 2011 dodji@redhat.com - 0.8.2el6-1 - Update to upstream nemiver-0.8.2el6 tag from el6-branch --------------------------------------------------------------------------------
================================================================================ python-asciitable-0.6.0-2.el6 (FEDORA-EPEL-2011-3504) Extensible ASCII table reader and writer -------------------------------------------------------------------------------- Update Information:
An extensible ASCII table reader for astronomy. Asciitable can read a wide range of ASCII table formats via built-in Extension Reader Classes --------------------------------------------------------------------------------
================================================================================ python-vobject-0.8.1c-4.el6 (FEDORA-EPEL-2011-3505) A python library for manipulating vCard and vCalendar files --------------------------------------------------------------------------------
================================================================================ scapy-2.0.0.10-5.el6 (FEDORA-EPEL-2011-3515) Interactive packet manipulation tool and network scanner -------------------------------------------------------------------------------- Update Information:
First build of scapy for EPEL-6 --------------------------------------------------------------------------------
================================================================================ sheepdog-0.2.3-2.el6 (FEDORA-EPEL-2011-3508) The Sheepdog Distributed Storage System for KVM/QEMU -------------------------------------------------------------------------------- References:
[ 1 ] Bug #706565 - Review Request: sheepdog - The Sheepdog Distributed Storage System for KVM/QEMU https://bugzilla.redhat.com/show_bug.cgi?id=706565 --------------------------------------------------------------------------------
================================================================================ tryton-1.8.2-1.el6 (FEDORA-EPEL-2011-3511) Client for the Tryton application framework -------------------------------------------------------------------------------- Update Information:
update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog:
* Mon Jun 6 2011 Dan Horák dan@danny.cz - 1.8.2-1 - new upstream version 1.8.2 --------------------------------------------------------------------------------
================================================================================ trytond-1.8.3-1.el6 (FEDORA-EPEL-2011-3511) Server for the Tryton application framework -------------------------------------------------------------------------------- Update Information:
update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog:
* Mon Jun 6 2011 Dan Horák dan@danny.cz - 1.8.3-1 - new upstream version 1.8.3 --------------------------------------------------------------------------------
================================================================================ trytond-account-1.8.2-1.el6 (FEDORA-EPEL-2011-3511) account module for Tryton -------------------------------------------------------------------------------- Update Information:
update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog:
* Mon Jun 6 2011 Dan Horák dan@danny.cz - 1.8.2-1 - new upstream version 1.8.2 --------------------------------------------------------------------------------
================================================================================ trytond-product-cost-fifo-1.8.2-1.el6 (FEDORA-EPEL-2011-3511) product-cost-fifo module for Tryton -------------------------------------------------------------------------------- Update Information:
update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog:
* Mon Jun 6 2011 Dan Horák dan@danny.cz - 1.8.2-1 - new upstream version 1.8.2 --------------------------------------------------------------------------------
================================================================================ trytond-project-1.8.1-1.el6 (FEDORA-EPEL-2011-3511) project module for Tryton -------------------------------------------------------------------------------- Update Information:
update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog:
--------------------------------------------------------------------------------
================================================================================ trytond-purchase-1.8.2-1.el6 (FEDORA-EPEL-2011-3511) purchase module for Tryton -------------------------------------------------------------------------------- Update Information:
update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog:
* Mon Jun 6 2011 Dan Horák dan@danny.cz - 1.8.2-1 - new upstream version 1.8.2 --------------------------------------------------------------------------------
================================================================================ trytond-sale-1.8.2-1.el6 (FEDORA-EPEL-2011-3511) sale module for Tryton -------------------------------------------------------------------------------- Update Information:
update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog:
* Mon Jun 6 2011 Dan Horák dan@danny.cz - 1.8.2-1 - new upstream version 1.8.2 --------------------------------------------------------------------------------
================================================================================ trytond-stock-1.8.1-1.el6 (FEDORA-EPEL-2011-3511) stock module for Tryton -------------------------------------------------------------------------------- Update Information:
update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog:
--------------------------------------------------------------------------------
================================================================================ trytond-stock-supply-1.8.1-1.el6 (FEDORA-EPEL-2011-3511) stock-supply module for Tryton -------------------------------------------------------------------------------- Update Information:
update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog:
--------------------------------------------------------------------------------
================================================================================ trytond-stock-supply-day-1.8.1-1.el6 (FEDORA-EPEL-2011-3511) stock-supply-day module for Tryton -------------------------------------------------------------------------------- Update Information:
update to latest upstream bugfix releases -------------------------------------------------------------------------------- ChangeLog:
--------------------------------------------------------------------------------
epel-devel@lists.fedoraproject.org