The following Fedora EPEL 7 Security updates need testing:
Age URL
43
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-3835d39d1a
unrtf-0.21.9-8.el7
38
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-15b7dc35af
pass-1.7.2-1.el7
19
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-ccbe8e3c4d
knot-resolver-2.4.0-1.el7
12
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-d2e0971e9b
uwsgi-2.0.17.1-1.el7
12
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-755a438aca
libgit2-0.26.5-1.el7
12
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-86150d9653
rust-1.27.1-2.el7
4
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-3f07844689
znc-1.7.1-1.el7
4
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-d8d62b4f6c
suricata-4.0.5-1.el7
3
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-8de40d24ca
redis-3.2.12-1.el7
3
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-e603289e79
NetworkManager-vpnc-1.2.6-1.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
bibutils-6.6-1.el7
hxtools-20150304-7.el7
libHX-3.22-9.el7
openblas-0.3.1-3.el7
pam_mount-2.16-5.el7
pam_yubico-2.26-1.el7
pwgen-2.08-1.el7
python-dns-lexicon-2.7.0-1.el7
Details about builds:
================================================================================
bibutils-6.6-1.el7 (FEDORA-EPEL-2018-f9d6ff695a)
Bibliography conversion tools
--------------------------------------------------------------------------------
Update Information:
Update to 6.6.
--------------------------------------------------------------------------------
ChangeLog:
* Mon Jul 23 2018 Vasiliy N. Glazov <vascom2(a)gmail.com> 6.6-1
- Update to 6.6
- Drop patch
- Clean spec
* Fri Jun 29 2018 Jens Petersen <petersen(a)redhat.com> - 6.5-1
- update to version 6.5
- build with LDFLAGS (#1541039)
* Wed Jun 6 2018 Jens Petersen <petersen(a)redhat.com> - 6.3-1
- update to 6.3 which addresses CVE-2018-10773 CVE-2018-10774 CVE-2018-10775
(#1577259)
* Mon Feb 19 2018 Jens Petersen <petersen(a)redhat.com> - 6.2-4
- BR gcc
* Wed Feb 14 2018 Jens Petersen <petersen(a)redhat.com> - 6.2-3
- fix the build with CFLAGS and LDFLAGS
* Fri Feb 2 2018 Jens Petersen <petersen(a)redhat.com> - 6.2-2
- using distro LDFLAGS (#1541039)
* Sat Jan 13 2018 Jens Petersen <petersen(a)redhat.com> - 6.2-1
- update to 6.2
* Mon Jan 19 2015 Jens Petersen <petersen(a)redhat.com> - 5.5-1
- update to 5.5
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1577259 - CVE-2018-10773 CVE-2018-10774 CVE-2018-10775 bibutils: various
flaws [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1577259
[ 2 ] Bug #1541039 - bibutils: Does not use Fedora build flags
https://bugzilla.redhat.com/show_bug.cgi?id=1541039
[ 3 ] Bug #1585851 - bibutils-6.5 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1585851
[ 4 ] Bug #1577261 - CVE-2018-10773 CVE-2018-10774 CVE-2018-10775 bibutils: various
flaws [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1577261
--------------------------------------------------------------------------------
================================================================================
hxtools-20150304-7.el7 (FEDORA-EPEL-2018-12b65c3a15)
A collection of several tools
--------------------------------------------------------------------------------
Update Information:
Adding pam_mount and its dependencies hxtools and libHX to EPEL 7
--------------------------------------------------------------------------------
================================================================================
libHX-3.22-9.el7 (FEDORA-EPEL-2018-12b65c3a15)
Useful collection of routines for C and C++ programming
--------------------------------------------------------------------------------
Update Information:
Adding pam_mount and its dependencies hxtools and libHX to EPEL 7
--------------------------------------------------------------------------------
================================================================================
openblas-0.3.1-3.el7 (FEDORA-EPEL-2018-ffe1eb31cb)
An optimized BLAS library based on GotoBLAS2
--------------------------------------------------------------------------------
Update Information:
Update to 0.3.1, see full changelog at
https://github.com/xianyi/OpenBLAS/releases
--------------------------------------------------------------------------------
ChangeLog:
* Sun Jul 22 2018 Susi Lehtola <jussilehtola(a)fedoraproject.org> - 0.3.1-3
- Fix crash with multiple instances (BZ #1605231).
* Mon Jul 2 2018 Susi Lehtola <jussilehtola(a)fedoraproject.org> - 0.3.1-2
- Fix build on EPEL 6.
* Sun Jul 1 2018 Susi Lehtola <jussilehtola(a)fedoraproject.org> - 0.3.1-1
- Split sequential libraries into subpackage.
- Update to 0.3.1.
--------------------------------------------------------------------------------
================================================================================
pam_mount-2.16-5.el7 (FEDORA-EPEL-2018-12b65c3a15)
A PAM module that can mount volumes for a user session
--------------------------------------------------------------------------------
Update Information:
Adding pam_mount and its dependencies hxtools and libHX to EPEL 7
--------------------------------------------------------------------------------
================================================================================
pam_yubico-2.26-1.el7 (FEDORA-EPEL-2018-f19460105c)
A Pluggable Authentication Module for yubikeys
--------------------------------------------------------------------------------
Update Information:
Update to 2.26, fixes CVE-2018-9275
--------------------------------------------------------------------------------
ChangeLog:
* Mon Jul 23 2018 Nick Bebout <nb(a)fedoraproject.org> - 2.26-1
- Update to 2.26
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.24-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Thu Feb 8 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.24-5
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
* Thu Aug 3 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.24-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild
* Thu Jul 27 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.24-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
* Sat Feb 11 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.24-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild
* Mon Nov 28 2016 Oliver Haessler <oliver(a)redhat.com> - 2.24-1
- Update to 2.24
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1560995 - pam_yubico-2.26 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1560995
[ 2 ] Bug #1564640 - CVE-2018-9275 pam_yubico: Information disclosure in
check_user_token in util.c [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1564640
[ 3 ] Bug #1564641 - CVE-2018-9275 pam_yubico: Information disclosure in
check_user_token in util.c [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1564641
--------------------------------------------------------------------------------
================================================================================
pwgen-2.08-1.el7 (FEDORA-EPEL-2018-47e5aa7ba7)
Automatic password generation
--------------------------------------------------------------------------------
Update Information:
Update to 2.08.
--------------------------------------------------------------------------------
ChangeLog:
* Mon Jul 23 2018 Vasiliy N. Glazov <vascom2(a)gmail.com> 2.08-1
- Update to 2.08
- Clean spec
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.07-8
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Fri Feb 9 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.07-7
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
* Thu Aug 3 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.07-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild
* Thu Jul 27 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.07-5
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
* Sat Feb 11 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.07-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild
* Thu Feb 4 2016 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.07-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild
* Thu Jun 18 2015 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
2.07-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
python-dns-lexicon-2.7.0-1.el7 (FEDORA-EPEL-2018-58d3782f03)
Manipulate DNS records on various DNS providers in a standardized/agnostic way
--------------------------------------------------------------------------------
Update Information:
Update to 2.7.0 ---- Update to 2.4.5.
--------------------------------------------------------------------------------
ChangeLog:
* Mon Jul 23 2018 Nick Bebout <nb(a)fedoraproject.org> - 2.7.0-1
- Update to 2.7.0
* Sat Jul 14 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.4.5-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Tue Jul 10 2018 Eli Young <elyscape(a)gmail.com> - 2.4.5-1
- Update to 2.4.5 (#1599479)
* Mon Jul 2 2018 Miro Hron��ok <mhroncok(a)redhat.com> - 2.4.4-3
- Rebuilt for Python 3.7
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1599479 - python-dns-lexicon-2.4.5 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1599479
[ 2 ] Bug #1600930 - python-dns-lexicon-2.7.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1600930
--------------------------------------------------------------------------------