The following Fedora EPEL 7 Security updates need testing: Age URL 723 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-1087 dokuwiki-0-0.24.20140929c.el7 485 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2015-dac7ed832f mcollective-2.8.4-1.el7 203 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-23fa04bf1c redis-3.2.3-1.el7 187 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-e8f4ff76b3 chicken-4.11.0-3.el7 67 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2016-04bc9dd81d libbsd-0.8.3-1.el7 6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-759dd56b65 firebird-2.5.7.27050.0-1.el7 5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-af1e2c321c phpMyAdmin-4.4.15.10-1.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-20968c98b8 nodejs-6.9.5-1.el7 2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-cf89632a6e canl-c-2.1.8-1.el7 1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-d5fe44714a cacti-1.0.4-1.el7 1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-0e81fa293f drupal7-metatag-1.21-1.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-f1dce07331 drupal7-views-3.15-1.el7 0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2017-f99defddc3 munin-2.0.30-5.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
collectl-4.1.2-1.el7 drupal7-drafty-1.0-0.3.beta4.el7 drupal7-views-3.15-1.el7 drupal7-views_bulk_operations-3.4-1.el7 drupal7-views_slideshow-3.6-1.el7 mock-1.3.4-1.el7 munin-2.0.30-5.el7 nodejs-nan-2.5.1-2.el7 nodejs-nan1-1.9.0-3.el7 pcre2-10.21-14.el7 perl-GD-SecurityImage-1.72-1.el7 php-consolidation-annotated-command-2.4.4-1.el7 php-consolidation-output-formatters-3.1.7-1.el7 php-horde-Horde-Service-Weather-2.5.4-1.el7 php-horde-Horde-SessionHandler-2.2.9-1.el7 php-horde-Horde-Share-2.1.2-1.el7 php-horde-Horde-Support-2.2.0-1.el7 php-horde-Horde-Test-2.6.2-1.el7 php-horde-Horde-Translation-2.2.2-1.el7 php-horde-Horde-Vfs-2.4.0-1.el7 psad-2.4.3-4.el7 python-cjson-1.2.1-1.el7 python-terminado-0.6-2.el7 python3-cffi-1.9.1-2.el7 python3-docutils-0.12-0.8.20140510svn7747.el7 qhttpengine-0.1.0-4.el7
Details about builds:
================================================================================ collectl-4.1.2-1.el7 (FEDORA-EPEL-2017-80729a682d) A utility to collect various Linux performance data -------------------------------------------------------------------------------- Update Information:
- updated to 4.1.2 - http://collectl.sourceforge.net/Releases.html -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1427343 - collectl-4.1.2.src is available https://bugzilla.redhat.com/show_bug.cgi?id=1427343 --------------------------------------------------------------------------------
================================================================================ drupal7-drafty-1.0-0.3.beta4.el7 (FEDORA-EPEL-2017-c04a923969) Facilitates handling of draft revisions -------------------------------------------------------------------------------- Update Information:
* [7.x-1.0-beta4](https://www.drupal.org/project/drafty/releases/7.x-1.0-beta4) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1424657 - drupal7-drafty-1.0-beta4 is available https://bugzilla.redhat.com/show_bug.cgi?id=1424657 --------------------------------------------------------------------------------
================================================================================ drupal7-views-3.15-1.el7 (FEDORA-EPEL-2017-f1dce07331) Create customized lists and queries from your database -------------------------------------------------------------------------------- Update Information:
* [7.x-3.15](https://www.drupal.org/project/views/releases/7.x-3.15) * [Moderately Critical - Access Bypass - SA- CONTRIB-2017-022](https://www.drupal.org/node/2854980) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1425991 - drupal7-views-3.15 is available https://bugzilla.redhat.com/show_bug.cgi?id=1425991 --------------------------------------------------------------------------------
================================================================================ drupal7-views_bulk_operations-3.4-1.el7 (FEDORA-EPEL-2017-bec26b2f55) Provides a way of selecting multiple rows and applying operations to them -------------------------------------------------------------------------------- Update Information:
* [7.x-3.4](https://www.drupal.org/project/views_bulk_operations/releases/7.x-3.4) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1425628 - drupal7-views_bulk_operations-3.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=1425628 --------------------------------------------------------------------------------
================================================================================ drupal7-views_slideshow-3.6-1.el7 (FEDORA-EPEL-2017-edb1c77e51) Views Slideshow can be used to create a slideshow of any content -------------------------------------------------------------------------------- Update Information:
* [7.x-3.6](https://www.drupal.org/project/views_slideshow/releases/7.x-3.6) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1422853 - drupal7-views_slideshow-3.6 is available https://bugzilla.redhat.com/show_bug.cgi?id=1422853 --------------------------------------------------------------------------------
================================================================================ mock-1.3.4-1.el7 (FEDORA-EPEL-2017-89e17056c0) Builds packages inside chroots -------------------------------------------------------------------------------- Update Information:
Beside listed bugfixes there are new features: * scm plugin now supports DistGit (or DistSVN etc.) . * log files of package_state plugin got `.log` extension. I.e. `available_pkgs.log` and `installed_pkgs.log`. * Configuration files for Fedora 26 has been added. * Configuration files for Fedora 23 has been removed. * Even rawhide configs now use best=1. * when Mock is run directly without consolehelper it now return exit code 2. * You can pass additional arguments to systemd-nspawn using this config option: `config_opts['nspawn_args'] = []`. * kojipkgs urls now use https instead of http. * new plugin hw_info which prints HW information of builder. This plugin is enabled by default. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1409735 - Cannot create default config on rawhide https://bugzilla.redhat.com/show_bug.cgi?id=1409735 [ 2 ] Bug #1297430 - RFE: chroot_scan should extract files preserving ownership and mode https://bugzilla.redhat.com/show_bug.cgi?id=1297430 [ 3 ] Bug #1372234 - mock --new-chroot can't shutdown mongo running inside https://bugzilla.redhat.com/show_bug.cgi?id=1372234 [ 4 ] Bug #1409734 - Provide an easy way to install debuginfo into mock chroot https://bugzilla.redhat.com/show_bug.cgi?id=1409734 --------------------------------------------------------------------------------
================================================================================ munin-2.0.30-5.el7 (FEDORA-EPEL-2017-f99defddc3) Network-wide graphing framework (grapher/gatherer) -------------------------------------------------------------------------------- Update Information:
CVE-2017-6188: Upstream PR 797: Fix wrong parameter expansion in CGI -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1425855 - CVE-2017-6188 munin: Local file write vulnerability with CGI graphs enabled https://bugzilla.redhat.com/show_bug.cgi?id=1425855 --------------------------------------------------------------------------------
================================================================================ nodejs-nan-2.5.1-2.el7 (FEDORA-EPEL-2017-8c5f747582) Native Abstractions for Node.js -------------------------------------------------------------------------------- Update Information:
Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ nodejs-nan1-1.9.0-3.el7 (FEDORA-EPEL-2017-621515f069) Native Abstractions for Node.js -------------------------------------------------------------------------------- Update Information:
Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ pcre2-10.21-14.el7 (FEDORA-EPEL-2017-dbfe108a4b) Perl-compatible regular expression library -------------------------------------------------------------------------------- Update Information:
This release fixes a crash when finding a Unicode property for a character with a code point greater than 0x10ffff in UTF-32 library while UTF mode is disabled. It also correct handling memory allocation failures in pcre2test tool. ---- This release fixes pcre2grep multi-line matching if --only-matching option is specified. --------------------------------------------------------------------------------
================================================================================ perl-GD-SecurityImage-1.72-1.el7 (FEDORA-EPEL-2017-492118e68c) Security image (captcha) generator -------------------------------------------------------------------------------- Update Information:
This package contains the perl module GD::SecurityImage, which gives you a basic interface to create "security images". -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1427462 - Please package perl-GD-SecurityImage for CentOS 7 https://bugzilla.redhat.com/show_bug.cgi?id=1427462 --------------------------------------------------------------------------------
================================================================================ php-consolidation-annotated-command-2.4.4-1.el7 (FEDORA-EPEL-2017-9372bd5ca1) Initialize Symfony Console commands from annotated command class methods -------------------------------------------------------------------------------- Update Information:
### 2.4.4 - 27 Feb 2017 - BUGFIX: Avoid rewriting the command cache unless something has changed. - BUGFIX: Ensure that the default value of options are correctly cached. ### 2.4.2 - 24 Feb 2017 - Add SimpleCacheInterface as a documentation interface (not enforced). ### 2.4.1 - 20 Feb 2017 - Support array options: multiple options on the commandline may be passed in to options array as an array of values. - Add php 7.1 to the test matrix. ### 2.4.0 - 3 Feb 2017 - Automatically rebuild cached commandfile data when commandfile changes. - Provide path to command file in AnnotationData objects. - Bugfix: Add dynamic options when user runs '--help my:command' (previously, only 'help my:command' worked). - Bugfix: Include description of last parameter in help (was omitted if no options present) - Add Windows testing with Appveyor ### 2.3.0 - 19 Jan 2017 - Add a command info cache to improve performance of applications with many commands - Bugfix: Allow trailing backslashes in namespaces in CommandFileDiscovery - Bugfix: Rename @topic to @topics -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1415385 - php-consolidation-annotated-command-2.4.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=1415385 --------------------------------------------------------------------------------
================================================================================ php-consolidation-output-formatters-3.1.7-1.el7 (FEDORA-EPEL-2017-7d4bda8bd6) Format text by applying transformations provided by plug-in formatters -------------------------------------------------------------------------------- Update Information:
No-op (Add appveyor.yml for Windows testing) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1415386 - php-consolidation-output-formatters-3.1.7 is available https://bugzilla.redhat.com/show_bug.cgi?id=1415386 --------------------------------------------------------------------------------
================================================================================ php-horde-Horde-Service-Weather-2.5.4-1.el7 (FEDORA-EPEL-2017-cb5196f668) Horde Weather Provider -------------------------------------------------------------------------------- Update Information:
**Horde_Service_Weather 2.5.4** * [jan] Fix regression with PHP < 5.5. --------------------------------------------------------------------------------
================================================================================ php-horde-Horde-SessionHandler-2.2.9-1.el7 (FEDORA-EPEL-2017-0a227e0219) Horde Session Handler API -------------------------------------------------------------------------------- Update Information:
**Horde_SessionHandler 2.2.9** * [jan] Fix MongoDB backend with mongodb extension. * [jan] Fix returning session ID when using a PostgreSQL backend. --------------------------------------------------------------------------------
================================================================================ php-horde-Horde-Share-2.1.2-1.el7 (FEDORA-EPEL-2017-71fca333a1) Horde Shared Permissions System -------------------------------------------------------------------------------- Update Information:
**Horde_Share 2.1.2** * [jan] Fix removing custom permssions when removing a user or group from a share (Bug #14578). --------------------------------------------------------------------------------
================================================================================ php-horde-Horde-Support-2.2.0-1.el7 (FEDORA-EPEL-2017-32aaef4431) Horde support package -------------------------------------------------------------------------------- Update Information:
**Horde_Support 2.2.0** * [jan] Add Horde_Backtrace#createFromThrowable() to support PHP 7 error objects too. --------------------------------------------------------------------------------
================================================================================ php-horde-Horde-Test-2.6.2-1.el7 (FEDORA-EPEL-2017-b4c206824b) Horde testing base classes -------------------------------------------------------------------------------- Update Information:
**Horde_Test 2.6.2** * [jan] Colorize PHPUnit output. --------------------------------------------------------------------------------
================================================================================ php-horde-Horde-Translation-2.2.2-1.el7 (FEDORA-EPEL-2017-4a75ccd6ab) Horde translation library -------------------------------------------------------------------------------- Update Information:
**Horde_Translation 2.2.2** * [jan] Fix detecting locale directories of namespaced libraries. --------------------------------------------------------------------------------
================================================================================ php-horde-Horde-Vfs-2.4.0-1.el7 (FEDORA-EPEL-2017-228ca6d6c9) Virtual File System API -------------------------------------------------------------------------------- Update Information:
**Horde_Vfs 2.4.0** * [mjr] Allow Horde_Vfs::writeData() to accept stream input. * [jan] Fix retrieving files from root folder with SQL backends (Bug #14545). --------------------------------------------------------------------------------
================================================================================ psad-2.4.3-4.el7 (FEDORA-EPEL-2017-a298c388e0) Port Scan Attack Detector (psad) watches for suspect traffic -------------------------------------------------------------------------------- Update Information:
psad for EPEL7 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1281755 - Build psad for EPEL7 https://bugzilla.redhat.com/show_bug.cgi?id=1281755 --------------------------------------------------------------------------------
================================================================================ python-cjson-1.2.1-1.el7 (FEDORA-EPEL-2017-0302bad014) Fast JSON encoder/decoder for Python -------------------------------------------------------------------------------- Update Information:
This update provides a new upstream release of python-cjson, 1.2.1. The major change in this release is an alternative fix for the recursion issue that was fixed with a downstream patch in the previous package build. Other than that, the only changes are to documentation and license boilerplate. --------------------------------------------------------------------------------
================================================================================ python-terminado-0.6-2.el7 (FEDORA-EPEL-2017-4a054377c6) Terminals served to term.js using Tornado websockets -------------------------------------------------------------------------------- Update Information:
This is a Tornado websocket backend for the term.js Javascript terminal emulator library. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1219662 - Review Request: python-terminado - Terminals served to term.js using Tornado websockets https://bugzilla.redhat.com/show_bug.cgi?id=1219662 --------------------------------------------------------------------------------
================================================================================ python3-cffi-1.9.1-2.el7 (FEDORA-EPEL-2017-923cc26d6c) Foreign Function Interface for Python to call C code -------------------------------------------------------------------------------- Update Information:
Drop requires on python3-cffi in doc package ---- Foreign Function Interface for Python, providing a convenient and reliable way of calling existing C code from Python. The interface is based on LuaJIT���s FFI. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1410953 - Review Request: python3-cffi - Foreign Function Interface for Python to call C code https://bugzilla.redhat.com/show_bug.cgi?id=1410953 --------------------------------------------------------------------------------
================================================================================ python3-docutils-0.12-0.8.20140510svn7747.el7 (FEDORA-EPEL-2017-e72964ef24) System for processing plaintext documentation -------------------------------------------------------------------------------- Update Information:
The Docutils project specifies a plaintext markup language, reStructuredText, which is easy to read and quick to write. The project includes a python library to parse rST files and transform them into other useful formats such as HTML, XML, and TeX as well as commandline tools that give the enduser access to this functionality. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1391254 - Review Request: python3-docutils - System for processing plaintext documentation https://bugzilla.redhat.com/show_bug.cgi?id=1391254 --------------------------------------------------------------------------------
================================================================================ qhttpengine-0.1.0-4.el7 (FEDORA-EPEL-2017-32c778535b) HTTP server for Qt applications -------------------------------------------------------------------------------- Update Information:
fix for versionend documentation folder -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1403697 - qhttpengine uses hardcoded unversioned _pkgdocdir https://bugzilla.redhat.com/show_bug.cgi?id=1403697 --------------------------------------------------------------------------------
epel-devel@lists.fedoraproject.org