The following Fedora 37 Security updates need testing: Age URL 22 https://bodhi.fedoraproject.org/updates/FEDORA-2023-dc70a91343 nodejs16-16.19.1-4.fc37 9 https://bodhi.fedoraproject.org/updates/FEDORA-2023-6bdc769313 cutter-re-2.2.0-1.fc37 rizin-0.5.1-1.fc37 4 https://bodhi.fedoraproject.org/updates/FEDORA-2023-2cf272ad72 stellarium-1.2-9.fc37 3 https://bodhi.fedoraproject.org/updates/FEDORA-2023-86068d1187 redis-7.0.10-1.fc37 3 https://bodhi.fedoraproject.org/updates/FEDORA-2023-c3fb6d6b8d python-markdown-it-py-2.2.0-1.fc37 3 https://bodhi.fedoraproject.org/updates/FEDORA-2023-7fd02c2367 mingw-zstd-1.5.4-1.fc37 3 https://bodhi.fedoraproject.org/updates/FEDORA-2023-ed525aa807 mingw-python-certifi-2022.12.7-1.fc37 3 https://bodhi.fedoraproject.org/updates/FEDORA-2023-406c1c6ed7 mingw-python3-3.10.10-2.fc37 3 https://bodhi.fedoraproject.org/updates/FEDORA-2023-86d75130fe yarnpkg-1.22.19-5.fc37 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-f003d8e633 dino-0.3.2-1.fc37 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-e295804b3d amanda-3.5.3-1.fc37 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-2884ba1528 curl-7.85.0-8.fc37 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-88629e9585 netconsd-0.2-1.fc37
The following Fedora 37 Critical Path updates have yet to be approved: Age URL 102 https://bodhi.fedoraproject.org/updates/FEDORA-2022-bf8feea173 lorax-37.10-1.fc37 13 https://bodhi.fedoraproject.org/updates/FEDORA-2023-40600fdddd libqalculate-4.6.0-1.fc37 qalculate-gtk-4.6.0-1.fc37 qalculate-qt-4.6.0-1.fc37 7 https://bodhi.fedoraproject.org/updates/FEDORA-2023-a813730512 gupnp-1.4.4-1.fc37 7 https://bodhi.fedoraproject.org/updates/FEDORA-2023-e49bb14d13 gssdp-1.4.1-1.fc37 7 https://bodhi.fedoraproject.org/updates/FEDORA-2023-a4d5da4b17 gnome-remote-desktop-43.3-1.fc37 4 https://bodhi.fedoraproject.org/updates/FEDORA-2023-da381c353d seabios-1.16.2-1.fc37 4 https://bodhi.fedoraproject.org/updates/FEDORA-2023-93d5ee8189 kf5-kconfigwidgets-5.104.0-2.fc37 qgnomeplatform-0.9.0-10.fc37 3 https://bodhi.fedoraproject.org/updates/FEDORA-2023-95cd1767d0 openexr-3.1.6-1.fc37 3 https://bodhi.fedoraproject.org/updates/FEDORA-2023-ea64015bcd annobin-11.14-1.fc37 3 https://bodhi.fedoraproject.org/updates/FEDORA-2023-3098370402 libadwaita-1.2.4-1.fc37 2 https://bodhi.fedoraproject.org/updates/FEDORA-2023-92f7cbf02d dracut-059-1.fc37 2 https://bodhi.fedoraproject.org/updates/FEDORA-2023-3b261cdb53 mtools-4.0.43-1.fc37 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-36b5f94a63 gdb-13.1-2.fc37 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-59700c9754 xfsprogs-6.1.0-2.fc37 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-9360f802ac tzdata-2023b-1.fc37 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-2884ba1528 curl-7.85.0-8.fc37 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-b8198a0d99 blivet-gui-2.4.1-1.fc37 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-594f7526e9 cockpit-288.1-1.fc37 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-c3489b6fe9 cmake-3.26.1-1.fc37 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-14c7476a69 plasma-discover-5.27.3-2.fc37 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-fe2930213e kernel-6.2.8-200.fc37 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-59657907de sddm-0.19.0^git20230320.e07e805-2.fc37
The following builds have been pushed to Fedora 37 updates-testing
ImageMagick-6.9.12.82-1.fc37 coolreader-3.2.59-4.fc37 crun-1.8.3-2.fc37 fakeroot-1.31-1.fc37 fastfetch-1.11.0-1.fc37 givaro-4.1.1-13.fc37 golang-github-task-3.22.0-1.fc37 gparted-1.5.0-1.fc37 neovim-0.8.3-3.fc37 python-bitstruct-8.17.0-1.fc37 python-reactivex-4.0.4-1.fc37 python-tenacity-8.2.2-1.fc37 rust-ascii-1.1.0-3.fc37 rust-vm-fdt-0.2.0-1.fc37 stress-ng-0.15.06-1.fc37 xrootd-5.5.4-1.fc37
Details about builds:
================================================================================ ImageMagick-6.9.12.82-1.fc37 (FEDORA-2023-41a537a9e1) An X application for displaying and manipulating images -------------------------------------------------------------------------------- Update Information:
Update ImageMagick to 6.9.12.82 (#2176863,2176861,2176860) -------------------------------------------------------------------------------- ChangeLog:
* Sat Mar 25 2023 S��rgio Basto sergio@serjux.com - 1:6.9.12.82-1 - Update ImageMagick to 6.9.12.82 (#2176863,2176861,2176860) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2176860 - ImageMagick: Specially crafted SVG leads to segmentation fault and generate trash files in "/tmp", possible to leverage DoS [epel-8] https://bugzilla.redhat.com/show_bug.cgi?id=2176860 [ 2 ] Bug #2176861 - ImageMagick: Specially crafted SVG leads to segmentation fault and generate trash files in "/tmp", possible to leverage DoS [fedora-36] https://bugzilla.redhat.com/show_bug.cgi?id=2176861 [ 3 ] Bug #2176863 - ImageMagick: Specially crafted SVG leads to segmentation fault and generate trash files in "/tmp", possible to leverage DoS [fedora-37] https://bugzilla.redhat.com/show_bug.cgi?id=2176863 --------------------------------------------------------------------------------
================================================================================ coolreader-3.2.59-4.fc37 (FEDORA-2023-5b50a7dd74) Cross platform open source e-book reader -------------------------------------------------------------------------------- Update Information:
Rebuild for FTBFS -------------------------------------------------------------------------------- ChangeLog:
* Sat Mar 25 2023 Sandro devel@penguinpee.nl - 3.2.59-4 - Rebuild for FTBFS (RHBZ#2113154) * Wed Jul 20 2022 Fedora Release Engineering releng@fedoraproject.org - 3.2.59-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ crun-1.8.3-2.fc37 (FEDORA-2023-dc0ee6da9b) OCI runtime written in C -------------------------------------------------------------------------------- Update Information:
update sources -------------------------------------------------------------------------------- ChangeLog:
* Sat Mar 25 2023 Giuseppe Scrivano gscrivan@redhat.com - 1.8.3-2 - update sources * Sat Mar 25 2023 Giuseppe Scrivano gscrivan@redhat.com - 1.8.3-1 - bump to 1.8.3 --------------------------------------------------------------------------------
================================================================================ fakeroot-1.31-1.fc37 (FEDORA-2023-401d9af923) Gives a fake root environment -------------------------------------------------------------------------------- Update Information:
Update fakeroot to 1.31 (#2167522) -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 15 2023 S��rgio Basto sergio@serjux.com - 1.31-1 - Update fakeroot to 1.31 (#2167522) - Add fix from Debian - Drop fakeroot-inttypes.patch which had almost 10 year old and I dont know what his purpose - Drop relax_tartest.patch we don't need it anymore * Thu Jan 19 2023 Fedora Release Engineering releng@fedoraproject.org - 1.30.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2167522 - fakeroot-1.31 is available https://bugzilla.redhat.com/show_bug.cgi?id=2167522 --------------------------------------------------------------------------------
================================================================================ fastfetch-1.11.0-1.fc37 (FEDORA-2023-f1501dfb16) Like neofetch, but much faster because written in c -------------------------------------------------------------------------------- Update Information:
update to 1.11 -------------------------------------------------------------------------------- ChangeLog:
* Sat Mar 25 2023 Jonathan Wright jonathan@almalinux.org - 1.11.0-1 - Update to 1.11.0 rhbz#2181737 --------------------------------------------------------------------------------
================================================================================ givaro-4.1.1-13.fc37 (FEDORA-2023-e852677e50) C++ library for arithmetic and algebraic computations -------------------------------------------------------------------------------- Update Information:
Re-enable documentation on F37; update License to SPDX -------------------------------------------------------------------------------- ChangeLog:
* Sat Mar 25 2023 Benjamin A. Beasley code@musicinmybrain.net - 4.1.1-13 - Re-enable documentation on F37 * Mon Jan 23 2023 Benjamin A. Beasley code@musicinmybrain.net - 4.1.1-12 - Revert workaround for missing dependency on texlive-wasy * Thu Jan 19 2023 Benjamin A. Beasley code@musicinmybrain.net - 4.1.1-11 - Update License to SPDX - Work around missing dependency on texlive-wasy - Fix missing include for GCC 13; stop numbering patches * Thu Jan 19 2023 Fedora Release Engineering releng@fedoraproject.org - 4.1.1-10 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ golang-github-task-3.22.0-1.fc37 (FEDORA-2023-75100aa678) A task runner / simpler Make alternative written in Go -------------------------------------------------------------------------------- Update Information:
update to v3.22.0, close rhbz#2177369 -------------------------------------------------------------------------------- ChangeLog:
* Sat Mar 11 2023 Mark E. Fuller mark.e.fuller@gmx.de - 3.22.0-1 - update to v3.22.0, close rhbz#2177369 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2177369 - golang-github-task-3.22.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2177369 --------------------------------------------------------------------------------
================================================================================ gparted-1.5.0-1.fc37 (FEDORA-2023-3e2d21fb4d) Gnome Partition Editor -------------------------------------------------------------------------------- Update Information:
- Update to v1.5.0 -------------------------------------------------------------------------------- ChangeLog:
* Wed Feb 22 2023 Mukundan Ragavan nonamedotc@gmail.com - 1.5.0-1 - Update to v1.5.0 * Thu Jan 19 2023 Fedora Release Engineering releng@fedoraproject.org - 1.4.0-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ neovim-0.8.3-3.fc37 (FEDORA-2023-127fdc9d84) Vim-fork focused on extensibility and agility -------------------------------------------------------------------------------- Update Information:
Fix snprintf buffer overflow -------------------------------------------------------------------------------- ChangeLog:
* Sat Mar 25 2023 Andreas Schneider asn@redhat.com - 0.8.3-3 - resolves: rhbz#2165805 - Fix snprintf buffer overflow * Sun Mar 5 2023 Andreas Schneider asn@redhat.com - 0.8.3-2 - Update License to SPDX expression - Update spec template for auto(release|changelog) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2165805 - [abrt] neovim: snprintf(): nvim killed by SIGABRT https://bugzilla.redhat.com/show_bug.cgi?id=2165805 --------------------------------------------------------------------------------
================================================================================ python-bitstruct-8.17.0-1.fc37 (FEDORA-2023-ec925dbea3) Interpret strings as packed binary data -------------------------------------------------------------------------------- Update Information:
update to 8.17.0 -------------------------------------------------------------------------------- ChangeLog:
* Sat Mar 25 2023 Jonathan Wright jonathan@almalinux.org - 8.17.0-1 - Update to 8.17.0 rhbz#2170634 * Fri Jan 20 2023 Fedora Release Engineering releng@fedoraproject.org - 8.15.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ python-reactivex-4.0.4-1.fc37 (FEDORA-2023-d67f6565c0) API for asynchronous programming with observable streams -------------------------------------------------------------------------------- Update Information:
First release. -------------------------------------------------------------------------------- ChangeLog:
* Fri Mar 3 2023 Steve Traylen steve.traylen@cern.ch - 4.0.4-1 - Initial Package --------------------------------------------------------------------------------
================================================================================ python-tenacity-8.2.2-1.fc37 (FEDORA-2023-ad2942c39c) Retry code until it succeeds -------------------------------------------------------------------------------- Update Information:
update to 8.2.2 -------------------------------------------------------------------------------- ChangeLog:
* Sat Mar 25 2023 Jonathan Wright <jonathan@almalinux.org - 8.2.2-1 - Update to 8.2.2 rhbz#2129009 * Fri Jan 20 2023 Fedora Release Engineering releng@fedoraproject.org - 8.0.1-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ rust-ascii-1.1.0-3.fc37 (FEDORA-2023-e1449492c6) ASCII-only equivalents to char, str and String -------------------------------------------------------------------------------- Update Information:
Include upstream patch to fix FTBFS issues with Rust 1.68.0+. -------------------------------------------------------------------------------- ChangeLog:
* Sat Mar 25 2023 Fabio Valentini decathorpe@gmail.com - 1.1.0-3 - Include upstreamed patch to fix compilation of doctests with Rust 1.68+ * Fri Jan 20 2023 Fedora Release Engineering releng@fedoraproject.org - 1.1.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ rust-vm-fdt-0.2.0-1.fc37 (FEDORA-2023-aedcdb28f5) For writing Flattened Devicetree blobs -------------------------------------------------------------------------------- Update Information:
New Rust crate, dependency of Firecracker -------------------------------------------------------------------------------- ChangeLog:
* Sat Mar 25 2023 David Michael fedora.dm0@gmail.com - 0.2.0-1 - Initial import. (fedora#2181036) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2181036 - Review Request: rust-vm-fdt - For writing Flattened Devicetree blobs https://bugzilla.redhat.com/show_bug.cgi?id=2181036 --------------------------------------------------------------------------------
================================================================================ stress-ng-0.15.06-1.fc37 (FEDORA-2023-e687f0772f) Stress test a computer system in various ways -------------------------------------------------------------------------------- Update Information:
update -------------------------------------------------------------------------------- ChangeLog:
* Sat Mar 25 2023 Fabio Alessandro Locati fale@fedoraproject.ora - 0.15.06-1 - Update to 0.15.06 - Fixes rhbz#2179538 * Sat Mar 11 2023 Fabio Alessandro Locati fale@fedoraproject.ora - 0.15.05-1 - Update to 0.15.05 - Fixes rhbz#2130476 * Sat Jan 21 2023 Fedora Release Engineering releng@fedoraproject.org - 0.15.00-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild * Tue Dec 13 2022 Florian Weimer fweimer@redhat.com - 0.15.00-2 - Improve compatibility with strict(er) C99 compilers * Wed Dec 7 2022 Fabio Alessandro Locati fale@fedoraproject.org - 0.15.00-1 - Update to 0.15.00 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2179538 - stress-ng-0.15.06 is available https://bugzilla.redhat.com/show_bug.cgi?id=2179538 --------------------------------------------------------------------------------
================================================================================ xrootd-5.5.4-1.fc37 (FEDORA-2023-5cc91f45aa) Extended ROOT file server -------------------------------------------------------------------------------- Update Information:
xrootd 5.5.4 -------------------------------------------------------------------------------- ChangeLog:
* Fri Mar 24 2023 Mattias Ellert mattias.ellert@physics.uu.se - 1:5.5.4-1 - Update to version 5.5.4 --------------------------------------------------------------------------------