The following Fedora 38 Security updates need testing: Age URL 213 https://bodhi.fedoraproject.org/updates/FEDORA-2023-aaa2b3d20b containerd-1.6.23-1.fc38 60 https://bodhi.fedoraproject.org/updates/FEDORA-2024-4ef97ebbfc python-pillow-9.5.0-3.fc38 13 https://bodhi.fedoraproject.org/updates/FEDORA-2024-29f57f1b4e xen-4.17.2-8.fc38 10 https://bodhi.fedoraproject.org/updates/FEDORA-2024-f1ae7b7ac5 webkitgtk-2.44.0-2.fc38 7 https://bodhi.fedoraproject.org/updates/FEDORA-2024-af55471f75 gnutls-3.8.4-1.fc38 6 https://bodhi.fedoraproject.org/updates/FEDORA-2024-529fe8a802 podman-tui-1.0.0-1.fc38 5 https://bodhi.fedoraproject.org/updates/FEDORA-2024-6ad6b9f417 ghc-base64-0.4.2.4-28.fc38 ghc-hakyll-4.16.2.0-1.fc38 gitit-0.15.1.1-3.fc38 pandoc-2.19.2-22.fc38 patat-0.8.8.0-2.fc38 5 https://bodhi.fedoraproject.org/updates/FEDORA-2024-45f0a1df95 prometheus-podman-exporter-1.11.0-1.fc38 5 https://bodhi.fedoraproject.org/updates/FEDORA-2024-34eba1b1a6 suricata-6.0.17-1.fc38 4 https://bodhi.fedoraproject.org/updates/FEDORA-2024-ad50671f6c seamonkey-2.53.18.2-1.fc38 2 https://bodhi.fedoraproject.org/updates/FEDORA-2024-53b69fdd40 emacs-29.3-1.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2024-8409b5fa8e podman-4.9.4-1.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2024-51e55a7065 micropython-1.22.2-1.fc38
The following Fedora 38 Critical Path updates have yet to be approved: Age URL 13 https://bodhi.fedoraproject.org/updates/FEDORA-2024-29f57f1b4e xen-4.17.2-8.fc38 13 https://bodhi.fedoraproject.org/updates/FEDORA-2024-6f7fde0b5d aom-3.8.2-1.fc38 12 https://bodhi.fedoraproject.org/updates/FEDORA-2024-ea2bec8480 dnf5-5.1.15-1.fc38 12 https://bodhi.fedoraproject.org/updates/FEDORA-2024-4fbfd244fe nfs-utils-2.6.4-0.rc5.fc38 12 https://bodhi.fedoraproject.org/updates/FEDORA-2024-5a6028442d vim-9.1.181-1.fc38 10 https://bodhi.fedoraproject.org/updates/FEDORA-2024-f1ae7b7ac5 webkitgtk-2.44.0-2.fc38 9 https://bodhi.fedoraproject.org/updates/FEDORA-2024-4c0816e727 libtirpc-1.3.4-1.rc3.fc38 9 https://bodhi.fedoraproject.org/updates/FEDORA-2024-83b47f54e5 rpcbind-1.2.6-4.rc3.fc38 9 https://bodhi.fedoraproject.org/updates/FEDORA-2024-1ad45eaec7 bluez-5.73-2.fc38 9 https://bodhi.fedoraproject.org/updates/FEDORA-2024-79e4e864ba bolt-0.9.7-1.fc38 7 https://bodhi.fedoraproject.org/updates/FEDORA-2024-af55471f75 gnutls-3.8.4-1.fc38 7 https://bodhi.fedoraproject.org/updates/FEDORA-2024-e0cc4e593b kobo-0.36.0-1.fc38 5 https://bodhi.fedoraproject.org/updates/FEDORA-2024-52e04ffd96 koji-1.34.0-3.fc38 4 https://bodhi.fedoraproject.org/updates/FEDORA-2024-40f49c6942 go-rpm-macros-3.3.0-1.fc38 2 https://bodhi.fedoraproject.org/updates/FEDORA-2024-53b69fdd40 emacs-29.3-1.fc38 2 https://bodhi.fedoraproject.org/updates/FEDORA-2024-ebee8ef7fd libbsd-0.12.2-1.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2024-569b61ab6a dnf-plugins-core-4.6.0-1.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2024-cb1a0626a3 librepo-1.17.1-1.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2024-abe27f6517 firefox-124.0.1-2.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2024-370124bf58 nss-3.99.0-1.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2024-0a62247f0e libblockdev-2.29-1.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2024-8409b5fa8e podman-4.9.4-1.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2024-d2860c0bd5 passt-0^20240326.g4988e2b-1.fc38
The following builds have been pushed to Fedora 38 updates-testing
btrfs-progs-6.8-1.fc38 buildah-1.35.2-1.fc38 chromium-123.0.6312.86-1.fc38 darktable-4.6.1-2.fc38 mate-themes-3.22.24-3.fc38 netdata-1.45.1-1.fc38 nispor-1.2.18-1.fc38 osbuild-113-1.fc38 perl-CPAN-Plugin-Sysdeps-0.77-1.fc38 python-damo-2.2.7-1.fc38 python3.10-3.10.14-1.fc38 python3.7-3.7.17-5.fc38 redict-7.3.0~rc1-1.fc38 vokoscreenNG-4.1.0-1.fc38 yubikey-manager-5.4.0-1.20240327git7b1b5a7.fc38
Details about builds:
================================================================================ btrfs-progs-6.8-1.fc38 (FEDORA-2024-143853fac6) Userspace programs for btrfs -------------------------------------------------------------------------------- Update Information:
New upstream release changelog fix --enqueue option timeout handling subvolume: remove support for undocumented options -c and -x, functionality disabled in kernel libbtrfsutil: version 0.1.3, backward compabile add aliases for all existing functions with unified naming scheme updated header defintions for recently added kernel features send: v3 supported in experimental mode other: docs: manual page references, graphs, enhancements, clarifications error handling fixes cleanups and refactoring -------------------------------------------------------------------------------- ChangeLog:
* Tue Mar 26 2024 Neal Gompa ngompa@fedoraproject.org - 6.8-1 - Update to 6.8 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2271622 - btrfs-progs-6.8 is available https://bugzilla.redhat.com/show_bug.cgi?id=2271622 --------------------------------------------------------------------------------
================================================================================ buildah-1.35.2-1.fc38 (FEDORA-2024-c4b8e1019c) A command line tool used for creating OCI Images -------------------------------------------------------------------------------- Update Information:
Automatic update for buildah-1.35.2-1.fc38. Changelog for buildah * Tue Mar 26 2024 Packit hello@packit.dev - 1.35.2-1 - [packit] 1.35.2 upstream release * Mon Mar 18 2024 Packit hello@packit.dev - 1.35.1-1 - [packit] 1.35.1 upstream release * Thu Mar 07 2024 Packit hello@packit.dev - 1.35.0-1 - [packit] 1.35.0 upstream release * Thu Feb 22 2024 Packit hello@packit.dev - 1.34.1-1 - [packit] 1.34.1 upstream release -------------------------------------------------------------------------------- ChangeLog:
* Tue Mar 26 2024 Packit hello@packit.dev - 1.35.2-1 - [packit] 1.35.2 upstream release --------------------------------------------------------------------------------
================================================================================ chromium-123.0.6312.86-1.fc38 (FEDORA-2024-b4dab205d7) A WebKit (Blink) powered web browser that Google doesn't want you to use -------------------------------------------------------------------------------- Update Information:
update to 123.0.6312.86 Critical CVE-2024-2883: Use after free in ANGLE High CVE-2024-2885: Use after free in Dawn High CVE-2024-2886: Use after free in WebCodecs High CVE-2024-2887: Type Confusion in WebAssembly -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 27 2024 Than Ngo than@redhat.com - 123.0.6312.86-2 - update to 123.0.6312.86 * Critical CVE-2024-2883: Use after free in ANGLE * High CVE-2024-2885: Use after free in Daw * High CVE-2024-2886: Use after free in WebCodecs * High CVE-2024-2887: Type Confusion in WebAssembly -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2271851 - CVE-2024-2883 chromium: Use after free in ANGLE [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2271851 [ 2 ] Bug #2271856 - CVE-2024-2885 chromium: Use after free in Dawn [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2271856 [ 3 ] Bug #2271862 - CVE-2024-2886 chromium: Use after free in WebCodecs [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2271862 [ 4 ] Bug #2271868 - CVE-2024-2887 chromium: Type Confusion in WebAssembly [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2271868 --------------------------------------------------------------------------------
================================================================================ darktable-4.6.1-2.fc38 (FEDORA-2024-156bfea0bf) Utility to organize and develop raw images -------------------------------------------------------------------------------- Update Information:
enables back aarch64 architecture -------------------------------------------------------------------------------- ChangeLog:
* Mon Mar 11 2024 Germano Massullo germano.massullo@gmail.com - 4.6.1-2 - aarch64 re-enabled --------------------------------------------------------------------------------
================================================================================ mate-themes-3.22.24-3.fc38 (FEDORA-2024-1324766106) MATE Desktop themes -------------------------------------------------------------------------------- Update Information:
add https://github.com/mate-desktop/mate-themes/pull/305 -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 27 2024 Wolfgang Ulbrich fedora@raveit.de - 3.22.24-3 - add https://github.com/mate-desktop/mate-themes/pull/305 * Thu Jul 20 2023 Fedora Release Engineering releng@fedoraproject.org - 3.22.24-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ netdata-1.45.1-1.fc38 (FEDORA-2024-bd178456dc) Real-time performance monitoring -------------------------------------------------------------------------------- Update Information:
Update from upstream -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 27 2024 Didier Fabert didier.fabert@gmail.com 1.45.1-1 - Update from upstream * Thu Mar 21 2024 Didier Fabert didier.fabert@gmail.com 1.45.0-1 - Update from upstream -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2270902 - netdata-1.45.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=2270902 --------------------------------------------------------------------------------
================================================================================ nispor-1.2.18-1.fc38 (FEDORA-2024-4c47c426f3) Unified interface for Linux network state querying -------------------------------------------------------------------------------- Update Information:
Automatic update for nispor-1.2.18-1.fc38. Changelog for nispor * Wed Mar 27 2024 Packit hello@packit.dev - 1.2.18-1 - [packit] 1.2.18 upstream release - Resolves rhbz#2262486 -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 27 2024 Packit hello@packit.dev - 1.2.18-1 - [packit] 1.2.18 upstream release - Resolves rhbz#2262486 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2262486 - nispor-1.2.18 is available https://bugzilla.redhat.com/show_bug.cgi?id=2262486 --------------------------------------------------------------------------------
================================================================================ osbuild-113-1.fc38 (FEDORA-2024-248382dd58) A build system for OS images -------------------------------------------------------------------------------- Update Information:
Automatic update for osbuild-113-1.fc38. Changelog for osbuild * Wed Mar 27 2024 Packit hello@packit.dev - 113-1 Changes with 113 ---------------- * Reformat all JSON files for consistency (#1687) * Author: Achilleas Koutsou, Reviewers: Pawe�� Po��awski, Simon de Vlieger * Revert "osbuild: ensure loop.Loop() has the required device node" (#1646) * Author: Michael Vogt, Reviewers: Achilleas Koutsou, Brian C. Lane, Simon de Vlieger * Update snapshots to 20240313 (#1662) * Author: SchutzBot, Reviewers: Brian C. Lane, Simon de Vlieger * doc: document the new json-sequence monitor (HMS-3258) (#1659) * Author: Michael Vogt, Reviewers: Simon Steinbei��, Simon de Vlieger * osbuild: ensure /var/tmp is a real directory (#1673) * Author: Michael Vogt, Reviewers: Gianluca Zuccarelli, Simon de Vlieger * osbuild: first step towards stage separation - allow meta.json for stages (#1618) * Author: Michael Vogt, Reviewers: Achilleas Koutsou, Simon de Vlieger * osbuild: make the entire /etc/selinux avaialble for the buildroot (HMS-3453) (#1675) * Author: Michael Vogt, Reviewers: Colin Walters, Ond��ej Budai, Simon de Vlieger * sources: transform() is only used in the curl sources, remove from ABC and rename (#1667) * Author: Michael Vogt, Reviewers: Achilleas Koutsou, Simon de Vlieger * stage/systemd-unit-create:new systemd unit config params (#1666) * Author: Sayan Paul, Reviewers: Achilleas Koutsou, Simon de Vlieger * stages(selinux): add option exclude_paths (#1670) * Author: Michael Vogt, Reviewers: Pawe�� Po��awski, Simon de Vlieger * stages: add functional user expiredate tests (#1664) * Author: Michael Vogt, Reviewers: Achilleas Koutsou, Brian C. Lane * stages: add support for options to bootc-install-to-fs (#1658) * Author: Michael Vogt, Reviewers: Achilleas Koutsou, Florian Sch��ller, Simon de Vlieger * stages: allow bootc.install-to-filesystem work without selinux (HMS-3453) (#1682) * Author: Michael Vogt, Reviewers: Ond��ej Budai, Simon de Vlieger * stages: convert schemas to external (#1663) * Author: Simon de Vlieger, Reviewers: Achilleas Koutsou, Gianluca Zuccarelli * test: Add stage test trigger to makefile (#1660) * Author: Pawe�� Po��awski, Reviewers: Achilleas Koutsou, Simon de Vlieger * test: return container_id in `make_container` (#1657) * Author: Michael Vogt, Reviewers: Achilleas Koutsou, Simon de Vlieger * tests: migrate manifest tests (#1622) * Author: tkoscieln, Reviewers: Alexander Todorov, Jakub Rusz * tox.ini: update autopep8/pyocdestyle to support py3.12 (#1661) * Author: Michael Vogt, Reviewers: Ond��ej Budai, Simon de Vlieger * util: Consolidate parse functions into util (#1615) * Author: Renata Ravanelli, Reviewers: Michael Vogt, Simon de Vlieger * workflow: re-enable parallel runs to improve speed of test_stages and test_assemblers (#1683) * Author: Florian Sch��ller, Reviewers: Michael Vogt, Pawe�� Po��awski ��� Somewhere on the Internet, 2024-03-27 -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 27 2024 Packit hello@packit.dev - 113-1 Changes with 113 ---------------- * Reformat all JSON files for consistency (#1687) * Author: Achilleas Koutsou, Reviewers: Pawe�� Po��awski, Simon de Vlieger * Revert "osbuild: ensure loop.Loop() has the required device node" (#1646) * Author: Michael Vogt, Reviewers: Achilleas Koutsou, Brian C. Lane, Simon de Vlieger * Update snapshots to 20240313 (#1662) * Author: SchutzBot, Reviewers: Brian C. Lane, Simon de Vlieger * doc: document the new json-sequence monitor (HMS-3258) (#1659) * Author: Michael Vogt, Reviewers: Simon Steinbei��, Simon de Vlieger * osbuild: ensure /var/tmp is a real directory (#1673) * Author: Michael Vogt, Reviewers: Gianluca Zuccarelli, Simon de Vlieger * osbuild: first step towards stage separation - allow meta.json for stages (#1618) * Author: Michael Vogt, Reviewers: Achilleas Koutsou, Simon de Vlieger * osbuild: make the entire /etc/selinux avaialble for the buildroot (HMS-3453) (#1675) * Author: Michael Vogt, Reviewers: Colin Walters, Ond��ej Budai, Simon de Vlieger * sources: transform() is only used in the curl sources, remove from ABC and rename (#1667) * Author: Michael Vogt, Reviewers: Achilleas Koutsou, Simon de Vlieger * stage/systemd-unit-create:new systemd unit config params (#1666) * Author: Sayan Paul, Reviewers: Achilleas Koutsou, Simon de Vlieger * stages(selinux): add option exclude_paths (#1670) * Author: Michael Vogt, Reviewers: Pawe�� Po��awski, Simon de Vlieger * stages: add functional user expiredate tests (#1664) * Author: Michael Vogt, Reviewers: Achilleas Koutsou, Brian C. Lane * stages: add support for options to bootc-install-to-fs (#1658) * Author: Michael Vogt, Reviewers: Achilleas Koutsou, Florian Sch��ller, Simon de Vlieger * stages: allow bootc.install-to-filesystem work without selinux (HMS-3453) (#1682) * Author: Michael Vogt, Reviewers: Ond��ej Budai, Simon de Vlieger * stages: convert schemas to external (#1663) * Author: Simon de Vlieger, Reviewers: Achilleas Koutsou, Gianluca Zuccarelli * test: Add stage test trigger to makefile (#1660) * Author: Pawe�� Po��awski, Reviewers: Achilleas Koutsou, Simon de Vlieger * test: return container_id in `make_container` (#1657) * Author: Michael Vogt, Reviewers: Achilleas Koutsou, Simon de Vlieger * tests: migrate manifest tests (#1622) * Author: tkoscieln, Reviewers: Alexander Todorov, Jakub Rusz * tox.ini: update autopep8/pyocdestyle to support py3.12 (#1661) * Author: Michael Vogt, Reviewers: Ond��ej Budai, Simon de Vlieger * util: Consolidate parse functions into util (#1615) * Author: Renata Ravanelli, Reviewers: Michael Vogt, Simon de Vlieger * workflow: re-enable parallel runs to improve speed of test_stages and test_assemblers (#1683) * Author: Florian Sch��ller, Reviewers: Michael Vogt, Pawe�� Po��awski
��� Somewhere on the Internet, 2024-03-27 --------------------------------------------------------------------------------
================================================================================ perl-CPAN-Plugin-Sysdeps-0.77-1.fc38 (FEDORA-2024-b4b7d136ed) CPAN client plugin for installing system dependencies -------------------------------------------------------------------------------- Update Information:
This release fixes handling renamed RPM packages. -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 27 2024 Petr Pisar ppisar@redhat.com - 0.77-1 - 0.77 bump -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2271097 - perl-CPAN-Plugin-Sysdeps-0.77 is available https://bugzilla.redhat.com/show_bug.cgi?id=2271097 --------------------------------------------------------------------------------
================================================================================ python-damo-2.2.7-1.fc38 (FEDORA-2024-5a548c242e) Data Access Monitoring Operator -------------------------------------------------------------------------------- Update Information:
v2.2.7 Support region box right-side aligning (--region_box_align) of 'damo show' Cleanup code v2.2.6 Cleanup code -------------------------------------------------------------------------------- ChangeLog:
* Tue Mar 26 2024 Packit hello@packit.dev - 2.2.7-1 - Update to 2.2.7 - Resolves rhbz#2271542 * Tue Mar 19 2024 Packit hello@packit.dev - 2.2.6-1 - Update to 2.2.6 - Resolves rhbz#2270231 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2271542 - python-damo-2.2.7 is available https://bugzilla.redhat.com/show_bug.cgi?id=2271542 --------------------------------------------------------------------------------
================================================================================ python3.10-3.10.14-1.fc38 (FEDORA-2024-dd1a634f38) Version 3.10 of the Python interpreter -------------------------------------------------------------------------------- Update Information:
Update to 3.10.14 -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 20 2024 Tom���� Hrn��iar thrnciar@redhat.com - 3.10.14-1 - Update to 3.10.14 --------------------------------------------------------------------------------
================================================================================ python3.7-3.7.17-5.fc38 (FEDORA-2024-6acd4d04eb) Version 3.7 of the Python interpreter -------------------------------------------------------------------------------- Update Information:
Fix tests for XMLPullParser with Expat 2.6.0 -------------------------------------------------------------------------------- ChangeLog:
* Wed Feb 28 2024 Charalampos Stratakis cstratak@redhat.com - 3.7.17-5 - Fix tests for XMLPullParser with Expat 2.6.0 --------------------------------------------------------------------------------
================================================================================ redict-7.3.0~rc1-1.fc38 (FEDORA-2024-0464e36f58) A persistent key-value database -------------------------------------------------------------------------------- Update Information:
initial package build -------------------------------------------------------------------------------- ChangeLog:
* Sun Mar 24 2024 Jonathan Wright jonathan@almalinux.org - 7.3.0~rc1-1 - Initial package build, release candidate -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2271615 - Review Request: redict - A persistent key-value database https://bugzilla.redhat.com/show_bug.cgi?id=2271615 --------------------------------------------------------------------------------
================================================================================ vokoscreenNG-4.1.0-1.fc38 (FEDORA-2024-2862974b98) Powerful screencast creator to record the screen -------------------------------------------------------------------------------- Update Information:
See commit history -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 27 2024 Artem Polishchuk ego.cordatus@gmail.com - 4.1.0-1 - build: Update to 4.1.0 (rh#2271769) * Sat Jan 27 2024 Fedora Release Engineering releng@fedoraproject.org - 4.0.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ yubikey-manager-5.4.0-1.20240327git7b1b5a7.fc38 (FEDORA-2024-1e8e8d66b5) Python library and command line tool for configuring a YubiKey -------------------------------------------------------------------------------- Update Information:
rhbz#2271838 -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 27 2024 gbcox gbcox@bzb.us - 5.4.0-1 - rhbz#2271838 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2271838 - yubikey-manager - upstream release 5.4.0 https://bugzilla.redhat.com/show_bug.cgi?id=2271838 --------------------------------------------------------------------------------
test-reports@lists.fedoraproject.org