The following Fedora 37 Security updates need testing: Age URL 98 https://bodhi.fedoraproject.org/updates/FEDORA-2023-4b892d116d cutter-re-2.2.1-1.fc37 rizin-0.5.2-1.fc37 12 https://bodhi.fedoraproject.org/updates/FEDORA-2023-04473fc41e xen-4.16.5-1.fc37 6 https://bodhi.fedoraproject.org/updates/FEDORA-2023-4926525509 caddy-2.6.4-1.fc37 6 https://bodhi.fedoraproject.org/updates/FEDORA-2023-9f948bec13 clamav-0.103.9-1.fc37 6 https://bodhi.fedoraproject.org/updates/FEDORA-2023-5416cd3040 chromium-116.0.5845.96-1.fc37 3 https://bodhi.fedoraproject.org/updates/FEDORA-2023-fd45b50121 mingw-qt5-qtbase-5.15.10-4.fc37 2 https://bodhi.fedoraproject.org/updates/FEDORA-2023-edbdccae2a ImageMagick-6.9.12.93-1.fc37 0 https://bodhi.fedoraproject.org/updates/FEDORA-2023-0f2f9bc779 subscription-manager-1.29.37-1.fc37 0 https://bodhi.fedoraproject.org/updates/FEDORA-2023-6ef5f2fbf3 rust-rustls-webpki-0.100.2-1.fc37 0 https://bodhi.fedoraproject.org/updates/FEDORA-2023-e7ed15ab9e mosquitto-2.0.17-1.fc37
The following Fedora 37 Critical Path updates have yet to be approved: Age URL 13 https://bodhi.fedoraproject.org/updates/FEDORA-2023-6ad3df09c5 cups-2.4.6-4.fc37 12 https://bodhi.fedoraproject.org/updates/FEDORA-2023-04473fc41e xen-4.16.5-1.fc37 11 https://bodhi.fedoraproject.org/updates/FEDORA-2023-53903f96ec json-c-0.17-1.fc37 10 https://bodhi.fedoraproject.org/updates/FEDORA-2023-9c4959a56c vim-9.0.1712-1.fc37 10 https://bodhi.fedoraproject.org/updates/FEDORA-2023-78c9fb22bf ytnef-2.1.2-1.fc37 9 https://bodhi.fedoraproject.org/updates/FEDORA-2023-7126ac4fd0 publicsuffix-list-20230812-1.fc37 9 https://bodhi.fedoraproject.org/updates/FEDORA-2023-48838b6e4c poppler-22.08.0-4.fc37 9 https://bodhi.fedoraproject.org/updates/FEDORA-2023-9483d7cb0f fedora-appstream-metadata-20230814-1.fc37 8 https://bodhi.fedoraproject.org/updates/FEDORA-2023-c0fec59559 blivet-gui-2.4.2-1.fc37 8 https://bodhi.fedoraproject.org/updates/FEDORA-2023-ed5730ba26 net-snmp-5.9.4-1.fc37 6 https://bodhi.fedoraproject.org/updates/FEDORA-2023-f718400cb2 rust-packaging-24-4.fc37 6 https://bodhi.fedoraproject.org/updates/FEDORA-2023-22c8575b95 glibc-2.36-11.fc37 3 https://bodhi.fedoraproject.org/updates/FEDORA-2023-eadfc1ee66 slirp4netns-1.2.1-1.fc37 3 https://bodhi.fedoraproject.org/updates/FEDORA-2023-abfc60fb83 crun-1.8.7-1.fc37 2 https://bodhi.fedoraproject.org/updates/FEDORA-2023-ce4852c873 pipewire-0.3.78-1.fc37 0 https://bodhi.fedoraproject.org/updates/FEDORA-2023-c838aafeab passt-0^20230823.ga7e4bfb-1.fc37 0 https://bodhi.fedoraproject.org/updates/FEDORA-2023-a648e626d2 kernel-6.4.12-100.fc37 0 https://bodhi.fedoraproject.org/updates/FEDORA-2023-505ec86fe9 gnome-shell-43.8-3.fc37 mutter-43.8-1.fc37 0 https://bodhi.fedoraproject.org/updates/FEDORA-2023-1ab32d4881 cockpit-299-1.fc37 0 https://bodhi.fedoraproject.org/updates/FEDORA-2023-34cff97028 kf5-solid-5.108.0-5.fc37
The following builds have been pushed to Fedora 37 updates-testing
90-Second-Portraits-1.01b-17.fc37 boxes-2.2.1-1.fc37 cmake-3.27.4-1.fc37 mediawiki-1.38.7-1.fc37 nickle-2.93-1.fc37 osbuild-composer-88-1.fc37 perl-RDF-NS-Curated-1.006-1.fc37 php-sabre-http5-5.1.10-1.fc37 php-splitbrain-php-cli-1.2.1-1.fc37 python-graph-tool-2.58-1.fc37 quisk-4.2.22-1.fc37 rust-reqwest-0.11.20-1.fc37 rust-versionize_derive-0.1.6-1.fc37 transflac-1.2.4-2.20230824gitff091c1.fc37 weechat-4.0.4-3.fc37
Details about builds:
================================================================================ 90-Second-Portraits-1.01b-17.fc37 (FEDORA-2023-13f7f3831b) Frantic street painting game -------------------------------------------------------------------------------- Update Information:
Removed non-free font. -------------------------------------------------------------------------------- ChangeLog:
* Wed Aug 23 2023 Jeremy Newton <alexjnewt at hotmail dot com> - 1.01b-17 - Migrate to SPDX license - Fix license breakdown - Add MIT license file to license macro - Remove non-free font * Wed Jul 19 2023 Fedora Release Engineering releng@fedoraproject.org - 1.01b-16 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Wed Jan 18 2023 Fedora Release Engineering releng@fedoraproject.org - 1.01b-15 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2234478 - 90-Second-Portraits contains non-free fonts https://bugzilla.redhat.com/show_bug.cgi?id=2234478 --------------------------------------------------------------------------------
================================================================================ boxes-2.2.1-1.fc37 (FEDORA-2023-abaae2d29d) Command line ASCII boxes unlimited! -------------------------------------------------------------------------------- Update Information:
Update to latest version -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 24 2023 Artem Polishchuk ego.cordatus@gmail.com - 2.2.1-1 - chore(update): 2.2.1 * Wed Jul 19 2023 Fedora Release Engineering releng@fedoraproject.org - 2.2.0-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Wed Jan 18 2023 Fedora Release Engineering releng@fedoraproject.org - 2.2.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ cmake-3.27.4-1.fc37 (FEDORA-2023-31c53cf353) Cross-platform make system -------------------------------------------------------------------------------- Update Information:
- Update to cmake-3.27.4. -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 24 2023 Bj��rn Esser besser82@fedoraproject.org - 3.27.4-1 - cmake-3.27.4 Fixes rhbz#2233852 * Thu Aug 17 2023 Bj��rn Esser besser82@fedoraproject.org - 3.27.3-1 - cmake-3.27.3 Fixes rhbz#2232421 * Thu Aug 10 2023 Bj��rn Esser besser82@fedoraproject.org - 3.27.2-1 - cmake-3.27.2 Fixes rhbz#2231131 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2231131 - cmake-3.27.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=2231131 [ 2 ] Bug #2232421 - cmake-3.27.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=2232421 [ 3 ] Bug #2233852 - cmake-3.27.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=2233852 --------------------------------------------------------------------------------
================================================================================ mediawiki-1.38.7-1.fc37 (FEDORA-2023-d8ae3c122e) A wiki engine -------------------------------------------------------------------------------- Update Information:
https://lists.wikimedia.org/hyperkitty/list/mediawiki- announce@lists.wikimedia.org/thread/H46H5ZYZG2PYUQ5STK7NWKF7GXYW7H6B/ -------------------------------------------------------------------------------- ChangeLog:
* Wed Aug 23 2023 Michael Cronenworth mike@cchtml.com - 1.38.7-1 - Update to 1.38.7 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2217429 - CVE-2023-36675 mediawiki: cross site scripting [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2217429 [ 2 ] Bug #2233911 - CVE-2023-36674 mediawiki: Manualthumb bypasses badFile lookup [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2233911 --------------------------------------------------------------------------------
================================================================================ nickle-2.93-1.fc37 (FEDORA-2023-f887e3e4c3) A programming language-based prototyping environment -------------------------------------------------------------------------------- Update Information:
* Add hex float support to scanf and printf * Fix bug in multiply when one factor is a power of two -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 24 2023 Michel Alexandre Salim salimma@fedoraproject.org - 2.93-1 - Update to 2.93 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2232948 - nickle-2.93 is available https://bugzilla.redhat.com/show_bug.cgi?id=2232948 --------------------------------------------------------------------------------
================================================================================ osbuild-composer-88-1.fc37 (FEDORA-2023-80bb2fc496) An image building service based on osbuild -------------------------------------------------------------------------------- Update Information:
Automatic update for osbuild-composer-88-1.fc37. ##### **Changelog for osbuild- composer** ``` * Thu Aug 24 2023 Packit hello@packit.dev - 88-1 Changes with 88 ---------------- * COMPOSER-2016: blueprint: make Convert respect nils (#3612) * Update rhel ga runners (#3596) * Use newer RHEL 8.9 & 9.3 images for testing (#3603) * build(deps): bump github.com/aws/aws-sdk-go from 1.44.318 to 1.44.322 (#3620) * build(deps): bump github.com/openshift- online/ocm-sdk-go from 0.1.315 to 0.1.362 (#3627) * cloudapi: Add ability to skip uploading and save image locally (#3585) * dashboards/worker: default to showing the past 6 hours (#3651) * dependabot: group go package updates (#3642) * deps: update osbuild/images to 9548bf0d0140 (#3606) * deps: update osbuild/images to v0.3.0 (#3634) * go.mod: bump osbuild/images to c2aa82cc9a86 (#3640) * internal/cloud/gcp/compute: Add SEV_SNP_CAPABLE Guest OS Feature (#3579) * schutzbot: unregister test hosts (#3630) * test/cases/ubi-wsl: double ssh timeout (#3624) * test: add workaround for bug 2230537 and 2229722 (#3615) * test: run greenboot rollback test on ostree.sh, ostree-ami-image.sh and ostree-vsphere.sh (#3618) * test: update edge-ami test to support aarch64 (#3613) * test: wait for ami image avaiable to use before tag creation (#3619) Contributions from: Achilleas Koutsou, Alexander Todorov, Brian C. Lane, Ond��ej Budai, Sanne Raymaekers, Timoth��e Ravier, Tom���� Hozza, Xiaofeng Wang, dependabot[bot] ��� Somewhere on the Internet, 2023-08-24 ``` -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 24 2023 Packit hello@packit.dev - 88-1 Changes with 88 ---------------- * COMPOSER-2016: blueprint: make Convert respect nils (#3612) * Update rhel ga runners (#3596) * Use newer RHEL 8.9 & 9.3 images for testing (#3603) * build(deps): bump github.com/aws/aws-sdk-go from 1.44.318 to 1.44.322 (#3620) * build(deps): bump github.com/openshift-online/ocm-sdk-go from 0.1.315 to 0.1.362 (#3627) * cloudapi: Add ability to skip uploading and save image locally (#3585) * dashboards/worker: default to showing the past 6 hours (#3651) * dependabot: group go package updates (#3642) * deps: update osbuild/images to 9548bf0d0140 (#3606) * deps: update osbuild/images to v0.3.0 (#3634) * go.mod: bump osbuild/images to c2aa82cc9a86 (#3640) * internal/cloud/gcp/compute: Add SEV_SNP_CAPABLE Guest OS Feature (#3579) * schutzbot: unregister test hosts (#3630) * test/cases/ubi-wsl: double ssh timeout (#3624) * test: add workaround for bug 2230537 and 2229722 (#3615) * test: run greenboot rollback test on ostree.sh, ostree-ami-image.sh and ostree-vsphere.sh (#3618) * test: update edge-ami test to support aarch64 (#3613) * test: wait for ami image avaiable to use before tag creation (#3619)
Contributions from: Achilleas Koutsou, Alexander Todorov, Brian C. Lane, Ond��ej Budai, Sanne Raymaekers, Timoth��e Ravier, Tom���� Hozza, Xiaofeng Wang, dependabot[bot]
��� Somewhere on the Internet, 2023-08-24 --------------------------------------------------------------------------------
================================================================================ perl-RDF-NS-Curated-1.006-1.fc37 (FEDORA-2023-43e35e14ad) Curated set of RDF prefixes -------------------------------------------------------------------------------- Update Information:
This release adds a JSON-LD name space. It also updates a documentation and dpackages tests in a dedicated perl-RDF-NS-Curated-tests package. -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 24 2023 Petr Pisar ppisar@redhat.com - 1.006-1 - 1.006 bump - Install the tests -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2233905 - perl-RDF-NS-Curated-1.006 is available https://bugzilla.redhat.com/show_bug.cgi?id=2233905 --------------------------------------------------------------------------------
================================================================================ php-sabre-http5-5.1.10-1.fc37 (FEDORA-2023-c00c7f9822) Library for dealing with http requests and responses -------------------------------------------------------------------------------- Update Information:
**Version 5.1.10** (2023-08-18) * 225 Enhance tests/bootstrap.php to find autoloader in more environments (@phil-davis) ---- **Version 5.1.9** (2023-08-17) * 223 skip testParseMimeTypeOnInvalidMimeType (@phil-davis) ---- **Version 5.1.8** (2023-08-17) * 215 Improve CURLOPT_HTTPHEADER Setting Assignment (@amrita-shrestha) -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 24 2023 Remi Collet remi@remirepo.net - 5.1.10-1 - update to 5.1.10 --------------------------------------------------------------------------------
================================================================================ php-splitbrain-php-cli-1.2.1-1.fc37 (FEDORA-2023-3d425e85a1) PHP library to build command line tools -------------------------------------------------------------------------------- Update Information:
Update to v1.2.1 -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 24 2023 Artur Frenszek-Iwicki fedora@svgames.pl - 1.2.1-1 - Update to v1.2.1 --------------------------------------------------------------------------------
================================================================================ python-graph-tool-2.58-1.fc37 (FEDORA-2023-e72cd55fa8) Efficient network analysis tool written in Python -------------------------------------------------------------------------------- Update Information:
Update to 2.58 (close RHBZ#2232687) -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 24 2023 Benjamin A. Beasley code@musicinmybrain.net - 2.58-1 - Update to 2.58 (close RHBZ#2232687) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2232687 - python-graph-tool-2.58 is available https://bugzilla.redhat.com/show_bug.cgi?id=2232687 --------------------------------------------------------------------------------
================================================================================ quisk-4.2.22-1.fc37 (FEDORA-2023-9663659e71) Software Defined Radio (SDR) software -------------------------------------------------------------------------------- Update Information:
New version of quisk. -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 24 2023 Jaroslav ��karvada jskarvad@redhat.com - 4.2.22-1 - New version Resolves: rhbz#2232950 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2232950 - quisk-4.2.22 is available https://bugzilla.redhat.com/show_bug.cgi?id=2232950 --------------------------------------------------------------------------------
================================================================================ rust-reqwest-0.11.20-1.fc37 (FEDORA-2023-2920610d51) Higher level HTTP client library -------------------------------------------------------------------------------- Update Information:
Update to version 0.11.20. ---- Update to version 0.11.19. -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 24 2023 Fabio Valentini decathorpe@gmail.com - 0.11.20-1 - Update to version 0.11.20; Fixes RHBZ#2234025 * Wed Aug 23 2023 Fabio Valentini decathorpe@gmail.com - 0.11.19-1 - Update to version 0.11.19; Fixes RHBZ#2233319 * Fri Jul 21 2023 Fedora Release Engineering releng@fedoraproject.org - 0.11.18-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ rust-versionize_derive-0.1.6-1.fc37 (FEDORA-2023-f121d786d8) Implements the Versionize derive proc macro -------------------------------------------------------------------------------- Update Information:
- Allow array length definitions to include casts and other expressions -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 24 2023 David Michael fedora.dm0@gmail.com - 0.1.6-1 - Update to version 0.1.6 (rhbz#2234447) * Sat Jul 22 2023 Fedora Release Engineering releng@fedoraproject.org - 0.1.5-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2234447 - rust-versionize_derive-0.1.6 is available https://bugzilla.redhat.com/show_bug.cgi?id=2234447 --------------------------------------------------------------------------------
================================================================================ transflac-1.2.4-2.20230824gitff091c1.fc37 (FEDORA-2023-7fdb9ad1b7) Transcode FLAC to lossy formats -------------------------------------------------------------------------------- Update Information:
Upstream release rhbz#2232795 ---- Upstream release rhbz#2232795 -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 24 2023 gbcox gbcox@bzb.us - 1.2.4-2 - Upstream release rhbz#2232795 * Thu Aug 24 2023 gbcox gbcox@bzb.us - 1.2.4-1 - Upstream release rhbz#2232795 * Fri Aug 18 2023 gbcox gbcox@bzb.us - 1.2.3-1 - Upstream release rhbz#2232795 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2232795 - transflac - upstream release 1.2.3 https://bugzilla.redhat.com/show_bug.cgi?id=2232795 --------------------------------------------------------------------------------
================================================================================ weechat-4.0.4-3.fc37 (FEDORA-2023-d2ecace1dd) Portable, fast, light and extensible IRC client -------------------------------------------------------------------------------- Update Information:
New upstream version. -------------------------------------------------------------------------------- ChangeLog:
* Thu Aug 24 2023 LuK1337 priv.luk@gmail.com - 4.0.4-3 - Revert "Reenable PHP plugins support" * Tue Aug 22 2023 LuK1337 priv.luk@gmail.com - 4.0.4-2 - Reenable PHP plugins support * Tue Aug 22 2023 LuK1337 priv.luk@gmail.com - 4.0.4-1 - Update to 4.0.4 * Sat Jul 22 2023 Fedora Release Engineering releng@fedoraproject.org - 3.6-8 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Tue Jul 11 2023 Jitka Plesnikova jplesnik@redhat.com - 3.6-7 - Perl 5.38 rebuild * Tue Jun 13 2023 Python Maint python-maint@redhat.com - 3.6-6 - Rebuilt for Python 3.12 * Fri Feb 24 2023 Mamoru TASAKA mtasaka@fedoraproject.org - 3.6-5 - Backport upstream patch to fix test suite crash on gui_chat_printf_y_date_tags with glibc 2.37 (bug 2170010) * Sat Jan 21 2023 Fedora Release Engineering releng@fedoraproject.org - 3.6-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild * Wed Jan 4 2023 Mamoru TASAKA mtasaka@fedoraproject.org - 3.6-3 - Rebuild for https://fedoraproject.org/wiki/Changes/Ruby_3.2 * Thu Oct 6 2022 Michel Alexandre Salim salimma@fedoraproject.org - 3.6-2 - Restore compatibility with EPEL 7 - use %cmake3 rather than %cmake macros - conditionally disable tests on EPEL < 8 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2133353 - weechat-4.0.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=2133353 [ 2 ] Bug #2222649 - F39FailsToInstall: weechat https://bugzilla.redhat.com/show_bug.cgi?id=2222649 [ 3 ] Bug #2226507 - weechat: FTBFS in Fedora rawhide/f39 https://bugzilla.redhat.com/show_bug.cgi?id=2226507 --------------------------------------------------------------------------------
test-reports@lists.fedoraproject.org