The following Fedora 38 Security updates need testing: Age URL 6 https://bodhi.fedoraproject.org/updates/FEDORA-2023-6a87c003c4 libwebsockets-4.3.2-5.fc38 mosquitto-2.0.17-1.fc38 6 https://bodhi.fedoraproject.org/updates/FEDORA-2023-29a012c0db subscription-manager-1.29.37-1.fc38 6 https://bodhi.fedoraproject.org/updates/FEDORA-2023-7cb316a73b rust-rustls-webpki-0.100.2-1.fc38 5 https://bodhi.fedoraproject.org/updates/FEDORA-2023-1fcaba0998 mediawiki-1.39.4-1.fc38 5 https://bodhi.fedoraproject.org/updates/FEDORA-2023-a3fcc0751f kubernetes-1.26.8-1.fc38 2 https://bodhi.fedoraproject.org/updates/FEDORA-2023-e82fd2abcb exercism-3.2.0-1.fc38 2 https://bodhi.fedoraproject.org/updates/FEDORA-2023-b213d84a16 python-pyramid-2.0.2-1.fc38 2 https://bodhi.fedoraproject.org/updates/FEDORA-2023-cf30e790ce oggvideotools-0.9.1-14.fc38 2 https://bodhi.fedoraproject.org/updates/FEDORA-2023-aaa2b3d20b containerd-1.6.23-1.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-8daf1023c7 libtiff-4.4.0-8.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-a8b26b910d freeimage-3.19.0-0.19.svn1909.fc38 mingw-freeimage-3.19.0-0.16.svn1909.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-6432bb65ae libeconf-0.5.2-1.fc38
The following Fedora 38 Critical Path updates have yet to be approved: Age URL 13 https://bodhi.fedoraproject.org/updates/FEDORA-2023-6a882c47b7 setools-4.4.3-1.fc38 13 https://bodhi.fedoraproject.org/updates/FEDORA-2023-f1f1df110e net-snmp-5.9.4-1.fc38 13 https://bodhi.fedoraproject.org/updates/FEDORA-2023-b94fbdec50 postgresql-15.4-1.fc38 13 https://bodhi.fedoraproject.org/updates/FEDORA-2023-0a234afb71 fedora-appstream-metadata-20230814-1.fc38 11 https://bodhi.fedoraproject.org/updates/FEDORA-2023-fb366d5ed5 binutils-2.39-15.fc38 4 https://bodhi.fedoraproject.org/updates/FEDORA-2023-2eaa64ab85 libsoup3-3.4.2-4.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-6432bb65ae libeconf-0.5.2-1.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-58e4ed35db podman-4.6.2-1.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-0ab96162af cmake-3.27.4-2.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-8daf1023c7 libtiff-4.4.0-8.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-bcd2fc9905 langtable-0.0.63-1.fc38 1 https://bodhi.fedoraproject.org/updates/FEDORA-2023-e194bfaef7 gnutls-3.8.1-1.fc38
The following builds have been pushed to Fedora 38 updates-testing
ansible-collection-awx-awx-23.0.0-1.fc38 avr-gcc-13.2.0-1.fc38 cups-browsed-2.0~rc2-3.fc38 erofs-utils-1.6-3.fc38 ghc9.4-9.4.7-23.fc38 golang-github-shirou-gopsutil-3.23.7-1.fc38 htmltest-0.17.0-4.fc38 indent-2.2.13-4.fc38 knot-3.3.0-1.fc38 knot-resolver-5.7.0-2.fc38 libsonata-0.1.23-1.fc38 magic-8.3.426-1.fc38 mame-0.258-1.fc38 matrix-synapse-1.90.0-2.fc38 mkvtoolnix-79.0-1.fc38 nanovna-saver-0.6.2-1.fc38 neovim-0.9.1-3.fc38 openshot-3.1.1-4.fc38 papirus-icon-theme-20230801-1.fc38 php-8.2.10-1.fc38 php-phpmailer6-6.8.1-1.fc38 python-damo-1.9.5-1.fc38 python-flask-security-too-4.1.5-3.fc38 python-pynetbox-7.1.0-1.fc38 python-pyshtools-4.10.4-1.fc38 python-rstcheck-core-1.0.3-7.fc38 python-trimesh-3.23.5-2.fc38 python3.10-3.10.13-1.fc38 python3.8-3.8.18-1.fc38 python3.9-3.9.18-1.fc38 qm-0.5.4-1.fc38 rust-arboard-3.2.1-1.fc38 rust-errno-0.3.3-1.fc38 rust-nix-0.26.4-1.fc38 rust-pythonize-0.19.0-1.fc38 rust-rpm-sequoia-1.5.0-1.fc38 sonic-visualiser-4.5.2-2.fc38 tinyexr-1.0.1-7.fc38 tuned-2.21.0-1.fc38 vala-0.56.13-1.fc38 vobcopy-1.2.1-4.fc38 workrave-1.10.51.1-2.fc38
Details about builds:
================================================================================ ansible-collection-awx-awx-23.0.0-1.fc38 (FEDORA-2023-3ecdeac32e) Ansible modules and plugins for working with AWX -------------------------------------------------------------------------------- Update Information:
New package(s) for Ansible collection of Awx -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Andrew H aheath1992@gmail.com - 23.0.0-1 - Update to 23.0.0. * Wed Aug 23 2023 Andrew H aheath1992@gmail.com - 22.7.0-1 - Update to 22.7.0. * Fri Jul 28 2023 Andrew H aheath1992@gmail.com - 22.6.0-1 - Initial Package --------------------------------------------------------------------------------
================================================================================ avr-gcc-13.2.0-1.fc38 (FEDORA-2023-19f94a5969) Cross Compiling GNU GCC targeted at avr -------------------------------------------------------------------------------- Update Information:
- avr-gcc updated to 13.2.0 -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Michal Hlavinka mhlavink@redhat.com - 1:13.2.0-1 - updated to 13.2.0 * Wed Jul 19 2023 Fedora Release Engineering releng@fedoraproject.org - 1:13.1.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Wed Jun 7 2023 Michal Hlavinka mhlavink@redhat.com - 1:13.1.0-1 - updated to 13.1.0 * Wed May 10 2023 Michal Hlavinka mhlavink@redhat.com - 1:12.3.0-6 - update license tag format (SPDX migration) for https://fedoraproject.org/wiki/Changes/SPDX_Licenses_Phase_1 * Wed May 10 2023 Michal Hlavinka mhlavink@redhat.com - 1:12.3.0-1 - updated to 12.3.0 * Mon Apr 24 2023 Florian Weimer fweimer@redhat.com - 1:12.2.0-3 - Backport upstream patches to fix C99 compatibility issues --------------------------------------------------------------------------------
================================================================================ cups-browsed-2.0~rc2-3.fc38 (FEDORA-2023-07250f9ca8) Daemon for local auto-installation of remote printers -------------------------------------------------------------------------------- Update Information:
2150035 - [abrt] cups-filters: __strlen_avx2(): cups-browsed killed by SIGSEGV -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Zdenek Dohnal zdohnal@redhat.com - 1:2.0~rc2-3 - 2150035 - [abrt] cups-filters: __strlen_avx2(): cups-browsed killed by SIGSEGV * Wed Jul 19 2023 Fedora Release Engineering releng@fedoraproject.org - 1:2.0~rc2-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2150035 - [abrt] cups-filters: __strlen_avx2(): cups-browsed killed by SIGSEGV https://bugzilla.redhat.com/show_bug.cgi?id=2150035 --------------------------------------------------------------------------------
================================================================================ erofs-utils-1.6-3.fc38 (FEDORA-2023-f838326992) Utilities for working with EROFS -------------------------------------------------------------------------------- Update Information:
- Backports a fix for [CVE-2023-33551](https://nvd.nist.gov/vuln/detail/CVE-2023-33551) - Backports a fix for [CVE-2023-33552](https://nvd.nist.gov/vuln/detail/CVE-2023-33552) -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 David Michael fedora.dm0@gmail.com - 1.6-3 - Backport patches for CVE-2023-33551 and CVE-2023-33552. - Change conditional build feature defaults for supporting EPEL 9. * Wed Jul 19 2023 Fedora Release Engineering releng@fedoraproject.org - 1.6-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ ghc9.4-9.4.7-23.fc38 (FEDORA-2023-e9d7dcdaba) Glasgow Haskell Compiler -------------------------------------------------------------------------------- Update Information:
https://downloads.haskell.org/~ghc/9.4.7/docs/users_guide/9.4.7-notes.html -------------------------------------------------------------------------------- ChangeLog:
* Sun Aug 27 2023 Jens Petersen petersen@redhat.com - 9.4.7-23 - https://downloads.haskell.org/~ghc/9.4.7/docs/users_guide/9.4.7-notes.html --------------------------------------------------------------------------------
================================================================================ golang-github-shirou-gopsutil-3.23.7-1.fc38 (FEDORA-2023-ca62f9238d) Psutil for golang -------------------------------------------------------------------------------- Update Information:
version 3.23.7 -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Pavel Solovev daron439@gmail.com - 3.23.7-1 - update to 3.23.7 (rhbz#2219038) --------------------------------------------------------------------------------
================================================================================ htmltest-0.17.0-4.fc38 (FEDORA-2023-3baf3f43a0) Test generated HTML for problems -------------------------------------------------------------------------------- Update Information:
Security fix for CVE-2022-41717 -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Elliott Sales de Andrade quantum.analyst@gmail.com - 0.17.0-4 - Backport patch to use govcr 4 * Thu Jul 20 2023 Fedora Release Engineering releng@fedoraproject.org - 0.17.0-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2161274 - CVE-2022-41717 golang: net/http: excessive memory growth in a Go server accepting HTTP/2 requests https://bugzilla.redhat.com/show_bug.cgi?id=2161274 --------------------------------------------------------------------------------
================================================================================ indent-2.2.13-4.fc38 (FEDORA-2023-b7f5059ee9) A GNU program for formatting C code -------------------------------------------------------------------------------- Update Information:
This release fixes a heap buffer overwrite in search_brace() (CVE-2023-40305) and a heap overread in lexi(). -------------------------------------------------------------------------------- ChangeLog:
* Wed Aug 16 2023 Petr Pisar ppisar@redhat.com - 2.2.13-4 - Fix a heap overread in search_brace/lexi - Fix CVE-2023-40305 (a heap buffer overwrite in search_brace) (bug #2231919) * Mon Apr 17 2023 Petr Pisar ppisar@redhat.com - 2.2.13-3 - Correct a license to "GPL-3.0-or-later AND BSD-3-Clause AND BSD-4.3TAHOE AND Latex2e-translated-notice" -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2231854 - CVE-2023-40305 indent: heap-based buffer overflow in search_brace() in indent.c https://bugzilla.redhat.com/show_bug.cgi?id=2231854 --------------------------------------------------------------------------------
================================================================================ knot-3.3.0-1.fc38 (FEDORA-2023-baacb8b420) High-performance authoritative DNS server -------------------------------------------------------------------------------- Update Information:
Update to Knot DNS 3.3 and Knot Resolver rebuild ---- Update to new upstream version 5.7.0 -------------------------------------------------------------------------------- ChangeLog:
* Mon Aug 28 2023 Jakub Ru��i��ka jakub.ruzicka@nic.cz - 3.3.0-1 - Update to 3.3.0 --------------------------------------------------------------------------------
================================================================================ knot-resolver-5.7.0-2.fc38 (FEDORA-2023-baacb8b420) Caching full DNS Resolver -------------------------------------------------------------------------------- Update Information:
Update to Knot DNS 3.3 and Knot Resolver rebuild ---- Update to new upstream version 5.7.0 -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Jakub Ru��i��ka jakub.ruzicka@nic.cz - 5.7.0-2 - Rebuilt for Knot DNS 3.3 * Tue Aug 22 2023 Jakub Ru��i��ka jakub.ruzicka@nic.cz - 5.7.0-1 - New upstream version 5.7.0 --------------------------------------------------------------------------------
================================================================================ libsonata-0.1.23-1.fc38 (FEDORA-2023-a437b1b817) A Python and C++ interface to the SONATA format -------------------------------------------------------------------------------- Update Information:
Update to 0.1.23 -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Ankur Sinha (Ankur Sinha Gmail) sanjay.ankur@gmail.com - 0.1.23-1 - feat: update to 0.1.23 (fixes rhbz#2183959) - re does patches - uses spdx license * Thu Jul 20 2023 Fedora Release Engineering releng@fedoraproject.org - 0.1.11-14 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Wed Jul 12 2023 Python Maint python-maint@redhat.com - 0.1.11-13 - Rebuilt for Python 3.12 * Wed Jun 28 2023 Vitaly Zaitsev vitaly@easycoding.org - 0.1.11-12 - Rebuilt due to fmt 10 update. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2183959 - libsonata-0.1.23 is available https://bugzilla.redhat.com/show_bug.cgi?id=2183959 --------------------------------------------------------------------------------
================================================================================ magic-8.3.426-1.fc38 (FEDORA-2023-02b15370b0) A very capable VLSI layout tool -------------------------------------------------------------------------------- Update Information:
New version 8.3.426 is released. -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Mamoru TASAKA mtasaka@fedoraproject.org - 8.3.426-1 - 8.3.426 --------------------------------------------------------------------------------
================================================================================ mame-0.258-1.fc38 (FEDORA-2023-ac9b701c22) Multiple Arcade Machine Emulator -------------------------------------------------------------------------------- Update Information:
Update to the latest upstream release: * https://www.mamedev.org/?p=528 -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Julian Sikorski belegdol@fedoraproject.org - 0.258-1 - Update to 0.258 --------------------------------------------------------------------------------
================================================================================ matrix-synapse-1.90.0-2.fc38 (FEDORA-2023-8cf1f33bdb) A Matrix reference homeserver written in Python using Twisted -------------------------------------------------------------------------------- Update Information:
matrix-synapse and dependency -------------------------------------------------------------------------------- ChangeLog:
* Mon Aug 28 2023 Kai A. Hiller V02460@gmail.com - 1.90.0-2 - Support Python 3.12 --------------------------------------------------------------------------------
================================================================================ mkvtoolnix-79.0-1.fc38 (FEDORA-2023-62ccf91ac1) Matroska container manipulation utilities -------------------------------------------------------------------------------- Update Information:
Latest stable release from upstream. Full changelog: https://mkvtoolnix.download/doc/NEWS.md . -------------------------------------------------------------------------------- ChangeLog:
* Fri Aug 25 2023 Dominik Mierzejewski dominik@greysector.net - 79.0-1 - update to 79.0 (#2219187) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2219187 - mkvtoolnix-79.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2219187 --------------------------------------------------------------------------------
================================================================================ nanovna-saver-0.6.2-1.fc38 (FEDORA-2023-e071035088) Tool for reading, displaying and saving data from the NanoVNA -------------------------------------------------------------------------------- Update Information:
This is new version of nanovna-saver. -------------------------------------------------------------------------------- ChangeLog:
* Fri Aug 25 2023 Jaroslav ��karvada jskarvad@redhat.com - 0.6.2-1 - New version Resolves: rhbz#2228299 * Thu Jul 20 2023 Fedora Release Engineering releng@fedoraproject.org - 0.5.5-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Fri Jun 16 2023 Python Maint python-maint@redhat.com - 0.5.5-2 - Rebuilt for Python 3.12 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2228299 - nanovna-saver-0.6.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=2228299 --------------------------------------------------------------------------------
================================================================================ neovim-0.9.1-3.fc38 (FEDORA-2023-a2bb8d5024) Vim-fork focused on extensibility and agility -------------------------------------------------------------------------------- Update Information:
Improve spec template -------------------------------------------------------------------------------- ChangeLog:
* Mon Aug 28 2023 LuK1337 priv.luk@gmail.com - 0.9.1-3 - Improve spec template --------------------------------------------------------------------------------
================================================================================ openshot-3.1.1-4.fc38 (FEDORA-2023-36c355af48) Create and edit videos and movies -------------------------------------------------------------------------------- Update Information:
Initial package for Fedora -------------------------------------------------------------------------------- ChangeLog:
* Mon Aug 28 2023 Neal Gompa ngompa@fedoraproject.org - 3.1.1-4 - Adapt to Fedora * Wed Aug 2 2023 RPM Fusion Release Engineering sergiomb@rpmfusion.org - 3.1.1-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Sat Jul 8 2023 Leigh Scott leigh123linux@gmail.com - 3.1.1-2 - Rebuilt for Python 3.12 * Sat Apr 22 2023 Leigh Scott leigh123linux@gmail.com - 3.1.1-1 - New upstream release * Fri Apr 7 2023 Leigh Scott leigh123linux@gmail.com - 3.1.0-1 - New upstream release * Fri Dec 2 2022 Leigh Scott leigh123linux@gmail.com - 3.0.0-1 - New upstream release * Sun Aug 7 2022 RPM Fusion Release Engineering sergiomb@rpmfusion.org - 2.6.2-0.4.20211104gitb72327d - Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild and ffmpeg 5.1 * Sat Jun 25 2022 Robert-Andr�� Mauchin zebob.m@gmail.com - 2.6.2-0.3.20211104gitb72327d - Rebuilt for Python 3.11 * Wed Feb 9 2022 RPM Fusion Release Engineering sergiomb@rpmfusion.org - 2.6.2-0.2.20211104gitb72327d - Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild * Mon Nov 8 2021 Leigh Scott leigh123linux@gmail.com - 2.6.2-0.1.20211104gitb72327d - Update to git snapshot - Patch for python-3.10 * Tue Sep 7 2021 Leigh Scott leigh123linux@gmail.com - 2.6.1-1 - New upstream release -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2161114 - Review Request: openshot - Create and edit videos and movies https://bugzilla.redhat.com/show_bug.cgi?id=2161114 --------------------------------------------------------------------------------
================================================================================ papirus-icon-theme-20230801-1.fc38 (FEDORA-2023-e23b7bda05) Free and open source SVG icon theme based on Paper Icon Set -------------------------------------------------------------------------------- Update Information:
Update to 20230801 -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Michel Lind salimma@fedoraproject.org - 20230801-1 - Update to 20230801 - use SPDX license identifiers; add LGPL-3.0-or-later for Breeze icons - fix rpmlint warning * Thu Jul 20 2023 Fedora Release Engineering releng@fedoraproject.org - 20230601-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2228321 - papirus-icon-theme-20230801 is available https://bugzilla.redhat.com/show_bug.cgi?id=2228321 --------------------------------------------------------------------------------
================================================================================ php-8.2.10-1.fc38 (FEDORA-2023-5d8c4791a5) PHP scripting language for creating dynamic web sites -------------------------------------------------------------------------------- Update Information:
**PHP version 8.2.10** (31 Aug 2023) **CLI:** * Fixed bug [GH-11716](https://github.com/php/php-src/issues/11716) (cli server crashes on SIGINT when compiled with ZEND_RC_DEBUG=1). (nielsdos) * Fixed bug [GH-10964](https://github.com/php/php-src/issues/10964) (Improve man page about the built-in server). (Alexandre Daubois) **Date:** * Fixed bug [GH-11416](https://github.com/php/php-src/issues/11416) (Crash with DatePeriod when uninitialised objects are passed in). (Derick) **Core:** * Fixed strerror_r detection at configuration time. (K��vin Dunglas) * Fixed trait typed properties using a DNF type not being correctly bound. (Girgias) * Fixed trait property types not being arena allocated if copied from an internal trait. (Girgias) * Fixed deep copy of property DNF type during lazy class load. (Girgias, ilutov) * Fixed memory freeing of DNF types for non arena allocated types. (Girgias, ju1ius) **DOM:** * Fix DOMEntity field getter bugs. (nielsdos) * Fix incorrect attribute existence check in DOMElement::setAttributeNodeNS. (nielsdos) * Fix DOMCharacterData::replaceWith() with itself. (nielsdos) * Fix empty argument cases for DOMParentNode methods. (nielsdos) * Fixed bug [GH-11791](https://github.com/php/php-src/issues/11791) (Wrong default value of DOMDocument::xmlStandalone). (nielsdos) * Fix json_encode result on DOMDocument. (nielsdos) * Fix manually calling __construct() on DOM classes. (nielsdos) * Fixed bug [GH-11830](https://github.com/php/php-src/issues/11830) (ParentNode methods should perform their checks upfront). (nielsdos) * Fix viable next sibling search for replaceWith. (nielsdos) * Fix segfault when DOMParentNode::prepend() is called when the child disappears. (nielsdos) **FFI:** * Fix leaking definitions when using FFI::cdef()->new(...). (ilutov) **Hash:** * Fix use-of- uninitialized-value in hash_pbkdf2(), fix missing $options parameter in signature. (ilutov) **MySQLnd:** * Fixed bug [GH-11440](https://github.com/php/php-src/issues/11440) (authentication to a sha256_password account fails over SSL). (nielsdos) * Fixed bug [GH-11438](https://github.com/php/php-src/issues/11438) (mysqlnd fails to authenticate with sha256_password accounts using passwords longer than 19 characters). (nielsdos, Kamil Tekiela) * Fixed bug [GH-11550](https://github.com/php/php-src/issues/11550) (MySQL Statement has a empty query result when the response field has changed, also Segmentation fault). (Yurunsoft) * Fixed invalid error message "Malformed packet" when connection is dropped. (Kamil Tekiela) **Opcache:** * Fixed bug [GH-11715](https://github.com/php/php-src/issues/11715) (opcache.interned_strings_buffer either has no effect or opcache_get_status() / phpinfo() is wrong). (nielsdos) * Avoid adding an unnecessary read-lock when loading script from shm if restart is in progress. (mikhainin) **PCNTL:** * Revert behaviour of receiving SIGCHLD signals back to the behaviour before 8.1.22. (nielsdos) **SPL:** * Fixed bug php#81992 (SplFixedArray::setSize() causes use-after-free). (nielsdos) **Standard:** * Prevent int overflow on $decimals in number_format. (Marc Bennewitz) * Fixed bug [GH-11870](https://github.com/php/php-src/issues/11870) (Fix off-by-one bug when truncating tempnam prefix) (athos-ribeiro) -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Remi Collet remi@remirepo.net - 8.2.10-1 - Update to 8.2.10 - http://www.php.net/releases/8_2_10.php --------------------------------------------------------------------------------
================================================================================ php-phpmailer6-6.8.1-1.fc38 (FEDORA-2023-e51479556c) Full-featured email creation and transfer class for PHP -------------------------------------------------------------------------------- Update Information:
Minor security note * The DSN support added in 6.8.0 reflects the DSN back to the user in an error message if it is invalid. If a DSN uses user-supplied input (a very bad idea), it opens a distant possibility of XSS if the host app does not escape output. In an abundance of caution, malformed DSNs are no longer reflected in error messages. Changes * Don't reflect malformed DSNs in error messages to avert any risk of XSS * Improve Simplified Chinese, Sinhalese, and Norwegian translations * Don't use setAccessible in PHP >= 8.1 in tests * Avoid a deprecation notice in PHP 8.3 * Fix link in readme -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Remi Collet remi@remirepo.net - 6.8.1-1 - update to 6.8.1 --------------------------------------------------------------------------------
================================================================================ python-damo-1.9.5-1.fc38 (FEDORA-2023-f12647d2ad) Data Access Monitoring Operator -------------------------------------------------------------------------------- Update Information:
## v1.9.5 - Code cleanup ## v1.9.4 - DAMON command line options: Support multiple DAMOS schemes - damo show: Support log/linear scale of region box ## v1.9.3 - Restore --ascii_color and --plot_ascii of 'damo report heat' - damo show: Support coloring of region box - damo show: Implement '<age heat bar>' - damo show: Make region box to use logscale for columns and rows - damo show: Support more region box customizations ## v1.9.2 - Support DAMOS filters, quotas, and watermarks via command line - Support target idx DAMOS filter - Implement '<size heat bar>' and '<size heat age bar>' region format keyword for 'damo show' (likely be changed in future) -------------------------------------------------------------------------------- ChangeLog:
* Wed Aug 23 2023 Michel Alexandre Salim salimma@fedoraproject.org - 1.9.5-1 - Update to 1.9.5 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2227975 - python-damo-1.9.5 is available https://bugzilla.redhat.com/show_bug.cgi?id=2227975 --------------------------------------------------------------------------------
================================================================================ python-flask-security-too-4.1.5-3.fc38 (FEDORA-2023-2a2fc427ea) Simple security for Flask apps -------------------------------------------------------------------------------- Update Information:
Fix compatibility with flask-wtf in F38. -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Sandro Mani manisandro@gmail.com - 4.1.5-3 - Add python-flask-security-too_wtfcompat.patch * Fri Jan 20 2023 Fedora Release Engineering releng@fedoraproject.org - 4.1.5-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2223926 - Missing parameter in LoginForm in python3-flask-security-too https://bugzilla.redhat.com/show_bug.cgi?id=2223926 --------------------------------------------------------------------------------
================================================================================ python-pynetbox-7.1.0-1.fc38 (FEDORA-2023-cc294bcc24) Python API client library for Netbox -------------------------------------------------------------------------------- Update Information:
Update to 7.1.0 -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Igor Raits igor.raits@gmail.com - 7.1.0-1 - Update to 7.1.0 * Fri Jul 21 2023 Fedora Release Engineering releng@fedoraproject.org - 7.0.1-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Tue Jun 13 2023 Python Maint python-maint@redhat.com - 7.0.1-3 - Rebuilt for Python 3.12 * Wed Mar 15 2023 Igor Raits igor.raits@gmail.com - 7.0.1-2 - Modernize spec --------------------------------------------------------------------------------
================================================================================ python-pyshtools-4.10.4-1.fc38 (FEDORA-2023-88f829ad73) Tools for working with spherical harmonics -------------------------------------------------------------------------------- Update Information:
Update to latest version (#2235318) -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Elliott Sales de Andrade quantum.analyst@gmail.com - 4.10.4-1 - Update to latest version (#2235318) * Wed Jul 19 2023 Elliott Sales de Andrade quantum.analyst@gmail.com - 4.10.3-2 - Rebuild for Python 3.12b4 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2235318 - python-pyshtools-4.10.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=2235318 --------------------------------------------------------------------------------
================================================================================ python-rstcheck-core-1.0.3-7.fc38 (FEDORA-2023-cd4a05c6ae) Checks syntax of reStructuredText and code blocks nested within it -------------------------------------------------------------------------------- Update Information:
Rebuild to fix requirements -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Ankur Sinha (Ankur Sinha Gmail) sanjay.ankur@gmail.com - 1.0.3-7 - fix: disable failing test, add extras for testing (fixes rhbz#2226320) * Fri Jul 21 2023 Fedora Release Engineering releng@fedoraproject.org - 1.0.3-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2226320 - python-rstcheck-core: FTBFS in Fedora rawhide/f39 https://bugzilla.redhat.com/show_bug.cgi?id=2226320 --------------------------------------------------------------------------------
================================================================================ python-trimesh-3.23.5-2.fc38 (FEDORA-2023-cda3e0402d) Import, export, process, analyze and view triangular meshes -------------------------------------------------------------------------------- Update Information:
Update to 3.23.5 (close RHBZ#2234611) ---- Update to 3.23.3 (close RHBZ#2232441) -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Benjamin A. Beasley code@musicinmybrain.net - 3.23.5-2 - Fix meshio and glooey not patched out of ���recommends��� extra * Fri Aug 25 2023 Benjamin A. Beasley code@musicinmybrain.net - 3.23.5-1 - Update to 3.23.5 (close RHBZ#2234611) * Fri Aug 18 2023 Benjamin A. Beasley code@musicinmybrain.net - 3.23.3-1 - Update to 3.23.3 (close RHBZ#2232441) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2232441 - python-trimesh-3.23.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=2232441 [ 2 ] Bug #2234611 - python-trimesh-3.23.5 is available https://bugzilla.redhat.com/show_bug.cgi?id=2234611 [ 3 ] Bug #2235298 - F40FailsToInstall: python3-trimesh+recommends https://bugzilla.redhat.com/show_bug.cgi?id=2235298 --------------------------------------------------------------------------------
================================================================================ python3.10-3.10.13-1.fc38 (FEDORA-2023-69d282009c) Version 3.10 of the Python interpreter -------------------------------------------------------------------------------- Update Information:
Update to 3.10.13 -------------------------------------------------------------------------------- ChangeLog:
* Mon Aug 28 2023 Tom���� Hrn��iar thrnciar@redhat.com - 3.10.13-1 - Update to 3.10.13 * Wed Aug 2 2023 Charalampos Stratakis cstratak@redhat.com - 3.10.12-3 - Remove extra distro-applied CFLAGS passed to user built C extensions - https://fedoraproject.org/wiki/Changes/Python_Extension_Flags_Reduction * Fri Jul 21 2023 Fedora Release Engineering releng@fedoraproject.org - 3.10.12-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ python3.8-3.8.18-1.fc38 (FEDORA-2023-af9e3098a5) Version 3.8 of the Python interpreter -------------------------------------------------------------------------------- Update Information:
Update to 3.8.18 -------------------------------------------------------------------------------- ChangeLog:
* Mon Aug 28 2023 Tom���� Hrn��iar thrnciar@redhat.com - 3.8.18-1 - Update to 3.8.18 * Wed Aug 2 2023 Charalampos Stratakis cstratak@redhat.com - 3.8.17-3 - Remove extra distro-applied CFLAGS passed to user built C extensions - https://fedoraproject.org/wiki/Changes/Python_Extension_Flags_Reduction * Fri Jul 21 2023 Fedora Release Engineering releng@fedoraproject.org - 3.8.17-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ python3.9-3.9.18-1.fc38 (FEDORA-2023-7aa64e4a41) Version 3.9 of the Python interpreter -------------------------------------------------------------------------------- Update Information:
Update to 3.9.18 -------------------------------------------------------------------------------- ChangeLog:
* Mon Aug 28 2023 Tom���� Hrn��iar thrnciar@redhat.com - 3.9.18-1 - Update to 3.9.18 * Wed Aug 2 2023 Charalampos Stratakis cstratak@redhat.com - 3.9.17-3 - Remove extra distro-applied CFLAGS passed to user built C extensions - https://fedoraproject.org/wiki/Changes/Python_Extension_Flags_Reduction * Fri Jul 21 2023 Fedora Release Engineering releng@fedoraproject.org - 3.9.17-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ qm-0.5.4-1.fc38 (FEDORA-2023-ea086f19e1) Containerized environment for running Quality Management software -------------------------------------------------------------------------------- Update Information:
Automatic update for qm-0.5.4-1.fc38. ##### **Changelog for qm** ``` * Tue Aug 29 2023 Packit hello@packit.dev - 0.5.4-1 - [packit] 0.5.4 upstream release ``` -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Packit hello@packit.dev - 0.5.4-1 - [packit] 0.5.4 upstream release --------------------------------------------------------------------------------
================================================================================ rust-arboard-3.2.1-1.fc38 (FEDORA-2023-da907796f6) Image and text handling for the OS clipboard -------------------------------------------------------------------------------- Update Information:
Update to version 3.2.1. -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Fabio Valentini decathorpe@gmail.com - 3.2.1-1 - Update to version 3.2.1; Fixes RHBZ#2235572 * Fri Jul 21 2023 Fedora Release Engineering releng@fedoraproject.org - 3.2.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ rust-errno-0.3.3-1.fc38 (FEDORA-2023-85cceace1b) Cross-platform interface to the errno variable -------------------------------------------------------------------------------- Update Information:
Update to version 0.3.3. -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Fabio Valentini decathorpe@gmail.com - 0.3.3-1 - Update to version 0.3.3; Fixes RHBZ#2235559 --------------------------------------------------------------------------------
================================================================================ rust-nix-0.26.4-1.fc38 (FEDORA-2023-a361531358) Rust friendly bindings to *nix APIs -------------------------------------------------------------------------------- Update Information:
Update to version 0.26.4, fixing a regression from 0.26.3. ---- Update to version 0.26.3. -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Fabio Valentini decathorpe@gmail.com - 0.26.4-1 - Update to version 0.26.4 * Mon Aug 28 2023 Fabio Valentini decathorpe@gmail.com - 0.26.3-1 - Update to version 0.26.3 * Fri Jul 21 2023 Fedora Release Engineering releng@fedoraproject.org - 0.26.2-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ rust-pythonize-0.19.0-1.fc38 (FEDORA-2023-8cf1f33bdb) Serde Serializer & Deserializer from Rust <--> Python, backed by PyO3 -------------------------------------------------------------------------------- Update Information:
matrix-synapse and dependency -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 22 2023 Kai A. Hiller V02460@gmail.com - 0.19.0-1 - Update to v0.19.0 * Fri Jul 21 2023 Fedora Release Engineering releng@fedoraproject.org - 0.18.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ rust-rpm-sequoia-1.5.0-1.fc38 (FEDORA-2023-20c9d57030) Implementation of the RPM PGP interface using Sequoia -------------------------------------------------------------------------------- Update Information:
Update to version 1.5.0. -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Fabio Valentini decathorpe@gmail.com - 1.5.0-1 - Update to version 1.5.0; Fixes RHBZ#2235784 * Fri Jul 21 2023 Fedora Release Engineering releng@fedoraproject.org - 1.4.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ sonic-visualiser-4.5.2-2.fc38 (FEDORA-2023-b3b84c9394) A program for viewing and exploring audio data -------------------------------------------------------------------------------- Update Information:
- Support multi-line text labels on time instants - Improve refresh and rendering of text labels in various layers - Improve abbreviation of layer names in the key at bottom-right of a pane - Fix repeated writes to settings file when rendering time-ruler layers at close zoom levels - Use system Vamp host SDK if provided -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Michel Lind salimma@fedoraproject.org - 4.5.2-2 - Use SPDX license identifier * Tue Aug 29 2023 Michel Lind salimma@fedoraproject.org - 4.5.2-1 - Update to 4.5.2 * Sat Jul 22 2023 Fedora Release Engineering releng@fedoraproject.org - 4.5.1-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2192990 - sonic-visualiser-4.5.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=2192990 --------------------------------------------------------------------------------
================================================================================ tinyexr-1.0.1-7.fc38 (FEDORA-2023-3e092b3938) Small library to load and save OpenEXR images -------------------------------------------------------------------------------- Update Information:
Upstream patch to fix CVE-2022-34300 Fixes rhbz#2233636 -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Diego Herrera dherrera@redhat.com - 1.0.1-7 - Patch to fix CVE-2022-34300 * Sat Jul 22 2023 Fedora Release Engineering releng@fedoraproject.org - 1.0.1-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2233636 - CVE-2022-34300 tinyexr: heap-based buffer over-read in tinyexr::DecodePixelData [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2233636 --------------------------------------------------------------------------------
================================================================================ tuned-2.21.0-1.fc38 (FEDORA-2023-221cd76950) A dynamic adaptive system tuning daemon -------------------------------------------------------------------------------- Update Information:
This is new version of TuneD. ---- This is new version of TuneD. -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Jaroslav ��karvada jskarvad@redhat.com - 2.21.0-1 - new release - rebased tuned to latest upstream related: rhbz#2182117 - api: fixed stop method not to require any parameter resolves: rhbz#2235637 * Sun Aug 20 2023 Jaroslav ��karvada jskarvad@redhat.com - 2.21.0-0.1.rc1 - new release - rebased tuned to latest upstream resolves: rhbz#2182117 - plugin_scheduler: fix perf fd leaks resolves: rhbz#2173938 - allow skipping rollback when restarting TuneD or switching profile resolves: rhbz#2203142 - function_calc_isolated_cores: no errors for offline CPUs resolves: rhbz#2217015 - sap-hana: new profile sap-hana-kvm-guest resolves: rhbz#2173740 - serialized SIGHUP handler to prevent possible bootcmdline corruption resolves: rhbz#2215298 * Wed Aug 9 2023 Jaroslav ��karvada jskarvad@redhat.com - 2.20.0-4 - Converted license to SPDX * Sat Jul 22 2023 Fedora Release Engineering releng@fedoraproject.org - 2.20.0-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Fri Jun 16 2023 Python Maint python-maint@redhat.com - 2.20.0-2 - Rebuilt for Python 3.12 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2235637 - API regression https://bugzilla.redhat.com/show_bug.cgi?id=2235637 --------------------------------------------------------------------------------
================================================================================ vala-0.56.13-1.fc38 (FEDORA-2023-04a60aa672) A modern programming language for GNOME -------------------------------------------------------------------------------- Update Information:
vala 0.56.13 release. -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Kalev Lember klember@redhat.com - 0.56.13-1 - Update to 0.56.13 --------------------------------------------------------------------------------
================================================================================ vobcopy-1.2.1-4.fc38 (FEDORA-2023-b29ebeafa7) Utility to copy DVD .vob files to disk -------------------------------------------------------------------------------- Update Information:
Initial import -------------------------------------------------------------------------------- ChangeLog:
* Mon Aug 28 2023 Davide Cavalca dcavalca@fedoraproject.org - 1.2.1-4 - Convert license tag to SPDX - Rework specfile to follow the Fedora packaging guidelines - Fix outstanding rpmlint issues - Rework package description * Wed Aug 2 2023 RPM Fusion Release Engineering sergiomb@rpmfusion.org - 1.2.1-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Mon Aug 8 2022 RPM Fusion Release Engineering sergiomb@rpmfusion.org - 1.2.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild and ffmpeg 5.1 * Mon May 9 2022 Leigh Scott leigh123linux@gmail.com - 1.2.1-1 - Update to 1.2.1 * Wed Feb 9 2022 RPM Fusion Release Engineering sergiomb@rpmfusion.org - 1.2.0-19 - Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2235391 - Review Request: vobcopy - Utility to copy DVD .vob files to disk https://bugzilla.redhat.com/show_bug.cgi?id=2235391 --------------------------------------------------------------------------------
================================================================================ workrave-1.10.51.1-2.fc38 (FEDORA-2023-75fcfc9d42) Program that assists in the recovery and prevention of RSI -------------------------------------------------------------------------------- Update Information:
Update to 1.10.51.1: https://github.com/rcaelers/workrave/releases/tag/v1_10_51_1 -------------------------------------------------------------------------------- ChangeLog:
* Tue Aug 29 2023 Yaakov Selkowitz yselkowi@redhat.com - 1.10.51.1-1 - Update to 1.10.51.1 * Tue Aug 29 2023 Yaakov Selkowitz yselkowi@redhat.com - 1.10.50-7 - Cleanup spec * Sat Jul 22 2023 Fedora Release Engineering releng@fedoraproject.org - 1.10.50-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1956023 - Workrave crashes at startup under Wayland https://bugzilla.redhat.com/show_bug.cgi?id=1956023 [ 2 ] Bug #2235540 - [abrt] workrave: XQueryExtension(): workrave killed by SIGSEGV https://bugzilla.redhat.com/show_bug.cgi?id=2235540 --------------------------------------------------------------------------------
test-reports@lists.fedoraproject.org