The following Fedora 24 Security updates need testing:
Age URL
154
https://bodhi.fedoraproject.org/updates/FEDORA-2016-26f9817b08
squid-3.5.23-1.fc24
148
https://bodhi.fedoraproject.org/updates/FEDORA-2016-eaaa9c4a08 exim-4.87.1-1.fc24
110
https://bodhi.fedoraproject.org/updates/FEDORA-2017-ece16ba6ba
runc-1.0.0-5.rc2.gitc91b5be.fc24
90
https://bodhi.fedoraproject.org/updates/FEDORA-2017-4b176c1694 redis-3.2.8-1.fc24
46
https://bodhi.fedoraproject.org/updates/FEDORA-2017-8330a48ca2
python-XStatic-jquery-ui-1.12.0.1-1.fc24
26
https://bodhi.fedoraproject.org/updates/FEDORA-2017-0b6da97aa5
squirrelmail-1.4.22-19.fc24
19
https://bodhi.fedoraproject.org/updates/FEDORA-2017-c3ce061ea7 lynis-2.5.0-1.fc24
18
https://bodhi.fedoraproject.org/updates/FEDORA-2017-7a0e2d58f8
thunderbird-52.1.0-1.fc24
11
https://bodhi.fedoraproject.org/updates/FEDORA-2017-01a7989fc0 git-2.7.5-1.fc24
11
https://bodhi.fedoraproject.org/updates/FEDORA-2017-4de07172f4
postgresql-9.5.7-1.fc24
8
https://bodhi.fedoraproject.org/updates/FEDORA-2017-3f2d5790d2
lxterminal-0.3.0-3.fc24 menu-cache-1.0.2-4.D20170514git56f6668459.fc24
pcmanfm-1.2.5-2.fc24
6
https://bodhi.fedoraproject.org/updates/FEDORA-2017-7d698eba8b
chromium-58.0.3029.110-2.fc24
chromium-native_client-58.0.3029.81-1.20170421gitc948e9b.fc24
6
https://bodhi.fedoraproject.org/updates/FEDORA-2017-46fcfd8c98
wordpress-4.7.5-1.fc24
5
https://bodhi.fedoraproject.org/updates/FEDORA-2017-dd5d2381e4
libvncserver-0.9.11-2.fc24.1
5
https://bodhi.fedoraproject.org/updates/FEDORA-2017-1f15fde598
moodle-3.1.6-1.fc24
1
https://bodhi.fedoraproject.org/updates/FEDORA-2017-1f11501a9f
perltidy-20170521-1.fc24
0
https://bodhi.fedoraproject.org/updates/FEDORA-2017-85744f8aa9
kernel-4.10.17-100.fc24
The following Fedora 24 Critical Path updates have yet to be approved:
Age URL
33
https://bodhi.fedoraproject.org/updates/FEDORA-2017-e1905fd566 koji-1.12.0-2.fc24
18
https://bodhi.fedoraproject.org/updates/FEDORA-2017-7a0e2d58f8
thunderbird-52.1.0-1.fc24
11
https://bodhi.fedoraproject.org/updates/FEDORA-2017-01a7989fc0 git-2.7.5-1.fc24
8
https://bodhi.fedoraproject.org/updates/FEDORA-2017-3f2d5790d2
lxterminal-0.3.0-3.fc24 menu-cache-1.0.2-4.D20170514git56f6668459.fc24
pcmanfm-1.2.5-2.fc24
6
https://bodhi.fedoraproject.org/updates/FEDORA-2017-e2c9e5e8fe
tigervnc-1.8.0-1.fc24
3
https://bodhi.fedoraproject.org/updates/FEDORA-2017-6f5c3ec36e
python-coverage-4.4.1-1.fc24
1
https://bodhi.fedoraproject.org/updates/FEDORA-2017-3ca90a77bd
libtiff-4.0.8-1.fc24
0
https://bodhi.fedoraproject.org/updates/FEDORA-2017-c54e3353b6
p11-kit-0.23.2-4.fc24
0
https://bodhi.fedoraproject.org/updates/FEDORA-2017-85744f8aa9
kernel-4.10.17-100.fc24
The following builds have been pushed to Fedora 24 updates-testing
ardour5-5.9.0-1.fc24
awscli-1.11.90-1.fc24
beakerlib-1.16-3.fc24
dislocker-0.7.1-1.fc24
dkms-2.3-5.20170523git8c3065c.fc24
gdouros-aegean-fonts-9.17-2.fc24
gdouros-aegyptus-fonts-6.17-2.fc24
gdouros-akkadian-fonts-7.17-2.fc24
gdouros-alexander-fonts-7.17-3.fc24
gdouros-anaktoria-fonts-7.17-2.fc24
gdouros-analecta-fonts-5.17-2.fc24
gdouros-aroania-fonts-7.17-2.fc24
gdouros-asea-fonts-7.17-2.fc24
gdouros-avdira-fonts-7.17-2.fc24
gdouros-musica-fonts-3.17-2.fc24
gnome-shell-extension-activities-configurator-55-1.fc24
google-noto-emoji-fonts-20170523-1.fc24
gsequencer-0.8.0-2.fc24
intel-cmt-cat-1.0.0-1.fc24
jitterentropy-rngd-1.0.6-1.fc24
julietaula-montserrat-fonts-6.002-2.fc24
kernel-4.10.17-100.fc24
libfastjson-0.99.5-1.fc24
lightdm-autologin-greeter-1.0-2.fc24
ncmpcpp-0.8-1.fc24
nethack-3.6.0-36.fc24
p11-kit-0.23.2-4.fc24
php-pear-PHP-CodeSniffer-2.9.1-1.fc24
php-phpmyadmin-motranslator-3.2-1.fc24
python-botocore-1.5.53-1.fc24
python-pyngus-2.2.1-1.fc24
rsyslog-8.27.0-1.fc24
vdr-epg-daemon-1.1.115-1.fc24
vdr-epg2vdr-1.1.61-1.fc24
Details about builds:
================================================================================
ardour5-5.9.0-1.fc24 (FEDORA-2017-30d1ecc9d0)
Digital Audio Workstation
--------------------------------------------------------------------------------
Update Information:
New upstream release
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1451145 - ardour5-5.9 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1451145
--------------------------------------------------------------------------------
================================================================================
awscli-1.11.90-1.fc24 (FEDORA-2017-4e6c760c94)
Universal Command Line Environment for AWS
--------------------------------------------------------------------------------
Update Information:
update
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1435219 - awscli-1.11.90 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1435219
[ 2 ] Bug #1437278 - python-botocore-1.5.53 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1437278
--------------------------------------------------------------------------------
================================================================================
beakerlib-1.16-3.fc24 (FEDORA-2017-de5660bf0c)
A shell-level integration testing library
--------------------------------------------------------------------------------
Update Information:
reworked rpm download function and fallbacks, bz1448510
--------------------------------------------------------------------------------
================================================================================
dislocker-0.7.1-1.fc24 (FEDORA-2017-1211066288)
Utility to access BitLocker encrypted volumes
--------------------------------------------------------------------------------
Update Information:
dislocker 0.7.1 =============== This version is only used to update dislocker's
brew file and the BitBake recipe for OSX's and BitBake's users to be able to
download v0.7. If you're not an OSX nor a BitBake user, you can use either v0.7
or v0.7.1, this won't make any difference. dislocker 0.7 =============
Feature improvement ------------------- * dislocker can now be run from
/etc/fstab. This also means that the `-o` option for the offset had to be
changed. It is now `-O`; * dislocker on FreeBSD can now read devices, not just
partition dumps. Compatiblity improvement ------------------------ * OSX
support and dependencies have been updated; * Thanks to Eric Johnson, from
Leidos, a BitBake recipe is now available. dislocker 0.6.1 ===============
This version is only used to update dislocker's brew file for OSX users to be
able to download v0.6. If you're not an OSX user, you can use either v0.6 or
v0.6.1, this won't make any difference. dislocker 0.6 ============= Features
improvement -------------------- * Read/write on Windows 10 (v1511) encrypted
volumes - AES-XTS 128/256. dislocker 0.5.2 =============== Minor fixes for
downstream packaging and larger distribution coverage.
--------------------------------------------------------------------------------
================================================================================
dkms-2.3-5.20170523git8c3065c.fc24 (FEDORA-2017-c6274c3707)
Dynamic Kernel Module Support Framework
--------------------------------------------------------------------------------
Update Information:
Update to latest snapshot; lots of specific Red Hat/Fedora cleanups (obsolete +
Red Hat/Fedora code, Itanium support, /boot leftovers) and module autoload.
--------------------------------------------------------------------------------
================================================================================
gdouros-aegean-fonts-9.17-2.fc24 (FEDORA-2017-fcc1a46204)
A font for ancient scripts in the greater Aegean vicinity
--------------------------------------------------------------------------------
Update Information:
Move metainfo.xml to new location
--------------------------------------------------------------------------------
================================================================================
gdouros-aegyptus-fonts-6.17-2.fc24 (FEDORA-2017-4e1aefe004)
A font for Egyptian hieroglyphs
--------------------------------------------------------------------------------
Update Information:
Move metainfo.xml to new location
--------------------------------------------------------------------------------
================================================================================
gdouros-akkadian-fonts-7.17-2.fc24 (FEDORA-2017-c1599598e1)
A font for Sumero-Akkadian cuneiform
--------------------------------------------------------------------------------
Update Information:
Move metainfo.xml to new location
--------------------------------------------------------------------------------
================================================================================
gdouros-alexander-fonts-7.17-3.fc24 (FEDORA-2017-d8b6959bb5)
A Greek typeface inspired by Alexander Wilson
--------------------------------------------------------------------------------
Update Information:
Move metainfo.xml to new location
--------------------------------------------------------------------------------
================================================================================
gdouros-anaktoria-fonts-7.17-2.fc24 (FEDORA-2017-68fcc1d522)
A font based on "Grecs du roi" and the "First Folio Edition of
Shakespeare"
--------------------------------------------------------------------------------
Update Information:
Move metainfo.xml to new location
--------------------------------------------------------------------------------
================================================================================
gdouros-analecta-fonts-5.17-2.fc24 (FEDORA-2017-386b5b9e6b)
An ecclesiastic scripts font
--------------------------------------------------------------------------------
Update Information:
Move metainfo.xml to new location
--------------------------------------------------------------------------------
================================================================================
gdouros-aroania-fonts-7.17-2.fc24 (FEDORA-2017-a770723327)
A font based on Victor Julius Scholderer's "New Hellenic"
--------------------------------------------------------------------------------
Update Information:
Move metainfo.xml to new location
--------------------------------------------------------------------------------
================================================================================
gdouros-asea-fonts-7.17-2.fc24 (FEDORA-2017-a783418d6d)
Asea is an etude on the dominant typeface of Greek typography
--------------------------------------------------------------------------------
Update Information:
Move metainfo.xml to new location
--------------------------------------------------------------------------------
================================================================================
gdouros-avdira-fonts-7.17-2.fc24 (FEDORA-2017-eddbca6093)
A font based on elements created by Demetrios Damilas (late 15th c.)
--------------------------------------------------------------------------------
Update Information:
Move metainfo.xml to new location
--------------------------------------------------------------------------------
================================================================================
gdouros-musica-fonts-3.17-2.fc24 (FEDORA-2017-3b4aefde60)
A font for musical symbols
--------------------------------------------------------------------------------
Update Information:
Move metainfo.xml to new location
--------------------------------------------------------------------------------
================================================================================
gnome-shell-extension-activities-configurator-55-1.fc24 (FEDORA-2017-e1815ea455)
Configure the top bar and Activities button in GNOME Shell
--------------------------------------------------------------------------------
Update Information:
Bump to upstream version 55, which updates the localization.
--------------------------------------------------------------------------------
================================================================================
google-noto-emoji-fonts-20170523-1.fc24 (FEDORA-2017-bb54c2e736)
Google Noto Emoji Fonts
--------------------------------------------------------------------------------
Update Information:
Update to upstream snapshot tarball
--------------------------------------------------------------------------------
================================================================================
gsequencer-0.8.0-2.fc24 (FEDORA-2017-5b0db81bce)
Advanced Gtk+ Sequencer audio processing engine
--------------------------------------------------------------------------------
Update Information:
provide 2 more patches to fix unitialized pointer and unit test ---- removed
patch to fix missing type because upstream includes changes
--------------------------------------------------------------------------------
================================================================================
intel-cmt-cat-1.0.0-1.fc24 (FEDORA-2017-40d02a5a4b)
Provides command line interface to CMT, MBM, CAT and CDP technologies
--------------------------------------------------------------------------------
Update Information:
1. Added OS interface to support L3/L2 CAT & CDP 2. Updated support for CMT &
MBM per task 3. Added pqos-os & pqos-msr wrapper scripts 4. Added option to
select OS interface to utilities ---- L2 Cache Allocation Technology and
Memory Bandwidth Allocation features enabled - part of Intel(R) Resource
Director Technology. Shared libpqos version 0.1.6 used. 'pqos' tool updated to
version 0.1.5. New 'rdtset' tool added.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1415656 - Please update to latest version
https://bugzilla.redhat.com/show_bug.cgi?id=1415656
--------------------------------------------------------------------------------
================================================================================
jitterentropy-rngd-1.0.6-1.fc24 (FEDORA-2017-26299e00d4)
RNGD based on CPU Jitter RNG
--------------------------------------------------------------------------------
Update Information:
Updated to 1.0.6, fixup After target in service file, patches merged upstream
--------------------------------------------------------------------------------
================================================================================
julietaula-montserrat-fonts-6.002-2.fc24 (FEDORA-2017-758f4bdb4c)
Sans-serif typeface created by Julieta Ulanovsky
--------------------------------------------------------------------------------
Update Information:
Fix obsolete tag ---- Latest stable release
--------------------------------------------------------------------------------
================================================================================
kernel-4.10.17-100.fc24 (FEDORA-2017-85744f8aa9)
The Linux kernel
--------------------------------------------------------------------------------
Update Information:
The 4.10.17 stable kernel update contains a number of important fixes across the
tree.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1451386 - CVE-2017-9059 kernel: Module reference leak due to improper shut
down of callback channel on umount
https://bugzilla.redhat.com/show_bug.cgi?id=1451386
[ 2 ] Bug #1452744 - CVE-2017-9077 kernel: net: tcp_v6_syn_recv_sock function mishandles
inheritance
https://bugzilla.redhat.com/show_bug.cgi?id=1452744
[ 3 ] Bug #1452688 - CVE-2017-9076 kernel: net: IPv6 DCCP implementation mishandles
inheritance
https://bugzilla.redhat.com/show_bug.cgi?id=1452688
[ 4 ] Bug #1452691 - CVE-2017-9075 kernel: net: sctp_v6_create_accept_sk function
mishandles inheritance
https://bugzilla.redhat.com/show_bug.cgi?id=1452691
[ 5 ] Bug #1452679 - CVE-2017-9074 kernel: net: IPv6 fragmentation implementation of
nexthdr field may be associated with an invalid option
https://bugzilla.redhat.com/show_bug.cgi?id=1452679
[ 6 ] Bug #1450972 - CVE-2017-8890 kernel: Double free in the inet_csk_clone_lock
function in net/ipv4/inet_connection_sock.c
https://bugzilla.redhat.com/show_bug.cgi?id=1450972
--------------------------------------------------------------------------------
================================================================================
libfastjson-0.99.5-1.fc24 (FEDORA-2017-8f2b28bd25)
A JSON implementation in C
--------------------------------------------------------------------------------
Update Information:
added autoreconf
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1449431 - libfastjson-v0.99.5 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1449431
--------------------------------------------------------------------------------
================================================================================
lightdm-autologin-greeter-1.0-2.fc24 (FEDORA-2017-0b7393a69e)
Autologin greeter using LightDM
--------------------------------------------------------------------------------
Update Information:
Initial import
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1451134 - Review Request: lightdm-autologin-greeter - Autologin greeter using
LightDM
https://bugzilla.redhat.com/show_bug.cgi?id=1451134
--------------------------------------------------------------------------------
================================================================================
ncmpcpp-0.8-1.fc24 (FEDORA-2017-d4f459c06b)
Featureful ncurses based MPD client inspired by ncmpc
--------------------------------------------------------------------------------
Update Information:
This update brings ncmpcpp in version 0.8 to you.
--------------------------------------------------------------------------------
================================================================================
nethack-3.6.0-36.fc24 (FEDORA-2017-25629424f5)
A rogue-like single player dungeon exploration game
--------------------------------------------------------------------------------
Update Information:
After years of wondering if there would be any further updates to NetHack, the
DevTeam released 3.6.0! As usual when moving to a later version, bones files and
save files from previous versions won't work, so make sure to ascend before
updating.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1289974 - 3.6.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1289974
--------------------------------------------------------------------------------
================================================================================
p11-kit-0.23.2-4.fc24 (FEDORA-2017-c54e3353b6)
Library for loading and sharing PKCS#11 modules
--------------------------------------------------------------------------------
Update Information:
This recovers the old behavior of the "trust anchor" command, allowing
generated
certificate to be modified by the trust module.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1445212 - trust anchor --remove stopped working
https://bugzilla.redhat.com/show_bug.cgi?id=1445212
--------------------------------------------------------------------------------
================================================================================
php-pear-PHP-CodeSniffer-2.9.1-1.fc24 (FEDORA-2017-ad94c0602c)
PHP coding standards enforcement tool
--------------------------------------------------------------------------------
Update Information:
**Version 2.9.1** - Fixed bug #1442 : T_NULLABLE detection not working for
nullable parameters and return type hints in some cases - Fixed bug #1448 :
Generic.Classes.OpeningBraceSameLine doesn't detect comment before opening brace
- Thanks to Juliette Reinders Folmer for the patch
--------------------------------------------------------------------------------
================================================================================
php-phpmyadmin-motranslator-3.2-1.fc24 (FEDORA-2017-340222f5cb)
Translation API for PHP using Gettext MO files
--------------------------------------------------------------------------------
Update Information:
**Version 3.2** * Released on 2017-05-23. * Vairous fixes when handling
corrupted mo files.
--------------------------------------------------------------------------------
================================================================================
python-botocore-1.5.53-1.fc24 (FEDORA-2017-4e6c760c94)
Low-level, data-driven core of boto 3
--------------------------------------------------------------------------------
Update Information:
update
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1435219 - awscli-1.11.90 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1435219
[ 2 ] Bug #1437278 - python-botocore-1.5.53 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1437278
--------------------------------------------------------------------------------
================================================================================
python-pyngus-2.2.1-1.fc24 (FEDORA-2017-f0c6255a10)
Callback API implemented over Proton
--------------------------------------------------------------------------------
Update Information:
Rebased to 2.2.1.
--------------------------------------------------------------------------------
================================================================================
rsyslog-8.27.0-1.fc24 (FEDORA-2017-acb5eee059)
Enhanced system logging and kernel message trapping daemon
--------------------------------------------------------------------------------
Update Information:
rebase to 8.27.0
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1451334 - rsyslog-8.27.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1451334
--------------------------------------------------------------------------------
================================================================================
vdr-epg-daemon-1.1.115-1.fc24 (FEDORA-2017-f145d3d84d)
A daemon to download EPG data from internet and manage it in a mysql database
--------------------------------------------------------------------------------
Update Information:
Update to 1.1.115
--------------------------------------------------------------------------------
================================================================================
vdr-epg2vdr-1.1.61-1.fc24 (FEDORA-2017-18ab4c8e8f)
A plugin to retrieve EPG data from a mysql database into VDR
--------------------------------------------------------------------------------
Update Information:
Update to 1.1.61
--------------------------------------------------------------------------------