The following Fedora 33 Security updates need testing:
Age URL
61
https://bodhi.fedoraproject.org/updates/FEDORA-2020-8794383d6f libntlm-1.6-1.fc33
48
https://bodhi.fedoraproject.org/updates/FEDORA-2020-3b4dfd9df8 tor-0.4.4.6-1.fc33
37
https://bodhi.fedoraproject.org/updates/FEDORA-2020-9fa782be3e
perl-Convert-ASN1-0.27-21.fc33
13
https://bodhi.fedoraproject.org/updates/FEDORA-2020-0e055ea503
python-lxml-4.5.1-3.fc33
8
https://bodhi.fedoraproject.org/updates/FEDORA-2020-64e54abd9f
grafana-7.3.6-1.fc33
6
https://bodhi.fedoraproject.org/updates/FEDORA-2020-fcafbe7225 ceph-15.2.8-1.fc33
5
https://bodhi.fedoraproject.org/updates/FEDORA-2020-2c8851d48b
nats-server-2.1.9-1.fc33
5
https://bodhi.fedoraproject.org/updates/FEDORA-2020-640645e518
guacamole-server-1.2.0-3.fc33
4
https://bodhi.fedoraproject.org/updates/FEDORA-2020-8371993b6b
python-py-1.10.0-1.fc33
1
https://bodhi.fedoraproject.org/updates/FEDORA-2020-8ccd750904
rubygem-em-http-request-1.1.7-1.fc33
1
https://bodhi.fedoraproject.org/updates/FEDORA-2020-4cba5f2846 awstats-7.8-2.fc33
The following Fedora 33 Critical Path updates have yet to be approved:
Age URL
51
https://bodhi.fedoraproject.org/updates/FEDORA-2020-880fbc10b8
openbox-3.6.1-16.fc33
29
https://bodhi.fedoraproject.org/updates/FEDORA-2020-e117bc477b bolt-0.9.1-1.fc33
26
https://bodhi.fedoraproject.org/updates/FEDORA-2020-152c03e942 dnf-4.5.2-1.fc33
dnf-plugins-extras-4.0.13-1.fc33 libdnf-0.55.2-1.fc33
15
https://bodhi.fedoraproject.org/updates/FEDORA-2020-e2dbefed44
pipewire-0.3.18-1.fc33
14
https://bodhi.fedoraproject.org/updates/FEDORA-2020-f48f591987
libmodulemd-2.11.1-1.fc33
8
https://bodhi.fedoraproject.org/updates/FEDORA-2020-7e41d35f04 ndctl-71.1-1.fc33
7
https://bodhi.fedoraproject.org/updates/FEDORA-2020-1ec89d454e
tracker-2.3.6-2.fc33
2
https://bodhi.fedoraproject.org/updates/FEDORA-2020-6e51f3e8fd
libburn-1.5.2-4.fc33
1
https://bodhi.fedoraproject.org/updates/FEDORA-2020-fe2ef226f6
tzdata-2020f-1.fc33
The following builds have been pushed to Fedora 33 updates-testing
GraphicsMagick-1.3.36-1.fc33
R-ggplot2-3.3.3-1.fc33
bindfs-1.14.8-1.fc33
cpprest-2.10.17-1.fc33
dia-0.97.3-16.fc33
drumkv1-0.9.19-1.fc33
freeciv-2.6.3-1.fc33
hexchat-2.14.3-7.fc33
mailnag-2.1.0-1.fc33
mesa-20.3.2-1.fc33
msoffcrypto-tool-4.11.0-1.fc33
notcurses-2.1.3-1.fc33
padthv1-0.9.19-1.fc33
perl-Convert-UUlib-1.8-1.fc33
python-identify-1.5.11-1.fc33
python3-typed_ast-1.4.2-1.fc33
samplv1-0.9.19-1.fc33
synthv1-0.9.19-1.fc33
ucblogo-6.2.1-1.fc33
vis-0.7-1.fc33
xpra-4.0.6-1.fc33
youtube-dl-2020.12.31-1.fc33
Details about builds:
================================================================================
GraphicsMagick-1.3.36-1.fc33 (FEDORA-2020-8481bac195)
An ImageMagick fork, offering faster image generation and better quality
--------------------------------------------------------------------------------
Update Information:
Update to latest stable upstream release, see also
http://www.graphicsmagick.org/NEWS.html#december-26-2020
--------------------------------------------------------------------------------
ChangeLog:
* Wed Dec 30 2020 Rex Dieter <rdieter(a)fedoraproject.org> - 1.3.36-1
- 1.3.36
- fix urw font path, Requires: urw-base35-fonts-legacy (#1847187)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1847187 - graphicsmagick cannot find fonts when adding text to image
https://bugzilla.redhat.com/show_bug.cgi?id=1847187
--------------------------------------------------------------------------------
================================================================================
R-ggplot2-3.3.3-1.fc33 (FEDORA-2020-58878af127)
Create Elegant Data Visualisations Using the Grammar of Graphics
--------------------------------------------------------------------------------
Update Information:
Update to latest version. License changed to MIT.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Dec 30 2020 Elliott Sales de Andrade <quantum.analyst(a)gmail.com> - 3.3.3-1
- Update to latest version (#1911726)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1911726 - R-ggplot2-3.3.3 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1911726
--------------------------------------------------------------------------------
================================================================================
bindfs-1.14.8-1.fc33 (FEDORA-2020-77230bd996)
Fuse filesystem to mirror a directory
--------------------------------------------------------------------------------
Update Information:
- Update to 1.14.8 fixes rhbz#1882128
--------------------------------------------------------------------------------
ChangeLog:
* Wed Dec 30 2020 Filipe Rosset <rosset.filipe(a)gmail.com> - 1.14.8-1
- Update to 1.14.8 fixes rhbz#1882128
--------------------------------------------------------------------------------
================================================================================
cpprest-2.10.17-1.fc33 (FEDORA-2020-564fb5a293)
C++ REST library
--------------------------------------------------------------------------------
Update Information:
New upstream version 2.10.17
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Wolfgang St��ggl <c72578(a)yahoo.de> - 2.10.17-1
- New upstream version 2.10.17
--------------------------------------------------------------------------------
================================================================================
dia-0.97.3-16.fc33 (FEDORA-2020-1fe0e08c8d)
Diagram drawing program
--------------------------------------------------------------------------------
Update Information:
- Added upstream patch to avoid infinite loop on filenames with invalid
encoding (CVE-2019-19451, #1778767)
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Robert Scheck <robert(a)fedoraproject.org> - 1:0.97.3-16
- Added upstream patch to avoid infinite loop on filenames with invalid
encoding (CVE-2019-19451, #1778767)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1778767 - CVE-2019-19451 dia: infinite loop on filenames with invalid
encoding
https://bugzilla.redhat.com/show_bug.cgi?id=1778767
--------------------------------------------------------------------------------
================================================================================
drumkv1-0.9.19-1.fc33 (FEDORA-2020-15757e0d28)
An old-school drum-kit sampler
--------------------------------------------------------------------------------
Update Information:
Update to 0.9.19
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Guido Aulisi <guido.aulisi(a)gmail.com> - 0.9.19-1
- Update to 0.9.19
* Mon Sep 14 2020 Guido Aulisi <guido.aulisi(a)gmail.com> - 0.9.17-1
- Update to 0.9.17
* Fri Aug 28 2020 Guido Aulisi <guido.aulisi(a)gmail.com> - 0.9.16-1
- Update to 0.9.16
--------------------------------------------------------------------------------
================================================================================
freeciv-2.6.3-1.fc33 (FEDORA-2020-a6f6b51f3d)
A multi-player strategy game
--------------------------------------------------------------------------------
Update Information:
2.6.3
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Gwyn Ciesla <gwync(a)protonmail.com> - 2.6.3-1
- 2.6.3
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1911810 - freeciv-2.6.3 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1911810
--------------------------------------------------------------------------------
================================================================================
hexchat-2.14.3-7.fc33 (FEDORA-2020-e71797480a)
A popular and easy to use graphical IRC (chat) client
--------------------------------------------------------------------------------
Update Information:
Backport new python plugin from devel upstream. RHBZ#1883982. Please test the
python plugin as much as possible.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Dec 30 2020 Kevin Fenzi <kevin(a)scrye.com> - 2.14.3-7
- Backport new python plugin from devel upstream. RHBZ#1883982
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1883982 - hexchat crashes on fedora 33 beta
https://bugzilla.redhat.com/show_bug.cgi?id=1883982
--------------------------------------------------------------------------------
================================================================================
mailnag-2.1.0-1.fc33 (FEDORA-2020-42ce6426c1)
Mail notification daemon
--------------------------------------------------------------------------------
Update Information:
Update to 2.1.0 (
https://github.com/pulb/mailnag/releases/tag/v2.1.0 )
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Thorsten Leemhuis <fedora(a)leemhuis.info> - 2.1.0-1
- update to version 2.1.0
--------------------------------------------------------------------------------
================================================================================
mesa-20.3.2-1.fc33 (FEDORA-2020-fa8eda312d)
Mesa graphics libraries
--------------------------------------------------------------------------------
Update Information:
Update to 20.3.2
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Pete Walter <pwalter(a)fedoraproject.org> - 20.3.2-1
- Update to 20.3.2
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1896507 - mesa-20.3.2 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1896507
--------------------------------------------------------------------------------
================================================================================
msoffcrypto-tool-4.11.0-1.fc33 (FEDORA-2020-11dc37dac4)
Python tool for decrypting MS Office files with passwords or other keys
--------------------------------------------------------------------------------
Update Information:
msoffcrypto-tool 4.11.0 ======================= * Improve hash calculation
* Add `verify_passwd` and `verify_integrity` option * Make `_packUserEditAtom`
spec-compliant msoffcrypto-tool 4.10.2 ======================= * Update
`_makekey` in `rc4_cryptoapi` * Fix handling of optional field value in ppt97
* Add tests for `is_encrypted()` (`--test`) * Make `Doc97File.is_encrypted()`
return boolean
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Robert Scheck <robert(a)fedoraproject.org> 4.11.0-1
- Upgrade to 4.11.0
--------------------------------------------------------------------------------
================================================================================
notcurses-2.1.3-1.fc33 (FEDORA-2020-7460d706b3)
Character graphics and TUI library
--------------------------------------------------------------------------------
Update Information:
new upstream 2.1.1->2.1.3 ---- New upstream 2.1.2.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Nick Black <dankamongmen(a)gmail.com> - 2.1.3-1
- New upstream version, fixes crash in notcurses-demo
* Sat Dec 26 2020 Nick Black <dankamongmen(a)gmail.com> - 2.1.2-1
- New upstream version, sexblitter by default on some terms
--------------------------------------------------------------------------------
================================================================================
padthv1-0.9.19-1.fc33 (FEDORA-2020-f112570301)
An old-school polyphonic additive synthesizer
--------------------------------------------------------------------------------
Update Information:
Update to 0.9.19
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Guido Aulisi <guido.aulisi(a)gmail.com> - 0.9.19-1
- Update to 0.9.19
* Mon Sep 14 2020 Guido Aulisi <guido.aulisi(a)gmail.com> - 0.9.17-1
- Update to 0.9.17
* Fri Aug 28 2020 Guido Aulisi <guido.aulisi(a)gmail.com> - 0.9.16-1
- Update to 0.9.16
--------------------------------------------------------------------------------
================================================================================
perl-Convert-UUlib-1.8-1.fc33 (FEDORA-2020-8e471db807)
Perl interface to the uulib library
--------------------------------------------------------------------------------
Update Information:
Convert::UUlib 1.8 ================== - no bugfixes in this release due to
lack of known bugs, but the major changes in this release might have introduced
new bugs, so watch out - update large decoder example to disable OPT_AUTOCHK
and use Smerge -1 - some micro-optimisations - avoid costly string comparisons
by comparing hashes when inserting items, which speeds up insertion by a
constant factor - improve uulist (and other) structure layout and size -
reverse the order of file list items, which heuristically improves match speed
with large usenet file lists - use getc instead of fgetc, which makes no
difference on gnu/linux - clean up _FP symbol names toi not start with an
underscore - use feof_unlocked and ferror_unlocked - implement a faster ascii-
only strnicmp - misc very minor code improvements - remove quite a bit of pre-
posix/dos/etc. cruft - use flockfile, if available, for a potential but small
speed gain - speed up inner yenc decoder loop - kentnl said that this module
should no longer claim to be a simple interface to uulib, as the bundled copy is
now better maintained than the original upstream library
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Robert Scheck <robert(a)fedoraproject.org> 3:1.8-1
- Upgrade to 1.8
--------------------------------------------------------------------------------
================================================================================
python-identify-1.5.11-1.fc33 (FEDORA-2020-f91d9a3047)
File identification library for Python
--------------------------------------------------------------------------------
Update Information:
1.5.11
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Gwyn Ciesla <gwync(a)protonmail.com> - 1.5.11-1
- 1.5.11
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1900434 - python-identify-1.5.11 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1900434
--------------------------------------------------------------------------------
================================================================================
python3-typed_ast-1.4.2-1.fc33 (FEDORA-2020-04c4a2b9d9)
A fork of the ast module with type annotations
--------------------------------------------------------------------------------
Update Information:
1.4.2
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Gwyn Ciesla <gwync(a)protonmail.com> - 1.4.2-1
- 1.4.2
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1911747 - python3-typed_ast-1.4.2 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1911747
--------------------------------------------------------------------------------
================================================================================
samplv1-0.9.19-1.fc33 (FEDORA-2020-0919c5c29a)
A polyphonic sampler synthesizer with stereo fx
--------------------------------------------------------------------------------
Update Information:
Update to 0.9.19
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Guido Aulisi <guido.aulisi(a)gmail.com> - 0.9.19-1
- Update to 0.9.19
* Mon Sep 14 2020 Guido Aulisi <guido.aulisi(a)gmail.com> - 0.9.17-1
- Update to 0.9.17
* Fri Aug 28 2020 Guido Aulisi <guido.aulisi(a)gmail.com> - 0.9.16-1
- Update to 0.9.16
--------------------------------------------------------------------------------
================================================================================
synthv1-0.9.19-1.fc33 (FEDORA-2020-8143e0bd6a)
A 4-oscillator subtractive polyphonic synthesizer
--------------------------------------------------------------------------------
Update Information:
Update to 0.9.19
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Guido Aulisi <guido.aulisi(a)gmail.com> - 0.9.19-1
- Update to 0.9.19
* Mon Sep 14 2020 Guido Aulisi <guido.aulisi(a)gmail.com> - 0.9.17-1
- Update to 0.9.17
* Fri Aug 28 2020 Guido Aulisi <guido.aulisi(a)gmail.com> - 0.9.16-1
- Update to 0.9.16
--------------------------------------------------------------------------------
================================================================================
ucblogo-6.2.1-1.fc33 (FEDORA-2020-01cebe7705)
An interpreter for the Logo programming language
--------------------------------------------------------------------------------
Update Information:
Updating to 6.2.1 release
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Joshua Cogliati <jrincayc(a)yahoo.com> - 6.2.1-1
- Updating to 6.2.1 release
* Wed Dec 30 2020 Joshua Cogliati <jrincayc(a)yahoo.com> - 6.2-1
- Updating to 6.2 release and splitting x11 binary to separate package
--------------------------------------------------------------------------------
================================================================================
vis-0.7-1.fc33 (FEDORA-2020-d421625fcf)
A vim-like editor with structural regex from plan9
--------------------------------------------------------------------------------
Update Information:
Update to 0.7
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Jani Juhani Sinervo <jani(a)sinervo.fi> - 0.7-1
- Update to 0.7
--------------------------------------------------------------------------------
================================================================================
xpra-4.0.6-1.fc33 (FEDORA-2020-704bad2c34)
Remote display server for applications and desktops
--------------------------------------------------------------------------------
Update Information:
- Release 4.0.6
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 Antonio Trande <sagitter(a)fedoraproject.org> - 4.0.6-1
- Release 4.0.6
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1911816 - xpra-4.0.6 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1911816
--------------------------------------------------------------------------------
================================================================================
youtube-dl-2020.12.31-1.fc33 (FEDORA-2020-e17d4b29fd)
A small command-line program to download online videos
--------------------------------------------------------------------------------
Update Information:
Update to version 2020.12.31
--------------------------------------------------------------------------------
ChangeLog:
* Thu Dec 31 2020 David Schw��rer <davidsch(a)fedoraproject.org> - 2020.12.31-1
- Update to 2020.12.31
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1911740 - youtube-dl-2020.12.31 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1911740
--------------------------------------------------------------------------------