The following Fedora 33 Security updates need testing: Age URL 7 https://bodhi.fedoraproject.org/updates/FEDORA-2021-1a8e93a285 libldb-2.2.1-1.fc33 samba-4.13.7-0.fc33 6 https://bodhi.fedoraproject.org/updates/FEDORA-2021-90e915cc4f spamassassin-3.4.5-1.fc33 5 https://bodhi.fedoraproject.org/updates/FEDORA-2021-864dc37032 webkit2gtk3-2.32.0-1.fc33 4 https://bodhi.fedoraproject.org/updates/FEDORA-2021-3b67623d93 libmediainfo-21.03-1.fc33 libzen-0.4.39-1.fc33 mediaconch-18.03.2-17.fc33 mediainfo-21.03-1.fc33 0 https://bodhi.fedoraproject.org/updates/FEDORA-2021-be62be8c7c perl-Net-Netmask-2.0001-1.fc33
The following Fedora 33 Critical Path updates have yet to be approved: Age URL 9 https://bodhi.fedoraproject.org/updates/FEDORA-2021-2961f34ccb PackageKit-1.2.3-1.fc33 8 https://bodhi.fedoraproject.org/updates/FEDORA-2021-6993c96e1b libgee-0.20.4-1.fc33 7 https://bodhi.fedoraproject.org/updates/FEDORA-2021-1a8e93a285 libldb-2.2.1-1.fc33 samba-4.13.7-0.fc33 5 https://bodhi.fedoraproject.org/updates/FEDORA-2021-864dc37032 webkit2gtk3-2.32.0-1.fc33 2 https://bodhi.fedoraproject.org/updates/FEDORA-2021-c51adcf0c0 wpebackend-fdo-1.8.3-1.fc33 2 https://bodhi.fedoraproject.org/updates/FEDORA-2021-f0e6810501 libkcapi-1.2.1-1.fc33 2 https://bodhi.fedoraproject.org/updates/FEDORA-2021-b854921cd9 taglib-1.12-4.fc33 0 https://bodhi.fedoraproject.org/updates/FEDORA-2021-f16b6e66dd authselect-1.2.3-1.fc33
The following builds have been pushed to Fedora 33 updates-testing
appstream-data-33-2.fc33 composer-2.0.12-1.fc33 crun-0.18-5.fc33 curl-7.71.1-9.fc33 fapolicyd-1.0.3-1.fc33 foliate-2.6.3-1.fc33 golang-github-aliyun-ossutil-1.7.2-1.fc33 group-service-1.3.0-1.fc33 knot-resolver-5.3.1-1.fc33 mate-user-admin-1.6.0-1.fc33 mesa-20.3.5-2.fc33 mozilla-noscript-11.2.4-1.fc33 mozilla-ublock-origin-1.34.0-1.fc33 netdata-1.30.0-1.fc33 openqa-4.6-62.20210401git0e542b6.fc33 openttd-1.11.0-1.fc33 openttd-opengfx-0.6.1-1.fc33 os-autoinst-4.6-34.20210326git24ec8f9.fc33 packit-0.28.0-1.fc33 paternoster-3.3.0-2.fc33 perl-Mojolicious-8.73-1.fc33 perl-Mojolicious-Plugin-AssetPack-2.10-1.fc33 php-phpmailer6-6.4.0-1.fc33 psi4-1.3.2-10.fc33 python-pikepdf-1.19.4-2.fc33 python-pyfastnoisesimd-0.4.2-1.fc33 rsms-inter-fonts-3.18-1.fc33 squid-4.14-1.fc33 vdr-osdteletext-1.1.1-1.fc33 youtube-dl-2021.04.01-1.fc33
Details about builds:
================================================================================ appstream-data-33-2.fc33 (FEDORA-2021-ae83f20d82) Fedora AppStream metadata -------------------------------------------------------------------------------- Update Information:
New metadata version -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 31 2021 Richard Hughes richard@hughsie.com 33-2 - New metadata version --------------------------------------------------------------------------------
================================================================================ composer-2.0.12-1.fc33 (FEDORA-2021-1d31ac8d62) Dependency Manager for PHP -------------------------------------------------------------------------------- Update Information:
**Version 2.0.12** 2021-04-01 * Fixed support for new GitHub OAuth token format (#9757) * Fixed support for Vagrant/VirtualBox filesystem slowness by adding short sleeps in some places (#9627) * Fixed unclear error reporting when a package is in the lock file but not in the remote repositories (#9750) * Fixed processes silently ignoring the CWD when it does not exist * Fixed new Windows bin handling to avoid proxying phar files (#9742) * Fixed issue extracting archives into paths that already exist, fixing problems with some custom installers (composer/installers#479) * Fixed support for branch names starting with master/trunk/default (#9739) * Fixed self-update to preserve phar file permissions on Windows (#9733) * Fixed detection of hg version when localized (#9753) * Fixed git execution failures to also include the stdout output (#9720) -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Remi Collet remi@remirepo.net - 2.0.12-1 - update to 2.0.12 --------------------------------------------------------------------------------
================================================================================ crun-0.18-5.fc33 (FEDORA-2021-5b5387a0eb) OCI runtime written in C -------------------------------------------------------------------------------- Update Information:
linux: always remount bind mounts ghpr#640 -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 31 2021 Lokesh Mandvekar lsm5@fedoraproject.org - 0.18-5 - linux: always remount bind mounts ghpr#640 --------------------------------------------------------------------------------
================================================================================ curl-7.71.1-9.fc33 (FEDORA-2021-cab5c9befb) A utility for getting files from remote servers (FTP, HTTP, and others) -------------------------------------------------------------------------------- Update Information:
- fix TLS 1.3 session ticket proxy host mixup (CVE-2021-22890) - prevent automatic referer from leaking credentials (CVE-2021-22876) -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 31 2021 Kamil Dudka kdudka@redhat.com - 7.71.1-9 - fix TLS 1.3 session ticket proxy host mixup (CVE-2021-22890) - prevent automatic referer from leaking credentials (CVE-2021-22876) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1945058 - CVE-2021-22876 curl: Leak of authentication credentials in URL via automatic Referer [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1945058 [ 2 ] Bug #1945059 - CVE-2021-22890 curl: TLS 1.3 session ticket mix-up with HTTPS proxy host [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1945059 --------------------------------------------------------------------------------
================================================================================ fapolicyd-1.0.3-1.fc33 (FEDORA-2021-d014411e82) Application Whitelisting Daemon -------------------------------------------------------------------------------- Update Information:
rebase to 1.0.3 -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Radovan Sroka rsroka@redhat.com - 1.0.3-1 - rebase to 1.0.3 - sync fedora with rhel --------------------------------------------------------------------------------
================================================================================ foliate-2.6.3-1.fc33 (FEDORA-2021-7ff5222614) Simple and modern GTK eBook reader -------------------------------------------------------------------------------- Update Information:
Update to 2.6.3 -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Artem Polishchuk ego.cordatus@gmail.com - 2.6.3-1 - build(update): 2.6.3 * Fri Mar 26 2021 Artem Polishchuk ego.cordatus@gmail.com - 2.6.2-1 - build(update): 2.6.2 --------------------------------------------------------------------------------
================================================================================ golang-github-aliyun-ossutil-1.7.2-1.fc33 (FEDORA-2021-03dec85d1c) Alibaba Cloud (Aliyun) Object Storage Service (OSS) CLI -------------------------------------------------------------------------------- Update Information:
Update to version 1.7.2 (Fixes rhbz#1942623) -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 24 2021 Brandon Perkins bperkins@redhat.com - 1.7.2-1 - Update to version 1.7.2 (Fixes rhbz#1942623) * Tue Jan 26 2021 Fedora Release Engineering releng@fedoraproject.org - 1.7.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1942623 - golang-github-aliyun-ossutil-1.7.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=1942623 --------------------------------------------------------------------------------
================================================================================ group-service-1.3.0-1.fc33 (FEDORA-2021-eec471fe40) Dbus Group management CLI tool -------------------------------------------------------------------------------- Update Information:
- update to latest upstream releases -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Wolfgang Ulbrich fedora@raveit.de - 1.3.0-1 - update to 1.3.0 --------------------------------------------------------------------------------
================================================================================ knot-resolver-5.3.1-1.fc33 (FEDORA-2021-967132b492) Caching full DNS Resolver -------------------------------------------------------------------------------- Update Information:
update to upstream version 5.3.1 -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Jakub Ru��i��ka jakub.ruzicka@nic.cz - 5.3.1-1 - update to upstream version 5.3.1 --------------------------------------------------------------------------------
================================================================================ mate-user-admin-1.6.0-1.fc33 (FEDORA-2021-eec471fe40) User management tool -------------------------------------------------------------------------------- Update Information:
- update to latest upstream releases -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Wolfgang Ulbrich fedora@raveit.de - 1.6.0-1 - update to 1.6.0 --------------------------------------------------------------------------------
================================================================================ mesa-20.3.5-2.fc33 (FEDORA-2021-d4e1d2c820) Mesa graphics libraries -------------------------------------------------------------------------------- Update Information:
Backport CPU affinity fixes. -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Dave Airlie airlied@redhat.com - 20.3.5-2 - Backport CPU affinity fixes. --------------------------------------------------------------------------------
================================================================================ mozilla-noscript-11.2.4-1.fc33 (FEDORA-2021-7b1ab9ef3f) JavaScript white list extension for Mozilla Firefox -------------------------------------------------------------------------------- Update Information:
* CSS resources prefetching as a mitigation against CSS PP0 (https://github.com/Yossioren/pp0) * [L10n] Updated bn, br, ca, da, de, el, es, fr, he, is, it, ja, lt, mk, ms, nb, nl, pl, pt_BR, ru, sq, sv_SE, tr, zh_CN, zh_TW. * [nscl] Inteception of webgl context creation in OffscreenCanvas too * Fixed configuration upgrades not applied on manual updates (thanks Nan for reporting) * Mitigation for misbehaving pages repeating failed requests in a tight loop * [UI] More understandable label for the cascading restrictions option * [nscl] More refactoring out in NoScript Commons Library * [nscl] patchWindow improvements * [L10n] Purged non-inclusive terms from obsolete messages * Added red halo feedback in CUSTOM preset for noscript element capability * Fixed missing red halo feedback in CUSTOM preset for inline scripts and other capabilities sometimes * Fixed race condition causing noscript elements not to be rendered sometimes * Fixed typo in version checked on noscript capability update. * Configurable capability to show noscript elements on script-disabled pages * [UI] Minor CSS Chromium compatibility fix * [nscl] Refactoring to use Policy and its dependencies from the NoScript Commons Library * Switch to faster and easier to maintain tld.js from nscl * [UI] Fix punycode inconsistencies * [UI] improve preset and site controls alignment * Provide feedback in the CUSTOM tab for WebGL usage attempts even if the canvas element is not attached to the DOM * Updated HTML events * Prevent double script on trusted file:// pages in some edge cases * Prevent detection of wrapped functions (e.g. in WebGL interception) on Chromium -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Dominik Mierzejewski rpm@greysector.net - 11.2.4-1 - update to 11.2.4 (#1928639) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1928639 - mozilla-noscript-11.2.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=1928639 --------------------------------------------------------------------------------
================================================================================ mozilla-ublock-origin-1.34.0-1.fc33 (FEDORA-2021-3e6d9d7d65) An efficient blocker for Firefox -------------------------------------------------------------------------------- Update Information:
* Picker glitch with elements with special characters in their tag name * Expose CNAME-uncloaking as a Privacy option in the Settings pane * Impossible to add explicit exception for implicit strict blocking * Invalid network filters suggested in element picker * Use +/- in the popup to indicate whether 3-p frames were blocked * Fix no-scripting switch not working for SVG-based documents * Fix 'adsbygoogle' neutered script * Inject procedural cosmetic filterer's code only when needed -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Dominik Mierzejewski rpm@greysector.net - 1.34.0-1 - update to 1.34.0 (#1925264) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1925264 - mozilla-ublock-origin-1.34.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1925264 --------------------------------------------------------------------------------
================================================================================ netdata-1.30.0-1.fc33 (FEDORA-2021-68d80f1e4c) Real-time performance monitoring -------------------------------------------------------------------------------- Update Information:
Update from upstream -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Didier Fabert didier.fabert@gmail.com 1.30.0-1 - Update from upstream * Tue Mar 2 2021 Zbigniew J��drzejewski-Szmek zbyszek@in.waw.pl - 1.29.3-2 - Rebuilt for updated systemd-rpm-macros See https://pagure.io/fesco/issue/2583. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1945409 - netdata-1.30.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1945409 --------------------------------------------------------------------------------
================================================================================ openqa-4.6-62.20210401git0e542b6.fc33 (FEDORA-2021-49c70973a4) OS-level automated testing framework -------------------------------------------------------------------------------- Update Information:
This update provides recent upstream git snapshots of openQA and os-autoinst, and updated versions of Mojolicious and Mojolicious-Plugin-AssetPack because a test fails without them. Those updates should not contain any incompatibilities compared to the current stable versions. This update will not be pushed stable until it has been tested on the Fedora staging instance of openQA for a while. -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Adam Williamson awilliam@redhat.com - 4.6-62.20210401git0e542b6 - Bump to latest git, re-sync spec with upstream - Backport PR #3816: compatibility with Mojolicious 9.11+ * Tue Mar 2 2021 Zbigniew J��drzejewski-Szmek zbyszek@in.waw.pl - 4.6-61.20201103git91baf79 - Rebuilt for updated systemd-rpm-macros See https://pagure.io/fesco/issue/2583. * Tue Jan 26 2021 Fedora Release Engineering releng@fedoraproject.org - 4.6-60.20201103git91baf79 - Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ openttd-1.11.0-1.fc33 (FEDORA-2021-684c196af6) Transport system simulation game -------------------------------------------------------------------------------- Update Information:
With 1.11 we bring you a lot of new features which you hopefully enjoy as much as we did creating them: - Performance improvements - Fast-Forward is now so fast, there is a setting to rate limit it (on by default). - Improved World Generation GUI - 100% rainforest maps are now available if you so request. - Towns can now grow with tunnels too - finally they can escape the hills! - Filter on name in many more windows - for those that enjoy playing with one too many NewGRFs. - Plant trees with a brush in Scenario Editor - it is like painting, but with trees. - A new titlegame for this release by Chrnan6710, who won this year���s competition. -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Felix Kaechele felix@kaechele.ca - 1.11.0-1 - update to 1.11.0 final * Mon Mar 15 2021 Felix Kaechele felix@kaechele.ca - 1.11.0-0.2.RC1 - update to 1.11.0-RC1 - replace timidity with fluidsynth to allow for ingame sound control * Mon Mar 8 2021 Felix Kaechele felix@kaechele.ca - 1.11.0-0.1.beta2 - update to 1.11.0-beta2 - switch to cmake build system - remove BR on ccache, libtimidity, unzip; no longer needed - update screenshots and indentation in appdata.xml * Tue Jan 26 2021 Fedora Release Engineering releng@fedoraproject.org - 1.10.3-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ openttd-opengfx-0.6.1-1.fc33 (FEDORA-2021-85d299cf8c) OpenGFX replacement graphics for OpenTTD -------------------------------------------------------------------------------- Update Information:
- Add: GUI sprites for OpenTTD 1.11 - Change: New Arctic hotel design (supermop) - Fix: Correct offsets for toy factory -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Felix Kaechele felix@kaechele.ca - 0.6.1-1 - update to 0.6.1 * Tue Jan 26 2021 Fedora Release Engineering releng@fedoraproject.org - 0.6.0-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ os-autoinst-4.6-34.20210326git24ec8f9.fc33 (FEDORA-2021-49c70973a4) OS-level test automation -------------------------------------------------------------------------------- Update Information:
This update provides recent upstream git snapshots of openQA and os-autoinst, and updated versions of Mojolicious and Mojolicious-Plugin-AssetPack because a test fails without them. Those updates should not contain any incompatibilities compared to the current stable versions. This update will not be pushed stable until it has been tested on the Fedora staging instance of openQA for a while. -------------------------------------------------------------------------------- ChangeLog:
* Tue Mar 30 2021 Adam Williamson awilliam@redhat.com - 4.6-34.20210326git24ec8f9 - Bump to latest git, resync spec * Tue Mar 2 2021 Zbigniew J��drzejewski-Szmek zbyszek@in.waw.pl - 4.6-33.20210210git496edb5 - Rebuilt for updated systemd-rpm-macros See https://pagure.io/fesco/issue/2583. * Wed Feb 10 2021 Adam Williamson awilliam@redhat.com - 4.6-32.20210210git496edb5 - Bump to latest git again (inc. correct fix for a test issue) * Tue Feb 9 2021 Adam Williamson awilliam@redhat.com - 4.6-31.20210209git2e2b378 - Bump to latest git, resync spec * Tue Jan 26 2021 Fedora Release Engineering releng@fedoraproject.org - 4.6-30.20201023gitf54bdea - Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ packit-0.28.0-1.fc33 (FEDORA-2021-5d6df025e6) A tool for integrating upstream projects with Fedora operating system -------------------------------------------------------------------------------- Update Information:
new upstream release 0.28.0 -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 31 2021 Packit Service user-cont-team+packit-service@redhat.com - 0.28.0-1 - Remove the no-op `--dry-run` option. - Handle `centos-stream` targets as `centos-stream-8`, in order to help with the name change in Copr. - `fmf_url` and `fmf_ref` can be used in a job's `metadata` to specify an external repository and reference to be used to test the package. - Introduce a `fedora-latest` alias for the latest _branched_ version of Fedora Linux. - Add a top-level option `-c, --config` to specify a custom path for the package configuration (aka `packit.yaml`). - Source-git: enable using CentOS Stream 9 dist-git as a source. - Source-git: rename the subdirectory to store downstream packaging files from `fedora` to the more general `.distro`. - Source-git: fix creating source-git repositories when Git is configured to call the default branch something other then `master`. --------------------------------------------------------------------------------
================================================================================ paternoster-3.3.0-2.fc33 (FEDORA-2021-668fa6fa0f) Allows to run ansible playbooks like ordinary python or bash scripts -------------------------------------------------------------------------------- Update Information:
Fix minor details from package review. -------------------------------------------------------------------------------- ChangeLog:
-------------------------------------------------------------------------------- References:
[ 1 ] Bug #1941638 - Review Request: paternoster - Allows to run ansible playbooks like ordinary scripts https://bugzilla.redhat.com/show_bug.cgi?id=1941638 --------------------------------------------------------------------------------
================================================================================ perl-Mojolicious-8.73-1.fc33 (FEDORA-2021-49c70973a4) A next generation web framework for Perl -------------------------------------------------------------------------------- Update Information:
This update provides recent upstream git snapshots of openQA and os-autoinst, and updated versions of Mojolicious and Mojolicious-Plugin-AssetPack because a test fails without them. Those updates should not contain any incompatibilities compared to the current stable versions. This update will not be pushed stable until it has been tested on the Fedora staging instance of openQA for a while. -------------------------------------------------------------------------------- ChangeLog:
* Sun Feb 7 2021 Emmanuel Seyman emmanuel@seyman.fr - 8.73-1 - Update to 8.73 * Sun Jan 31 2021 Emmanuel Seyman emmanuel@seyman.fr - 8.72-1 - Update to 8.72 * Wed Jan 27 2021 Fedora Release Engineering releng@fedoraproject.org - 8.71-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild * Sun Jan 17 2021 Emmanuel Seyman emmanuel@seyman.fr - 8.71-1 - Update to 8.71 * Sun Jan 3 2021 Emmanuel Seyman emmanuel@seyman.fr - 8.70-1 - Update to 8.70 * Sun Dec 6 2020 Emmanuel Seyman emmanuel@seyman.fr - 8.67-1 - Update to 8.67 * Sun Nov 15 2020 Emmanuel Seyman emmanuel@seyman.fr - 8.65-1 - Update to 8.65 * Sun Nov 8 2020 Emmanuel Seyman emmanuel@seyman.fr - 8.64-1 - Update to 8.64 * Sun Oct 18 2020 Emmanuel Seyman emmanuel@seyman.fr - 8.63-1 - Update to 8.63 * Sun Oct 4 2020 Emmanuel Seyman emmanuel@seyman.fr - 8.61-1 - Update to 8.61 * Sun Sep 27 2020 Emmanuel Seyman emmanuel@seyman.fr - 8.60-1 - Update to 8.60 * Sun Sep 13 2020 Emmanuel Seyman emmanuel@seyman.fr - 8.59-1 - Update to 8.59 * Sun Aug 16 2020 Emmanuel Seyman emmanuel@seyman.fr - 8.58-1 - Update to 8.58 --------------------------------------------------------------------------------
================================================================================ perl-Mojolicious-Plugin-AssetPack-2.10-1.fc33 (FEDORA-2021-49c70973a4) Compress and convert CSS, Less, Sass, JavaScript and CoffeeScript files -------------------------------------------------------------------------------- Update Information:
This update provides recent upstream git snapshots of openQA and os-autoinst, and updated versions of Mojolicious and Mojolicious-Plugin-AssetPack because a test fails without them. Those updates should not contain any incompatibilities compared to the current stable versions. This update will not be pushed stable until it has been tested on the Fedora staging instance of openQA for a while. -------------------------------------------------------------------------------- ChangeLog:
* Sun Dec 13 2020 Emmanuel Seyman emmanuel@seyman.fr - 2.10-1 - Update to 2.10 - Replace %{__perl} with /usr/bin/perl - Use %{make_install} instead of "make pure_install" - Use %{make_build} instead of make - Pass NO_PERLLOCAL to Makefile.PL --------------------------------------------------------------------------------
================================================================================ php-phpmailer6-6.4.0-1.fc33 (FEDORA-2021-ef57ae5ecd) Full-featured email creation and transfer class for PHP -------------------------------------------------------------------------------- Update Information:
**PHPMailer 6.4.0** This is a maintenance release. The changes introduced in 6.3.0 for setting an envelope sender automatically when using mail() caused problems, especially in WordPress, so this change has been reverted. It gets a minor version bump as it's a change in behaviour, but only back to what 6.2.0 did. Other changes: * Check for the mbstring extension before decoding addresss in parseAddress, so it won't fail if you don't have it installed * Add Serbian Latin translation (sr_latn) * Enrol PHPMailer in Tidelift, because supporting open-source is important! -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Remi Collet remi@remirepo.net - 6.4.0-1 - update to 6.4.0 - php-imap is optional --------------------------------------------------------------------------------
================================================================================ psi4-1.3.2-10.fc33 (FEDORA-2021-a5caa44bb7) An ab initio quantum chemistry package -------------------------------------------------------------------------------- Update Information:
psi4 can now be imported as a Python module. -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 31 2021 Susi Lehtola jussilehtola@fedoraproject.org - 1:1.3.2-10 - Make the psi4 Python module importable. - Remove rpath. --------------------------------------------------------------------------------
================================================================================ python-pikepdf-1.19.4-2.fc33 (FEDORA-2021-4bf9909a76) Read and write PDFs with Python, powered by qpdf -------------------------------------------------------------------------------- Update Information:
Security fix for XXE vulnerability -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Elliott Sales de Andrade quantum.analyst@gmail.com - 1.19.4-2 - Backport fix for qpdf 10.1.0 - Backport fix for XXE vulnerability (#1945365) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1945364 - python-pikepdf: XML External Entity processing vulnerability in PDF XMP metadata parsing https://bugzilla.redhat.com/show_bug.cgi?id=1945364 --------------------------------------------------------------------------------
================================================================================ python-pyfastnoisesimd-0.4.2-1.fc33 (FEDORA-2021-d4ce5e27eb) Python Fast Noise with SIMD -------------------------------------------------------------------------------- Update Information:
Update to latest version -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 31 2021 Elliott Sales de Andrade quantum.analyst@gmail.com - 0.4.2-1 - Update to latest version (#1944953) * Wed Jan 27 2021 Fedora Release Engineering releng@fedoraproject.org - 0.4.1-10 - Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1944953 - python-pyfastnoisesimd-0.4.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=1944953 --------------------------------------------------------------------------------
================================================================================ rsms-inter-fonts-3.18-1.fc33 (FEDORA-2021-d8a56d9c2a) The Inter font family -------------------------------------------------------------------------------- Update Information:
Changes since v3.17: * Adjusts vertical metrics metadata to that of v3.15 and older. This should fix any vertical alignment issues that might have occurred with v3.17. [#361](https://github.com/rsms/inter/issues/361) * Fixes several issues with italics introduced by Glyphs 3 upgrade: * Fixes an issue with backslash in Italic masters. [#362](https://github.com/rsms/inter/issues/362) * Fixes issues with afii10026 and uni0376 in italic masters * Fixes issue with italic q U+0071 by inlining the shape instead of using components. [#360](https://github.com/rsms/inter/issues/360) * Fixes issue with U+035E COMBINING DOUBLE MACRON and U+20F0 COMBINING ASTERISK ABOVE in Thin Italic. [#363](https://github.com/rsms/inter/issues/363) * Fixes positioning issue with U+0358 COMBINING DOT ABOVE RIGHT * Improvements to U+20DC COMBINING FOUR DOTS ABOVE and U+20DB COMBINING THREE DOTS ABOVE * Improvements to U+204E LOW ASTERISK * Improved positioning via mark anchors of combining glyphs U+20F0, U+035E and U+035F. [#363](https://github.com/rsms/inter/issues/363) * Changes glyph shape of Latin upper-case iota. [#359](https://github.com/rsms/inter/issues/359) * Improved glyph composition via ccmp for enclosed glyphs like U+0041,U+20DD. [#335](https://github.com/rsms/inter/issues/335) ---- Addresses a major regression in v3.16 where several italic glyphs got messed up due to a Glyphs 3 version upgrade of the source file. This only affected users of v3.16 which was only released for about 12 hours before being replaced with this release v3.17. [#360](https://github.com/rsms/inter/issues/360) ---- * Fixes issues with appearance in Microsoft Word. [#352](https://github.com/rsms/inter/issues/352) (note that [#156](https://github.com/rsms/inter/issues/156) is still unresolved although we have made some progress in v3.16 toward developing workarounds for certain printers.) * Fixes double grave interpolation issue. [#317](https://github.com/rsms/inter/issues/317) * Fixes design issue with glyphs acutedblnosp, dblgravecmb, uni02F6 and uni02F5. [#339](https://github.com/rsms/inter/issues/339) * Fixes missing or incorrect mark anchors in several turn* glyphs. [#336](https://github.com/rsms/inter/issues/336) * Adds Baht currency glyph U+0E3F. [#323](https://github.com/rsms/inter/issues/323) * Improvement to Latin iota (lower and upper case) glyphs. [#340](https://github.com/rsms/inter/issues/340) * Improvement to some numerical fraction glyphs * Adds a dummy DSIG table to address issues with Microsoft Office 2003 and older * Improvements when using Inter with certain older Microsoft products by decomposing any nested components which some of that software has issues with -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Mohamed El Morabity melmorabity@fedoraproject.org - 3.18-1 - Update to 3.18 * Tue Mar 30 2021 Mohamed El Morabity melmorabity@fedoraproject.org - 3.17-1 - Update to 3.17 * Mon Mar 29 2021 Mohamed El Morabity melmorabity@fedoraproject.org - 3.16-1 - Update to 3.16 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1944063 - rsms-inter-fonts-3.16 is available https://bugzilla.redhat.com/show_bug.cgi?id=1944063 [ 2 ] Bug #1944479 - rsms-inter-fonts-3.17 is available https://bugzilla.redhat.com/show_bug.cgi?id=1944479 [ 3 ] Bug #1945591 - rsms-inter-fonts-3.18 is available https://bugzilla.redhat.com/show_bug.cgi?id=1945591 --------------------------------------------------------------------------------
================================================================================ squid-4.14-1.fc33 (FEDORA-2021-7d86bec29e) The Squid proxy caching server -------------------------------------------------------------------------------- Update Information:
- Version update to 4.14 - CVE-2020-25097 fix -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 31 2021 Lubos Uhliarik luhliari@redhat.com - 7:4.14-1 - new version 4.14 - Resolves: #1939927 - CVE-2020-25097 squid: improper input validation may allow a trusted client to perform HTTP Request Smuggling * Wed Jan 27 2021 Fedora Release Engineering releng@fedoraproject.org - 7:4.13-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild * Sat Oct 17 2020 Jeff Law law@redhat.com - 7:4.13-2 - Fix missing #includes for gcc-11 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1939927 - CVE-2020-25097 squid: improper input validation may allow a trusted client to perform HTTP Request Smuggling [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1939927 --------------------------------------------------------------------------------
================================================================================ vdr-osdteletext-1.1.1-1.fc33 (FEDORA-2021-ee099f87ee) OSD teletext plugin for VDR -------------------------------------------------------------------------------- Update Information:
Update to 1.1.1-1 ---- Update to 1.1.0-1 -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 Martin Gansser martinkg@fedoraproject.org - 1.1.1-1 - Update to 1.1.1 * Fri Mar 26 2021 Martin Gansser martinkg@fedoraproject.org - 1.1.0-1 - Update to 1.1.0 --------------------------------------------------------------------------------
================================================================================ youtube-dl-2021.04.01-1.fc33 (FEDORA-2021-70e66ef00c) A small command-line program to download online videos -------------------------------------------------------------------------------- Update Information:
Update to version 2021.04.01 -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 1 2021 David Schw��rer davidsch@fedoraproject.org - 2021.04.01-1 - Update to 2021.04.01 * Wed Mar 31 2021 David Schw��rer davidsch@fedoraproject.org - 2021.03.31-1 - Update to 2021.03.31 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1942756 - youtube-dl-2021.04.01 is available https://bugzilla.redhat.com/show_bug.cgi?id=1942756 --------------------------------------------------------------------------------