The following Fedora 29 Security updates need testing:
Age URL
3
https://bodhi.fedoraproject.org/updates/FEDORA-2018-8d58297dc0 godot-3.0.6-1.fc29
3
https://bodhi.fedoraproject.org/updates/FEDORA-2018-4f06058324
python-pycryptodomex-3.6.6-1.fc29
3
https://bodhi.fedoraproject.org/updates/FEDORA-2018-974e947d3b
capstone-3.0.5-1.fc29
3
https://bodhi.fedoraproject.org/updates/FEDORA-2018-f6a5b71464
mod_perl-2.0.10-13.fc29
3
https://bodhi.fedoraproject.org/updates/FEDORA-2018-d35c521664
ghostscript-9.23-7.fc29
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-7652b51cc6
iniparser-4.0-7.20160821git.fc29
The following Fedora 29 Critical Path updates have yet to be approved:
Age URL
3
https://bodhi.fedoraproject.org/updates/FEDORA-2018-7baa4e2d9d glibc-2.28-9.fc29
3
https://bodhi.fedoraproject.org/updates/FEDORA-2018-8500fd9cad
libtool-2.4.6-27.fc29
3
https://bodhi.fedoraproject.org/updates/FEDORA-2018-c9f46b761a
gnome-software-3.29.92-1.fc29
3
https://bodhi.fedoraproject.org/updates/FEDORA-2018-6c2cb070f3
flatpak-1.0.1-1.fc29
3
https://bodhi.fedoraproject.org/updates/FEDORA-2018-653835319b
at-spi2-core-2.28.0-4.fc29
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-d4ff3d0e77
fontconfig-2.13.1-1.fc29
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-a802cec5b0
perl-PathTools-3.75-1.fc29
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-9281f40252
libssh-0.8.2-1.fc29
2
https://bodhi.fedoraproject.org/updates/FEDORA-2018-0a8bc5441c ibus-1.5.19-3.fc29
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-8b6397ee0d
libcacard-2.6.1-1.fc29
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-50a6d79d8e
openssh-7.8p1-2.fc29
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-a1e529f355 nettle-3.4-5.fc29
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-c608864ba9
iproute-4.18.0-3.fc29
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-2ef46486ba
python2-2.7.15-8.fc29
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-256cf902f7
python3-3.7.0-9.fc29
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-85853d46b5
anaconda-29.24.2-1.fc29 python-blivet-3.1.0-2.fc29
The following builds have been pushed to Fedora 29 updates-testing
R-TH-data-1.0.9-1.fc29
R-multcomp-1.4.8-1.fc29
R-systemfit-1.1.22-1.fc29
audit-3.0-0.4.20180831git0047a6c.fc29
dnf-3.3.0-2.fc29
dwarves-1.12-1.fc29
ejabberd-18.06-2.fc29
elementary-print-0.1.3-1.fc29
fedora-easy-karma-0-0.38.20171129gita8fe9cbc.fc29
firewalld-0.6.1-2.fc29
gnome-colors-icon-theme-5.5.1-14.fc29
golang-github-git-lfs-gitobj-0-0.1.20180831git5aa0c18.fc29
grub2-2.02-52.fc29
kdocker-5.2-1.fc29
keepassxc-2.3.4-1.fc29
ktorrent-5.1.1-1.fc29
libdnf-0.17.2-1.fc29
lightdm-1.28.0-1.fc29
nautilus-python-1.2.1-2.fc29
ngrep-1.47-1.1.20180101git9b59468.fc29
nova-agent-2.1.16-1.fc29
podman-0.8.5-1.gitdc5a711.fc29
python-click-man-0.2.2-4.fc29
python-mmdzanata-0.7-2.fc29
python-nose-ignore-docstring-0.2-1.fc29
python-sphinxtesters-0.2.1-1.fc29
rubygem-minitest-reporters-1.3.3-1.fc29
sugar-portfolio-51-1.fc29
toxcore-0.2.7-2.fc29
yum-utils-1.1.31-517.fc29
Details about builds:
================================================================================
R-TH-data-1.0.9-1.fc29 (FEDORA-2018-e43157f455)
Data for other R packages
--------------------------------------------------------------------------------
Update Information:
Update to latest stable release.
--------------------------------------------------------------------------------
ChangeLog:
* Sat Sep 1 2018 Jos�� Matos <jamatos(a)fedoraproject.org> - 1.0.9-1
- update to 1.0-9
- remove buildroot
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1302705 - R-TH-data-1.4 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1302705
--------------------------------------------------------------------------------
================================================================================
R-multcomp-1.4.8-1.fc29 (FEDORA-2018-15f5987ca0)
Simultaneous inference for general linear hypotheses R Package
--------------------------------------------------------------------------------
Update Information:
Update to latest stable release.
--------------------------------------------------------------------------------
ChangeLog:
* Sat Sep 1 2018 Jos�� Matos <jamatos(a)fedoraproject.org> - 1.4.8-1
- update to 1.4-8
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1356752 - R-multcomp-1.4-8 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1356752
--------------------------------------------------------------------------------
================================================================================
R-systemfit-1.1.22-1.fc29 (FEDORA-2018-54ecf60a93)
Simultaneous Equation Estimation R Package
--------------------------------------------------------------------------------
Update Information:
Update to latest stable release, the details of the changes can be seen in the
NEWS file.
--------------------------------------------------------------------------------
ChangeLog:
* Sat Sep 1 2018 Jos�� Matos <jamatos(a)fedoraproject.org> - 1.1.22-1
- update to 1.1-22
- update url and source0 to newer versions
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1257593 - R-systemfit-1.1-22 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1257593
--------------------------------------------------------------------------------
================================================================================
audit-3.0-0.4.20180831git0047a6c.fc29 (FEDORA-2018-fa5016984a)
User space tools for 2.6 kernel auditing
--------------------------------------------------------------------------------
Update Information:
This update corrects event ordering as output by ausearch.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 31 2018 Steve Grubb <sgrubb(a)redhat.com> 3.0-0.4.20180831git0047a6c
- New upstream feature prerelease
--------------------------------------------------------------------------------
================================================================================
dnf-3.3.0-2.fc29 (FEDORA-2018-f16a71bc92)
Package manager
--------------------------------------------------------------------------------
Update Information:
Fix 'attempt to write a readonly database' error in addConsoleOutputLine()
--------------------------------------------------------------------------------
ChangeLog:
* Tue Aug 28 2018 Daniel Mach <dmach(a)redhat.com> - 3.3.0-2
- [history] Fix 'attempt to write a readonly database' error in
addConsoleOutputLine().
* Mon Aug 13 2018 Daniel Mach <dmach(a)redhat.com> - 3.3.0-1
- [misc] Fallback to os.getuid() if /proc/self/loginuid can't be read (RhBug:1597005)
- [translations] Update translations from zanata.
- [doc] Update module documentation.
- [module] Fix `module provides` output.
- [module] Add `module reset` command.
- [module] Fix module disable command
- [repo] Improve error message on broken repo (RhBug:1595796)
- [doc] Enhance a command documentation (RhBug:1361617)
- [module] Automatically save module persistor in do_transaction().
- [drpm] Fixed setting deltarpm_percentage=0 to switch drpm off
- [repo] Split base.download_packages into two functions
- [output] Use libdnf wrapper for smartcols
- [conf] Do not traceback on empty option (RhBug:1613577)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1615992 - dnf 3.3.0-1 cannot record scriptlet errors in livemedia creation
https://bugzilla.redhat.com/show_bug.cgi?id=1615992
--------------------------------------------------------------------------------
================================================================================
dwarves-1.12-1.fc29 (FEDORA-2018-6fca5b1ffb)
Debugging Information Manipulation Tools (pahole & friends)
--------------------------------------------------------------------------------
Update Information:
Please read the README.btf to see how to test the feature that triggered the
tagging of this release, other than that, read the NEWS files to see the bugs
fixed and new DWARF tags supported in this release.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 31 2018 Arnaldo Carvalho de Melo <acme(a)redhat.com> - 1.12-1
- New release: 1.12
- union member cacheline boundaries for all inner structs
- print union member offsets
- Document 'pahole --hex'
- Encode BTF type format for use with eBPF
--------------------------------------------------------------------------------
================================================================================
ejabberd-18.06-2.fc29 (FEDORA-2018-3461017027)
A distributed, fault-tolerant Jabber/XMPP server
--------------------------------------------------------------------------------
Update Information:
Use erl and epmd symlinks from bindir instead from archful locations.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 31 2018 Randy Barlow <bowlofeggs(a)fedoraproject.org> - 18.06-2
- Use erl and epmd symlinks from bindir instead of trying to use the archful ones
(#1573006).
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1573006 - /usr/lib/erlang/bin/erl: /usr/lib/erlang/bin/erl: No such file or
directory
https://bugzilla.redhat.com/show_bug.cgi?id=1573006
--------------------------------------------------------------------------------
================================================================================
elementary-print-0.1.3-1.fc29 (FEDORA-2018-3e7f99cb02)
Simple shim for printing support via Contractor
--------------------------------------------------------------------------------
Update Information:
Initial package for fedora.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1623448 - Review Request: elementary-print - Simple shim for printing support
via Contractor
https://bugzilla.redhat.com/show_bug.cgi?id=1623448
--------------------------------------------------------------------------------
================================================================================
fedora-easy-karma-0-0.38.20171129gita8fe9cbc.fc29 (FEDORA-2018-fea5f49685)
Fedora update feedback made easy
--------------------------------------------------------------------------------
Update Information:
Update dependencies for Fedora 29 and newer
--------------------------------------------------------------------------------
ChangeLog:
* Thu Aug 9 2018 Till Maas <opensource(a)till.name> - 0-0.38.20171129gita8fe9cbc
- Update Bodhi dependency for Fedora 29 and newer
--------------------------------------------------------------------------------
================================================================================
firewalld-0.6.1-2.fc29 (FEDORA-2018-379c39d97c)
A firewall daemon with D-Bus interface providing a dynamic firewall
--------------------------------------------------------------------------------
Update Information:
default to iptables backend
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1623868 - default libvirt/container networking (NAT based AFIACT) broken in
F-29
https://bugzilla.redhat.com/show_bug.cgi?id=1623868
--------------------------------------------------------------------------------
================================================================================
gnome-colors-icon-theme-5.5.1-14.fc29 (FEDORA-2018-cabd99d867)
GNOME-Colors icon theme
--------------------------------------------------------------------------------
Update Information:
Rebuilt. Use triggers.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 31 2018 Miro Hron��ok <mhroncok(a)redhat.com> - 5.5.1-14
- Use prebuilt images
- Switch to triggers
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 5.5.1-13
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Wed Feb 7 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 5.5.1-12
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
* Wed Jul 26 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 5.5.1-11
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1604144 - gnome-colors-icon-theme: FTBFS in Fedora rawhide
https://bugzilla.redhat.com/show_bug.cgi?id=1604144
--------------------------------------------------------------------------------
================================================================================
golang-github-git-lfs-gitobj-0-0.1.20180831git5aa0c18.fc29 (FEDORA-2018-4bc45a3bc9)
Read and write Git objects
--------------------------------------------------------------------------------
Update Information:
Initial package of gitobj for Golang
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1623348 - Review Request: golang-github-git-lfs-gitobj - Read and write Git
objects
https://bugzilla.redhat.com/show_bug.cgi?id=1623348
--------------------------------------------------------------------------------
================================================================================
grub2-2.02-52.fc29 (FEDORA-2018-2756e3a374)
Bootloader with support for Linux, Multiboot and more
--------------------------------------------------------------------------------
Update Information:
Fix for aarch64 booting on some platforms, as well as loading of large initramfs
images on x86_64 and aarch64.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Aug 30 2018 Peter Jones <pjones(a)redhat.com> - 2.02-52
- Fix AArch64 machines with no RAM latched lower than 1GB
Resolves: rhbz#1615969
- Set http_path and http_url when HTTP booting
- Hopefully slightly better error reporting in some cases
- Better allocation of kernel+initramfs on x86_64 and aarch64
Resolves: rhbz#1572126
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1572126 - allocation errors with secureboot grub version
https://bugzilla.redhat.com/show_bug.cgi?id=1572126
[ 2 ] Bug #1615969 - AArch64 - Error when booting "error: out of memory."
https://bugzilla.redhat.com/show_bug.cgi?id=1615969
--------------------------------------------------------------------------------
================================================================================
kdocker-5.2-1.fc29 (FEDORA-2018-e3bfa6934f)
Dock any application in the system tray
--------------------------------------------------------------------------------
Update Information:
version 5.2 - Add 'Lock to desktop' option - Fix bash completion
--------------------------------------------------------------------------------
ChangeLog:
* Sat Sep 1 2018 Raphael Groner <projects.rg(a)smart.ms> - 5.2-1
- new version
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1608577 - kdocker-5.2 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1608577
--------------------------------------------------------------------------------
================================================================================
keepassxc-2.3.4-1.fc29 (FEDORA-2018-e8b0fef262)
Cross-platform password manager
--------------------------------------------------------------------------------
Update Information:
2.3.4 release
--------------------------------------------------------------------------------
ChangeLog:
* Wed Aug 29 2018 Mukundan Ragavan <nonamedotc(a)fedoraproject.org> - 2.3.4-1
- Update to 2.3.4
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1623294 - KeePassXC 2.3.4 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1623294
--------------------------------------------------------------------------------
================================================================================
ktorrent-5.1.1-1.fc29 (FEDORA-2018-2618501cf0)
A BitTorrent program
--------------------------------------------------------------------------------
Update Information:
new upstream bugfix release.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 31 2018 Rex Dieter <rdieter(a)fedoraproject.org> - 5.1.1-1
- 5.1.1
--------------------------------------------------------------------------------
================================================================================
libdnf-0.17.2-1.fc29 (FEDORA-2018-f16a71bc92)
Library providing simplified C and Python API to libsolv
--------------------------------------------------------------------------------
Update Information:
Fix 'attempt to write a readonly database' error in addConsoleOutputLine()
--------------------------------------------------------------------------------
ChangeLog:
* Mon Aug 13 2018 Daniel Mach <dmach(a)redhat.com> - 0.17.2-1
- [sqlite3] Change db locking mode to DEFAULT.
- [doc] Add libsmartcols-devel to devel deps.
* Mon Aug 13 2018 Daniel Mach <dmach(a)redhat.com> - 0.17.1-1
- [module] Solve a problem in python constructor of NSVCAP if no version.
- [translations] Update translations from zanata.
- [transaction] Fix crash after using dnf.comps.CompsQuery and forking the process in
Anaconda.
- [module] Support for resetting module state.
- [output] Introduce wrapper for smartcols.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1615992 - dnf 3.3.0-1 cannot record scriptlet errors in livemedia creation
https://bugzilla.redhat.com/show_bug.cgi?id=1615992
--------------------------------------------------------------------------------
================================================================================
lightdm-1.28.0-1.fc29 (FEDORA-2018-03104b180d)
A cross-desktop Display Manager
--------------------------------------------------------------------------------
Update Information:
- Update
--------------------------------------------------------------------------------
ChangeLog:
* Sat Sep 1 2018 Leigh Scott <leigh123linux(a)googlemail.com> - 1.28.0-1
- lightdm-1.28.0
--------------------------------------------------------------------------------
================================================================================
nautilus-python-1.2.1-2.fc29 (FEDORA-2018-ecde05c3c8)
Python bindings for Nautilus
--------------------------------------------------------------------------------
Update Information:
add support for python3
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 31 2018 Raphael Groner <projects.rg(a)smart.ms> - 1.2.1-2
- add support for python3
- execute nautilus self tests with examples, currently b0rken due to a dbus bug
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1328853 - nautilus-python: Provide a Python 3 subpackage
https://bugzilla.redhat.com/show_bug.cgi?id=1328853
--------------------------------------------------------------------------------
================================================================================
ngrep-1.47-1.1.20180101git9b59468.fc29 (FEDORA-2018-76eee60308)
Network layer grep tool
--------------------------------------------------------------------------------
Update Information:
New general release
--------------------------------------------------------------------------------
ChangeLog:
* Sat Sep 1 2018 Robin Lee <cheeselee(a)fedoraproject.org> -
1.47-1.1.20180101git9b59468
- Update to latest snapshot (1.47 with build fix) (BZ#1528728, BZ#1401152)
--------------------------------------------------------------------------------
================================================================================
nova-agent-2.1.16-1.fc29 (FEDORA-2018-f764813d4a)
Agent for setting up clean servers on Xen
--------------------------------------------------------------------------------
Update Information:
Latest upstream version
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 31 2018 Dave Kludt <david.kludt(a)rackspace.com> - 2.1.16-1
- Latest Upstream
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1607852 - nova-agent-2.1.16 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1607852
--------------------------------------------------------------------------------
================================================================================
podman-0.8.5-1.gitdc5a711.fc29 (FEDORA-2018-20779fc810)
Manage Pods, Containers and Container Images
--------------------------------------------------------------------------------
Update Information:
Upstream 0.8.5
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 31 2018 baude <bbaude(a)redhat.com> - 0.8.5-1.gitdc5a711
- Upstream 0.8.5 release
* Thu Aug 30 2018 Lokesh Mandvekar <lsm5(a)fedoraproject.org> - 1:0.8.4-2.git9f9b8cf
- correct min dep on containernetworking-plugins
- update bundled provides
--------------------------------------------------------------------------------
================================================================================
python-click-man-0.2.2-4.fc29 (FEDORA-2018-cea6ca84c3)
Generate man pages for click based CLI applications
--------------------------------------------------------------------------------
Update Information:
Add python-mmdzanata package to Fedora and EPEL 7 Provides tools for
interacting with module translations in Zanata.
--------------------------------------------------------------------------------
================================================================================
python-mmdzanata-0.7-2.fc29 (FEDORA-2018-cea6ca84c3)
Tools for working with translations of modulemd
--------------------------------------------------------------------------------
Update Information:
Add python-mmdzanata package to Fedora and EPEL 7 Provides tools for
interacting with module translations in Zanata.
--------------------------------------------------------------------------------
================================================================================
python-nose-ignore-docstring-0.2-1.fc29 (FEDORA-2018-3a94f11609)
Ignore docstring to name tests in nose
--------------------------------------------------------------------------------
Update Information:
This package contains a plugin for nose. If this plugin is active, nose does
not use docstrings to name tests.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1623730 - Review Request: python-nose-ignore-docstring - Ignore docstring to
name tests in nose
https://bugzilla.redhat.com/show_bug.cgi?id=1623730
--------------------------------------------------------------------------------
================================================================================
python-sphinxtesters-0.2.1-1.fc29 (FEDORA-2018-16e3393268)
Utilities for testing Sphinx extensions
--------------------------------------------------------------------------------
Update Information:
This package contains utilities for testing Sphinx extensions.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1623731 - None
https://bugzilla.redhat.com/show_bug.cgi?id=1623731
--------------------------------------------------------------------------------
================================================================================
rubygem-minitest-reporters-1.3.3-1.fc29 (FEDORA-2018-92f8b7b9a9)
Create customizable Minitest output formats
--------------------------------------------------------------------------------
Update Information:
Update to version 1.3.3.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 31 2018 Fabio Valentini <decathorpe(a)gmail.com> - 1.3.3-1
- Update to version 1.3.3.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1608379 - rubygem-minitest-reporters-1.3.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1608379
--------------------------------------------------------------------------------
================================================================================
sugar-portfolio-51-1.fc29 (FEDORA-2018-14322e2d5c)
A simple tool for generating slide show from starred Journal entries
--------------------------------------------------------------------------------
Update Information:
Release 51
--------------------------------------------------------------------------------
ChangeLog:
* Sat Sep 1 2018 Kalpa Welivitigoda <callkalpa(a)gmail.com> - 51-1
- Release 51
--------------------------------------------------------------------------------
================================================================================
toxcore-0.2.7-2.fc29 (FEDORA-2018-0b19a084a9)
Peer to peer instant messenger
--------------------------------------------------------------------------------
Update Information:
Add patch to install libmisc_tools needed by DHT_bootstrap ---- Upstream
release 0.2.7
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 31 2018 Robert-Andr�� Mauchin <zebob.m(a)gmail.com> - 0.2.7-2
- Add patch to install libmisc_tools needed by DHT_bootstrap
* Fri Aug 31 2018 Robert-Andr�� Mauchin <zebob.m(a)gmail.com> - 0.2.7-1
- Upstream release 0.2.7
--------------------------------------------------------------------------------
================================================================================
yum-utils-1.1.31-517.fc29 (FEDORA-2018-357e8e07ce)
Utilities based around the yum package manager
--------------------------------------------------------------------------------
Update Information:
Security fix for CVE-2018-10897
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 31 2018 Michal Domonkos <mdomonko(a)redhat.com> - 1.1.31-517
- Use explicit python2 executable at build time
- reposync: prevent path traversal (CVE-2018-10897)
- Resolves: bug#1600454
* Sat Jul 14 2018 Fedora Release Engineering <releng(a)fedoraproject.org> -
1.1.31-516
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1600221 - CVE-2018-10897 yum-utils: reposync: improper path validation may
lead to directory traversal
https://bugzilla.redhat.com/show_bug.cgi?id=1600221
--------------------------------------------------------------------------------