The following Fedora 28 Security updates need testing:
Age URL
198
https://bodhi.fedoraproject.org/updates/FEDORA-2018-d510cfd7eb
jgraphx-3.6.0.0-6.fc28
148
https://bodhi.fedoraproject.org/updates/FEDORA-2018-d7aeaa74da
nodejs-brace-expansion-1.1.11-1.fc28
146
https://bodhi.fedoraproject.org/updates/FEDORA-2018-bc073fdc1a
nodejs-atob-2.1.1-1.fc28
139
https://bodhi.fedoraproject.org/updates/FEDORA-2018-9dd3f7c013
unrtf-0.21.9-8.fc28
107
https://bodhi.fedoraproject.org/updates/FEDORA-2018-28e9841baf
docker-latest-1.13.1-37.git9cb56fd.fc28
24
https://bodhi.fedoraproject.org/updates/FEDORA-2018-bbbd8cc3a6
python33-3.3.7-6.fc28
22
https://bodhi.fedoraproject.org/updates/FEDORA-2018-cc4b7af297
xerces-c27-2.7.0-28.fc28
9
https://bodhi.fedoraproject.org/updates/FEDORA-2018-1f3a47bfbb
sos-collector-1.5-3.fc28
4
https://bodhi.fedoraproject.org/updates/FEDORA-2018-ce61c1147d
java-11-openjdk-11.0.1.13-1.fc28
4
https://bodhi.fedoraproject.org/updates/FEDORA-2018-aa8855384d
rpm-4.14.2.1-1.fc28
4
https://bodhi.fedoraproject.org/updates/FEDORA-2018-63465e1846
teeworlds-0.6.5-1.fc28
3
https://bodhi.fedoraproject.org/updates/FEDORA-2018-20c24949c0
libarchive-3.3.3-1.fc28
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-49d6e4bc3f
python37-3.7.1-1.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-73dd8de892 xen-4.10.2-2.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-928e15e1db
roundcubemail-1.3.8-1.fc28
The following Fedora 28 Critical Path updates have yet to be approved:
Age URL
12
https://bodhi.fedoraproject.org/updates/FEDORA-2018-d69f3ea54e lorax-28.19-1.fc28
11
https://bodhi.fedoraproject.org/updates/FEDORA-2018-19f6ce3a0c
pungi-4.1.29-3.fc28
6
https://bodhi.fedoraproject.org/updates/FEDORA-2018-749575640e
kernel-headers-4.18.15-200.fc28 kernel-tools-4.18.15-200.fc28 kernel-4.18.15-200.fc28
4
https://bodhi.fedoraproject.org/updates/FEDORA-2018-aa8855384d
rpm-4.14.2.1-1.fc28
3
https://bodhi.fedoraproject.org/updates/FEDORA-2018-20c24949c0
libarchive-3.3.3-1.fc28
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-853074f951
jbigkit-2.1-15.fc28
1
https://bodhi.fedoraproject.org/updates/FEDORA-2018-e56e34f62f
libdrm-2.4.95-1.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-21c31e9e2c
evolution-3.28.5-2.fc28
0
https://bodhi.fedoraproject.org/updates/FEDORA-2018-73dd8de892 xen-4.10.2-2.fc28
The following builds have been pushed to Fedora 28 updates-testing
acpitool-0.5.1-19.fc28
aha-0.5-1.fc28
drupal8-8.6.2-1.fc28
google-benchmark-1.4.1-1.fc28
highlight-3.47-1.fc28
libxcrypt-4.2.3-1.fc28
lynis-2.7.0-1.fc28
pcb-4.1.3-1.fc28
pogo-1.0-1.fc28
pythia8-8.2.35-5.fc28
python-json-minify-0.3.0-1.fc28
python-leveldb-0.194-1.fc28
python-libNeuroML-0.2.45-4.fc28
root-6.14.04-3.fc28
strawberry-0.3.3-1.fc28
Details about builds:
================================================================================
acpitool-0.5.1-19.fc28 (FEDORA-2018-db6c9e45ae)
Command line ACPI client
--------------------------------------------------------------------------------
Update Information:
Merged in patches from Debian and Arch that fix quite a few problems: AC,
battery, and wakeup info now all seem to behave again. Note, too, that it was
necessary to build a new upstream since the original author has other interests
now. Please see
https://pagure.io/acpitool
--------------------------------------------------------------------------------
ChangeLog:
* Fri Oct 26 2018 Al Stone <ahs3(a)redhat.com> - 0.5.1-19
- Remove commented out acpitool-0.5-gcc43.patch; it's no longer needed and
just clutters up the spec file
- Merge in patches from Debian (Arch uses very similar but not exactly
identical nor as extensive patches). Closes BZ#1625002.
- Add a new patch to clean up g++ warning about implicit casts
- Fixed upstream to more recent location on
sf.net
* Mon Jul 23 2018 Al Stone <ahs3(a)redhat.com> - 0.5.1-18
- Add in BuildRequires for C++. Closes BZ1603341.
* Thu Jul 12 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.5.1-17
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1625002 - acpitool: Segmentation fault
https://bugzilla.redhat.com/show_bug.cgi?id=1625002
--------------------------------------------------------------------------------
================================================================================
aha-0.5-1.fc28 (FEDORA-2018-5e68f5bccd)
Convert terminal output to HTML
--------------------------------------------------------------------------------
Update Information:
Update to latest upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Sat Oct 27 2018 Artur Iwicki <fedora(a)svgames.pl> - 0.5-1
- Update to latest upstream release
--------------------------------------------------------------------------------
================================================================================
drupal8-8.6.2-1.fc28 (FEDORA-2018-7d748596e9)
An open source content management platform
--------------------------------------------------------------------------------
Update Information:
[8.x release
notes](https://www.drupal.org/project/drupal/releases?api_version%5B%5D=7... *
[
SA-CORE-2018-006](https://www.drupal.org/SA-CORE-2018-006)
--------------------------------------------------------------------------------
ChangeLog:
* Sat Oct 27 2018 Shawn Iwinski <shawn(a)iwin.ski> - 8.6.2-1
- Update to 8.6.2 (RHBZ #1498687 / RHBZ #1643121 / RHBZ #1643123 / SA-CORE-2018-006)
* Thu Jul 12 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 8.4.8-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1643121 - drupal: Multiple Vulnerabilities - SA-CORE-2018-006
https://bugzilla.redhat.com/show_bug.cgi?id=1643121
--------------------------------------------------------------------------------
================================================================================
google-benchmark-1.4.1-1.fc28 (FEDORA-2018-9cab194b6c)
A microbenchmark support library
--------------------------------------------------------------------------------
Update Information:
Initial upload.
--------------------------------------------------------------------------------
================================================================================
highlight-3.47-1.fc28 (FEDORA-2018-210c4be57e)
Universal source code to formatted text converter
--------------------------------------------------------------------------------
Update Information:
- Updated to new 3.47 upstream version - Fixes rhbz #1611359 and #1630845 thanks
to Milan Crha for all bug reports - spec cleanup (remove old unused comments)
--------------------------------------------------------------------------------
ChangeLog:
* Fri Oct 26 2018 Filipe Rosset <rosset.filipe(a)gmail.com> - 3.47-1
- Updated to new 3.47 upstream version
- spec cleanup (remove old unused comments)
- Fixes rhbz #1611359 and #1630845 thanks to Milan Crha for all bug reports
* Thu Sep 20 2018 Filipe Rosset <rosset.filipe(a)gmail.com> - 3.44-2
- attempt to fix and respect build flags rhbz #1563149
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1630845 - Coverity/cppcheck scan reports issues
https://bugzilla.redhat.com/show_bug.cgi?id=1630845
[ 2 ] Bug #1611359 - Man page scan results for highlight
https://bugzilla.redhat.com/show_bug.cgi?id=1611359
[ 3 ] Bug #1563149 - highlight: Partial Fedora build flags injection
https://bugzilla.redhat.com/show_bug.cgi?id=1563149
--------------------------------------------------------------------------------
================================================================================
libxcrypt-4.2.3-1.fc28 (FEDORA-2018-d04a2657c1)
Extended crypt library for DES, MD5, Blowfish and others
--------------------------------------------------------------------------------
Update Information:
- New upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Fri Oct 26 2018 Bj��rn Esser <besser82(a)fedoraproject.org> - 4.2.3-1
- New upstream release
* Thu Oct 25 2018 Bj��rn Esser <besser82(a)fedoraproject.org> - 4.2.2-2
- Add patch updating to recent development version
- Run valgrind-memcheck
- Use bootstrap script
--------------------------------------------------------------------------------
================================================================================
lynis-2.7.0-1.fc28 (FEDORA-2018-c7caf63ec1)
Security and system auditing tool
--------------------------------------------------------------------------------
Update Information:
https://cisofy.com/changelog/lynis/#270
--------------------------------------------------------------------------------
ChangeLog:
* Fri Oct 26 2018 Gwyn Ciesla <limburgher(a)gmail.com> - 2.7.0-1
- 2.7.0
--------------------------------------------------------------------------------
================================================================================
pcb-4.1.3-1.fc28 (FEDORA-2018-9abc08cead)
An interactive printed circuit board editor
--------------------------------------------------------------------------------
Update Information:
New upstream release - 4.1.3
--------------------------------------------------------------------------------
ChangeLog:
* Mon Oct 8 2018 Alain Vigne <alain DOT vigne DOT 14 AT gmail DOT com> - 4.1.3-1
- New upstream release - 4.1.3
* Mon Sep 17 2018 Alain Vigne <alain DOT vigne DOT 14 AT gmail DOT com> - 4.1.2-1
- New upstream release - 4.1.2
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> -
0.20140316-17
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
pogo-1.0-1.fc28 (FEDORA-2018-ba1ab26596)
Probably the simplest and fastest audio player for Linux
--------------------------------------------------------------------------------
Update Information:
- new upstream version 1.0 + spec cleanup and modernization
--------------------------------------------------------------------------------
ChangeLog:
* Sat Aug 25 2018 Filipe Rosset <rosset.filipe(a)gmail.com> - 1.0-1
- new upstream version 1.0 + spec cleanup and modernization
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.9.2-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Tue Jun 19 2018 Miro Hron��ok <mhroncok(a)redhat.com> - 0.9.2-2
- Rebuilt for Python 3.7
* Wed Mar 14 2018 Filipe Rosset <rosset.filipe(a)gmail.com> - 0.9.2-1
- Rebuilt for new upstream version 0.9.2, fixes rhbz #1551445
- Pogo now supports python3
- Obsoletes pogo-zeitgeist package
* Thu Mar 1 2018 Iryna Shcherbina <ishcherb(a)redhat.com> - 0.8.4-6
- Update Python 2 dependency declarations to new packaging standards
(See
https://fedoraproject.org/wiki/FinalizingFedoraSwitchtoPython3)
--------------------------------------------------------------------------------
================================================================================
pythia8-8.2.35-5.fc28 (FEDORA-2018-c354576690)
Pythia Event Generator for High Energy Physics
--------------------------------------------------------------------------------
Update Information:
- Fix crash in TBrowser when root-gui-html is not installed - Use empty .egg-
info files instead of empty .dist-info files to make virtualenv happy - Add
Requires on root-mathmore to root-mathcore (for default integrator)
--------------------------------------------------------------------------------
ChangeLog:
* Thu Oct 25 2018 Mattias Ellert <mattias.ellert(a)physics.uu.se> - 8.2.35-5
- Don't build Python 2 package for Fedora >= 30
- Add Python 3.6 package for EPEL 7
- Use empty .egg-info files instead of empty .dist-info files to make
virtualenv happy
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1639979 - Empty dist-info file breaks operations with pip >= 10.0.0
https://bugzilla.redhat.com/show_bug.cgi?id=1639979
[ 2 ] Bug #1636347 - Tbrowser crashes if root-gui-html is not installed.
https://bugzilla.redhat.com/show_bug.cgi?id=1636347
[ 3 ] Bug #1626516 - root meta-package should install all dependencies it was configured
with
https://bugzilla.redhat.com/show_bug.cgi?id=1626516
--------------------------------------------------------------------------------
================================================================================
python-json-minify-0.3.0-1.fc28 (FEDORA-2018-292f106f9a)
Python port of the JSON-minify utility
--------------------------------------------------------------------------------
Update Information:
Initial package of JSON-minify for Python.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1643365 - Review Request: python-json-minify - Python port of the JSON-minify
utility
https://bugzilla.redhat.com/show_bug.cgi?id=1643365
--------------------------------------------------------------------------------
================================================================================
python-leveldb-0.194-1.fc28 (FEDORA-2018-8c305229cb)
Python bindings for leveldb database library
--------------------------------------------------------------------------------
Update Information:
- Initial package
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1642736 - Review Request: python-leveldb - Python bindings for leveldb
database library
https://bugzilla.redhat.com/show_bug.cgi?id=1642736
--------------------------------------------------------------------------------
================================================================================
python-libNeuroML-0.2.45-4.fc28 (FEDORA-2018-f4c25f1515)
Python libNeuroML for working with neuronal models specified in NeuroML
--------------------------------------------------------------------------------
Update Information:
New package!
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1643266 - Review Request: python-libNeuroML - Python libNeuroML for working
with neuronal models specified in NeuroML
https://bugzilla.redhat.com/show_bug.cgi?id=1643266
--------------------------------------------------------------------------------
================================================================================
root-6.14.04-3.fc28 (FEDORA-2018-c354576690)
Numerical data analysis framework
--------------------------------------------------------------------------------
Update Information:
- Fix crash in TBrowser when root-gui-html is not installed - Use empty .egg-
info files instead of empty .dist-info files to make virtualenv happy - Add
Requires on root-mathmore to root-mathcore (for default integrator)
--------------------------------------------------------------------------------
ChangeLog:
* Thu Oct 25 2018 Mattias Ellert <mattias.ellert(a)physics.uu.se> - 6.14.04-3
- Fix crash in TBrowser when root-gui-html is not installed
- Use empty .egg-info files instead of empty .dist-info files to make
virtualenv happy
- Add Requires on root-mathmore to root-mathcore (for default integrator)
* Sat Oct 13 2018 Jerry James <loganjerry(a)gmail.com> - 6.14.04-2
- Rebuild for tbb 2019_U1
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1639979 - Empty dist-info file breaks operations with pip >= 10.0.0
https://bugzilla.redhat.com/show_bug.cgi?id=1639979
[ 2 ] Bug #1636347 - Tbrowser crashes if root-gui-html is not installed.
https://bugzilla.redhat.com/show_bug.cgi?id=1636347
[ 3 ] Bug #1626516 - root meta-package should install all dependencies it was configured
with
https://bugzilla.redhat.com/show_bug.cgi?id=1626516
--------------------------------------------------------------------------------
================================================================================
strawberry-0.3.3-1.fc28 (FEDORA-2018-11220e6b00)
An audio player and music collection organizer
--------------------------------------------------------------------------------
Update Information:
Initial package
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1642118 - Review Request: strawberry - An audio player and music collection
organizer
https://bugzilla.redhat.com/show_bug.cgi?id=1642118
--------------------------------------------------------------------------------