The following Fedora EPEL 6 Security updates need testing:
Age URL
575
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2011-4701/supybot-gribble-0.83.4.1-10.el6
387
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-5620/bugzilla-3.4.14-2.el6
87
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-0376/openconnect-4.08-1.el6
80
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-0420/awstats-7.0-3.el6
45
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-0823/openstack-keystone-2012.2.3-5.el6
14
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-5612/phpMyAdmin-3.5.8.1-1.el6
11
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-5649/mediawiki119-1.19.6-1.el6
11
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-5643/php-sabredav-Sabre_DAV-1.6.5-5.el6
6
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-5713/openvpn-2.3.1-1.el6
0
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-5789/gallery3-3.0.7-1.el6
0
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-5801/python-virtualenv-1.9.1-1.el6
The following builds have been pushed to Fedora EPEL 6 updates-testing
curlftpfs-0.9.2-14.el6
datagrepper-0.1.3-1.el6
datagrepper-0.1.3-2.el6
dropbear-0.58-1.el6
openstack-glance-2012.2.4-3.el6
ovirt-engine-cli-3.2.0.12-1.el6
ovirt-engine-sdk-3.2.0.11-1.el6
pcp-3.8.0-1.el6
python-Traits-4.3.0-1.el6
python-fedmsg-meta-fedora-infrastructure-0.1.5-1.el6
python-fedmsg-meta-fedora-infrastructure-0.1.5-2.el6
python-pyface-4.3.0-2.el6
python-swiftclient-1.4.0-1.el6
python-virtualenv-1.9.1-1.el6
Details about builds:
================================================================================
curlftpfs-0.9.2-14.el6 (FEDORA-EPEL-2013-5804)
CurlFtpFS is a filesystem for accessing FTP hosts based on FUSE and libcurl
--------------------------------------------------------------------------------
Update Information:
Fix IO errors, two memleaks and add aarch64 support
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #962015 - permenently IO-errors
https://bugzilla.redhat.com/show_bug.cgi?id=962015
[ 2 ] Bug #962164 - Curlftpfs duplicate owning files in -debuginfo packages
whta lead to install conflicts
https://bugzilla.redhat.com/show_bug.cgi?id=962164
[ 3 ] Bug #831419 - Plug a memleak with no cache
https://bugzilla.redhat.com/show_bug.cgi?id=831419
[ 4 ] Bug #831418 - Plug a gigantic memleak
https://bugzilla.redhat.com/show_bug.cgi?id=831418
[ 5 ] Bug #925209 - curlftpfs: Does not support aarch64 in f19 and rawhide
https://bugzilla.redhat.com/show_bug.cgi?id=925209
[ 6 ] Bug #962233 - Curlftpfs SCM change request
https://bugzilla.redhat.com/show_bug.cgi?id=962233
--------------------------------------------------------------------------------
================================================================================
datagrepper-0.1.3-1.el6 (FEDORA-EPEL-2013-5798)
A webapp to query fedmsg history
--------------------------------------------------------------------------------
Update Information:
Fix some early bugs found in staging.
Fix python2.6 bug.
Initial packaged release of datagrepper
--------------------------------------------------------------------------------
================================================================================
datagrepper-0.1.3-2.el6 (FEDORA-EPEL-2013-5803)
A webapp to query fedmsg history
--------------------------------------------------------------------------------
Update Information:
Patch a typo.
--------------------------------------------------------------------------------
================================================================================
dropbear-0.58-1.el6 (FEDORA-EPEL-2013-5802)
SSH2 server and client
--------------------------------------------------------------------------------
Update Information:
Here is where you give an explanation of your update.
--------------------------------------------------------------------------------
ChangeLog:
* Tue May 14 2013 Christopher Meng <[email protected]> - 0.58-1
- New upstream release.
--------------------------------------------------------------------------------
================================================================================
openstack-glance-2012.2.4-3.el6 (FEDORA-EPEL-2013-5806)
OpenStack Image Service
--------------------------------------------------------------------------------
Update Information:
- Update to stable release 2012.2.4
- Add the scrubber service for deferred image deletion
- Restart the glance services on upgrade
--------------------------------------------------------------------------------
ChangeLog:
* Mon May 13 2013 Pádraig Brady <[email protected]> 2012.2.4-3
- Update to stable release 2012.2.4
- Add the scrubber service for deferred image deletion
- Restart the glance services on upgrade
* Mon May 13 2013 Pádraig Brady <[email protected]> 2012.2.3-2
- Avoid issue with crypto compat patch (#906051)
--------------------------------------------------------------------------------
================================================================================
ovirt-engine-cli-3.2.0.12-1.el6 (FEDORA-EPEL-2013-5797)
oVirt Engine Command Line Interface
--------------------------------------------------------------------------------
Update Information:
Update to upstream 3.2.0.12
Update to upstream 3.2.0.11
--------------------------------------------------------------------------------
ChangeLog:
* Tue May 14 2013 Juan Hernandez <[email protected]> - 3.2.0.12-1
- Update to upstream 3.2.0.12
* Mon Mar 11 2013 Juan Hernandez <[email protected]> - 3.2.0.11-1
- Update to upstream 3.2.0.11
--------------------------------------------------------------------------------
================================================================================
ovirt-engine-sdk-3.2.0.11-1.el6 (FEDORA-EPEL-2013-5809)
oVirt Engine Software Development Kit
--------------------------------------------------------------------------------
Update Information:
Update to upstream 3.2.0.11
Update to upstream 3.2.0.10
--------------------------------------------------------------------------------
ChangeLog:
* Tue May 14 2013 Juan Hernandez <[email protected]> - 3.2.0.11-1
- Update to upstream 3.2.0.11
* Mon Mar 11 2013 Juan Hernandez <[email protected]> - 3.2.0.10-1
- Update to upstream 3.2.0.10
--------------------------------------------------------------------------------
================================================================================
pcp-3.8.0-1.el6 (FEDORA-EPEL-2013-5800)
System-level performance monitoring and performance management
--------------------------------------------------------------------------------
Update Information:
Update to latest upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Tue May 14 2013 Nathan Scott <[email protected]> - 3.8.0-1
- Update to latest PCP sources.
- Validate metric names passed into pmiAddMetric (BZ 958019)
- Install log directories with correct ownership (BZ 960858)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #958019 - pmiAddMetric accepts out of bounds characters
https://bugzilla.redhat.com/show_bug.cgi?id=958019
[ 2 ] Bug #960858 - Incorrect directory owners in pcp
https://bugzilla.redhat.com/show_bug.cgi?id=960858
--------------------------------------------------------------------------------
================================================================================
python-Traits-4.3.0-1.el6 (FEDORA-EPEL-2013-5808)
Explicitly typed attributes for Python
--------------------------------------------------------------------------------
Update Information:
The traits package developed by Enthought provides a special type definition
called a trait. Although they can be used as normal Python object attributes,
traits also have several additional characteristics:
* Initialization: A trait can be assigned a default value.
* Validation: A trait attribute's type can be explicitly declared.
* Delegation: The value of a trait attribute can be contained either in another
object.
* Notification: Setting the value of a trait attribute can trigger notification
of other parts of the program.
* Visualization: User interfaces that permit the interactive modification of a
trait's value can be automatically constructed using the trait's definition.
--------------------------------------------------------------------------------
================================================================================
python-fedmsg-meta-fedora-infrastructure-0.1.5-1.el6 (FEDORA-EPEL-2013-5795)
Metadata providers for Fedora Infrastructure's fedmsg deployment
--------------------------------------------------------------------------------
Update Information:
Support for fedorahosted/trac. Support for avatars and emails.
Support new messages. Clean up old ones.
--------------------------------------------------------------------------------
ChangeLog:
* Mon May 13 2013 Ralph Bean <[email protected]> - 0.1.5-1
- New upstream with new avatars and emails interfaces.
- New dep on python-fedora
- Temporarily remove test for avatars while python-fedora catches up.
- New processor for fedorahosted/trac messages.
* Wed Apr 24 2013 Ralph Bean <[email protected]> - 0.1.4-1
- Handle the latest tagger2 messages.
* Wed Apr 24 2013 Ralph Bean <[email protected]> - 0.1.3-1
- Docstrings for tests for self-documentation of the /topics/ doc.
- Cleanup some koji and compose messages.
- Random typo and bug fixes.
--------------------------------------------------------------------------------
================================================================================
python-fedmsg-meta-fedora-infrastructure-0.1.5-2.el6 (FEDORA-EPEL-2013-5805)
Metadata providers for Fedora Infrastructure's fedmsg deployment
--------------------------------------------------------------------------------
Update Information:
Patch a blunder.
--------------------------------------------------------------------------------
ChangeLog:
* Mon May 13 2013 Ralph Bean <[email protected]> - 0.1.5-2
- Patch: don't declare tickets closed unless that value actually changes.
* Mon May 13 2013 Ralph Bean <[email protected]> - 0.1.5-1
- New upstream with new avatars and emails interfaces.
- New dep on python-fedora
- Temporarily remove test for avatars while python-fedora catches up.
- New processor for fedorahosted/trac messages.
* Wed Apr 24 2013 Ralph Bean <[email protected]> - 0.1.4-1
- Handle the latest tagger2 messages.
* Wed Apr 24 2013 Ralph Bean <[email protected]> - 0.1.3-1
- Docstrings for tests for self-documentation of the /topics/ doc.
- Cleanup some koji and compose messages.
- Random typo and bug fixes.
--------------------------------------------------------------------------------
================================================================================
python-pyface-4.3.0-2.el6 (FEDORA-EPEL-2013-5810)
Generic User Interface objects
--------------------------------------------------------------------------------
Update Information:
Pyface enables programmers to interact with generic UI objects, such as an "MDI
Application Window", rather than with raw UI widgets. (Pyface is named by
analogy to JFace in Java.) Traits uses Pyface to implement views and editors
for displaying and editing Traits-based objects.
--------------------------------------------------------------------------------
================================================================================
python-swiftclient-1.4.0-1.el6 (FEDORA-EPEL-2013-5807)
Client Library for OpenStack Object Storage API
--------------------------------------------------------------------------------
Update Information:
* Update to upstream version 1.4.0.
--------------------------------------------------------------------------------
ChangeLog:
* Mon May 13 2013 Jakub Ruzicka <[email protected]> 1.4.0-1
- Update to upstream 1.4.0 release.
* Mon Mar 25 2013 Jakub Ruzicka <[email protected]> 1.3.0-1
- Update to 1.3.0 release.
--------------------------------------------------------------------------------
================================================================================
python-virtualenv-1.9.1-1.el6 (FEDORA-EPEL-2013-5801)
Tool to create isolated Python environments
--------------------------------------------------------------------------------
Update Information:
* Fixes two security issues with the bundled copy of pip:
- Insecure tempdir usage CVE-2013-1888
- Uses http:// to download packages instead of https://
See changelog at: http://pypi.python.org/pypi/virtualenv#id2
Multiple bugfixes. See http://pypi.python.org/pypi/virtualenv/1.7.1.2 for
information.
Multiple bugfixes. See http://pypi.python.org/pypi/virtualenv/1.7.1.2 for
information.
See changelog at: http://pypi.python.org/pypi/virtualenv#id2
Multiple bugfixes. See http://pypi.python.org/pypi/virtualenv/1.7.1.2 for
information.
Multiple bugfixes. See http://pypi.python.org/pypi/virtualenv/1.7.1.2 for
information.
See changelog at: http://pypi.python.org/pypi/virtualenv#id2
Multiple bugfixes. See http://pypi.python.org/pypi/virtualenv/1.7.1.2 for
information.
Multiple bugfixes. See http://pypi.python.org/pypi/virtualenv/1.7.1.2 for
information.
--------------------------------------------------------------------------------
ChangeLog:
* Tue May 14 2013 Toshio Kuratomi <[email protected]> - 1.9.1-1
- Update to upstream 1.9.1 because of security issues with the bundled
python-pip in older releases. This is just a quick fix until a
python-virtualenv maintainer can unbundle the python-pip package
see: https://bugzilla.redhat.com/show_bug.cgi?id=749378
* Thu Feb 14 2013 Fedora Release Engineering <[email protected]>
- 1.7.2-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild
* Tue Aug 14 2012 Steve Milner <[email protected]> - 1.7.2-1
- Update for upstream bug fixes.
- Added path for versioned binary.
- Patch no longer required.
* Sat Jul 21 2012 Fedora Release Engineering <[email protected]>
- 1.7.1.2-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
* Wed Mar 14 2012 Steve 'Ashcrow' Milner <[email protected]> - 1.7.1.2-1
- Update for upstream bug fixes.
- Added patch for sphinx building
* Sat Jan 14 2012 Fedora Release Engineering <[email protected]>
- 1.7-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #923974 - CVE-2013-1888 python-pip: insecure temporary directory
usage
https://bugzilla.redhat.com/show_bug.cgi?id=923974
--------------------------------------------------------------------------------
_______________________________________________
epel-devel mailing list
[email protected]
https://admin.fedoraproject.org/mailman/listinfo/epel-devel