The following Fedora 29 Security updates need testing: Age URL 49 https://bodhi.fedoraproject.org/updates/FEDORA-2019-49f80a78bc mingw-sqlite-3.26.0.0-1.fc29 30 https://bodhi.fedoraproject.org/updates/FEDORA-2019-fa5843e0e1 asterisk-16.2.1-1.fc29 24 https://bodhi.fedoraproject.org/updates/FEDORA-2019-4d83e78ad8 libu2f-host-1.1.8-1.fc29 24 https://bodhi.fedoraproject.org/updates/FEDORA-2019-f781d5c4c6 ntp-4.2.8p13-1.fc29 16 https://bodhi.fedoraproject.org/updates/FEDORA-2019-c84f291592 WALinuxAgent-2.2.38-1.fc29 12 https://bodhi.fedoraproject.org/updates/FEDORA-2019-bff1cbaba3 edk2-20190308stable-1.fc29 11 https://bodhi.fedoraproject.org/updates/FEDORA-2019-7528388823 chicken-5.0.0-2.fc29 10 https://bodhi.fedoraproject.org/updates/FEDORA-2019-35589cfcb5 drupal7-7.65-1.fc29 10 https://bodhi.fedoraproject.org/updates/FEDORA-2019-1d9be4b853 drupal8-8.6.13-1.fc29 6 https://bodhi.fedoraproject.org/updates/FEDORA-2019-db1e9b3002 mod_auth_mellon-0.14.0-5.fc29 6 https://bodhi.fedoraproject.org/updates/FEDORA-2019-117e425677 golang-googlecode-go-crypto-0-0.28.20190324gitb7391e9.fc29 2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-7d09431f07 flatpak-1.2.4-1.fc29 2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-fa61af95b3 aria2-1.34.0-4.fc29 2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-fa59f1ed49 clamav-0.101.2-1.fc29 2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-a66789a334 glpi-9.3.3-2.fc29 2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-817ff2201f pspp-1.2.0-2.fc29 0 https://bodhi.fedoraproject.org/updates/FEDORA-2019-e396eacd61 ntfs-3g-2017.3.23-11.fc29
The following Fedora 29 Critical Path updates have yet to be approved: Age URL 25 https://bodhi.fedoraproject.org/updates/FEDORA-2019-4d2303dc16 pungi-4.1.34-1.fc29 20 https://bodhi.fedoraproject.org/updates/FEDORA-2019-940d3922ce koji-1.17.0-5.fc29 19 https://bodhi.fedoraproject.org/updates/FEDORA-2019-5329292fc2 fedfind-4.2.2-1.fc29 python-productmd-1.20-1.fc29 16 https://bodhi.fedoraproject.org/updates/FEDORA-2019-96c964d319 sddm-0.18.0-4.fc29 13 https://bodhi.fedoraproject.org/updates/FEDORA-2019-ebfd1fe19b uboot-tools-2018.09-3.fc29 12 https://bodhi.fedoraproject.org/updates/FEDORA-2019-bff1cbaba3 edk2-20190308stable-1.fc29 12 https://bodhi.fedoraproject.org/updates/FEDORA-2019-7c323cc0a7 lxpanel-0.10.0-2.D20190301gitb9ad6f2a.fc29 11 https://bodhi.fedoraproject.org/updates/FEDORA-2019-f4b2308023 iproute-5.0.0-2.fc29 11 https://bodhi.fedoraproject.org/updates/FEDORA-2019-ec5e8e23ba osinfo-db-20190319-1.fc29 4 https://bodhi.fedoraproject.org/updates/FEDORA-2019-d04731547a python3-3.7.3-1.fc29 4 https://bodhi.fedoraproject.org/updates/FEDORA-2019-85896b401a audit-3.0-0.7.20190326git03e7489.fc29 4 https://bodhi.fedoraproject.org/updates/FEDORA-2019-412c8b4a63 pcre2-10.32-9.fc29 2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-adecec7468 kernel-5.0.5-200.fc29 kernel-headers-5.0.5-200.fc29 kernel-tools-5.0.5-200.fc29 2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-7d09431f07 flatpak-1.2.4-1.fc29 0 https://bodhi.fedoraproject.org/updates/FEDORA-2019-e396eacd61 ntfs-3g-2017.3.23-11.fc29
The following builds have been pushed to Fedora 29 updates-testing
bindfs-1.13.11-1.fc29 byobu-5.127-3.fc29 cacti-1.2.3-1.fc29 cacti-spine-1.2.3-1.fc29 highlight-3.50-1.fc29 kiwi-9.17.34-2.fc29 libmodsecurity-3.0.3-1.fc29 ocaml-merlin-3.2.2-2.fc29 oz-0.17.0-1.fc29 perl-DBIx-RunSQL-0.21-1.fc29 perl-File-Edit-Portable-1.24-10.fc29 perl-Mock-Sub-1.09-6.fc29 python-notebook-5.7.7-1.fc29 recoll-1.25.11-1.fc29 scidavis-1.25-3.fc29 termy-qt-1.1.4-5.fc29 xfce4-screenshooter-1.9.5-1.fc29 xfce4-whiskermenu-plugin-2.3.2-1.fc29 yadifa-2.3.9-1.fc29
Details about builds:
================================================================================ bindfs-1.13.11-1.fc29 (FEDORA-2019-ea2c4679ff) Fuse filesystem to mirror a directory -------------------------------------------------------------------------------- Update Information:
- update to new version 1.13.11 fixes rhbz #1694427 - ChangeLog https://bindfs.org/docs/ChangeLog.utf8.txt -------------------------------------------------------------------------------- ChangeLog:
* Sun Mar 31 2019 Filipe Rosset rosset.filipe@gmail.com - 1.13.11-1 - update to new version 1.13.11 fixes rhbz #1694427 - ChangeLog https://bindfs.org/docs/ChangeLog.utf8.txt * Thu Jan 31 2019 Fedora Release Engineering releng@fedoraproject.org - 1.13.10-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1694427 - bindfs-1.13.11 is available https://bugzilla.redhat.com/show_bug.cgi?id=1694427 --------------------------------------------------------------------------------
================================================================================ byobu-5.127-3.fc29 (FEDORA-2019-b6d1d8742d) Light-weight, configurable window manager built upon GNU screen -------------------------------------------------------------------------------- Update Information:
- Switch to Python 3 (#1532565) -------------------------------------------------------------------------------- ChangeLog:
* Wed Mar 27 2019 Miro Hron��ok mhroncok@redhat.com - 5.127-3 - Switch to Python 3 (#1532565) * Thu Jan 31 2019 Fedora Release Engineering releng@fedoraproject.org - 5.127-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1532565 - byobu: switch to Python 3 https://bugzilla.redhat.com/show_bug.cgi?id=1532565 --------------------------------------------------------------------------------
================================================================================ cacti-1.2.3-1.fc29 (FEDORA-2019-a06b0499de) An rrd based graphing tool -------------------------------------------------------------------------------- Update Information:
- Update to 1.2.3 Release notes: https://www.cacti.net/release_notes.php?version=1.2.3 -------------------------------------------------------------------------------- ChangeLog:
* Sun Mar 31 2019 Morten Stevens mstevens@fedoraproject.org - 1.2.3-1 - Update to 1.2.3 --------------------------------------------------------------------------------
================================================================================ cacti-spine-1.2.3-1.fc29 (FEDORA-2019-a06b0499de) Threaded poller for Cacti written in C -------------------------------------------------------------------------------- Update Information:
- Update to 1.2.3 Release notes: https://www.cacti.net/release_notes.php?version=1.2.3 -------------------------------------------------------------------------------- ChangeLog:
* Sun Mar 31 2019 Morten Stevens mstevens@fedoraproject.org - 1.2.3-1 - Update to 1.2.3 --------------------------------------------------------------------------------
================================================================================ highlight-3.50-1.fc29 (FEDORA-2019-614096801f) Universal source code to formatted text converter -------------------------------------------------------------------------------- Update Information:
- Updated to new 3.50 upstream version -------------------------------------------------------------------------------- ChangeLog:
* Sun Mar 31 2019 Filipe Rosset rosset.filipe@gmail.com - 3.50-1 - Updated to new 3.50 upstream version * Fri Feb 1 2019 Fedora Release Engineering releng@fedoraproject.org - 3.48-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ kiwi-9.17.34-2.fc29 (FEDORA-2019-93a7015650) Flexible operating system image builder -------------------------------------------------------------------------------- Update Information:
Update to 9.17.34, which adds support for building OCI images with buildah, when available. -------------------------------------------------------------------------------- ChangeLog:
* Sun Mar 31 2019 Neal Gompa ngompa13@gmail.com - 9.17.34-2 - Do not require buildah on x86_32 and ppc64 * Sun Mar 31 2019 Neal Gompa ngompa13@gmail.com - 9.17.34-1 - Upgrade to 9.17.34 (RH#1688338) - Patch to use buildah by default instead of umoci for OCI image builds -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1688338 - kiwi-9.17.34 is available https://bugzilla.redhat.com/show_bug.cgi?id=1688338 --------------------------------------------------------------------------------
================================================================================ libmodsecurity-3.0.3-1.fc29 (FEDORA-2019-9a7ee8ddd8) A library that loads/interprets rules written in the ModSecurity SecRules -------------------------------------------------------------------------------- Update Information:
Update to 3.0.3 (rhbz #1672678) -------------------------------------------------------------------------------- ChangeLog:
* Sun Mar 31 2019 Athmane Madjoudj athmane@fedoraproject.org - 3.0.3-1 - Update to 3.0.3 (rhbz #1672678) - Remove pkg-config bits since it's included in this release * Fri Feb 1 2019 Fedora Release Engineering releng@fedoraproject.org - 3.0.2-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild * Fri Oct 19 2018 Dridi Boukelmoune dridi@fedoraproject.org - 3.0.2-4 - Back-port of modsecurity.pc -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1672678 - libmodsecurity: update to 3.0.3 release https://bugzilla.redhat.com/show_bug.cgi?id=1672678 --------------------------------------------------------------------------------
================================================================================ ocaml-merlin-3.2.2-2.fc29 (FEDORA-2019-1a7efb679c) Context sensitive completion for OCaml in Vim and Emacs -------------------------------------------------------------------------------- Update Information:
Merlin is an assistant for editing OCaml code. It aims to provide the features available in modern IDEs: error reporting, auto completion, source browsing and much more. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1684401 - Review Request: ocaml-merlin - Context sensitive completion for OCaml in Vim and Emacs https://bugzilla.redhat.com/show_bug.cgi?id=1684401 --------------------------------------------------------------------------------
================================================================================ oz-0.17.0-1.fc29 (FEDORA-2019-c40790d318) Library and utilities for automated guest OS installs -------------------------------------------------------------------------------- Update Information:
0.17.0 is releases, UEFI fixes, improvements on Arm, Conditionalise py3 support -------------------------------------------------------------------------------- ChangeLog:
* Tue Mar 26 2019 Peter Robinson pbrobinson@fedoraproject.org 0.17.0-1 - Conditionalise py3 support - 0.17.0 is releases, minor cleanups * Sat Mar 16 2019 Chris Lalancette clalancette@gmail.com - 0.17.0-0.3 - Update to latest upstream changes for Python 3 * Wed Mar 13 2019 Peter Robinson pbrobinson@fedoraproject.org 0.17.0-0.2 - Rebase to latest PR for ARMv7/aarch64 UEFI * Thu Feb 28 2019 Peter Robinson pbrobinson@fedoraproject.org 0.17.0-0.1 - Upstream git 0.17 snapshot - ARMv7 fixes and support for UEFI - UEFI fixes for x86_64 and aarch64 * Fri Feb 1 2019 Fedora Release Engineering releng@fedoraproject.org - 0.16.0-8 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ perl-DBIx-RunSQL-0.21-1.fc29 (FEDORA-2019-e70c9b263a) Run SQL commands from a file -------------------------------------------------------------------------------- Update Information:
0.21 2019-03-09 * Use Module::Load to load renderers * Check if a class isa Text::Table, otherwise dispatch to Text::Table::Any. This allows for rendering tables as HTML easily if you install Text::Table::Any * Properly install C<run- sql.pl> -------------------------------------------------------------------------------- ChangeLog:
* Sat Mar 30 2019 Denis Fateyev denis@fateyev.com - 0.21-1 - Update to 0.21 release * Fri Feb 1 2019 Fedora Release Engineering releng@fedoraproject.org - 0.20-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1688648 - Upgrade perl-DBIx-RunSQL to 0.21 https://bugzilla.redhat.com/show_bug.cgi?id=1688648 --------------------------------------------------------------------------------
================================================================================ perl-File-Edit-Portable-1.24-10.fc29 (FEDORA-2019-e570fe8c4e) Read and write files while keeping the original line-endings intact -------------------------------------------------------------------------------- Update Information:
Dropped RELEASE tests -------------------------------------------------------------------------------- ChangeLog:
* Sat Mar 30 2019 Denis Fateyev denis@fateyev.com - 1.24-10 - Dropped RELEASE tests * Fri Feb 1 2019 Fedora Release Engineering releng@fedoraproject.org - 1.24-9 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1679590 - perl-File-Edit-Portable-1.24-9.fc30 FTBFS: files are not named in the MANIFEST file: /builddir/build/BUILD/File-Edit-Portable-1.24/debugfiles.list https://bugzilla.redhat.com/show_bug.cgi?id=1679590 --------------------------------------------------------------------------------
================================================================================ perl-Mock-Sub-1.09-6.fc29 (FEDORA-2019-686e1a6fde) Mock package, object and standard subroutines, with unit testing in mind -------------------------------------------------------------------------------- Update Information:
Dropped RELEASE tests -------------------------------------------------------------------------------- ChangeLog:
* Sat Mar 30 2019 Denis Fateyev denis@fateyev.com - 1.09-6 - Dropped RELEASE tests * Fri Feb 1 2019 Fedora Release Engineering releng@fedoraproject.org - 1.09-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1679592 - perl-Mock-Sub-1.09-5.fc30 FTBFS: files are not named in the MANIFEST file: /builddir/build/BUILD/Mock-Sub-1.09/debugfiles.list https://bugzilla.redhat.com/show_bug.cgi?id=1679592 --------------------------------------------------------------------------------
================================================================================ python-notebook-5.7.7-1.fc29 (FEDORA-2019-9e67979b2a) A web-based notebook environment for interactive computing -------------------------------------------------------------------------------- Update Information:
Security fix for CVE-2019-10255, CVE-2019-9644. -------------------------------------------------------------------------------- ChangeLog:
* Sun Mar 31 2019 Miro Hron��ok mhroncok@redhat.com - 5.7.7-1 - Update to 5.7.7, fix CVE-2019-9644 and CVE-2019-10255 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1694274 - CVE-2019-10255 python-notebook: Open redirect vulnerability in the login page https://bugzilla.redhat.com/show_bug.cgi?id=1694274 [ 2 ] Bug #1689855 - CVE-2019-9644 python-notebook: XSSI due to invalid javascript https://bugzilla.redhat.com/show_bug.cgi?id=1689855 --------------------------------------------------------------------------------
================================================================================ recoll-1.25.11-1.fc29 (FEDORA-2019-f5e03152c7) Desktop full text search tool with Qt GUI -------------------------------------------------------------------------------- Update Information:
Update to latest upstream release recoll 1.25.11. -------------------------------------------------------------------------------- ChangeLog:
* Sun Mar 31 2019 Terje Rosten terje.rosten@ntnu.no - 1.25.11-1 - 1.25.11 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1691426 - recoll-1.25.11 is available https://bugzilla.redhat.com/show_bug.cgi?id=1691426 --------------------------------------------------------------------------------
================================================================================ scidavis-1.25-3.fc29 (FEDORA-2019-9292ce9078) Application for Scientific Data Analysis and Visualization -------------------------------------------------------------------------------- Update Information:
This update fixes [sf bug #378](https://sourceforge.net/p/scidavis/scidavis- bugs/378/), 3D plot colors reverting to black upon reloading a project. -------------------------------------------------------------------------------- ChangeLog:
* Sun Mar 31 2019 Alexander Ploumistos alexpl@fedoraproject.org - 1.25-3 - Backport fix for 3D plot colors reverting to black --------------------------------------------------------------------------------
================================================================================ termy-qt-1.1.4-5.fc29 (FEDORA-2019-02fff2dc1b) TermySequence terminal multiplexer client -------------------------------------------------------------------------------- Update Information:
qt: Use case-insensitive hostname comparison -------------------------------------------------------------------------------- ChangeLog:
* Tue Mar 26 2019 Eamon Walsh ewalsh@termysequence.com - 1.1.4-5 - qt: Use case-insensitive hostname comparison --------------------------------------------------------------------------------
================================================================================ xfce4-screenshooter-1.9.5-1.fc29 (FEDORA-2019-f7900d799d) Screenshot utility for the Xfce desktop -------------------------------------------------------------------------------- Update Information:
Update to 1.9.5 -------------------------------------------------------------------------------- ChangeLog:
* Sun Mar 31 2019 Mukundan Ragavan nonamedotc@fedoraproject.org - 1.9.5-1 - Update to 1.9.5 --------------------------------------------------------------------------------
================================================================================ xfce4-whiskermenu-plugin-2.3.2-1.fc29 (FEDORA-2019-db127d58b4) An alternate application launcher for Xfce -------------------------------------------------------------------------------- Update Information:
Update to 2.3.2 -------------------------------------------------------------------------------- ChangeLog:
* Sun Mar 31 2019 Mukundan Ragavan nonamedotc@fedoraproject.org - 2.3.2-1 - Update to 2.3.2 * Sun Feb 3 2019 Fedora Release Engineering releng@fedoraproject.org - 2.3.1-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ yadifa-2.3.9-1.fc29 (FEDORA-2019-968bf1d5a3) Lightweight authoritative Name Server with DNSSEC capabilities -------------------------------------------------------------------------------- Update Information:
20190211: YADIFA 2.3.9 - Fixes an issue handling some rdata containing a domain set to '.' -------------------------------------------------------------------------------- ChangeLog:
* Sat Mar 30 2019 Denis Fateyev denis@fateyev.com - 2.3.9-1 - Update to 2.3.9 release * Sun Feb 3 2019 Fedora Release Engineering releng@fedoraproject.org - 2.3.8-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1674559 - yadifa-2.3.9 is available https://bugzilla.redhat.com/show_bug.cgi?id=1674559 --------------------------------------------------------------------------------