The following Fedora 27 Security updates need testing: Age URL 10 https://bodhi.fedoraproject.org/updates/FEDORA-2017-25114a9d7f drupal7-views-3.18-1.fc27 9 https://bodhi.fedoraproject.org/updates/FEDORA-2017-b444c3b9c5 libwmf-0.2.8.4-53.fc27 6 https://bodhi.fedoraproject.org/updates/FEDORA-2017-15819d2c37 jasper-2.0.14-1.fc27 4 https://bodhi.fedoraproject.org/updates/FEDORA-2017-0cc84101de python-jwt-1.5.3-1.fc27 2 https://bodhi.fedoraproject.org/updates/FEDORA-2017-7af44272e2 ImageMagick-6.9.9.13-1.fc27 rubygem-rmagick-2.16.0-6.fc27 1 https://bodhi.fedoraproject.org/updates/FEDORA-2017-1136e13b6a php-horde-Horde-Image-2.5.2-1.fc27 1 https://bodhi.fedoraproject.org/updates/FEDORA-2017-aaefb84ff3 wordpress-4.8.2-1.fc27 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-23dba9fb5d kernel-4.13.3-300.fc27 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-d270e932a3 nagios-4.3.4-3.fc27 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-e3fcecbae7 php-horde-passwd-5.0.7-1.fc27 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-346d6e00dd php-horde-wicked-2.0.8-1.fc27 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-52ed023208 php-horde-nag-4.2.17-1.fc27 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-fdd3a98e8f httpd-2.4.27-8.fc27 0 https://bodhi.fedoraproject.org/updates/FEDORA-2017-f0c18420e8 samba-4.7.0-12.fc27
The following builds have been pushed to Fedora 27 updates-testing
NetworkManager-openvpn-1.8.0-1.fc27 R-testit-0.7-2.fc27 abook-0.6.1-7.fc27 amavisd-new-2.11.0-10.fc27 anaconda-27.20.1-5.fc27 ansible-lint-3.4.15-1.fc27 bodhi-2.11.0-1.fc27 cmst-2017.09.01-1.gitdc8c83b.fc27 cri-o-1.0.0-1.rc2.git6784a66.fc27 debhelper-10.9-1.fc27 ecj-4.7.1-1.fc27 eclipse-4.7.1-4.fc27 eclipse-cdt-9.3.2-1.fc27 eclipse-ecf-3.13.8-1.fc27 eclipse-epp-logging-2.0.6-1.fc27 eclipse-launchbar-2.1.2-2.fc27 eclipse-linuxtools-6.1.1-2.fc27 eclipse-mpc-1.6.1-1.fc27 eclipse-ptp-9.1.3-1.fc27 fail2ban-0.10.0-1.fc27 fzf-0.17.0.2-1.fc27 gala-0.3.0-0.git126.4fe5.1.fc27 ghc-sandi-0.4.1-1.fc27 gjs-1.50.0-1.fc27 gnome-shell-extension-topicons-plus-21-1.fc27 gnome-tweak-tool-3.26.1-1.fc27 gnome-weather-3.26.0-2.fc27 go-i18n-1.9.0-1.fc27 golang-github-calmh-luhn-2.0.0-1.fc27 golang-github-dgrijalva-jwt-go-2.2.0-8.fc27 golang-github-golang-sys-0-0.14.gite48874b.fc27 golang-github-olekukonko-tablewriter-0-0.8.gita0225b3.fc27 grub2-2.02-18.fc27 gsmartcontrol-1.1.0-2.fc27 gtk-doc-1.26-1.fc27 httpd-2.4.27-8.fc27 hunspell-en-0.20140811.1-8.fc27 ibus-1.5.16-11.fc27 iio-sensor-proxy-2.3-1.fc27 kernel-4.13.3-300.fc27 light-1.0-1.fc27 mate-desktop-1.19.0-4.fc27 mate-themes-3.22.14-1.fc27 module-build-service-1.3.30-2.fc27 mono-4.8.0-12.fc27 mozjs52-52.3.0-1.fc27 nagios-4.3.4-3.fc27 network-manager-applet-1.8.4-1.fc27 oci-umount-2.2.0-2.git0a4dcd6.fc27 orion-1.6.1-1.fc27 perl-CPAN-Perl-Releases-3.36-1.fc27 perl-Module-CoreList-5.20170920-1.fc27 php-horde-nag-4.2.17-1.fc27 php-horde-passwd-5.0.7-1.fc27 php-horde-wicked-2.0.8-1.fc27 php-zendframework-zend-hydrator-2.3.0-1.fc27 proftpd-1.3.6-6.fc27 python-dropbox-8.2.0-1.fc27 python-martian-0.15-1.fc27 python-sphinx-1.6.3-3.fc27 rakudo-URI-0.1.4-0.1.20170920gite5c8551.fc27 samba-4.7.0-12.fc27 shim-signed-13-0.6 shim-unsigned-aarch64-13-3.fc27 shim-unsigned-x64-13-3.fc27 siril-0.9.7-1.fc27 sqlitebrowser-3.10.1-1.fc27 sscg-2.2.0-1.fc27 tiled-1.0.3-1.fc27 transtats-cli-0.1.0-3.fc27 vulkan-1.0.61.1-1.fc27 why-2.39-1.fc27 wine-2.17-1.fc27 wxPython-3.0.2.0-20.fc27 x2goclient-4.1.0.1-1.fc27 xflr5-6.39-1.fc27 zeitgeist-1.0-5.fc27
Details about builds:
================================================================================ NetworkManager-openvpn-1.8.0-1.fc27 (FEDORA-2017-46106470aa) NetworkManager VPN plugin for OpenVPN -------------------------------------------------------------------------------- Update Information:
Update to 1.8.0 release --------------------------------------------------------------------------------
================================================================================ R-testit-0.7-2.fc27 (FEDORA-2017-0ac5199b3b) A Simple Package for Testing R Packages -------------------------------------------------------------------------------- Update Information:
Initial package of testit for R. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1493026 - Review Request: R-testit - A Simple Package for Testing R Packages https://bugzilla.redhat.com/show_bug.cgi?id=1493026 --------------------------------------------------------------------------------
================================================================================ abook-0.6.1-7.fc27 (FEDORA-2017-9981776ad5) Text-based addressbook program for mutt -------------------------------------------------------------------------------- Update Information:
Minor update fixing two bugs: [file descriptor leak](https://sourceforge.net/p/abook/bugs/6/) and [man page update](https://sourceforge.net/p/abook/bugs/8/). --------------------------------------------------------------------------------
================================================================================ amavisd-new-2.11.0-10.fc27 (FEDORA-2017-e6970bb87e) Email filter with virus scanner and spamassassin support -------------------------------------------------------------------------------- Update Information:
Remove lrzip dependency --------------------------------------------------------------------------------
================================================================================ anaconda-27.20.1-5.fc27 (FEDORA-2017-3184b77d1e) Graphical system installer -------------------------------------------------------------------------------- Update Information:
Fix missing enviromnent translation (#1491119) (jkonecny) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1491119 - server/workstation netinst in text mode crashes with pyanaconda.payload.NoSuchGroup: 3 https://bugzilla.redhat.com/show_bug.cgi?id=1491119 --------------------------------------------------------------------------------
================================================================================ ansible-lint-3.4.15-1.fc27 (FEDORA-2017-b2841c0c4e) Best practices checker for Ansible -------------------------------------------------------------------------------- Update Information:
Update to 3.4.15 version --------------------------------------------------------------------------------
================================================================================ bodhi-2.11.0-1.fc27 (FEDORA-2017-eb30e55080) A modular framework that facilitates publishing software updates -------------------------------------------------------------------------------- Update Information:
Update to [bodhi-2.11.0](https://github.com/fedora- infra/bodhi/releases/tag/2.11.0). -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1493587 - bodhi-2.11.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1493587 --------------------------------------------------------------------------------
================================================================================ cmst-2017.09.01-1.gitdc8c83b.fc27 (FEDORA-2017-75fe4dfe68) A Qt based GUI front end for the connman connection manager with systemtray icon -------------------------------------------------------------------------------- Update Information:
Update to 2017.09.01-1.gitdc8c83b -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1493528 - cmst-2017-09-19 is available https://bugzilla.redhat.com/show_bug.cgi?id=1493528 --------------------------------------------------------------------------------
================================================================================ cri-o-1.0.0-1.rc2.git6784a66.fc27 (FEDORA-2017-77481d4f21) OCI-based implementation of Kubernetes Container Runtime Interface -------------------------------------------------------------------------------- Update Information:
bump to 1.0.0-rc2 -------------------------------------------------------------------------------- ChangeLog:
* Wed Sep 20 2017 Lokesh Mandvekar lsm5@fedoraproject.org - 1.0.0-1.rc2.git6784a66 - bump to v1.0.0-rc2 * Tue Sep 12 2017 Dan Walsh dwalsh@redhat.com - 1.0.0.rc1-2.gitbb1da97 - Change default storage to overlay not overlay2, which shoulf fix issues with kpod working out of the box. * Fri Sep 8 2017 Dan Walsh dwalsh@redhat.com - 1.0.0.rc1-1.gitbb1da97 - Bugs, stability and performance fixes - Moved from kubernetes 1.6 to 1.7 - cadvisor isupport - Full kube e2e tests coverage. We are now gating pull requests on kube e2e (we were gating them just on node-e2e). - Continue working on kpod - kpod cp - kpod diff - kpod export - kpod logs - kpod mount - kpod ps - kpod rename - kpod stats - kpod umount * Tue Sep 5 2017 Lokesh Mandvekar lsm5@fedoraproject.org - 1.0.0.beta.0-3.gitf9387ac - btrfs_noversion in BUILDTAGS for previous build was in error * Tue Sep 5 2017 Lokesh Mandvekar lsm5@fedoraproject.org - 1.0.0.beta.0-2.gitf9387ac - bump to latest master - use runc >= 2:1.0.0-10 --------------------------------------------------------------------------------
================================================================================ debhelper-10.9-1.fc27 (FEDORA-2017-507dff15a9) Helper programs for Debian rules -------------------------------------------------------------------------------- Update Information:
Update to 10.9 (#1493320) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1493320 - debhelper-10.9 is available https://bugzilla.redhat.com/show_bug.cgi?id=1493320 --------------------------------------------------------------------------------
================================================================================ ecj-4.7.1-1.fc27 (FEDORA-2017-19e385a17c) Eclipse Compiler for Java -------------------------------------------------------------------------------- Update Information:
Updates the Eclipse Platform, JDT and PDE to Oxygen.1 releases, see the upstream release notes: https://www.eclipse.org/eclipse/news/4.7.1/ --------------------------------------------------------------------------------
================================================================================ eclipse-4.7.1-4.fc27 (FEDORA-2017-19e385a17c) An open, extensible IDE -------------------------------------------------------------------------------- Update Information:
Updates the Eclipse Platform, JDT and PDE to Oxygen.1 releases, see the upstream release notes: https://www.eclipse.org/eclipse/news/4.7.1/ --------------------------------------------------------------------------------
================================================================================ eclipse-cdt-9.3.2-1.fc27 (FEDORA-2017-1cdb877589) Eclipse C/C++ Development Tools (CDT) plugin -------------------------------------------------------------------------------- Update Information:
Updates Linuxtools and CDT to Oxygen.1 releases. --------------------------------------------------------------------------------
================================================================================ eclipse-ecf-3.13.8-1.fc27 (FEDORA-2017-19e385a17c) Eclipse Communication Framework (ECF) Eclipse plug-in -------------------------------------------------------------------------------- Update Information:
Updates the Eclipse Platform, JDT and PDE to Oxygen.1 releases, see the upstream release notes: https://www.eclipse.org/eclipse/news/4.7.1/ --------------------------------------------------------------------------------
================================================================================ eclipse-epp-logging-2.0.6-1.fc27 (FEDORA-2017-19e385a17c) Eclipse Error Reporting tool -------------------------------------------------------------------------------- Update Information:
Updates the Eclipse Platform, JDT and PDE to Oxygen.1 releases, see the upstream release notes: https://www.eclipse.org/eclipse/news/4.7.1/ --------------------------------------------------------------------------------
================================================================================ eclipse-launchbar-2.1.2-2.fc27 (FEDORA-2017-1cdb877589) Eclipse Launchbar plug-in -------------------------------------------------------------------------------- Update Information:
Updates Linuxtools and CDT to Oxygen.1 releases. --------------------------------------------------------------------------------
================================================================================ eclipse-linuxtools-6.1.1-2.fc27 (FEDORA-2017-1cdb877589) Linux specific Eclipse plugins -------------------------------------------------------------------------------- Update Information:
Updates Linuxtools and CDT to Oxygen.1 releases. --------------------------------------------------------------------------------
================================================================================ eclipse-mpc-1.6.1-1.fc27 (FEDORA-2017-19e385a17c) Eclipse Marketplace Client -------------------------------------------------------------------------------- Update Information:
Updates the Eclipse Platform, JDT and PDE to Oxygen.1 releases, see the upstream release notes: https://www.eclipse.org/eclipse/news/4.7.1/ --------------------------------------------------------------------------------
================================================================================ eclipse-ptp-9.1.3-1.fc27 (FEDORA-2017-1cdb877589) Eclipse Parallel Tools Platform -------------------------------------------------------------------------------- Update Information:
Updates Linuxtools and CDT to Oxygen.1 releases. --------------------------------------------------------------------------------
================================================================================ fail2ban-0.10.0-1.fc27 (FEDORA-2017-af238d8e30) Daemon to ban hosts that cause multiple authentication errors -------------------------------------------------------------------------------- Update Information:
Update to 0.10.0: IPv6 support, faster more then ever, more secure, many new features etc. See the [ChangeLog](https://github.com/fail2ban/fail2ban/blob/0.10/ChangeLog) for more information. Compatibility warning: Although we have endeavoured to maintain the backwards-compatibility, some custom filter or action configuration files resp. distribution-relevant configs of 0.9th version could be incompatible with this release. Please check it after upgrade to new version. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1356573 - fail2ban-0.10.0a1 is available https://bugzilla.redhat.com/show_bug.cgi?id=1356573 --------------------------------------------------------------------------------
================================================================================ fzf-0.17.0.2-1.fc27 (FEDORA-2017-1edb41dca2) A command-line fuzzy finder written in Go -------------------------------------------------------------------------------- Update Information:
Initial package of fzf for Fedora. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1483203 - Review Request: fzf - A command-line fuzzy finder written in Go https://bugzilla.redhat.com/show_bug.cgi?id=1483203 --------------------------------------------------------------------------------
================================================================================ gala-0.3.0-0.git126.4fe5.1.fc27 (FEDORA-2017-4b26a71416) Gala window manager -------------------------------------------------------------------------------- Update Information:
Bump to git snapshot 126 (commit 4fe5dea). --------------------------------------------------------------------------------
================================================================================ ghc-sandi-0.4.1-1.fc27 (FEDORA-2017-b1112d982b) Data encoding library -------------------------------------------------------------------------------- Update Information:
Initial package of sandi for Haskell. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1487896 - Review Request: ghc-sandi - Data encoding library https://bugzilla.redhat.com/show_bug.cgi?id=1487896 --------------------------------------------------------------------------------
================================================================================ gjs-1.50.0-1.fc27 (FEDORA-2017-275b1e9bf2) Javascript Bindings for GNOME -------------------------------------------------------------------------------- Update Information:
gjs 1.50.0 release, together with its new mozjs52 dependency. Also included is gnome-weather 3.26.0 update that is tightly coupled with latest gjs features. Notably, this update should help improve gnome-shell stability in F27, fixing a common crash that a number of people have been running into. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1490432 - gnome-weather-3.25.9x needs gjs >= 1.49.4 https://bugzilla.redhat.com/show_bug.cgi?id=1490432 [ 2 ] Bug #1490351 - gnome-shell crashes 10+ times a day due to gjs bug, we need to either upgrade to 1.49.92 or downgrade to 1.48.7 https://bugzilla.redhat.com/show_bug.cgi?id=1490351 [ 3 ] Bug #1456293 - [abrt] gnome-shell: js::GCMethods<JSObject*>::needsPostBarrier(): gnome-shell killed by signal 11 https://bugzilla.redhat.com/show_bug.cgi?id=1456293 --------------------------------------------------------------------------------
================================================================================ gnome-shell-extension-topicons-plus-21-1.fc27 (FEDORA-2017-2cc0e3b266) Move all legacy tray icons to the top panel -------------------------------------------------------------------------------- Update Information:
Bump to upstream version 21, which includes new translations and code optimizations. --------------------------------------------------------------------------------
================================================================================ gnome-tweak-tool-3.26.1-1.fc27 (FEDORA-2017-021ed1b6ff) A tool to customize advanced GNOME 3 options -------------------------------------------------------------------------------- Update Information:
gnome-tweak-tool 3.26.1 release. * Fix enabling and disabling GNOME Shell extensions * Fix Workspace tweaks in GNOME Shell and "modes" * Hide Workspaces panel if GNOME Shell isn't running --------------------------------------------------------------------------------
================================================================================ gnome-weather-3.26.0-2.fc27 (FEDORA-2017-275b1e9bf2) A weather application for GNOME -------------------------------------------------------------------------------- Update Information:
gjs 1.50.0 release, together with its new mozjs52 dependency. Also included is gnome-weather 3.26.0 update that is tightly coupled with latest gjs features. Notably, this update should help improve gnome-shell stability in F27, fixing a common crash that a number of people have been running into. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1490432 - gnome-weather-3.25.9x needs gjs >= 1.49.4 https://bugzilla.redhat.com/show_bug.cgi?id=1490432 [ 2 ] Bug #1490351 - gnome-shell crashes 10+ times a day due to gjs bug, we need to either upgrade to 1.49.92 or downgrade to 1.48.7 https://bugzilla.redhat.com/show_bug.cgi?id=1490351 [ 3 ] Bug #1456293 - [abrt] gnome-shell: js::GCMethods<JSObject*>::needsPostBarrier(): gnome-shell killed by signal 11 https://bugzilla.redhat.com/show_bug.cgi?id=1456293 --------------------------------------------------------------------------------
================================================================================ go-i18n-1.9.0-1.fc27 (FEDORA-2017-5e2c99911b) Translate Go programs into multiple languages -------------------------------------------------------------------------------- Update Information:
Update version --------------------------------------------------------------------------------
================================================================================ golang-github-calmh-luhn-2.0.0-1.fc27 (FEDORA-2017-9dc7d871da) Luhn-mod-N implementation in Go -------------------------------------------------------------------------------- Update Information:
Update to version 2.0.0. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1493803 - golang-github-calmh-luhn-v2.0.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1493803 --------------------------------------------------------------------------------
================================================================================ golang-github-dgrijalva-jwt-go-2.2.0-8.fc27 (FEDORA-2017-e792b28237) Golang implementation of JSON Web Tokens (JWT) -------------------------------------------------------------------------------- Update Information:
Bump to upstream d2709f9f1f31ebcda9651b03077758c1f3a0018c -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1494131 - Tracker for golang-github-dgrijalva-jwt-go https://bugzilla.redhat.com/show_bug.cgi?id=1494131 --------------------------------------------------------------------------------
================================================================================ golang-github-golang-sys-0-0.14.gite48874b.fc27 (FEDORA-2017-19d7a05f7e) Go packages for low-level interaction with the operating system -------------------------------------------------------------------------------- Update Information:
Bump to upstream e48874b42435b4347fc52bdee0424a52abc974d7 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1362531 - Tracker for golang-github-golang-sys https://bugzilla.redhat.com/show_bug.cgi?id=1362531 --------------------------------------------------------------------------------
================================================================================ golang-github-olekukonko-tablewriter-0-0.8.gita0225b3.fc27 (FEDORA-2017-f9911436d2) ASCII table in golang -------------------------------------------------------------------------------- Update Information:
Bump to upstream a0225b3f23b5ce0cbec6d7a66a968f8a59eca9c4 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1320304 - Tracker for golang-github-olekukonko-tablewriter https://bugzilla.redhat.com/show_bug.cgi?id=1320304 --------------------------------------------------------------------------------
================================================================================ grub2-2.02-18.fc27 (FEDORA-2017-7c50b72f8f) Bootloader with support for Linux, Multiboot and more -------------------------------------------------------------------------------- Update Information:
Update to work around some provides/requires issues on Aarch64. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1491045 - AArch64 install fails with 'The package 'grub2' is required for this installation.' https://bugzilla.redhat.com/show_bug.cgi?id=1491045 --------------------------------------------------------------------------------
================================================================================ gsmartcontrol-1.1.0-2.fc27 (FEDORA-2017-eb88b1274b) Graphical user interface for smartctl -------------------------------------------------------------------------------- Update Information:
Drop consolehelper. --------------------------------------------------------------------------------
================================================================================ gtk-doc-1.26-1.fc27 (FEDORA-2017-94fe2bc624) API documentation generation tool for GTK+ and GNOME -------------------------------------------------------------------------------- Update Information:
gtk-doc 1.26 release. - Remove tmpl support (gtkdoc-mktmpl) - Port all tools from bash/perl to python --------------------------------------------------------------------------------
================================================================================ httpd-2.4.27-8.fc27 (FEDORA-2017-fdd3a98e8f) Apache HTTP Server -------------------------------------------------------------------------------- Update Information:
This is a release fixing a security fix applied upstream, known as "optionsbleed" in popular parlance. It is relevant for hosted and co-located instances of Fedora (and why wouldn't you?). -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1490344 - CVE-2017-9798 httpd: Use-after-free by limiting unregistered HTTP method (Optionsbleed) https://bugzilla.redhat.com/show_bug.cgi?id=1490344 --------------------------------------------------------------------------------
================================================================================ hunspell-en-0.20140811.1-8.fc27 (FEDORA-2017-f9ec2608c3) English hunspell dictionaries -------------------------------------------------------------------------------- Update Information:
* Treat etc/etc. the same in en_GB/AU/... as en_US -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1492306 - English (Australia) marks "etc etc." as misspelled https://bugzilla.redhat.com/show_bug.cgi?id=1492306 --------------------------------------------------------------------------------
================================================================================ ibus-1.5.16-11.fc27 (FEDORA-2017-8603ec1846) Intelligent Input Bus for Linux OS -------------------------------------------------------------------------------- Update Information:
Fixes the default font on Emojier -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1490733 - ���ibus emoji��� do not fit emoji descriptions and annotations with default Monospace https://bugzilla.redhat.com/show_bug.cgi?id=1490733 [ 2 ] Bug #1493551 - The candidate bar's location of ibus is wrong( HiDPI) https://bugzilla.redhat.com/show_bug.cgi?id=1493551 --------------------------------------------------------------------------------
================================================================================ iio-sensor-proxy-2.3-1.fc27 (FEDORA-2017-a6e8f94182) IIO accelerometer sensor to input device proxy -------------------------------------------------------------------------------- Update Information:
This release removes a work-around for long-standing kernel bug, and ignores accelerometers that are part of gaming devices. --------------------------------------------------------------------------------
================================================================================ kernel-4.13.3-300.fc27 (FEDORA-2017-23dba9fb5d) The Linux kernel -------------------------------------------------------------------------------- Update Information:
The 4.13.3 stable update contains a number of important fixes across the tree. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1493435 - kernel: NULL pointer dereference due to KEYCTL_READ on negative key https://bugzilla.redhat.com/show_bug.cgi?id=1493435 --------------------------------------------------------------------------------
================================================================================ light-1.0-1.fc27 (FEDORA-2017-bea35fa6b0) Control backlight controllers -------------------------------------------------------------------------------- Update Information:
initial package --------------------------------------------------------------------------------
================================================================================ mate-desktop-1.19.0-4.fc27 (FEDORA-2017-0ab959cefd) Shared code for mate-panel, mate-session, mate-file-manager, etc -------------------------------------------------------------------------------- Update Information:
- use default f27-backgrounds for f27 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1493739 - Mate-Compiz spin needs f27 default background for beta release https://bugzilla.redhat.com/show_bug.cgi?id=1493739 --------------------------------------------------------------------------------
================================================================================ mate-themes-3.22.14-1.fc27 (FEDORA-2017-61fd7bb9fd) MATE Desktop themes -------------------------------------------------------------------------------- Update Information:
- update to 3.22.14 --------------------------------------------------------------------------------
================================================================================ module-build-service-1.3.30-2.fc27 (FEDORA-2017-73957cfee9) The Module Build Service for Modularity -------------------------------------------------------------------------------- Update Information:
Latest upstream. ---- Some fixes: - https://pagure.io/fm-orchestrator/pull- request/698 - https://pagure.io/fm-orchestrator/pull-request/697 - https://pagure.io/fm-orchestrator/pull-request/693 - https://pagure.io/fm- orchestrator/pull-request/692 - https://pagure.io/fm-orchestrator/pull- request/691 ---- Latest upstream. - Optional Kerberos + LDAP Authentication for the server. - Correct "filtering" at build time: conflict with packages filtered out from the build-requires to ensure they won't appear in a buildroot. - Wait for components to be tagged also in final tag before marking module as done. This should fix an issue for the F27 compose. - Local mock builds no longer hardcode`x86_64` for architecture. ---- Latest upstream. ---- Backport patches to fix skiptests behavior --------------------------------------------------------------------------------
================================================================================ mono-4.8.0-12.fc27 (FEDORA-2017-cbac7d29f5) Cross-platform, Open Source, .NET development framework -------------------------------------------------------------------------------- Update Information:
this is a successful build after the mass rebuild for F27 --------------------------------------------------------------------------------
================================================================================ mozjs52-52.3.0-1.fc27 (FEDORA-2017-275b1e9bf2) SpiderMonkey JavaScript library -------------------------------------------------------------------------------- Update Information:
gjs 1.50.0 release, together with its new mozjs52 dependency. Also included is gnome-weather 3.26.0 update that is tightly coupled with latest gjs features. Notably, this update should help improve gnome-shell stability in F27, fixing a common crash that a number of people have been running into. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1490432 - gnome-weather-3.25.9x needs gjs >= 1.49.4 https://bugzilla.redhat.com/show_bug.cgi?id=1490432 [ 2 ] Bug #1490351 - gnome-shell crashes 10+ times a day due to gjs bug, we need to either upgrade to 1.49.92 or downgrade to 1.48.7 https://bugzilla.redhat.com/show_bug.cgi?id=1490351 [ 3 ] Bug #1456293 - [abrt] gnome-shell: js::GCMethods<JSObject*>::needsPostBarrier(): gnome-shell killed by signal 11 https://bugzilla.redhat.com/show_bug.cgi?id=1456293 --------------------------------------------------------------------------------
================================================================================ nagios-4.3.4-3.fc27 (FEDORA-2017-d270e932a3) Host/service/network monitoring program -------------------------------------------------------------------------------- Update Information:
Update to close CVE -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1482481 - CVE-2017-12847 nagios: Incorrect permissions for PID file [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1482481 [ 2 ] Bug #1490859 - CVE-2017-14312 nagios: Incorrect file permissions leading to possible privilege escalation [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1490859 [ 3 ] Bug #1480934 - nagios-4.3.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=1480934 [ 4 ] Bug #1377884 - CVE-2016-6209 nagios: Reflected XSS vulnerability and possible phishing vector [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1377884 [ 5 ] Bug #1377885 - nagios: web interface vulnerable to Cross-Site Request Forgery attacks [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1377885 [ 6 ] Bug #1402870 - CVE-2016-9566 nagios: Privilege escalation issue [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1402870 [ 7 ] Bug #1405364 - CVE-2016-9565 nagios: Command injection via curl in MagpieRSS [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1405364 [ 8 ] Bug #1405703 - nagios package is old and has a bug after install using dnf https://bugzilla.redhat.com/show_bug.cgi?id=1405703 --------------------------------------------------------------------------------
================================================================================ network-manager-applet-1.8.4-1.fc27 (FEDORA-2017-f390fdf7b2) A network control and status applet for NetworkManager -------------------------------------------------------------------------------- Update Information:
Update to 1.8.4 release Copy from upstream NEWS file: * nm-c-e: Major rework of the nm-connection-editor UI. * nm-c-e: Add support for MACsec. * nm-c-e: Add support for new PPPoE connections not limited to ethernet. * nm-c-e: Add support for bridge's group-forward-mask property. * applet: Fix nm-applet's status icon when a VPN has the default route. * applet: Always center dialogs on the screen. * libnma: Fix handling empty password for certificate chooser. * po: Updated Catalan, Croatian, Czech, Galician, Indonesian, Italian, Kazakh, Lithuanian, Polish, Brazilian Portuguese, Punjabi, Romanian, Serbian, Spanish translations. * Various bugfixes and minor improvements. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1471510 - Icon doesn't reflect VPN status https://bugzilla.redhat.com/show_bug.cgi?id=1471510 --------------------------------------------------------------------------------
================================================================================ oci-umount-2.2.0-2.git0a4dcd6.fc27 (FEDORA-2017-6dbc1e76aa) OCI umount hook for docker -------------------------------------------------------------------------------- Update Information:
Add support for multiple configuration files. --------------------------------------------------------------------------------
================================================================================ orion-1.6.1-1.fc27 (FEDORA-2017-e6d82bca5d) Seek and watch streams on Twitch -------------------------------------------------------------------------------- Update Information:
Release 1.6.1 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1492476 - Review Request: orion - Seek and watch streams on Twitch https://bugzilla.redhat.com/show_bug.cgi?id=1492476 --------------------------------------------------------------------------------
================================================================================ perl-CPAN-Perl-Releases-3.36-1.fc27 (FEDORA-2017-940b3ad2ce) Mapping Perl releases on CPAN to the location of the tarballs -------------------------------------------------------------------------------- Update Information:
Updated to the latest version -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1493797 - perl-CPAN-Perl-Releases-3.36 is available https://bugzilla.redhat.com/show_bug.cgi?id=1493797 --------------------------------------------------------------------------------
================================================================================ perl-Module-CoreList-5.20170920-1.fc27 (FEDORA-2017-f324d604de) What modules are shipped with versions of perl -------------------------------------------------------------------------------- Update Information:
This release brings data about Perl 5.27.4. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1493804 - perl-Module-CoreList-5.20170920 is available https://bugzilla.redhat.com/show_bug.cgi?id=1493804 --------------------------------------------------------------------------------
================================================================================ php-horde-nag-4.2.17-1.fc27 (FEDORA-2017-52ed023208) A web based task list manager -------------------------------------------------------------------------------- Update Information:
**nag 4.2.17** * [jan] SECURITY: Fix unauthorized access to task exports. * [jan] Fix regression when exporting single tags to iCalendar CATEGORIES. * [jan] Officially support PHP 7. --------------------------------------------------------------------------------
================================================================================ php-horde-passwd-5.0.7-1.fc27 (FEDORA-2017-e3fcecbae7) Horde password changing application -------------------------------------------------------------------------------- Update Information:
**passwd 5.0.7** * [jan] Officially support PHP 7. * [jan] SECURITY: Fix open redirects. --------------------------------------------------------------------------------
================================================================================ php-horde-wicked-2.0.8-1.fc27 (FEDORA-2017-346d6e00dd) Wiki application -------------------------------------------------------------------------------- Update Information:
**wicked 2.0.8** * [jan] SECURITY: Fix unauthorized access to page attachments. --------------------------------------------------------------------------------
================================================================================ php-zendframework-zend-hydrator-2.3.0-1.fc27 (FEDORA-2017-1673ef103a) Zend Framework Hydrator component -------------------------------------------------------------------------------- Update Information:
**Version 2.3.0** - 2017-09-20 **Added** - [#27](https://github.com/zendframework/zend-hydrator/pull/27) adds the interface `Zend\Hydrator\HydratorProviderInterface` for use with the zend- modulemanager `ServiceListener` implementation, and updates the `HydratorManager` definition for the `ServiceListener` to typehint on this new interface instead of the one provided in zend-modulemanager. * Users implementing the zend-modulemanager `Zend\ModuleManger\Feature\HydratorProviderInterface` will be unaffected, as the method it defines, `getHydratorConfig()`, will still be identified and used to inject he `HydratorPluginManager`. However, we recommend updating your `Module` classes to use the new interface instead. - [#44](https://github.com/zendframework/zend-hydrator/pull/44) adds `Zend\Hydrator\Strategy\CollectionStrategy`. This class allows you to provide a single hydrator to use with an array of objects or data that represent the same type. * From the patch, if the "users" property of an object you will hydrate is expected to be an array of items of a type `User`, you could do the following: ``` $hydrator->addStrategy('users', new CollectionStrategy( new ReflectionHydrator(), User::class )); ``` - [#63](https://github.com/zendframework/zend-hydrator/pull/63) adds support for PHP 7.2. **Changed** - [#44](https://github.com/zendframework/zend- hydrator/pull/44) updates the `ClassMethods` hydrator to add a second, optional, boolean argument to the constructor, `$methodExistsCheck`, and a related method `setMethodExistsCheck()`. These allow you to specify a flag indicating whether or not the name of a property must directly map to a _defined_ method, versus one that may be called via `__call()`. The default value of the flag is `false`, which retains the previous behavior of not checking if the method is defined. Set the flag to `true` to make the check more strict. **Removed** - [#63](https://github.com/zendframework/zend- hydrator/pull/63) removes support for HHVM. ---- **Version 2.2.3** - 2017-09-20 **Fixed** - [#65](https://github.com/zendframework/zend- hydrator/pull/65) fixes the hydration behavior of the `ArraySerializable` hydrator when using `exchangeArray()`. Previously, the method would clear any existing values from the instance, which is problematic when a partial update is provided as values not in the update would disappear. The class now pulls the original values, and recursively merges the replacement with those values. --------------------------------------------------------------------------------
================================================================================ proftpd-1.3.6-6.fc27 (FEDORA-2017-876cfc901d) Flexible, stable and highly-configurable FTP server -------------------------------------------------------------------------------- Update Information:
This update adds a proftpd-sqlite package, to add SQLite to the SQL database support in addition to the existing support for MySQL and PostgreSQL. --------------------------------------------------------------------------------
================================================================================ python-dropbox-8.2.0-1.fc27 (FEDORA-2017-c243e18f05) Official Dropbox REST API Client -------------------------------------------------------------------------------- Update Information:
Updated to 8.2.0 (#1493317) ---- Updated to 8.1.0 (#1450023) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1493317 - python-dropbox-8.2.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1493317 [ 2 ] Bug #1450023 - python-dropbox-8.1.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1450023 --------------------------------------------------------------------------------
================================================================================ python-martian-0.15-1.fc27 (FEDORA-2017-f9af104cd6) A library to grok configuration from Python code -------------------------------------------------------------------------------- Update Information:
New version including Python 3 subpackage -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1324127 - python-martian: Provide a Python 3 subpackage https://bugzilla.redhat.com/show_bug.cgi?id=1324127 --------------------------------------------------------------------------------
================================================================================ python-sphinx-1.6.3-3.fc27 (FEDORA-2017-cf9806a3c5) Python documentation generator -------------------------------------------------------------------------------- Update Information:
Provide the epoch tag in order to downgrade at Fedora 26 since the update broke many packages --------------------------------------------------------------------------------
================================================================================ rakudo-URI-0.1.4-0.1.20170920gite5c8551.fc27 (FEDORA-2017-fa1ee225ba) Perl 6 realization of URI -------------------------------------------------------------------------------- Update Information:
add initial build --------------------------------------------------------------------------------
================================================================================ samba-4.7.0-12.fc27 (FEDORA-2017-f0c18420e8) Server and Client software to interoperate with Windows machines -------------------------------------------------------------------------------- Update Information:
Security fix for CVE-2017-12150 CVE-2017-12151 CVE-2017-12163 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1488400 - CVE-2017-12150 samba: Some code path don't enforce smb signing, when they should https://bugzilla.redhat.com/show_bug.cgi?id=1488400 --------------------------------------------------------------------------------
================================================================================ shim-signed-13-0.6 (FEDORA-2017-99e6ffc4c7) First-stage UEFI bootloader -------------------------------------------------------------------------------- Update Information:
Fix incorrect binary type on Aarch64 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1489604 - AArch64 installations fail to boot using shimaa64.efi - 'Error reported: Unsupported' https://bugzilla.redhat.com/show_bug.cgi?id=1489604 --------------------------------------------------------------------------------
================================================================================ shim-unsigned-aarch64-13-3.fc27 (FEDORA-2017-99e6ffc4c7) First-stage UEFI bootloader -------------------------------------------------------------------------------- Update Information:
Fix incorrect binary type on Aarch64 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1489604 - AArch64 installations fail to boot using shimaa64.efi - 'Error reported: Unsupported' https://bugzilla.redhat.com/show_bug.cgi?id=1489604 --------------------------------------------------------------------------------
================================================================================ shim-unsigned-x64-13-3.fc27 (FEDORA-2017-99e6ffc4c7) First-stage UEFI bootloader -------------------------------------------------------------------------------- Update Information:
Fix incorrect binary type on Aarch64 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1489604 - AArch64 installations fail to boot using shimaa64.efi - 'Error reported: Unsupported' https://bugzilla.redhat.com/show_bug.cgi?id=1489604 --------------------------------------------------------------------------------
================================================================================ siril-0.9.7-1.fc27 (FEDORA-2017-bcf8fcc69f) Astronomical image processing software -------------------------------------------------------------------------------- Update Information:
Update to 0.9.7 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1493939 - New upstream version of Siril https://bugzilla.redhat.com/show_bug.cgi?id=1493939 [ 2 ] Bug #1457759 - siril: Do not interpose reallocarray in /usr/bin/siril https://bugzilla.redhat.com/show_bug.cgi?id=1457759 --------------------------------------------------------------------------------
================================================================================ sqlitebrowser-3.10.1-1.fc27 (FEDORA-2017-484efbca3c) Create, design, and edit SQLite database files -------------------------------------------------------------------------------- Update Information:
Update to version 3.10.1, see https://github.com/sqlitebrowser/sqlitebrowser/releases/tag/v3.10.1 for details. --------------------------------------------------------------------------------
================================================================================ sscg-2.2.0-1.fc27 (FEDORA-2017-3cac326e96) Simple SSL certificate generator -------------------------------------------------------------------------------- Update Information:
Properly order PEM files containing both service and CA certificates ---- Add --email option for issuer identity -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1494208 - sscg: write server certificate before CA certificate if filenames match https://bugzilla.redhat.com/show_bug.cgi?id=1494208 --------------------------------------------------------------------------------
================================================================================ tiled-1.0.3-1.fc27 (FEDORA-2017-7a4c72883b) Tiled Map Editor -------------------------------------------------------------------------------- Update Information:
New release 1.0.3 Release news can be found at: - http://www.mapeditor.org/2017/05/24/tiled-1-0-0-released.html - http://www.mapeditor.org/2017/06/13/tiled-1-0-1-released.html - http://www.mapeditor.org/2017/06/27/tiled-1-0-2-released.html - http://www.mapeditor.org/2017/08/29/tiled-1-0-3-released.html -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1455911 - tiled-1.0.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=1455911 --------------------------------------------------------------------------------
================================================================================ transtats-cli-0.1.0-3.fc27 (FEDORA-2017-e03095b475) Transtats command line interface to query transtats server -------------------------------------------------------------------------------- Update Information:
Add man page to transtats-cli -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1489383 - Review Request: transtats-cli - Transtats command line interface to query server https://bugzilla.redhat.com/show_bug.cgi?id=1489383 --------------------------------------------------------------------------------
================================================================================ vulkan-1.0.61.1-1.fc27 (FEDORA-2017-2571711860) Vulkan loader and validation layers -------------------------------------------------------------------------------- Update Information:
Update to 1.0.61.1 release ---- Update to 1.0.61.0 release --------------------------------------------------------------------------------
================================================================================ why-2.39-1.fc27 (FEDORA-2017-df0203663e) Software verification platform -------------------------------------------------------------------------------- Update Information:
Changes in version 2.39: - [Frama-C plugin] Compatible with release Phosphorus (a.k.a. 20170501) - [bug fix] detection of Frama-C version at configure phase - [bug fix] support for floating-point rounding modes Up, NearestAway and ToZero --------------------------------------------------------------------------------
================================================================================ wine-2.17-1.fc27 (FEDORA-2017-d792f05026) A compatibility layer for windows applications -------------------------------------------------------------------------------- Update Information:
Wine Staging * Support for interpolation modifiers in pixel shaders. * Support for generating mipmap levels based on shader resource views. * Various smaller improvements and bug fixes. Wine-hq.org - Better support for grayscale mode in DirectWrite. - Per-application StartupWMClass in desktop files. - Virtual memory compatibility improvements. - Palette handling improvements in WindowsCodecs. - Reply messages improvements in WebServices. - Various bug fixes. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1492265 - wine-2.17 is available https://bugzilla.redhat.com/show_bug.cgi?id=1492265 --------------------------------------------------------------------------------
================================================================================ wxPython-3.0.2.0-20.fc27 (FEDORA-2017-7577597c17) GUI toolkit for the Python programming language -------------------------------------------------------------------------------- Update Information:
Make -devel noarch to resolve issue with conflicting archful pkgs (#1493233) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1493233 - Version conflict of wxPython-devel-3.0.2.0-19.fc26.{x86_64,i686} stops all updates of Fedora 26 https://bugzilla.redhat.com/show_bug.cgi?id=1493233 --------------------------------------------------------------------------------
================================================================================ x2goclient-4.1.0.1-1.fc27 (FEDORA-2017-5cdb89a7a1) X2Go Client application -------------------------------------------------------------------------------- Update Information:
- new "Direct XDMCP" feature - new parameter --branding that can be used to change the background picture --------------------------------------------------------------------------------
================================================================================ xflr5-6.39-1.fc27 (FEDORA-2017-a7a1faa2f8) Analysis tool for airfoils, wings and planes -------------------------------------------------------------------------------- Update Information:
Update to version 6.39, see http://www.xflr5.com/ReleaseNotes.htm for details. --------------------------------------------------------------------------------
================================================================================ zeitgeist-1.0-5.fc27 (FEDORA-2017-00f3d77405) Framework providing Desktop activity awareness -------------------------------------------------------------------------------- Update Information:
Fix service file variable substitution -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1464693 - Path in service file does not get substituted https://bugzilla.redhat.com/show_bug.cgi?id=1464693 --------------------------------------------------------------------------------