The following Fedora 29 Security updates need testing:
Age URL
49 https://bodhi.fedoraproject.org/updates/FEDORA-2019-49f80a78bc mingw-sqlite-3.26.0.0-1.fc29
30 https://bodhi.fedoraproject.org/updates/FEDORA-2019-fa5843e0e1 asterisk-16.2.1-1.fc29
24 https://bodhi.fedoraproject.org/updates/FEDORA-2019-4d83e78ad8 libu2f-host-1.1.8-1.fc29
24 https://bodhi.fedoraproject.org/updates/FEDORA-2019-f781d5c4c6 ntp-4.2.8p13-1.fc29
16 https://bodhi.fedoraproject.org/updates/FEDORA-2019-c84f291592 WALinuxAgent-2.2.38-1.fc29
12 https://bodhi.fedoraproject.org/updates/FEDORA-2019-bff1cbaba3 edk2-20190308stable-1.fc29
11 https://bodhi.fedoraproject.org/updates/FEDORA-2019-7528388823 chicken-5.0.0-2.fc29
10 https://bodhi.fedoraproject.org/updates/FEDORA-2019-35589cfcb5 drupal7-7.65-1.fc29
10 https://bodhi.fedoraproject.org/updates/FEDORA-2019-1d9be4b853 drupal8-8.6.13-1.fc29
6 https://bodhi.fedoraproject.org/updates/FEDORA-2019-db1e9b3002 mod_auth_mellon-0.14.0-5.fc29
6 https://bodhi.fedoraproject.org/updates/FEDORA-2019-117e425677 golang-googlecode-go-crypto-0-0.28.20190324gitb7391e9.fc29
2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-7d09431f07 flatpak-1.2.4-1.fc29
2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-fa61af95b3 aria2-1.34.0-4.fc29
2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-fa59f1ed49 clamav-0.101.2-1.fc29
2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-a66789a334 glpi-9.3.3-2.fc29
2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-817ff2201f pspp-1.2.0-2.fc29
0 https://bodhi.fedoraproject.org/updates/FEDORA-2019-e396eacd61 ntfs-3g-2017.3.23-11.fc29
The following Fedora 29 Critical Path updates have yet to be approved:
Age URL
25 https://bodhi.fedoraproject.org/updates/FEDORA-2019-4d2303dc16 pungi-4.1.34-1.fc29
20 https://bodhi.fedoraproject.org/updates/FEDORA-2019-940d3922ce koji-1.17.0-5.fc29
19 https://bodhi.fedoraproject.org/updates/FEDORA-2019-5329292fc2 fedfind-4.2.2-1.fc29 python-productmd-1.20-1.fc29
16 https://bodhi.fedoraproject.org/updates/FEDORA-2019-96c964d319 sddm-0.18.0-4.fc29
13 https://bodhi.fedoraproject.org/updates/FEDORA-2019-ebfd1fe19b uboot-tools-2018.09-3.fc29
12 https://bodhi.fedoraproject.org/updates/FEDORA-2019-bff1cbaba3 edk2-20190308stable-1.fc29
12 https://bodhi.fedoraproject.org/updates/FEDORA-2019-7c323cc0a7 lxpanel-0.10.0-2.D20190301gitb9ad6f2a.fc29
11 https://bodhi.fedoraproject.org/updates/FEDORA-2019-f4b2308023 iproute-5.0.0-2.fc29
11 https://bodhi.fedoraproject.org/updates/FEDORA-2019-ec5e8e23ba osinfo-db-20190319-1.fc29
4 https://bodhi.fedoraproject.org/updates/FEDORA-2019-d04731547a python3-3.7.3-1.fc29
4 https://bodhi.fedoraproject.org/updates/FEDORA-2019-85896b401a audit-3.0-0.7.20190326git03e7489.fc29
4 https://bodhi.fedoraproject.org/updates/FEDORA-2019-412c8b4a63 pcre2-10.32-9.fc29
2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-adecec7468 kernel-5.0.5-200.fc29 kernel-headers-5.0.5-200.fc29 kernel-tools-5.0.5-200.fc29
2 https://bodhi.fedoraproject.org/updates/FEDORA-2019-7d09431f07 flatpak-1.2.4-1.fc29
0 https://bodhi.fedoraproject.org/updates/FEDORA-2019-e396eacd61 ntfs-3g-2017.3.23-11.fc29
The following builds have been pushed to Fedora 29 updates-testing
bindfs-1.13.11-1.fc29
byobu-5.127-3.fc29
cacti-1.2.3-1.fc29
cacti-spine-1.2.3-1.fc29
highlight-3.50-1.fc29
kiwi-9.17.34-2.fc29
libmodsecurity-3.0.3-1.fc29
ocaml-merlin-3.2.2-2.fc29
oz-0.17.0-1.fc29
perl-DBIx-RunSQL-0.21-1.fc29
perl-File-Edit-Portable-1.24-10.fc29
perl-Mock-Sub-1.09-6.fc29
python-notebook-5.7.7-1.fc29
recoll-1.25.11-1.fc29
scidavis-1.25-3.fc29
termy-qt-1.1.4-5.fc29
xfce4-screenshooter-1.9.5-1.fc29
xfce4-whiskermenu-plugin-2.3.2-1.fc29
yadifa-2.3.9-1.fc29
Details about builds:
================================================================================
bindfs-1.13.11-1.fc29 (FEDORA-2019-ea2c4679ff)
Fuse filesystem to mirror a directory
--------------------------------------------------------------------------------
Update Information:
- update to new version 1.13.11 fixes rhbz #1694427 - ChangeLog
https://bindfs.org/docs/ChangeLog.utf8.txt
--------------------------------------------------------------------------------
ChangeLog:
* Sun Mar 31 2019 Filipe Rosset <rosset.filipe(a)gmail.com> - 1.13.11-1
- update to new version 1.13.11 fixes rhbz #1694427
- ChangeLog https://bindfs.org/docs/ChangeLog.utf8.txt
* Thu Jan 31 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.13.10-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1694427 - bindfs-1.13.11 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1694427
--------------------------------------------------------------------------------
================================================================================
byobu-5.127-3.fc29 (FEDORA-2019-b6d1d8742d)
Light-weight, configurable window manager built upon GNU screen
--------------------------------------------------------------------------------
Update Information:
- Switch to Python 3 (#1532565)
--------------------------------------------------------------------------------
ChangeLog:
* Wed Mar 27 2019 Miro Hron��ok <mhroncok(a)redhat.com> - 5.127-3
- Switch to Python 3 (#1532565)
* Thu Jan 31 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 5.127-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1532565 - byobu: switch to Python 3
https://bugzilla.redhat.com/show_bug.cgi?id=1532565
--------------------------------------------------------------------------------
================================================================================
cacti-1.2.3-1.fc29 (FEDORA-2019-a06b0499de)
An rrd based graphing tool
--------------------------------------------------------------------------------
Update Information:
- Update to 1.2.3 Release notes:
https://www.cacti.net/release_notes.php?version=1.2.3
--------------------------------------------------------------------------------
ChangeLog:
* Sun Mar 31 2019 Morten Stevens <mstevens(a)fedoraproject.org> - 1.2.3-1
- Update to 1.2.3
--------------------------------------------------------------------------------
================================================================================
cacti-spine-1.2.3-1.fc29 (FEDORA-2019-a06b0499de)
Threaded poller for Cacti written in C
--------------------------------------------------------------------------------
Update Information:
- Update to 1.2.3 Release notes:
https://www.cacti.net/release_notes.php?version=1.2.3
--------------------------------------------------------------------------------
ChangeLog:
* Sun Mar 31 2019 Morten Stevens <mstevens(a)fedoraproject.org> - 1.2.3-1
- Update to 1.2.3
--------------------------------------------------------------------------------
================================================================================
highlight-3.50-1.fc29 (FEDORA-2019-614096801f)
Universal source code to formatted text converter
--------------------------------------------------------------------------------
Update Information:
- Updated to new 3.50 upstream version
--------------------------------------------------------------------------------
ChangeLog:
* Sun Mar 31 2019 Filipe Rosset <rosset.filipe(a)gmail.com> - 3.50-1
- Updated to new 3.50 upstream version
* Fri Feb 1 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.48-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
kiwi-9.17.34-2.fc29 (FEDORA-2019-93a7015650)
Flexible operating system image builder
--------------------------------------------------------------------------------
Update Information:
Update to 9.17.34, which adds support for building OCI images with buildah, when
available.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Mar 31 2019 Neal Gompa <ngompa13(a)gmail.com> - 9.17.34-2
- Do not require buildah on x86_32 and ppc64
* Sun Mar 31 2019 Neal Gompa <ngompa13(a)gmail.com> - 9.17.34-1
- Upgrade to 9.17.34 (RH#1688338)
- Patch to use buildah by default instead of umoci for OCI image builds
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1688338 - kiwi-9.17.34 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1688338
--------------------------------------------------------------------------------
================================================================================
libmodsecurity-3.0.3-1.fc29 (FEDORA-2019-9a7ee8ddd8)
A library that loads/interprets rules written in the ModSecurity SecRules
--------------------------------------------------------------------------------
Update Information:
Update to 3.0.3 (rhbz #1672678)
--------------------------------------------------------------------------------
ChangeLog:
* Sun Mar 31 2019 Athmane Madjoudj <athmane(a)fedoraproject.org> - 3.0.3-1
- Update to 3.0.3 (rhbz #1672678)
- Remove pkg-config bits since it's included in this release
* Fri Feb 1 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.0.2-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
* Fri Oct 19 2018 Dridi Boukelmoune <dridi(a)fedoraproject.org> - 3.0.2-4
- Back-port of modsecurity.pc
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1672678 - libmodsecurity: update to 3.0.3 release
https://bugzilla.redhat.com/show_bug.cgi?id=1672678
--------------------------------------------------------------------------------
================================================================================
ocaml-merlin-3.2.2-2.fc29 (FEDORA-2019-1a7efb679c)
Context sensitive completion for OCaml in Vim and Emacs
--------------------------------------------------------------------------------
Update Information:
Merlin is an assistant for editing OCaml code. It aims to provide the features
available in modern IDEs: error reporting, auto completion, source browsing and
much more.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1684401 - Review Request: ocaml-merlin - Context sensitive completion for OCaml in Vim and Emacs
https://bugzilla.redhat.com/show_bug.cgi?id=1684401
--------------------------------------------------------------------------------
================================================================================
oz-0.17.0-1.fc29 (FEDORA-2019-c40790d318)
Library and utilities for automated guest OS installs
--------------------------------------------------------------------------------
Update Information:
0.17.0 is releases, UEFI fixes, improvements on Arm, Conditionalise py3 support
--------------------------------------------------------------------------------
ChangeLog:
* Tue Mar 26 2019 Peter Robinson <pbrobinson(a)fedoraproject.org> 0.17.0-1
- Conditionalise py3 support
- 0.17.0 is releases, minor cleanups
* Sat Mar 16 2019 Chris Lalancette <clalancette(a)gmail.com> - 0.17.0-0.3
- Update to latest upstream changes for Python 3
* Wed Mar 13 2019 Peter Robinson <pbrobinson(a)fedoraproject.org> 0.17.0-0.2
- Rebase to latest PR for ARMv7/aarch64 UEFI
* Thu Feb 28 2019 Peter Robinson <pbrobinson(a)fedoraproject.org> 0.17.0-0.1
- Upstream git 0.17 snapshot
- ARMv7 fixes and support for UEFI
- UEFI fixes for x86_64 and aarch64
* Fri Feb 1 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.16.0-8
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
perl-DBIx-RunSQL-0.21-1.fc29 (FEDORA-2019-e70c9b263a)
Run SQL commands from a file
--------------------------------------------------------------------------------
Update Information:
0.21 2019-03-09 * Use Module::Load to load renderers * Check if a class isa
Text::Table, otherwise dispatch to Text::Table::Any. This allows for rendering
tables as HTML easily if you install Text::Table::Any * Properly install C<run-
sql.pl>
--------------------------------------------------------------------------------
ChangeLog:
* Sat Mar 30 2019 Denis Fateyev <denis(a)fateyev.com> - 0.21-1
- Update to 0.21 release
* Fri Feb 1 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.20-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1688648 - Upgrade perl-DBIx-RunSQL to 0.21
https://bugzilla.redhat.com/show_bug.cgi?id=1688648
--------------------------------------------------------------------------------
================================================================================
perl-File-Edit-Portable-1.24-10.fc29 (FEDORA-2019-e570fe8c4e)
Read and write files while keeping the original line-endings intact
--------------------------------------------------------------------------------
Update Information:
Dropped RELEASE tests
--------------------------------------------------------------------------------
ChangeLog:
* Sat Mar 30 2019 Denis Fateyev <denis(a)fateyev.com> - 1.24-10
- Dropped RELEASE tests
* Fri Feb 1 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.24-9
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1679590 - perl-File-Edit-Portable-1.24-9.fc30 FTBFS: files are not named in the MANIFEST file: /builddir/build/BUILD/File-Edit-Portable-1.24/debugfiles.list
https://bugzilla.redhat.com/show_bug.cgi?id=1679590
--------------------------------------------------------------------------------
================================================================================
perl-Mock-Sub-1.09-6.fc29 (FEDORA-2019-686e1a6fde)
Mock package, object and standard subroutines, with unit testing in mind
--------------------------------------------------------------------------------
Update Information:
Dropped RELEASE tests
--------------------------------------------------------------------------------
ChangeLog:
* Sat Mar 30 2019 Denis Fateyev <denis(a)fateyev.com> - 1.09-6
- Dropped RELEASE tests
* Fri Feb 1 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.09-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1679592 - perl-Mock-Sub-1.09-5.fc30 FTBFS: files are not named in the MANIFEST file: /builddir/build/BUILD/Mock-Sub-1.09/debugfiles.list
https://bugzilla.redhat.com/show_bug.cgi?id=1679592
--------------------------------------------------------------------------------
================================================================================
python-notebook-5.7.7-1.fc29 (FEDORA-2019-9e67979b2a)
A web-based notebook environment for interactive computing
--------------------------------------------------------------------------------
Update Information:
Security fix for CVE-2019-10255, CVE-2019-9644.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Mar 31 2019 Miro Hron��ok <mhroncok(a)redhat.com> - 5.7.7-1
- Update to 5.7.7, fix CVE-2019-9644 and CVE-2019-10255
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1694274 - CVE-2019-10255 python-notebook: Open redirect vulnerability in the login page
https://bugzilla.redhat.com/show_bug.cgi?id=1694274
[ 2 ] Bug #1689855 - CVE-2019-9644 python-notebook: XSSI due to invalid javascript
https://bugzilla.redhat.com/show_bug.cgi?id=1689855
--------------------------------------------------------------------------------
================================================================================
recoll-1.25.11-1.fc29 (FEDORA-2019-f5e03152c7)
Desktop full text search tool with Qt GUI
--------------------------------------------------------------------------------
Update Information:
Update to latest upstream release recoll 1.25.11.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Mar 31 2019 Terje Rosten <terje.rosten(a)ntnu.no> - 1.25.11-1
- 1.25.11
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1691426 - recoll-1.25.11 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1691426
--------------------------------------------------------------------------------
================================================================================
scidavis-1.25-3.fc29 (FEDORA-2019-9292ce9078)
Application for Scientific Data Analysis and Visualization
--------------------------------------------------------------------------------
Update Information:
This update fixes [sf bug #378](https://sourceforge.net/p/scidavis/scidavis-
bugs/378/), 3D plot colors reverting to black upon reloading a project.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Mar 31 2019 Alexander Ploumistos <alexpl(a)fedoraproject.org> - 1.25-3
- Backport fix for 3D plot colors reverting to black
--------------------------------------------------------------------------------
================================================================================
termy-qt-1.1.4-5.fc29 (FEDORA-2019-02fff2dc1b)
TermySequence terminal multiplexer client
--------------------------------------------------------------------------------
Update Information:
qt: Use case-insensitive hostname comparison
--------------------------------------------------------------------------------
ChangeLog:
* Tue Mar 26 2019 Eamon Walsh <ewalsh(a)termysequence.com> - 1.1.4-5
- qt: Use case-insensitive hostname comparison
--------------------------------------------------------------------------------
================================================================================
xfce4-screenshooter-1.9.5-1.fc29 (FEDORA-2019-f7900d799d)
Screenshot utility for the Xfce desktop
--------------------------------------------------------------------------------
Update Information:
Update to 1.9.5
--------------------------------------------------------------------------------
ChangeLog:
* Sun Mar 31 2019 Mukundan Ragavan <nonamedotc(a)fedoraproject.org> - 1.9.5-1
- Update to 1.9.5
--------------------------------------------------------------------------------
================================================================================
xfce4-whiskermenu-plugin-2.3.2-1.fc29 (FEDORA-2019-db127d58b4)
An alternate application launcher for Xfce
--------------------------------------------------------------------------------
Update Information:
Update to 2.3.2
--------------------------------------------------------------------------------
ChangeLog:
* Sun Mar 31 2019 Mukundan Ragavan <nonamedotc(a)fedoraproject.org> - 2.3.2-1
- Update to 2.3.2
* Sun Feb 3 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.3.1-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
yadifa-2.3.9-1.fc29 (FEDORA-2019-968bf1d5a3)
Lightweight authoritative Name Server with DNSSEC capabilities
--------------------------------------------------------------------------------
Update Information:
20190211: YADIFA 2.3.9 - Fixes an issue handling some rdata containing a domain
set to '.'
--------------------------------------------------------------------------------
ChangeLog:
* Sat Mar 30 2019 Denis Fateyev <denis(a)fateyev.com> - 2.3.9-1
- Update to 2.3.9 release
* Sun Feb 3 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.3.8-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1674559 - yadifa-2.3.9 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1674559
--------------------------------------------------------------------------------