The following Fedora 28 Security updates need testing: Age URL 256 https://bodhi.fedoraproject.org/updates/FEDORA-2018-d510cfd7eb jgraphx-3.6.0.0-6.fc28 205 https://bodhi.fedoraproject.org/updates/FEDORA-2018-d7aeaa74da nodejs-brace-expansion-1.1.11-1.fc28 204 https://bodhi.fedoraproject.org/updates/FEDORA-2018-bc073fdc1a nodejs-atob-2.1.1-1.fc28 197 https://bodhi.fedoraproject.org/updates/FEDORA-2018-9dd3f7c013 unrtf-0.21.9-8.fc28 165 https://bodhi.fedoraproject.org/updates/FEDORA-2018-28e9841baf docker-latest-1.13.1-37.git9cb56fd.fc28 80 https://bodhi.fedoraproject.org/updates/FEDORA-2018-cc4b7af297 xerces-c27-2.7.0-28.fc28 37 https://bodhi.fedoraproject.org/updates/FEDORA-2018-aadd3c2790 mupdf-1.14.0-6.fc28 32 https://bodhi.fedoraproject.org/updates/FEDORA-2018-997a9e3e1f xen-4.10.2-4.fc28 32 https://bodhi.fedoraproject.org/updates/FEDORA-2018-aa3752ac3c nginx-1.14.1-1.fc28 23 https://bodhi.fedoraproject.org/updates/FEDORA-2018-b60fdc1998 net-snmp-5.8-3.fc28 23 https://bodhi.fedoraproject.org/updates/FEDORA-2018-70fe6a4d75 nagios-4.4.2-3.fc28 19 https://bodhi.fedoraproject.org/updates/FEDORA-2018-dbcb80405c nbdkit-1.4.4-1.fc28 12 https://bodhi.fedoraproject.org/updates/FEDORA-2018-cc86ef9e22 squid-4.4-1.fc28 11 https://bodhi.fedoraproject.org/updates/FEDORA-2018-f7d9989c42 nettle-3.4.1-1.fc28 9 https://bodhi.fedoraproject.org/updates/FEDORA-2018-2abadd4469 haproxy-1.8.15-1.fc28 9 https://bodhi.fedoraproject.org/updates/FEDORA-2018-b18f9dd65b tomcat-8.5.35-1.fc28 7 https://bodhi.fedoraproject.org/updates/FEDORA-2018-4b8a18767b adplug-2.2.1-7.fc28 6 https://bodhi.fedoraproject.org/updates/FEDORA-2018-e2e8a07a01 webkit2gtk3-2.22.5-1.fc28 5 https://bodhi.fedoraproject.org/updates/FEDORA-2018-5f91fbf4fd sqlite-3.22.0-5.fc28 5 https://bodhi.fedoraproject.org/updates/FEDORA-2018-67e98d4b7a python-lxml-4.2.5-1.fc28 5 https://bodhi.fedoraproject.org/updates/FEDORA-2018-5acdf115df mosquitto-1.5.5-1.fc28 5 https://bodhi.fedoraproject.org/updates/FEDORA-2018-31c2a0b2ea tinc-1.0.35-1.fc28 2 https://bodhi.fedoraproject.org/updates/FEDORA-2018-ea05fcd378 vcftools-0.1.16-1.fc28 2 https://bodhi.fedoraproject.org/updates/FEDORA-2018-93a16d053f leptonica-1.77.0-1.fc28 mingw-leptonica-1.77.0-1.fc28 2 https://bodhi.fedoraproject.org/updates/FEDORA-2018-e69d2aaa60 wordpress-5.0.2-1.fc28 2 https://bodhi.fedoraproject.org/updates/FEDORA-2018-200c84e08a openjpeg2-2.3.0-10.fc28 mingw-openjpeg2-2.3.0-6.fc28 2 https://bodhi.fedoraproject.org/updates/FEDORA-2018-12b934e224 mingw-poppler-0.62.0-2.fc28 2 https://bodhi.fedoraproject.org/updates/FEDORA-2018-50e3877b63 php-pear-1.10.7-2.fc28 2 https://bodhi.fedoraproject.org/updates/FEDORA-2018-2e1d1e4420 krb5-1.16.1-22.fc28
The following Fedora 28 Critical Path updates have yet to be approved: Age URL 32 https://bodhi.fedoraproject.org/updates/FEDORA-2018-997a9e3e1f xen-4.10.2-4.fc28 26 https://bodhi.fedoraproject.org/updates/FEDORA-2018-3222e7c914 radvd-2.17-11.fc28 26 https://bodhi.fedoraproject.org/updates/FEDORA-2018-fdc6d449e5 pungi-4.1.31-1.fc28 26 https://bodhi.fedoraproject.org/updates/FEDORA-2018-63e2c74a11 python-productmd-1.18-1.fc28 23 https://bodhi.fedoraproject.org/updates/FEDORA-2018-c86898e4a7 gdb-8.1.1-4.fc28 23 https://bodhi.fedoraproject.org/updates/FEDORA-2018-b60fdc1998 net-snmp-5.8-3.fc28 21 https://bodhi.fedoraproject.org/updates/FEDORA-2018-12c54ca4bf gjs-1.52.5-1.fc28 12 https://bodhi.fedoraproject.org/updates/FEDORA-2018-9f541b469b nfs-utils-2.3.3-1.rc2.fc28 11 https://bodhi.fedoraproject.org/updates/FEDORA-2018-9963fc558e efivar-37-1.fc28 11 https://bodhi.fedoraproject.org/updates/FEDORA-2018-f7d9989c42 nettle-3.4.1-1.fc28 8 https://bodhi.fedoraproject.org/updates/FEDORA-2018-816dbc3486 osinfo-db-20181214-1.fc28 8 https://bodhi.fedoraproject.org/updates/FEDORA-2018-477b6cb0fa nss-3.41.0-3.fc28 5 https://bodhi.fedoraproject.org/updates/FEDORA-2018-67e98d4b7a python-lxml-4.2.5-1.fc28 5 https://bodhi.fedoraproject.org/updates/FEDORA-2018-db7152a500 flatpak-1.0.6-4.fc28 5 https://bodhi.fedoraproject.org/updates/FEDORA-2018-5f91fbf4fd sqlite-3.22.0-5.fc28 2 https://bodhi.fedoraproject.org/updates/FEDORA-2018-2e1d1e4420 krb5-1.16.1-22.fc28 2 https://bodhi.fedoraproject.org/updates/FEDORA-2018-fe07b3a436 breeze-icon-theme-5.53.0-1.fc28 extra-cmake-modules-5.53.0-1.fc28 kf5-5.53.0-1.fc28 kf5-attica-5.53.0-1.fc28 kf5-baloo-5.53.0-1.fc28 kf5-bluez-qt-5.53.0-1.fc28 kf5-frameworkintegration-5.53.0-2.fc28 kf5-kactivities-5.53.0-1.fc28 kf5-kactivities-stats-5.53.0-1.fc28 kf5-kapidox-5.53.0-1.fc28 kf5-karchive-5.53.0-1.fc28 kf5-kauth-5.53.0-1.fc28 kf5-kbookmarks-5.53.0-1.fc28 kf5-kcmutils-5.53.0-1.fc28 kf5-kcodecs-5.53.0-1.fc28 kf5-kcompletion-5.53.0-1.fc28 kf5-kconfig-5.53.0-1.fc28 kf5-kconfigwidgets-5.53.0-1.fc28 kf5-kcoreaddons-5.53.0-1.fc28 kf5-kcrash-5.53.0-1.fc28 kf5-kdbusaddons-5.53.0-1.fc28 kf5-kdeclarative-5.53.0-2.fc28 kf5-kded-5.53.0-1.fc28 kf5-kdelibs4support-5.53.0-1.fc28 kf5-kdesignerplugin-5.53.0-1.fc28 kf5-kdesu-5.53.0-1.fc28 kf5-kdewebkit-5.53.0-1.fc28 kf5-kdnssd-5.53.0-1.fc28 kf5-kdoctools-5.53.0-1.fc28 kf5-kemoticons-5.53.0-1.fc28 kf5-kfilemetadata-5.53.0-1.fc28 kf5-kglobalaccel-5.53.0-1.fc28 kf5-kguiad dons-5.53.0-1.fc28 kf5-kholidays-5.53.0-1.fc28 kf5-khtml-5.53.0-1.fc28 kf5-ki18n-5.53.0-1.fc28 kf5-kiconthemes-5.53.0-1.fc28 kf5-kidletime-5.53.0-1.fc28 kf5-kimageformats-5.53.0-1.fc28 kf5-kinit-5.53.0-1.fc28 kf5-kio-5.53.0-1.fc28 kf5-kirigami2-5.53.0-1.fc28 kf5-kitemmodels-5.53.0-1.fc28 kf5-kitemviews-5.53.0-1.fc28 kf5-kjobwidgets-5.53.0-1.fc28 kf5-kjs-5.53.0-1.fc28 kf5-kjsembed-5.53.0-1.fc28 kf5-kmediaplayer-5.53.0-1.fc28 kf5-knewstuff-5.53.0-1.fc28 kf5-knotifications-5.53.0-1.fc28 kf5-knotifyconfig-5.53.0-1.fc28 kf5-kpackage-5.53.0-1.fc28 kf5-kparts-5.53.0-1.fc28 kf5-kpeople-5.53.0-1.fc28 kf5-kplotting-5.53.0-1.fc28 kf5-kpty-5.53.0-1.fc28 kf5-kross-5.53.0-1.fc28 kf5-krunner-5.53.0-1.fc28 kf5-kservice-5.53.0-1.fc28 kf5-ktexteditor-5.53.0-1.fc28 kf5-ktextwidgets-5.53.0-1.fc28 kf5-kunitconversion-5.53.0-1.fc28 kf5-kwallet-5.53.0-1.fc28 kf5-kwayland-5.53.0-2.fc28 kf5-kwidgetsaddons-5.53.0-1.fc28 kf5-kwindowsystem-5.53.0-1.fc28 kf5-kxmlgui-5.53.0-2.fc28 kf5-kxmlrpcclient-5.53.0-1.fc28 kf5-modemmanager-qt-5.53.0-1.fc28 kf5-networkmanager-qt-5.53.0-1.fc28 kf5-plasma-5.53.0-1.fc28 kf5-prison-5.53.0-1.fc28 kf5-purpose-5.53.0-1.fc28 kf5-solid-5.53.0-1.fc28 kf5-sonnet-5.53.0-1.fc28 kf5-syndication-5.53.0-1.fc28 kf5-syntax-highlighting-5.53.0-1.fc28 kf5-threadweaver-5.53.0-1.fc28 oxygen-icon-theme-5.53.0-1.fc28 qqc2-desktop-style-5.53.0-1.fc28 2 https://bodhi.fedoraproject.org/updates/FEDORA-2018-bfd076926b redhat-rpm-config-110-1.fc28 2 https://bodhi.fedoraproject.org/updates/FEDORA-2018-200c84e08a openjpeg2-2.3.0-10.fc28 mingw-openjpeg2-2.3.0-6.fc28 2 https://bodhi.fedoraproject.org/updates/FEDORA-2018-7d88c302b7 linux-firmware-20181219-89.git0f22c852.fc28 2 https://bodhi.fedoraproject.org/updates/FEDORA-2018-74b0e315c8 libpcap-1.9.0-2.fc28 2 https://bodhi.fedoraproject.org/updates/FEDORA-2018-d81ade974c glib2-2.56.4-1.fc28 2 https://bodhi.fedoraproject.org/updates/FEDORA-2018-43c225890a libfm-1.3.1-1.fc28 pcmanfm-1.3.1-1.fc28 2 https://bodhi.fedoraproject.org/updates/FEDORA-2018-4dddcb3e5e highlight-3.48-1.fc28 1 https://bodhi.fedoraproject.org/updates/FEDORA-2018-e6538e58ce ceph-12.2.10-1.fc28
The following builds have been pushed to Fedora 28 updates-testing
autokey-0.95.4-1.fc28 clamav-unofficial-sigs-5.6.2-3.fc28 mariadb-connector-odbc-3.0.7-1.fc28 terminology-1.3.2-1.fc28 zchunk-1.0.0-1.fc28
Details about builds:
================================================================================ autokey-0.95.4-1.fc28 (FEDORA-2018-4580abb5d6) Desktop automation utility -------------------------------------------------------------------------------- Update Information:
Fixes issue https://github.com/autokey/autokey/issues/210 by updating to upstream bugfix version 0.95.4 -------------------------------------------------------------------------------- ChangeLog:
* Mon Dec 10 2018 Raghu Udiyar raghusiddarth@gmail.com - 0.95.4-1 - Fix missing qsci dependency for QT * Mon Dec 10 2018 Raghu Udiyar raghusiddarth@gmail.com - 0.95.4 - Update to latest bugfix 0.95.4 to fix (#1646812) - Remove qt5 requires (#1607903) * Sun Dec 9 2018 Miro Hron��ok mhroncok@redhat.com - 0.95.2-2 - Remove unused Python 2 pygtksourceview dependency * Mon Jul 23 2018 Raghu Udiyar raghusiddarth@gmail.com - 0.95.2-1 - Update to latest 0.95.2 release (#1596426) * Thu Jul 12 2018 Fedora Release Engineering releng@fedoraproject.org - 0.94.0-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild * Tue Jun 19 2018 Miro Hron��ok mhroncok@redhat.com - 0.94.0-2 - Rebuilt for Python 3.7 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1646812 - 0.95.2 is the current version in Fedora 29, and it does not work. https://bugzilla.redhat.com/show_bug.cgi?id=1646812 [ 2 ] Bug #1607903 - autokey: Requires: qt5 is probably wrong https://bugzilla.redhat.com/show_bug.cgi?id=1607903 --------------------------------------------------------------------------------
================================================================================ clamav-unofficial-sigs-5.6.2-3.fc28 (FEDORA-2018-e76e2df5ea) Scripts to download unoffical clamav signatures -------------------------------------------------------------------------------- Update Information:
Fix logrotate (files are rotated more than one time) -------------------------------------------------------------------------------- ChangeLog:
* Fri Dec 21 2018 Didier Fabert didier.fabert@gmail.com 5.6.2-3 - Fix logrotate (files are rotated more than one time) - Fix clamd_restart_opt with try-restart - Disable yara rules by default (can be enabled in user.conf to overrride master.conf setting) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1660590 - After clamav-unofficial-sigs update, update process segfaults https://bugzilla.redhat.com/show_bug.cgi?id=1660590 [ 2 ] Bug #1660995 - Installing clamav-unofficial-sigs results in spam from failed cron job https://bugzilla.redhat.com/show_bug.cgi?id=1660995 --------------------------------------------------------------------------------
================================================================================ mariadb-connector-odbc-3.0.7-1.fc28 (FEDORA-2018-954e3ccf47) The MariaDB Native Client library (ODBC driver) -------------------------------------------------------------------------------- Update Information:
**MariaDB Connector ODBC** Release notes: https://mariadb.com/kb/en/library/mariadb-connector-odbc-307-release-notes/ -------------------------------------------------------------------------------- ChangeLog:
* Tue Nov 20 2018 Michal Schorm mschorm@redhat.com - 3.0.7-1 - Rebase to 3.0.7 --------------------------------------------------------------------------------
================================================================================ terminology-1.3.2-1.fc28 (FEDORA-2018-27f957ae8e) EFL based terminal emulator -------------------------------------------------------------------------------- Update Information:
Fix CVEs as described in related RHBZ bug. -------------------------------------------------------------------------------- ChangeLog:
* Sun Dec 23 2018 Conrad Meyer cemeyer@uw.edu - 1.3.2-1 - Update to latest upstream - Fix rhbz# 1659977 (CVE) * Sat Jul 14 2018 Fedora Release Engineering releng@fedoraproject.org - 1.2.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1659977 - CVE-2018-20167 terminology: Incorrect escaping of crafted files results in code execution [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1659977 --------------------------------------------------------------------------------
================================================================================ zchunk-1.0.0-1.fc28 (FEDORA-2018-bbaae22cc6) Compressed file format that allows easy deltas -------------------------------------------------------------------------------- Update Information:
1.0 release with ABI/API stability guarantee -------------------------------------------------------------------------------- ChangeLog:
* Sat Dec 22 2018 Jonathan Dieter jdieter@gmail.com - 1.0.0-1 - 1.0 release. API/ABI stability is now guaranteed --------------------------------------------------------------------------------