Fedora EPEL 6 updates-testing report

updates at fedoraproject.org updates at fedoraproject.org
Tue Mar 1 23:23:57 UTC 2011


The following Fedora EPEL 6 Security updates need testing:

    https://admin.fedoraproject.org/updates/telepathy-gabble-0.8.15-1.el6
    https://admin.fedoraproject.org/updates/couchdb-1.0.2-1.el6
    https://admin.fedoraproject.org/updates/pywebdav-0.9.4.1-1.el6
    https://admin.fedoraproject.org/updates/asterisk-1.8.3-1.el6
    https://admin.fedoraproject.org/updates/moodle-1.9.11-1.el6


The following builds have been pushed to Fedora EPEL 6 updates-testing

    R-2.12.2-1.el6
    asterisk-1.8.3-1.el6
    cgnslib-2.5-5.r1.el6
    ftop-1.0-3.el6
    python-simplemediawiki-1.1-1.el6
    pywebdav-0.9.4.1-1.el6

Details about builds:


================================================================================
 R-2.12.2-1.el6 (FEDORA-EPEL-2011-0541)
 A language for data analysis and graphics
--------------------------------------------------------------------------------
Update Information:

Update to R 2.12.2. A full list of changes in this release is here: http://cran.r-project.org/src/base/NEWS

Notably, it fixes this issue:

Complex arithmetic (notably z^n for complex z and integer n) gave
incorrect results since R 2.10.0 on platforms without C99 complex
support. This and some lesser issues in trignometric functions
have been corrected. Such platforms were rare (we know of Cygwin and FreeBSD). However, because of new compiler optimizations in the way complex arguments are handled, the same code was selected on x86_64 Linux with gcc 4.5.x at the default -O2 optimization (but not at -O).

In addition, rpy and rkward were rebuilt to use the new R. No other changes were made to these packages.
--------------------------------------------------------------------------------
ChangeLog:

* Sun Feb 27 2011 Tom Callaway <spot at fedoraproject.org> - 2.12.2-1
- update to 2.12.2
* Mon Feb  7 2011 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 2.12.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
--------------------------------------------------------------------------------


================================================================================
 asterisk-1.8.3-1.el6 (FEDORA-EPEL-2011-0547)
 The Open Source PBX
--------------------------------------------------------------------------------
Update Information:

The Asterisk Development Team has announced the release of Asterisk 1.8.3. This
release is available for immediate download at
http://downloads.asterisk.org/pub/telephony/asterisk/
The release of Asterisk 1.8.3 resolves several issues reported by the community
and would have not been possible without your participation. Thank you!
The following is a sample of the issues resolved in this release:
* Resolve duplicated data in the AstDB when using DIALGROUP()
(Closes issue #18091. Reported by bunny. Patched by tilghman)
* Ensure the ipaddr field in realtime is large enough to handle IPv6 addresses.
(Closes issue #18464. Reported, patched by IgorG)
* Reworking parsing of mwi => lines to resolve a segfault. Also add a set of
unit tests for the function that does the parsing.
(Closes issue #18350. Reported by gbour. Patched by Marquis)
* When using cdr_pgsql the billsec field was not populated correctly on
unanswered calls.
(Closes issue #18406. Reported by joscas. Patched by tilghman)
* Resolve memory leak in iCalendar and Exchange calendaring modules.
(Closes issue #18521. Reported, patched by pitel. Tested by cervajs)
* This version of Asterisk includes the new Compiler Flags option
BETTER_BACKTRACES which uses libbfd to search for better symbol information
within both the Asterisk binary, as well as loaded modules, to assist when
using inline backtraces to track down problems.
(Patched by tilghman)
* Resolve issue where no Music On Hold may be triggered when using
res_timing_dahdi.
(Closes issues #18262. Reported by francesco_r. Patched by cjacobson. Tested
by francesco_r, rfrantik, one47)
* Resolve a memory leak when the Asterisk Manager Interface is disabled.
(Reported internally by kmorgan. Patched by russellb)
* Reimplemented fax session reservation to reverse the ABI breakage introduced
in r297486.
(Reported internally. Patched by mnicholson)
* Fix regression that changed behavior of queues when ringing a queue member.
(Closes issue #18747, #18733. Reported by vrban. Patched by qwell.)
* Resolve deadlock involving REFER.
(Closes issue #18403. Reported, tested by jthurman. Patched by jpeeler.)
Additionally, this release has the changes related to security bulletin
AST-2011-002 which can be found at
http://downloads.asterisk.org/pub/security/AST-2011-002.pdf
For a full list of changes in this release, please see the ChangeLog:
http://downloads.asterisk.org/pub/telephony/asterisk/ChangeLog-1.8.3
--------------------------------------------------------------------------------
ChangeLog:

* Mon Feb 28 2011 <jeff at ocjtech.us> - 1.8.3-1
- The Asterisk Development Team has announced the release of Asterisk 1.8.3. This
- release is available for immediate download at
- http://downloads.asterisk.org/pub/telephony/asterisk/
-
- The release of Asterisk 1.8.3 resolves several issues reported by the community
- and would have not been possible without your participation. Thank you!
-
- The following is a sample of the issues resolved in this release:
-
- * Resolve duplicated data in the AstDB when using DIALGROUP()
-  (Closes issue #18091. Reported by bunny. Patched by tilghman)
-
- * Ensure the ipaddr field in realtime is large enough to handle IPv6 addresses.
-  (Closes issue #18464. Reported, patched by IgorG)
-
- * Reworking parsing of mwi => lines to resolve a segfault. Also add a set of
-  unit tests for the function that does the parsing.
-  (Closes issue #18350. Reported by gbour. Patched by Marquis)
-
- * When using cdr_pgsql the billsec field was not populated correctly on
-  unanswered calls.
-  (Closes issue #18406. Reported by joscas. Patched by tilghman)
-
- * Resolve memory leak in iCalendar and Exchange calendaring modules.
-  (Closes issue #18521. Reported, patched by pitel. Tested by cervajs)
-
- * This version of Asterisk includes the new Compiler Flags option
-  BETTER_BACKTRACES which uses libbfd to search for better symbol information
-  within both the Asterisk binary, as well as loaded modules, to assist when
-  using inline backtraces to track down problems.
-  (Patched by tilghman)
-
- * Resolve issue where no Music On Hold may be triggered when using
-  res_timing_dahdi.
-  (Closes issues #18262. Reported by francesco_r. Patched by cjacobson. Tested
-  by francesco_r, rfrantik, one47)
-
- * Resolve a memory leak when the Asterisk Manager Interface is disabled.
-  (Reported internally by kmorgan. Patched by russellb)
-
- * Reimplemented fax session reservation to reverse the ABI breakage introduced
-  in r297486.
-  (Reported internally. Patched by mnicholson)
-
- * Fix regression that changed behavior of queues when ringing a queue member.
-  (Closes issue #18747, #18733. Reported by vrban. Patched by qwell.)
-
- * Resolve deadlock involving REFER.
-  (Closes issue #18403. Reported, tested by jthurman. Patched by jpeeler.)
-
- Additionally, this release has the changes related to security bulletin
- AST-2011-002 which can be found at
- http://downloads.asterisk.org/pub/security/AST-2011-002.pdf
-
- For a full list of changes in this release, please see the ChangeLog:
-
- http://downloads.asterisk.org/pub/telephony/asterisk/ChangeLog-1.8.3
* Wed Feb 16 2011 <jeff at ocjtech.us> - 1.8.3-0.7.rc3
-
- The Asterisk Development Team has announced the third release candidate of
- Asterisk 1.8.3. This release candidate is available for immediate download at
- http://downloads.asterisk.org/pub/telephony/asterisk/
-
- The release of Asterisk 1.8.3-rc3 resolves the following issues in addition to
- those included in 1.8.3-rc1 and 1.8.3-rc2:
-
- *  Fix regression that changed behavior of queues when ringing a queue member.
-   (Closes issue #18747, #18733. Reported by vrban. Patched by qwell.)
-
- * Resolve deadlock involving REFER.
-  (Closes issue #18403. Reported, tested by jthurman. Patched by jpeeler.)
-
- For a full list of changes in this release candidate, please see the ChangeLog:
-
- http://downloads.asterisk.org/pub/telephony/asterisk/ChangeLog-1.8.3-rc3
* Fri Feb 11 2011 Jeffrey C. Ollie <jeff at ocjtech.us> - 1.8.3-0.6.rc2
- Bump release to build for F15
* Wed Feb  9 2011 Jeffrey C. Ollie <jeff at ocjtech.us> - 1.8.3-0.5.rc2
- Remove isa macros
* Wed Feb  9 2011 Jeffrey C. Ollie <jeff at ocjtech.us> - 1.8.3-0.4.rc2
- Make library dependencies architecture specific
* Mon Feb  7 2011 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 1.8.3-0.3.rc2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
--------------------------------------------------------------------------------


================================================================================
 cgnslib-2.5-5.r1.el6 (FEDORA-EPEL-2011-0539)
 Computational Fluid Dynamics General Notation System
--------------------------------------------------------------------------------
Update Information:

Updated to 2.5.5 release.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Feb 17 2011 Shakthi Kannan <shakthimaan [AT] fedoraproject DOT org> 2.5-5.r1
- Updated to 2.5-5 release.
--------------------------------------------------------------------------------


================================================================================
 ftop-1.0-3.el6 (FEDORA-EPEL-2011-0535)
 Utility that shows shows progress of open files and file systems
--------------------------------------------------------------------------------
Update Information:

Ftop is to files what top is to processes. The progress of all open files file systems can be monitored.
The selection of which files to display is possible through
a wide assortment of options. As with top, the items are displayed in order from most to least active.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #679913 - Review Request: ftop - Shows progress of open files and file systems
        https://bugzilla.redhat.com/show_bug.cgi?id=679913
--------------------------------------------------------------------------------


================================================================================
 python-simplemediawiki-1.1-1.el6 (FEDORA-EPEL-2011-0536)
 Extremely low-level wrapper to the MediaWiki API
--------------------------------------------------------------------------------
ChangeLog:

* Mon Feb 28 2011 Luke Macken <lmacken at redhat.com> - 1.1-1
- Update to 1.1 (#678398)
- Require python-simplejson
- Include the README
* Wed Feb  9 2011 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 1.0-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #678398 - python-simplemediawiki 1.1 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=678398
--------------------------------------------------------------------------------


================================================================================
 pywebdav-0.9.4.1-1.el6 (FEDORA-EPEL-2011-0545)
 WebDAV library
--------------------------------------------------------------------------------
Update Information:

The server affected by the CVE is distributed only as documentation, not as a directly runnable component.
--------------------------------------------------------------------------------
ChangeLog:

* Tue Mar  1 2011 Dan Horák <dan[at]danny.cz> 0.9.4.1-1
- update to 0.9.4.1
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #677718 - CVE-2011-0432 pywebdav: SQL injection due improper escaping of user credentials
        https://bugzilla.redhat.com/show_bug.cgi?id=677718
--------------------------------------------------------------------------------





More information about the epel-devel-list mailing list