Fedora EPEL 6 updates-testing report

updates at fedoraproject.org updates at fedoraproject.org
Sat Nov 17 01:07:29 UTC 2012


The following Fedora EPEL 6 Security updates need testing:
 Age  URL
 209  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-5620/bugzilla-3.4.14-2.el6
   6  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13432/weechat-0.3.8-3.el6
   1  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13477/cgit-0.9.1-1.el6
  35  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13155/cobbler-2.4.0-beta2.el6
  11  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13222/xlockmore-5.40-4.el6
   5  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13442/roundup-1.4.20-1.el6
  32  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13172/ssmtp-2.61-19.el6
   0  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13492/sticky-notes-0.3.09062012.4-10.el6
  32  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13176/icecast-2.3.3-1.el6
 131  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-6348/bcfg2-1.2.3-1.el6
   1  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13478/mod_security-2.7.1-3.el6,mod_security_crs-2.2.6-3.el6
 397  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2011-4701/supybot-gribble-0.83.4.1-10.el6
   0  https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-13088/python-django-horizon-2012.2-4.el6,openstack-utils-2012.2-6.el6,python-websockify-0.2.0-1.el6,novnc-0.4-2.el6,openstack-nova-2012.2-2.el6,openstack-cinder-2012.2-3.el6,python-django-openstack-auth-1.0.2-3.el6,python-cinderclient-0.2.26-1.el6,python-novaclient-2.9.0-1.el6,openstack-quantum-2012.2-2.el6,python-quantumclient-2.1.1-0.el6,python-prettytable-0.6.1-1.el6,openstack-glance-2012.2-3.el6,python-glanceclient-0.5.1-1.el6,openstack-keystone-2012.2-5.el6,python-keystoneclient-0.1.3.27-1.el6


The following builds have been pushed to Fedora EPEL 6 updates-testing

    RBTools-0.4.2-1.el6
    drupal6-6.26-5.el6
    fedmsg-0.6.0-1.el6
    fedora-review-0.3.1-3.el6
    novnc-0.4-2.el6
    open-sendmail-0-0.1.20090107cvs.el6
    openstack-cinder-2012.2-3.el6
    openstack-glance-2012.2-3.el6
    openstack-keystone-2012.2-5.el6
    openstack-nova-2012.2-2.el6
    openstack-quantum-2012.2-2.el6
    openstack-utils-2012.2-6.el6
    python-cinderclient-0.2.26-1.el6
    python-cloud-sptheme-1.5-1.el6
    python-django-horizon-2012.2-4.el6
    python-django-openstack-auth-1.0.2-3.el6
    python-glanceclient-0.5.1-1.el6
    python-keystoneclient-0.1.3.27-1.el6
    python-novaclient-2.9.0-1.el6
    python-prettytable-0.6.1-1.el6
    python-quantumclient-2.1.1-0.el6
    python-velruse-1.0.3-2.el6
    python-websockify-0.2.0-1.el6
    sticky-notes-0.3.09062012.4-10.el6
    zanata-python-client-1.3.12-1.el6

Details about builds:


================================================================================
 RBTools-0.4.2-1.el6 (FEDORA-EPEL-2012-13484)
 Tools for use with ReviewBoard
--------------------------------------------------------------------------------
Update Information:

- New upstream release 0.4.2
- http://www.reviewboard.org/docs/releasenotes/dev/rbtools/0.4.2/
- New Features:
-  * The .post-review-cookies.txt file is now made readable only by the calling
     user, improving security
-  * Improved debug output
-  * Updated our Plastic support for Plastic 4.0. This is no longer
     compatible with previous versions
-  * A revision to diff against can now be specified when using hgsubversion
- Bug Fixes:
-  * General:
-    * Using UTF-8 in the summary or description no longer breaks
-    * The GNU diff error no longer mentions Subversion specifically
-    * Posting a diff to a submitted review request now displays an error
       instead of reopening the review request
-  * Clearcase:
-    * Fixed base path generation for Clear Case
-  * Git:
-    * Fix issues when running post-review within a git submodule with recent
       Git revisions
-    * Git diffs no longer include diffs from submodules, preventing useless
       diffs from being created
-    * post-review no longer breaks when run from a detached Git HEAD
-  * Mercurial:
-    * Fixed bailing on harmless warnings when running hg commands
-    * Fixed path calculation for hgsubversion when the path contains a
       username
-  * Subversion:
-    * Scanning for the right repository is much faster now when there are lots
       of Subversion repositories on the server
-    * Fix handling of revisions with deleted files for Subversion
-    * Handle modifications inside moved/copied directories for Subversion
--------------------------------------------------------------------------------
ChangeLog:

* Fri Nov 16 2012 - Stephen Gallagher <sgallagh at redhat.com> - 0.4.2-1
- New upstream release 0.4.2
- http://www.reviewboard.org/docs/releasenotes/dev/rbtools/0.4.2/
- New Features:
-  * The .post-review-cookies.txt file is now made readable only by the calling
     user, improving security
-  * Improved debug output
-  * Updated our Plastic support for Plastic 4.0. This is no longer
     compatible with previous versions
-  * A revision to diff against can now be specified when using hgsubversion
- Bug Fixes:
-  * General:
-    * Using UTF-8 in the summary or description no longer breaks
-    * The GNU diff error no longer mentions Subversion specifically
-    * Posting a diff to a submitted review request now displays an error
       instead of reopening the review request
-  * Clearcase:
-    * Fixed base path generation for Clear Case
-  * Git:
-    * Fix issues when running post-review within a git submodule with recent
       Git revisions
-    * Git diffs no longer include diffs from submodules, preventing useless
       diffs from being created
-    * post-review no longer breaks when run from a detached Git HEAD
-  * Mercurial:
-    * Fixed bailing on harmless warnings when running hg commands
-    * Fixed path calculation for hgsubversion when the path contains a
       username
-  * Subversion:
-    * Scanning for the right repository is much faster now when there are lots
       of Subversion repositories on the server
-    * Fix handling of revisions with deleted files for Subversion
-    * Handle modifications inside moved/copied directories for Subversion
* Wed Jul 18 2012 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 0.4.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #877520 - RFE: Update to RBTools 0.4.2
        https://bugzilla.redhat.com/show_bug.cgi?id=877520
--------------------------------------------------------------------------------


================================================================================
 drupal6-6.26-5.el6 (FEDORA-EPEL-2012-13491)
 An open-source content-management platform
--------------------------------------------------------------------------------
Update Information:

JSON patch.
--------------------------------------------------------------------------------
ChangeLog:

* Fri Nov 16 2012 Jon Ciesla <limburgher at gmail.com> - 6.26-5
- JSON patch.
* Wed Oct 31 2012 Jon Ciesla <limburgher at gmail.com> - 6.26-4
- Fix conf.
* Tue Oct 30 2012 Jon Ciesla <limburgher at gmail.com> - 6.26-3
- Fix for httpd 2.4, BZ 871392.
* Wed Jul 18 2012 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 6.26-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
--------------------------------------------------------------------------------


================================================================================
 fedmsg-0.6.0-1.el6 (FEDORA-EPEL-2012-13490)
 Tools for Fedora Infrastructure real-time messaging
--------------------------------------------------------------------------------
Update Information:

Latest upstream with new commands, authz policy, enhanced fedmsg.text functions.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Nov 15 2012 Ralph Bean <rbean at redhat.com> - 0.6.0-1
- New upstream version.
- New service and subpackage: fedmsg-tweet.
- New command and subpackage: fedmsg-announce.
- New command and subpackage: fedmsg-collectd.
- New routing_policy config and extension of fedmsg.crypto.
- New functions in fedmsg.text to extract usernames and packages for a msg.
- Updated docs
- Pull in logrotate configuration from upstream.
- Updated rhel conditionals.
- Remove old temporary BR on orbited
* Wed Nov 14 2012 Ralph Bean <rbean at redhat.com> - 0.5.6-2
- Added a logrotate configuration.
--------------------------------------------------------------------------------


================================================================================
 fedora-review-0.3.1-3.el6 (FEDORA-EPEL-2012-13487)
 Review tool for fedora rpm packages
--------------------------------------------------------------------------------
Update Information:

Backport from upstream's git fix to RHBZ#874246 (Patch0)
Bugfix release including renewed support for EL6 and fix of global shell plugins
--------------------------------------------------------------------------------
ChangeLog:

* Wed Nov  7 2012 Pierre-Yves Chibon <pingou at pingoured.fr> - 0.3.1-3
- Backport from upstream's git fix to RHBZ#874246 (Patch0)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #874246 - review-env.sh: '}': not a valid identifier
        https://bugzilla.redhat.com/show_bug.cgi?id=874246
--------------------------------------------------------------------------------


================================================================================
 novnc-0.4-2.el6 (FEDORA-EPEL-2012-13088)
 VNC client using HTML5 (Web Sockets, Canvas) with encryption support
--------------------------------------------------------------------------------
Update Information:

* OpenStack Keystone (Identity service) Folsom release 2012.2
* python-keystoneclient new upstream release 0.1.3
* OpenStack Glance (Image service) Folsom release 2012.2
* OpenStack Glance fix for auth bypass for image deletion (CVE-2012-4573)
* python-glanceclient new package
* python-prettytable new upstream release 0.6.1
* OpenStack Quantum (Virtual network service) Folsom release 2012.2
* python-quantumclient new upstream release 2.1.1
* python-novaclient new upstream release 2.9.0
* python-cinderclient new package
* python-django-openstack-auth new package
* openstack-nova (compute service) Folsom release 2012.2
* openstack-cinder (volumes service) new package
* python-django-horizon Folsom release 2012.2
* novnc new upstream release 0.4
* python-websockify new upstream release 0.2.0
* openstack-utils new release to support Folsom


--------------------------------------------------------------------------------
ChangeLog:

* Mon Oct 22 2012 Nikola Đipanoov <ndipanov at redhat.com> - 0.4-2
- Fixes the supplied init script to match the new 0.4 version
* Mon Oct 22 2012 Nikola Đipanoov <ndipanov at redhat.com> - 0.4-1
- Moves to upstream version 0.4.0
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #872302 - CVE-2012-4573 CVE-2012-5482 OpenStack: Glance Authentication bypass for image deletion
        https://bugzilla.redhat.com/show_bug.cgi?id=872302
  [ 2 ] Bug #873524 - CVE-2012-5476 OpenStack: Quantum /etc/quantum/quantum.conf secret password and token exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873524
  [ 3 ] Bug #873120 - CVE-2012-5474 OpenStack: Dashboard /etc/openstack-dashboard/local_settings secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873120
  [ 4 ] Bug #873447 - CVE-2012-5483 OpenStack: Keystone /etc/keystone/ec2rc secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873447
--------------------------------------------------------------------------------


================================================================================
 open-sendmail-0-0.1.20090107cvs.el6 (FEDORA-EPEL-2012-13481)
 Additional m4 files used to generate sendmail.cf
--------------------------------------------------------------------------------
Update Information:

Open-Sendmail is the open development of additional m4 files used to generate and enhance sendmail.cf. The project contains sendmail goodies previously provided at anfi.homeunix.net and additional items.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #648305 - Review Request: open-sendmail - Additional m4 files used to generate sendmail.cf
        https://bugzilla.redhat.com/show_bug.cgi?id=648305
--------------------------------------------------------------------------------


================================================================================
 openstack-cinder-2012.2-3.el6 (FEDORA-EPEL-2012-13088)
 OpenStack Volume service
--------------------------------------------------------------------------------
Update Information:

* OpenStack Keystone (Identity service) Folsom release 2012.2
* python-keystoneclient new upstream release 0.1.3
* OpenStack Glance (Image service) Folsom release 2012.2
* OpenStack Glance fix for auth bypass for image deletion (CVE-2012-4573)
* python-glanceclient new package
* python-prettytable new upstream release 0.6.1
* OpenStack Quantum (Virtual network service) Folsom release 2012.2
* python-quantumclient new upstream release 2.1.1
* python-novaclient new upstream release 2.9.0
* python-cinderclient new package
* python-django-openstack-auth new package
* openstack-nova (compute service) Folsom release 2012.2
* openstack-cinder (volumes service) new package
* python-django-horizon Folsom release 2012.2
* novnc new upstream release 0.4
* python-websockify new upstream release 0.2.0
* openstack-utils new release to support Folsom


--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #872302 - CVE-2012-4573 CVE-2012-5482 OpenStack: Glance Authentication bypass for image deletion
        https://bugzilla.redhat.com/show_bug.cgi?id=872302
  [ 2 ] Bug #873524 - CVE-2012-5476 OpenStack: Quantum /etc/quantum/quantum.conf secret password and token exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873524
  [ 3 ] Bug #873120 - CVE-2012-5474 OpenStack: Dashboard /etc/openstack-dashboard/local_settings secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873120
  [ 4 ] Bug #873447 - CVE-2012-5483 OpenStack: Keystone /etc/keystone/ec2rc secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873447
--------------------------------------------------------------------------------


================================================================================
 openstack-glance-2012.2-3.el6 (FEDORA-EPEL-2012-13088)
 OpenStack Image Service
--------------------------------------------------------------------------------
Update Information:

* OpenStack Keystone (Identity service) Folsom release 2012.2
* python-keystoneclient new upstream release 0.1.3
* OpenStack Glance (Image service) Folsom release 2012.2
* OpenStack Glance fix for auth bypass for image deletion (CVE-2012-4573)
* python-glanceclient new package
* python-prettytable new upstream release 0.6.1
* OpenStack Quantum (Virtual network service) Folsom release 2012.2
* python-quantumclient new upstream release 2.1.1
* python-novaclient new upstream release 2.9.0
* python-cinderclient new package
* python-django-openstack-auth new package
* openstack-nova (compute service) Folsom release 2012.2
* openstack-cinder (volumes service) new package
* python-django-horizon Folsom release 2012.2
* novnc new upstream release 0.4
* python-websockify new upstream release 0.2.0
* openstack-utils new release to support Folsom


--------------------------------------------------------------------------------
ChangeLog:

* Fri Nov  9 2012 Pádraig Brady <P at draigBrady.com> 2012.2-3
- Fix Glance Authentication bypass for image deletion (CVE-2012-4573)
* Thu Sep 27 2012 Alan Pevec <apevec at redhat.com> 2012.2-2
- Update to folsom final
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #872302 - CVE-2012-4573 CVE-2012-5482 OpenStack: Glance Authentication bypass for image deletion
        https://bugzilla.redhat.com/show_bug.cgi?id=872302
  [ 2 ] Bug #873524 - CVE-2012-5476 OpenStack: Quantum /etc/quantum/quantum.conf secret password and token exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873524
  [ 3 ] Bug #873120 - CVE-2012-5474 OpenStack: Dashboard /etc/openstack-dashboard/local_settings secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873120
  [ 4 ] Bug #873447 - CVE-2012-5483 OpenStack: Keystone /etc/keystone/ec2rc secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873447
--------------------------------------------------------------------------------


================================================================================
 openstack-keystone-2012.2-5.el6 (FEDORA-EPEL-2012-13088)
 OpenStack Identity Service
--------------------------------------------------------------------------------
Update Information:

* OpenStack Keystone (Identity service) Folsom release 2012.2
* python-keystoneclient new upstream release 0.1.3
* OpenStack Glance (Image service) Folsom release 2012.2
* OpenStack Glance fix for auth bypass for image deletion (CVE-2012-4573)
* python-glanceclient new package
* python-prettytable new upstream release 0.6.1
* OpenStack Quantum (Virtual network service) Folsom release 2012.2
* python-quantumclient new upstream release 2.1.1
* python-novaclient new upstream release 2.9.0
* python-cinderclient new package
* python-django-openstack-auth new package
* openstack-nova (compute service) Folsom release 2012.2
* openstack-cinder (volumes service) new package
* python-django-horizon Folsom release 2012.2
* novnc new upstream release 0.4
* python-websockify new upstream release 0.2.0
* openstack-utils new release to support Folsom


--------------------------------------------------------------------------------
ChangeLog:

* Fri Nov 16 2012 Alan Pevec <apevec at redhat.com> 2012.2-5
- fix /etc/keystone directory permission CVE-2012-5483 (rhbz#873447)
* Mon Nov 12 2012 Alan Pevec <apevec at redhat.com> 2012.2-4
- readd iso8601 dependency (from openstack-common timeutils)
* Fri Nov  9 2012 Alan Pevec <apevec at redhat.com> 2012.2-3
- remove auth-token subpackage (rhbz#868357)
* Thu Nov  8 2012 Alan Pevec <apevec at redhat.com> 2012.2-2
- Fix default port for identity.internalURL in sample script
* Thu Oct 18 2012 Alan Pevec <apevec at redhat.com> 2012.2-1
- Update to folsom
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #872302 - CVE-2012-4573 CVE-2012-5482 OpenStack: Glance Authentication bypass for image deletion
        https://bugzilla.redhat.com/show_bug.cgi?id=872302
  [ 2 ] Bug #873524 - CVE-2012-5476 OpenStack: Quantum /etc/quantum/quantum.conf secret password and token exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873524
  [ 3 ] Bug #873120 - CVE-2012-5474 OpenStack: Dashboard /etc/openstack-dashboard/local_settings secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873120
  [ 4 ] Bug #873447 - CVE-2012-5483 OpenStack: Keystone /etc/keystone/ec2rc secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873447
--------------------------------------------------------------------------------


================================================================================
 openstack-nova-2012.2-2.el6 (FEDORA-EPEL-2012-13088)
 OpenStack Compute (nova)
--------------------------------------------------------------------------------
Update Information:

* OpenStack Keystone (Identity service) Folsom release 2012.2
* python-keystoneclient new upstream release 0.1.3
* OpenStack Glance (Image service) Folsom release 2012.2
* OpenStack Glance fix for auth bypass for image deletion (CVE-2012-4573)
* python-glanceclient new package
* python-prettytable new upstream release 0.6.1
* OpenStack Quantum (Virtual network service) Folsom release 2012.2
* python-quantumclient new upstream release 2.1.1
* python-novaclient new upstream release 2.9.0
* python-cinderclient new package
* python-django-openstack-auth new package
* openstack-nova (compute service) Folsom release 2012.2
* openstack-cinder (volumes service) new package
* python-django-horizon Folsom release 2012.2
* novnc new upstream release 0.4
* python-websockify new upstream release 0.2.0
* openstack-utils new release to support Folsom


--------------------------------------------------------------------------------
ChangeLog:

* Tue Oct 30 2012 Pádraig Brady <pbrady at redhat.com> - 2012.2-2
- Add support for python-migrate-0.6
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #872302 - CVE-2012-4573 CVE-2012-5482 OpenStack: Glance Authentication bypass for image deletion
        https://bugzilla.redhat.com/show_bug.cgi?id=872302
  [ 2 ] Bug #873524 - CVE-2012-5476 OpenStack: Quantum /etc/quantum/quantum.conf secret password and token exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873524
  [ 3 ] Bug #873120 - CVE-2012-5474 OpenStack: Dashboard /etc/openstack-dashboard/local_settings secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873120
  [ 4 ] Bug #873447 - CVE-2012-5483 OpenStack: Keystone /etc/keystone/ec2rc secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873447
--------------------------------------------------------------------------------


================================================================================
 openstack-quantum-2012.2-2.el6 (FEDORA-EPEL-2012-13088)
 Virtual network service for OpenStack (quantum)
--------------------------------------------------------------------------------
Update Information:

* OpenStack Keystone (Identity service) Folsom release 2012.2
* python-keystoneclient new upstream release 0.1.3
* OpenStack Glance (Image service) Folsom release 2012.2
* OpenStack Glance fix for auth bypass for image deletion (CVE-2012-4573)
* python-glanceclient new package
* python-prettytable new upstream release 0.6.1
* OpenStack Quantum (Virtual network service) Folsom release 2012.2
* python-quantumclient new upstream release 2.1.1
* python-novaclient new upstream release 2.9.0
* python-cinderclient new package
* python-django-openstack-auth new package
* openstack-nova (compute service) Folsom release 2012.2
* openstack-cinder (volumes service) new package
* python-django-horizon Folsom release 2012.2
* novnc new upstream release 0.4
* python-websockify new upstream release 0.2.0
* openstack-utils new release to support Folsom


--------------------------------------------------------------------------------
ChangeLog:

* Thu Nov  1 2012 Alan Pevec <apevec at redhat.com> 2012.2-2
- l3_agent not disabling namespace use lp#1060559
* Fri Sep 28 2012 Robert Kukura <rkukura at redhat.com> - 2012.2-1
- Update to folsom final
- Require python-quantumclient >= 1:2.1.1
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #872302 - CVE-2012-4573 CVE-2012-5482 OpenStack: Glance Authentication bypass for image deletion
        https://bugzilla.redhat.com/show_bug.cgi?id=872302
  [ 2 ] Bug #873524 - CVE-2012-5476 OpenStack: Quantum /etc/quantum/quantum.conf secret password and token exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873524
  [ 3 ] Bug #873120 - CVE-2012-5474 OpenStack: Dashboard /etc/openstack-dashboard/local_settings secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873120
  [ 4 ] Bug #873447 - CVE-2012-5483 OpenStack: Keystone /etc/keystone/ec2rc secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873447
--------------------------------------------------------------------------------


================================================================================
 openstack-utils-2012.2-6.el6 (FEDORA-EPEL-2012-13088)
 Helper utilities for OpenStack services
--------------------------------------------------------------------------------
Update Information:

* OpenStack Keystone (Identity service) Folsom release 2012.2
* python-keystoneclient new upstream release 0.1.3
* OpenStack Glance (Image service) Folsom release 2012.2
* OpenStack Glance fix for auth bypass for image deletion (CVE-2012-4573)
* python-glanceclient new package
* python-prettytable new upstream release 0.6.1
* OpenStack Quantum (Virtual network service) Folsom release 2012.2
* python-quantumclient new upstream release 2.1.1
* python-novaclient new upstream release 2.9.0
* python-cinderclient new package
* python-django-openstack-auth new package
* openstack-nova (compute service) Folsom release 2012.2
* openstack-cinder (volumes service) new package
* python-django-horizon Folsom release 2012.2
* novnc new upstream release 0.4
* python-websockify new upstream release 0.2.0
* openstack-utils new release to support Folsom


--------------------------------------------------------------------------------
ChangeLog:

* Thu Nov  8 2012 Alan Pevec <apevec at redhat.com> 2012.2-6
- Disable Quantum rhbz#873823
* Wed Oct 10 2012 Pádraig Brady <P at draigBrady.com> 2012.2-5
- Update from upstream to support folsom packages
* Fri Jul 20 2012 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 2012.1-2.1
- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #872302 - CVE-2012-4573 CVE-2012-5482 OpenStack: Glance Authentication bypass for image deletion
        https://bugzilla.redhat.com/show_bug.cgi?id=872302
  [ 2 ] Bug #873524 - CVE-2012-5476 OpenStack: Quantum /etc/quantum/quantum.conf secret password and token exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873524
  [ 3 ] Bug #873120 - CVE-2012-5474 OpenStack: Dashboard /etc/openstack-dashboard/local_settings secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873120
  [ 4 ] Bug #873447 - CVE-2012-5483 OpenStack: Keystone /etc/keystone/ec2rc secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873447
--------------------------------------------------------------------------------


================================================================================
 python-cinderclient-0.2.26-1.el6 (FEDORA-EPEL-2012-13088)
 Python API and CLI for OpenStack cinder
--------------------------------------------------------------------------------
Update Information:

* OpenStack Keystone (Identity service) Folsom release 2012.2
* python-keystoneclient new upstream release 0.1.3
* OpenStack Glance (Image service) Folsom release 2012.2
* OpenStack Glance fix for auth bypass for image deletion (CVE-2012-4573)
* python-glanceclient new package
* python-prettytable new upstream release 0.6.1
* OpenStack Quantum (Virtual network service) Folsom release 2012.2
* python-quantumclient new upstream release 2.1.1
* python-novaclient new upstream release 2.9.0
* python-cinderclient new package
* python-django-openstack-auth new package
* openstack-nova (compute service) Folsom release 2012.2
* openstack-cinder (volumes service) new package
* python-django-horizon Folsom release 2012.2
* novnc new upstream release 0.4
* python-websockify new upstream release 0.2.0
* openstack-utils new release to support Folsom


--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #872302 - CVE-2012-4573 CVE-2012-5482 OpenStack: Glance Authentication bypass for image deletion
        https://bugzilla.redhat.com/show_bug.cgi?id=872302
  [ 2 ] Bug #873524 - CVE-2012-5476 OpenStack: Quantum /etc/quantum/quantum.conf secret password and token exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873524
  [ 3 ] Bug #873120 - CVE-2012-5474 OpenStack: Dashboard /etc/openstack-dashboard/local_settings secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873120
  [ 4 ] Bug #873447 - CVE-2012-5483 OpenStack: Keystone /etc/keystone/ec2rc secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873447
--------------------------------------------------------------------------------


================================================================================
 python-cloud-sptheme-1.5-1.el6 (FEDORA-EPEL-2012-13485)
 A nice sphinx theme named 'Cloud', and some related extensions
--------------------------------------------------------------------------------
Update Information:

Initial packaging.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #875893 - Review Request: python-cloud-sptheme - A nice sphinx theme named 'Cloud', and some related extensions
        https://bugzilla.redhat.com/show_bug.cgi?id=875893
--------------------------------------------------------------------------------


================================================================================
 python-django-horizon-2012.2-4.el6 (FEDORA-EPEL-2012-13088)
 Django application for talking to Openstack
--------------------------------------------------------------------------------
Update Information:

* OpenStack Keystone (Identity service) Folsom release 2012.2
* python-keystoneclient new upstream release 0.1.3
* OpenStack Glance (Image service) Folsom release 2012.2
* OpenStack Glance fix for auth bypass for image deletion (CVE-2012-4573)
* python-glanceclient new package
* python-prettytable new upstream release 0.6.1
* OpenStack Quantum (Virtual network service) Folsom release 2012.2
* python-quantumclient new upstream release 2.1.1
* python-novaclient new upstream release 2.9.0
* python-cinderclient new package
* python-django-openstack-auth new package
* openstack-nova (compute service) Folsom release 2012.2
* openstack-cinder (volumes service) new package
* python-django-horizon Folsom release 2012.2
* novnc new upstream release 0.4
* python-websockify new upstream release 0.2.0
* openstack-utils new release to support Folsom


--------------------------------------------------------------------------------
ChangeLog:

* Tue Nov 13 2012 Matthias Runge <mrunge at redhat.com> - 2012.2-4
- drop dependency to python-cloudfiles
- fix /etc/openstack-dashboard permission CVE-2012-5474 (rhbz#873120)
* Mon Oct 22 2012 Matthias Runge <mrunge at redhat.com> - 2012.2-3
- require Django14 for EPEL6
- finally move login/logout to /dashboard/auth/login
- adapt httpd config to httpd-2.4 (bz 868408)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #872302 - CVE-2012-4573 CVE-2012-5482 OpenStack: Glance Authentication bypass for image deletion
        https://bugzilla.redhat.com/show_bug.cgi?id=872302
  [ 2 ] Bug #873524 - CVE-2012-5476 OpenStack: Quantum /etc/quantum/quantum.conf secret password and token exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873524
  [ 3 ] Bug #873120 - CVE-2012-5474 OpenStack: Dashboard /etc/openstack-dashboard/local_settings secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873120
  [ 4 ] Bug #873447 - CVE-2012-5483 OpenStack: Keystone /etc/keystone/ec2rc secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873447
--------------------------------------------------------------------------------


================================================================================
 python-django-openstack-auth-1.0.2-3.el6 (FEDORA-EPEL-2012-13088)
 Django authentication backend for OpenStack Keystone
--------------------------------------------------------------------------------
Update Information:

* OpenStack Keystone (Identity service) Folsom release 2012.2
* python-keystoneclient new upstream release 0.1.3
* OpenStack Glance (Image service) Folsom release 2012.2
* OpenStack Glance fix for auth bypass for image deletion (CVE-2012-4573)
* python-glanceclient new package
* python-prettytable new upstream release 0.6.1
* OpenStack Quantum (Virtual network service) Folsom release 2012.2
* python-quantumclient new upstream release 2.1.1
* python-novaclient new upstream release 2.9.0
* python-cinderclient new package
* python-django-openstack-auth new package
* openstack-nova (compute service) Folsom release 2012.2
* openstack-cinder (volumes service) new package
* python-django-horizon Folsom release 2012.2
* novnc new upstream release 0.4
* python-websockify new upstream release 0.2.0
* openstack-utils new release to support Folsom


--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #872302 - CVE-2012-4573 CVE-2012-5482 OpenStack: Glance Authentication bypass for image deletion
        https://bugzilla.redhat.com/show_bug.cgi?id=872302
  [ 2 ] Bug #873524 - CVE-2012-5476 OpenStack: Quantum /etc/quantum/quantum.conf secret password and token exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873524
  [ 3 ] Bug #873120 - CVE-2012-5474 OpenStack: Dashboard /etc/openstack-dashboard/local_settings secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873120
  [ 4 ] Bug #873447 - CVE-2012-5483 OpenStack: Keystone /etc/keystone/ec2rc secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873447
--------------------------------------------------------------------------------


================================================================================
 python-glanceclient-0.5.1-1.el6 (FEDORA-EPEL-2012-13088)
 Python API and CLI for OpenStack Glance
--------------------------------------------------------------------------------
Update Information:

* OpenStack Keystone (Identity service) Folsom release 2012.2
* python-keystoneclient new upstream release 0.1.3
* OpenStack Glance (Image service) Folsom release 2012.2
* OpenStack Glance fix for auth bypass for image deletion (CVE-2012-4573)
* python-glanceclient new package
* python-prettytable new upstream release 0.6.1
* OpenStack Quantum (Virtual network service) Folsom release 2012.2
* python-quantumclient new upstream release 2.1.1
* python-novaclient new upstream release 2.9.0
* python-cinderclient new package
* python-django-openstack-auth new package
* openstack-nova (compute service) Folsom release 2012.2
* openstack-cinder (volumes service) new package
* python-django-horizon Folsom release 2012.2
* novnc new upstream release 0.4
* python-websockify new upstream release 0.2.0
* openstack-utils new release to support Folsom


--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #872302 - CVE-2012-4573 CVE-2012-5482 OpenStack: Glance Authentication bypass for image deletion
        https://bugzilla.redhat.com/show_bug.cgi?id=872302
  [ 2 ] Bug #873524 - CVE-2012-5476 OpenStack: Quantum /etc/quantum/quantum.conf secret password and token exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873524
  [ 3 ] Bug #873120 - CVE-2012-5474 OpenStack: Dashboard /etc/openstack-dashboard/local_settings secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873120
  [ 4 ] Bug #873447 - CVE-2012-5483 OpenStack: Keystone /etc/keystone/ec2rc secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873447
--------------------------------------------------------------------------------


================================================================================
 python-keystoneclient-0.1.3.27-1.el6 (FEDORA-EPEL-2012-13088)
 Python API and CLI for OpenStack Keystone
--------------------------------------------------------------------------------
Update Information:

* OpenStack Keystone (Identity service) Folsom release 2012.2
* python-keystoneclient new upstream release 0.1.3
* OpenStack Glance (Image service) Folsom release 2012.2
* OpenStack Glance fix for auth bypass for image deletion (CVE-2012-4573)
* python-glanceclient new package
* python-prettytable new upstream release 0.6.1
* OpenStack Quantum (Virtual network service) Folsom release 2012.2
* python-quantumclient new upstream release 2.1.1
* python-novaclient new upstream release 2.9.0
* python-cinderclient new package
* python-django-openstack-auth new package
* openstack-nova (compute service) Folsom release 2012.2
* openstack-cinder (volumes service) new package
* python-django-horizon Folsom release 2012.2
* novnc new upstream release 0.4
* python-websockify new upstream release 0.2.0
* openstack-utils new release to support Folsom


--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #872302 - CVE-2012-4573 CVE-2012-5482 OpenStack: Glance Authentication bypass for image deletion
        https://bugzilla.redhat.com/show_bug.cgi?id=872302
  [ 2 ] Bug #873524 - CVE-2012-5476 OpenStack: Quantum /etc/quantum/quantum.conf secret password and token exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873524
  [ 3 ] Bug #873120 - CVE-2012-5474 OpenStack: Dashboard /etc/openstack-dashboard/local_settings secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873120
  [ 4 ] Bug #873447 - CVE-2012-5483 OpenStack: Keystone /etc/keystone/ec2rc secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873447
--------------------------------------------------------------------------------


================================================================================
 python-novaclient-2.9.0-1.el6 (FEDORA-EPEL-2012-13088)
 Python API and CLI for OpenStack Nova
--------------------------------------------------------------------------------
Update Information:

* OpenStack Keystone (Identity service) Folsom release 2012.2
* python-keystoneclient new upstream release 0.1.3
* OpenStack Glance (Image service) Folsom release 2012.2
* OpenStack Glance fix for auth bypass for image deletion (CVE-2012-4573)
* python-glanceclient new package
* python-prettytable new upstream release 0.6.1
* OpenStack Quantum (Virtual network service) Folsom release 2012.2
* python-quantumclient new upstream release 2.1.1
* python-novaclient new upstream release 2.9.0
* python-cinderclient new package
* python-django-openstack-auth new package
* openstack-nova (compute service) Folsom release 2012.2
* openstack-cinder (volumes service) new package
* python-django-horizon Folsom release 2012.2
* novnc new upstream release 0.4
* python-websockify new upstream release 0.2.0
* openstack-utils new release to support Folsom


--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #872302 - CVE-2012-4573 CVE-2012-5482 OpenStack: Glance Authentication bypass for image deletion
        https://bugzilla.redhat.com/show_bug.cgi?id=872302
  [ 2 ] Bug #873524 - CVE-2012-5476 OpenStack: Quantum /etc/quantum/quantum.conf secret password and token exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873524
  [ 3 ] Bug #873120 - CVE-2012-5474 OpenStack: Dashboard /etc/openstack-dashboard/local_settings secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873120
  [ 4 ] Bug #873447 - CVE-2012-5483 OpenStack: Keystone /etc/keystone/ec2rc secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873447
--------------------------------------------------------------------------------


================================================================================
 python-prettytable-0.6.1-1.el6 (FEDORA-EPEL-2012-13088)
 Python library to display tabular data in tables
--------------------------------------------------------------------------------
Update Information:

* OpenStack Keystone (Identity service) Folsom release 2012.2
* python-keystoneclient new upstream release 0.1.3
* OpenStack Glance (Image service) Folsom release 2012.2
* OpenStack Glance fix for auth bypass for image deletion (CVE-2012-4573)
* python-glanceclient new package
* python-prettytable new upstream release 0.6.1
* OpenStack Quantum (Virtual network service) Folsom release 2012.2
* python-quantumclient new upstream release 2.1.1
* python-novaclient new upstream release 2.9.0
* python-cinderclient new package
* python-django-openstack-auth new package
* openstack-nova (compute service) Folsom release 2012.2
* openstack-cinder (volumes service) new package
* python-django-horizon Folsom release 2012.2
* novnc new upstream release 0.4
* python-websockify new upstream release 0.2.0
* openstack-utils new release to support Folsom


--------------------------------------------------------------------------------
ChangeLog:

* Tue Aug  7 2012 Ralph Bean <rbean at redhat.com> - 0.6.1-1
- New upstream version
- Added support for python3
- Included README, COPYING, and CHANGELOG in docs
* Tue Aug  7 2012 Pádraig Brady <P at draigBrady.com> - 0.6-1
- Update to 0.6
* Sat Jul 21 2012 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 0.5-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
* Sat Jan 14 2012 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 0.5-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #872302 - CVE-2012-4573 CVE-2012-5482 OpenStack: Glance Authentication bypass for image deletion
        https://bugzilla.redhat.com/show_bug.cgi?id=872302
  [ 2 ] Bug #873524 - CVE-2012-5476 OpenStack: Quantum /etc/quantum/quantum.conf secret password and token exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873524
  [ 3 ] Bug #873120 - CVE-2012-5474 OpenStack: Dashboard /etc/openstack-dashboard/local_settings secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873120
  [ 4 ] Bug #873447 - CVE-2012-5483 OpenStack: Keystone /etc/keystone/ec2rc secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873447
--------------------------------------------------------------------------------


================================================================================
 python-quantumclient-2.1.1-0.el6 (FEDORA-EPEL-2012-13088)
 Python API and CLI for OpenStack Quantum
--------------------------------------------------------------------------------
Update Information:

* OpenStack Keystone (Identity service) Folsom release 2012.2
* python-keystoneclient new upstream release 0.1.3
* OpenStack Glance (Image service) Folsom release 2012.2
* OpenStack Glance fix for auth bypass for image deletion (CVE-2012-4573)
* python-glanceclient new package
* python-prettytable new upstream release 0.6.1
* OpenStack Quantum (Virtual network service) Folsom release 2012.2
* python-quantumclient new upstream release 2.1.1
* python-novaclient new upstream release 2.9.0
* python-cinderclient new package
* python-django-openstack-auth new package
* openstack-nova (compute service) Folsom release 2012.2
* openstack-cinder (volumes service) new package
* python-django-horizon Folsom release 2012.2
* novnc new upstream release 0.4
* python-websockify new upstream release 0.2.0
* openstack-utils new release to support Folsom


--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #872302 - CVE-2012-4573 CVE-2012-5482 OpenStack: Glance Authentication bypass for image deletion
        https://bugzilla.redhat.com/show_bug.cgi?id=872302
  [ 2 ] Bug #873524 - CVE-2012-5476 OpenStack: Quantum /etc/quantum/quantum.conf secret password and token exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873524
  [ 3 ] Bug #873120 - CVE-2012-5474 OpenStack: Dashboard /etc/openstack-dashboard/local_settings secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873120
  [ 4 ] Bug #873447 - CVE-2012-5483 OpenStack: Keystone /etc/keystone/ec2rc secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873447
--------------------------------------------------------------------------------


================================================================================
 python-velruse-1.0.3-2.el6 (FEDORA-EPEL-2012-13488)
 Simplify third-party authentication for web applications
--------------------------------------------------------------------------------
Update Information:

Initial packaging.
--------------------------------------------------------------------------------


================================================================================
 python-websockify-0.2.0-1.el6 (FEDORA-EPEL-2012-13088)
 WSGI based adapter for the Websockets protocol
--------------------------------------------------------------------------------
Update Information:

* OpenStack Keystone (Identity service) Folsom release 2012.2
* python-keystoneclient new upstream release 0.1.3
* OpenStack Glance (Image service) Folsom release 2012.2
* OpenStack Glance fix for auth bypass for image deletion (CVE-2012-4573)
* python-glanceclient new package
* python-prettytable new upstream release 0.6.1
* OpenStack Quantum (Virtual network service) Folsom release 2012.2
* python-quantumclient new upstream release 2.1.1
* python-novaclient new upstream release 2.9.0
* python-cinderclient new package
* python-django-openstack-auth new package
* openstack-nova (compute service) Folsom release 2012.2
* openstack-cinder (volumes service) new package
* python-django-horizon Folsom release 2012.2
* novnc new upstream release 0.4
* python-websockify new upstream release 0.2.0
* openstack-utils new release to support Folsom


--------------------------------------------------------------------------------
ChangeLog:

* Fri Nov  2 2012 Nikola Đipanov <ndipanov at redhat.com> - 0.2.0-1
- Moving to the upstream version 0.2.0
* Wed Oct 31 2012 Pádraig Brady <P at draigBrady.com> - 0.1.0-6
- Remove hard dependency on numpy
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #872302 - CVE-2012-4573 CVE-2012-5482 OpenStack: Glance Authentication bypass for image deletion
        https://bugzilla.redhat.com/show_bug.cgi?id=872302
  [ 2 ] Bug #873524 - CVE-2012-5476 OpenStack: Quantum /etc/quantum/quantum.conf secret password and token exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873524
  [ 3 ] Bug #873120 - CVE-2012-5474 OpenStack: Dashboard /etc/openstack-dashboard/local_settings secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873120
  [ 4 ] Bug #873447 - CVE-2012-5483 OpenStack: Keystone /etc/keystone/ec2rc secret key exposure
        https://bugzilla.redhat.com/show_bug.cgi?id=873447
--------------------------------------------------------------------------------


================================================================================
 sticky-notes-0.3.09062012.4-10.el6 (FEDORA-EPEL-2012-13492)
 Sticky notes is a free and open source paste-bin application
--------------------------------------------------------------------------------
Update Information:

Fix some XSS issues
--------------------------------------------------------------------------------
ChangeLog:

* Fri Nov 16 2012 Athmane Madjoudj <athmane at fedoraproject.org> 0.3.09062012.4-10
- Fix some XSS issues.
* Tue Oct 30 2012 Athmane Madjoudj <athmane at fedoraproject.org> 0.3.09062012.4-9
- Make sticky-notes.conf compatible with both httpd 2.4.x and 2.2.x.
--------------------------------------------------------------------------------


================================================================================
 zanata-python-client-1.3.12-1.el6 (FEDORA-EPEL-2012-13486)
 Python Client for Zanata Server
--------------------------------------------------------------------------------
Update Information:

- Fixed RHBZ Bug 876063
- Revised test files
- Use PUT instead of POST/PUT when pushing source documents
- Change Flies to Zanata in messages

--------------------------------------------------------------------------------
ChangeLog:

* Thu Nov 15 2012 Sean Flanigan <sflaniga at redhat.com> - 1.3.12-1
- Revised test files
- Use PUT instead of POST/PUT when pushing source documents
- Change Flies to Zanata in messages
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #876063 - zanata-python-client should be able to push pot files in sub directories
        https://bugzilla.redhat.com/show_bug.cgi?id=876063
--------------------------------------------------------------------------------





More information about the epel-devel-list mailing list