The following Fedora EPEL 9 Security updates need testing: Age URL 6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-70ce865582 fcgi-2.4.0-52.el9 3 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-5c25fd8e2d roundcubemail-1.5.10-1.el9 3 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-1994b4dec7 seamonkey-2.53.21-1.el9 1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-f9b95079ea yarnpkg-1.22.22-8.el9 The following builds have been pushed to Fedora EPEL 9 updates-testing chromium-137.0.7151.68-1.el9 distribution-gpg-keys-1.112-1.el9 fastfetch-2.44.0-1.el9 libeatmydata-131-1.el9 partclone-0.3.37-1.el9 strawberry-1.2.11-1.el9 Details about builds: ================================================================================ chromium-137.0.7151.68-1.el9 (FEDORA-EPEL-2025-770f8ff502) A WebKit (Blink) powered web browser that Google doesn't want you to use -------------------------------------------------------------------------------- Update Information: Update to 137.0.7151.68 CVE-2025-5419: Out of bounds read and write in V8 CVE-2025-5068: Use after free in Blink -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 3 2025 Than Ngo <than@xxxxxxxxxx> - 137.0.7151.68-1 - Update to 137.0.7151.68 * CVE-2025-5419: Out of bounds read and write in V8 * CVE-2025-5068: Use after free in Blink -------------------------------------------------------------------------------- References: [ 1 ] Bug #2369919 - CVE-2025-5068 chromium: Chrome Use-After-Free Vulnerability [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2369919 [ 2 ] Bug #2369920 - CVE-2025-5068 chromium: Chrome Use-After-Free Vulnerability [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2369920 [ 3 ] Bug #2369921 - CVE-2025-5419 chromium: Chrome Heap Corruption Vulnerability [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2369921 [ 4 ] Bug #2369922 - CVE-2025-5419 chromium: Chrome Heap Corruption Vulnerability [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2369922 -------------------------------------------------------------------------------- ================================================================================ distribution-gpg-keys-1.112-1.el9 (FEDORA-EPEL-2025-4fc7e38124) GPG keys of various Linux distributions -------------------------------------------------------------------------------- Update Information: Add FreeBSD keys Fix AlmaLinux name and alphabetical ordering of distros Add AlmaLinux EPEL AltArch Key -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 5 2025 Neal Gompa <neal@xxxxxxxxx> 1.112-1 - Add FreeBSD keys - Fix AlmaLinux name and alphabetical ordering of distros - Add AlmaLinux EPEL AltArch Key -------------------------------------------------------------------------------- References: [ 1 ] Bug #2338147 - distribution-gpg-keys-1.110-1 is available https://bugzilla.redhat.com/show_bug.cgi?id=2338147 -------------------------------------------------------------------------------- ================================================================================ fastfetch-2.44.0-1.el9 (FEDORA-EPEL-2025-9671e91824) Fast neofetch-like system information tool -------------------------------------------------------------------------------- Update Information: update to 2.44.0 -------------------------------------------------------------------------------- ChangeLog: * Fri May 30 2025 Adam Fidel <refuse@xxxxxxxxx> - 2.44.0-1 - update to 2.44.0 rhbz#2368161 -------------------------------------------------------------------------------- ================================================================================ libeatmydata-131-1.el9 (FEDORA-EPEL-2025-a01f2840bb) Library and utilities designed to disable fsync and friends -------------------------------------------------------------------------------- Update Information: New upstream release -------------------------------------------------------------------------------- ChangeLog: * Wed Jun 4 2025 Stewart Smith <stewart@xxxxxxxxxxxxxxxx> - 131-1 - New upstream release * Fri Jan 17 2025 Fedora Release Engineering <releng@xxxxxxxxxxxxxxxxx> - 130-13 - Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild * Mon Jul 29 2024 Miroslav Suchý <msuchy@xxxxxxxxxx> - 130-12 - convert license to SPDX * Thu Jul 18 2024 Fedora Release Engineering <releng@xxxxxxxxxxxxxxxxx> - 130-11 - Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild * Thu Jan 25 2024 Fedora Release Engineering <releng@xxxxxxxxxxxxxxxxx> - 130-10 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild * Sun Jan 21 2024 Fedora Release Engineering <releng@xxxxxxxxxxxxxxxxx> - 130-9 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild * Thu Jul 20 2023 Fedora Release Engineering <releng@xxxxxxxxxxxxxxxxx> - 130-8 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild -------------------------------------------------------------------------------- ================================================================================ partclone-0.3.37-1.el9 (FEDORA-EPEL-2025-feace00ecd) Utility to clone and restore a partition -------------------------------------------------------------------------------- Update Information: partclone v0.3.37 Fix exFAT dirty output while output is STDOUT Add some test scripts -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 5 2025 Robert Scheck <robert@xxxxxxxxxxxxxxxxx> 0.3.37-1 - Upgrade to 0.3.37 (#2370203) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2370203 - partclone-0.3.37 is available https://bugzilla.redhat.com/show_bug.cgi?id=2370203 -------------------------------------------------------------------------------- ================================================================================ strawberry-1.2.11-1.el9 (FEDORA-EPEL-2025-a5a71d9b42) Audio player and music collection organizer -------------------------------------------------------------------------------- Update Information: Update to version 1.2.11 Upstream changelog: https://github.com/strawberrymusicplayer/strawberry/releases/tag/1.2.11 -------------------------------------------------------------------------------- ChangeLog: * Wed Jun 4 2025 Ondrej MosnáÄ?ek <omosnacek@xxxxxxxxx> - 1.2.11-1 - Update to version 1.2.11 (fedora#2366660) --------------------------------------------------------------------------------
-- _______________________________________________ epel-devel mailing list -- epel-devel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to epel-devel-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/epel-devel@xxxxxxxxxxxxxxxxxxxxxxx Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue