Tuesday, December 17, 2019

[USN-4223-1] OpenJDK vulnerabilities

==========================================================================
Ubuntu Security Notice USN-4223-1
December 17, 2019

openjdk-8, openjdk-lts vulnerabilities
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 19.10
- Ubuntu 19.04
- Ubuntu 18.04 LTS
- Ubuntu 16.04 LTS

Summary:

Several security issues were fixed in OpenJDK.

Software Description:
- openjdk-lts: Open Source Java implementation
- openjdk-8: Open Source Java implementation

Details:

Jan Jancar, Petr Svenda, and Vladimir Sedlacek discovered that a side-
channel vulnerability existed in the ECDSA implementation in OpenJDK. An
Attacker could use this to expose sensitive information. (CVE-2019-2894)

It was discovered that the Socket implementation in OpenJDK did not
properly restrict the creation of subclasses with a custom Socket
implementation. An attacker could use this to specially create a Java class
that could possibly bypass Java sandbox restrictions. (CVE-2019-2945)

Rob Hamm discovered that the Kerberos implementation in OpenJDK did not
properly handle proxy credentials. An attacker could possibly use this to
impersonate another user. (CVE-2019-2949)

It was discovered that a NULL pointer dereference existed in the font
handling implementation in OpenJDK. An attacker could use this to cause a
denial of service (application crash). (CVE-2019-2962)

It was discovered that the Concurrency subsystem in OpenJDK did not
properly bound stack consumption when compiling regular expressions. An
attacker could use this to cause a denial of service (application crash).
(CVE-2019-2964)

It was discovered that the JAXP subsystem in OpenJDK did not properly
handle XPath expressions in some situations. An attacker could use this to
cause a denial of service (application crash). (CVE-2019-2973,
CVE-2019-2981)

It was discovered that the Nashorn JavaScript subcomponent in OpenJDK did
not properly handle regular expressions in some situations. An attacker
could use this to cause a denial of service (application crash).
(CVE-2019-2975)

It was discovered that the String class in OpenJDK contained an out-of-
bounds access vulnerability. An attacker could use this to cause a denial
of service (application crash) or possibly expose sensitive information.
This issue only affected OpenJDK 11 in Ubuntu 18.04 LTS, Ubuntu 19.04,
and Ubuntu 19.10. (CVE-2019-2977)

It was discovered that the Jar URL handler in OpenJDK did not properly
handled nested Jar URLs in some situations. An attacker could use this to
cause a denial of service (application crash). (CVE-2019-2978)

It was discovered that the Serialization component of OpenJDK did not
properly handle deserialization of certain object attributes. An attacker
could use this to cause a denial of service (application crash).
(CVE-2019-2983)

It was discovered that the FreetypeFontScaler class in OpenJDK did not
properly validate dimensions of glyph bitmap images read from font files.
An attacker could specially craft a font file that could cause a denial of
service (application crash). (CVE-2019-2987)

It was discovered that a buffer overflow existed in the SunGraphics2D class
in OpenJDK. An attacker could possibly use this to cause a denial of
service (excessive memory consumption or application crash).
(CVE-2019-2988)

It was discovered that the Networking component in OpenJDK did not properly
handle certain responses from HTTP proxies. An attacker controlling a
malicious HTTP proxy could possibly use this to inject content into a
proxied HTTP connection. (CVE-2019-2989)

It was discovered that the font handling implementation in OpenJDK did not
properly validate TrueType font files in some situations. An attacker could
specially craft a font file that could cause a denial of service (excessive
memory consumption). (CVE-2019-2992)

It was discovered that the JavaDoc generator in OpenJDK did not properly
filter out some HTML elements properly, including documentation comments in
Java source code. An attacker could possibly use this to craft a Cross-Site
Scripting attack. (CVE-2019-2999)

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 19.10:
openjdk-11-jdk 11.0.5+10-0ubuntu1.1
openjdk-11-jre 11.0.5+10-0ubuntu1.1
openjdk-11-jre-headless 11.0.5+10-0ubuntu1.1
openjdk-11-jre-zero 11.0.5+10-0ubuntu1.1

Ubuntu 19.04:
openjdk-11-jdk 11.0.5+10-0ubuntu1.1~19.04
openjdk-11-jre 11.0.5+10-0ubuntu1.1~19.04
openjdk-11-jre-headless 11.0.5+10-0ubuntu1.1~19.04
openjdk-11-jre-zero 11.0.5+10-0ubuntu1.1~19.04

Ubuntu 18.04 LTS:
openjdk-11-jdk 11.0.5+10-0ubuntu1.1~18.04
openjdk-11-jre 11.0.5+10-0ubuntu1.1~18.04
openjdk-11-jre-headless 11.0.5+10-0ubuntu1.1~18.04
openjdk-11-jre-zero 11.0.5+10-0ubuntu1.1~18.04

Ubuntu 16.04 LTS:
openjdk-8-jdk 8u232-b09-0ubuntu1~16.04.1
openjdk-8-jre 8u232-b09-0ubuntu1~16.04.1
openjdk-8-jre-headless 8u232-b09-0ubuntu1~16.04.1
openjdk-8-jre-jamvm 8u232-b09-0ubuntu1~16.04.1
openjdk-8-jre-zero 8u232-b09-0ubuntu1~16.04.1

This update uses a new upstream release, which includes additional bug
fixes. After a standard system update you need to restart any Java
applications or applets to make all the necessary changes.

References:
https://usn.ubuntu.com/4223-1
CVE-2019-2894, CVE-2019-2945, CVE-2019-2949, CVE-2019-2962,
CVE-2019-2964, CVE-2019-2973, CVE-2019-2975, CVE-2019-2977,
CVE-2019-2978, CVE-2019-2981, CVE-2019-2983, CVE-2019-2987,
CVE-2019-2988, CVE-2019-2989, CVE-2019-2992, CVE-2019-2999

Package Information:
https://launchpad.net/ubuntu/+source/openjdk-lts/11.0.5+10-0ubuntu1.1
https://launchpad.net/ubuntu/+source/openjdk-lts/11.0.5+10-0ubuntu1.1~19.04
https://launchpad.net/ubuntu/+source/openjdk-lts/11.0.5+10-0ubuntu1.1~18.04
https://launchpad.net/ubuntu/+source/openjdk-8/8u232-b09-0ubuntu1~16.04.1

OpenBSD Errata: December 18th, 2019 (eret)

Errata patches for the kernel have been released for OpenBSD 6.5 and 6.6.

ARM64 CPUs speculatively execute instructions after ERET.

Binary updates for the arm64 platform are available via the syspatch
utility. Source code patches can be found on the respective errata page:

https://www.openbsd.org/errata65.html
https://www.openbsd.org/errata66.html

As these affect the kernel, a reboot will be needed after patching.

4734:南京迪鹏工贸实业wnp 述职报告的构成及关键内容

Monday, December 16, 2019

Fedora 32 System-Wide Change proposal: Ruby 2.7

https://fedoraproject.org/wiki/Changes/Ruby_2.7

== Summary ==
Ruby 2.7 is the latest stable version of Ruby. Many new features and
improvements are included for the increasingly diverse and expanding
demands for Ruby. With this major update from Ruby 2.6 in Fedora 31 to
Ruby 2.7 in Fedora 32, Fedora becomes the superior Ruby development
platform.

== Owner ==
* Name: [[User:vondruch| Vít Ondruch]], [[User:pvalena| Pavel Valena]]
* Email: vondruch@redhat.com, pvalena@redhat.com


== Detailed Description ==
Ruby 2.7 is upstream's new major release of Ruby. Many new features
and improvements are included.

=== Compaction GC ===

This release introduces Compaction GC which can defragment a
fragmented memory space.

Some multi-threaded Ruby programs may cause memory fragmentation,
leading to high memory usage and degraded speed.

The `GC.compact` method is introduced for compacting the heap. This
function compacts live objects in the heap so that fewer pages may be
used, and the heap may be more CoW friendly.

=== Pattern Matching [Experimental] ===

Pattern matching, a widely used feature in functional programming
languages, is introduced as an experimental feature.

It can traverse a given object and assign its value if it matches a pattern.

=== REPL improvement ===

`irb`, the bundled interactive environment (REPL;
Read-Eval-Print-Loop), now supports multi-line editing. It is powered
by `reline`, a `readline`-compatible pure Ruby implementation. It also
provides rdoc integration. In `irb` you can display the reference for
a given class, module, or method.

Besides, source lines shown at `binding.irb` and inspect results for
core-class objects are now colorized.

=== Separation of positional and keyword arguments ===

Automatic conversion of keyword arguments and positional arguments is
deprecated, and conversion will be removed in Ruby 3.

* When a method call passes a Hash at the last argument, and when it
passes no keywords, and when the called method accepts keywords, a
warning is emitted. To continue treating the hash as keywords, add a
double splat operator to avoid the warning and ensure correct behavior
in Ruby 3.
* When a method call passes keywords to a method that accepts
keywords, but it does not pass enough required positional arguments,
the keywords are treated as a final required positional argument, and
a warning is emitted. Pass the argument as a hash instead of keywords
to avoid the warning and ensure correct behavior in Ruby 3.
* When a method accepts specific keywords but not a keyword splat, and
a hash or keywords splat is passed to the method that includes both
Symbol and non-Symbol keys, the hash will continue to be split, and a
warning will be emitted. You will need to update the calling code to
pass separate hashes to ensure correct behavior in Ruby 3.
* If a method does not accept keywords, and is called with keywords,
the keywords are still treated as a positional hash, with no warning.
This behavior will continue to work in Ruby 3.
* Non-symbols are allowed as keyword argument keys if the method
accepts arbitrary keywords.
* `**nil` is allowed in method definitions to explicitly mark that the
method accepts no keywords. Calling such a method with keywords will
result in an ArgumentError.
* Passing an empty keyword splat to a method that does not accept
keywords no longer passes an empty hash, unless the empty hash is
necessary for a required parameter, in which case a warning will be
emitted. Remove the double splat to continue passing a positional
hash.

=== Other Notable New Features ===

* Numbered parameter as the default block parameter is introduced as
an experimental feature.
* A beginless range is experimentally introduced. It might not be as
useful as an endless range, but would be good for DSL purposes.
* `Enumerable#tally` is added. It counts the occurrence of each element.
* Calling a private method on `self` is now allowed.
* `Enumerator::Lazy#eager` is added. It generates a non-lazy
enumerator from a lazy enumerator.

=== Performance improvements ===

* JIT [Experimental]
** JIT-ed code is recompiled to less-optimized code when an
optimization assumption is invalidated.
** Method inlining is performed when a method is considered as pure.
This optimization is still experimental and many methods are NOT
considered as pure yet.
** The default value of `--jit-min-calls` is changed from 5 to 10,000.
** The default value of `--jit-max-cache` is changed from 1,000 to 100.
* The performance of `CGI.escapeHTML` is improved.
* The performance of Monitor and MonitorMixin is improved.

=== Other notable changes since 2.6 ===

* Some standard libraries are updated.
* Big part of stdlib was to default gems.
* `Proc.new` and `proc` with no block in a method called with a block
is warned now.
* `lambda` with no block in a method called with a block errs.
* Update Unicode version and Emoji version from 11.0.0 to 12.0.0.
* Update Unicode version to 12.1.0, adding support for U+32FF SQUARE
ERA NAME REIWA.
* `Date.jisx0301`, `Date#jisx0301`, and `Date.parse` support the new
Japanese era.
* Require compilers to support C99.

== Benefit to Fedora ==
With a latest release, Ruby language is supporting the newest language
features, which enables even faster and easier development of Ruby
applications.

== Scope ==
* Proposal owners:
** Finish packaging of Ruby 2.7. Current changes available in PR
https://src.fedoraproject.org/rpms/ruby/pull-request/48
** Rebuilding of Ruby packages providing native extensions (i.e.
packages which depends on libruby).

* Other developers: N/A
** Rebuild of packages with binary extensions (i.e. packages which
depends on libruby) will be handled automatically, but some packages
might need fixes/updates to support Ruby 2.7 properly.

* Release engineering: [https://pagure.io/releng/issue/9104 #9104]
** Separate Koji tag for package rebuild will be needed.

* Policies and guidelines: N/A
* Trademark approval: N/A (not needed for this Change)


== Upgrade/compatibility impact ==
* User specific Ruby binary extensions need to be rebuild.

== How To Test ==
* No special hardware is needed.
* To test, install Ruby 2.7. The test builds are pusblished in PR or
on Ruby-SIG ML
* Try to locally rebuild your packages using Ruby 2.7.
* Use the packages with your applications previously written in Ruby.
* If something doesn't work as it should, let us know.

== User Experience ==
The Ruby programs/scripts should behave as they were used to.

== Dependencies ==
<pre>
$ dnf repoquery --disablerepo=* --enablerepo=rawhide
--enablerepo=rawhide-source --arch=src --whatrequires 'ruby-devel' |
sort | uniq | wc -l
142
</pre>

== Contingency Plan ==
* Contingency mechanism: We would like to get a special buildroot tag
to be able to rebuild necessary the packages with Ruby 2.7. If
anything goes wrong, the tag could be easily dropped and previous
version of Ruby 2.6 and its dependencies stays intact. The tag would
be merged into F32 after everything is rebuild.
* Contingency deadline: Mass Rebuild
* Blocks release? No
* Blocks product? No

== Documentation ==
* [http://www.ruby-doc.org/ Help and documentation for the Ruby
programming language]
* [https://github.com/ruby/ruby/blob/v2_7_0_preview3/NEWS Ruby
2.7.0.preview3 NEWS]

== Release Notes ==
* The Ruby 2.7 bumps soname, therefore Ruby packages, which use binary
extensions, should be rebuilt. Nevertheless, since upstream paid great
attention to source compatibility, no changes to your code are needed.

https://github.com/ruby/ruby/blob/master/NEWS

--
Ben Cotton
He / Him / His
Fedora Program Manager
Red Hat
TZ=America/Indiana/Indianapolis
_______________________________________________
devel-announce mailing list -- devel-announce@lists.fedoraproject.org
To unsubscribe send an email to devel-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/devel-announce@lists.fedoraproject.org

[USN-4222-1] GraphicsMagick vulnerabilities

==========================================================================
Ubuntu Security Notice USN-4222-1
December 16, 2019

graphicsmagick vulnerabilities
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 16.04 LTS

Summary:

Several security issues were fixed in GraphicsMagick.

Software Description:
- graphicsmagick: collection of image processing tools

Details:

It was discovered that GraphicsMagick incorrectly handled certain image files.
An attacker could possibly use this issue to cause a denial of service or other
unspecified impact.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 16.04 LTS:
graphicsmagick 1.3.23-1ubuntu0.3
libgraphicsmagick++-q16-12 1.3.23-1ubuntu0.3
libgraphicsmagick-q16-3 1.3.23-1ubuntu0.3

In general, a standard system update will make all the necessary changes.

References:
https://usn.ubuntu.com/4222-1
CVE-2017-11638, CVE-2017-11641, CVE-2017-11642, CVE-2017-11643,
CVE-2017-12935, CVE-2017-12936, CVE-2017-12937, CVE-2017-13063,
CVE-2017-13064, CVE-2017-13065, CVE-2017-13134, CVE-2017-13737,
CVE-2017-13775, CVE-2017-13776, CVE-2017-13777

Package Information:
https://launchpad.net/ubuntu/+source/graphicsmagick/1.3.23-1ubuntu0.3

Sunday, December 15, 2019

List of long term FTBFS packages to be retired in February (release candidate)

Dear maintainers.

Based on the latest fail to build from source policy, the following packages
will be retired from Fedora 32 approximately one week before branching (February
2020).

Policy:
https://docs.fedoraproject.org/en-US/fesco/Fails_to_build_from_source_Fails_to_install/

The packages in rawhide were not successfully built at least since Fedora 30.

This report is based on dist tags and represents a preliminary list of packages.

Packages collected via:
https://github.com/hroncok/fedora-report-ftbfs-retirements/blob/master/ftbfs-retirements.ipynb

The main purpose is to gather feedback.

If you see a package that was built, please let me know.
If you see a package that should be exempted from the process, please let me
know and we can work together to get a FESCo approval for that.

If you see a package that can be rebuilt, please do so.

Package (co)maintainers Latest build
================================================================================
dnssec-nodes hardaker Fedora 27
elasticsearch hubbitus, jvanek, lbazan, Fedora 24
zbyszek
expresso jamielinux, nodejs-sig, Fedora 28
patches
gnomint verdurin Fedora 24
libocrdma ocrdma Fedora 27
lilyterm cwickert Fedora 27
nuvola-app-google-calendar martinkg Fedora 29
nuvola-app-groove martinkg Fedora 28
nuvola-app-logitech-media- martinkg Fedora 29
server
nuvola-app-plex martinkg Fedora 29
nuvola-app-soundcloud martinkg Fedora 29
nuvola-app-yandex-music martinkg Fedora 29
rubygem-connection_pool anujmore Fedora 24
rubygem-session gomix Fedora 29
shim-unsigned-aarch64 pjones Fedora 28
shim-unsigned-x64 pjones Fedora 28
target-isns grover, mlombard Fedora 27
tcmu-runner mlombard Fedora 26
telepathy-gabble aperezbios Fedora 29
telepathy-salut aperezbios, johnp Fedora 29

The following packages require above mentioned packages:
Depending on: expresso (1)
nodejs-chrono (maintained by: jamielinux, nodejs-sig, tomh)
nodejs-chrono-1.0.5-10.fc31.src requires npm(expresso) = 0.9.2

Depending on: rubygem-connection_pool (45)
rubygem-activestorage (maintained by: ruby-packagers-sig, vondruch)
rubygem-activestorage-5.2.3-3.fc31.src requires rubygem(connection_pool) = 2.2.0-1

rubygem-activesupport (maintained by: jaruga, jstribny, kanarip, mmorsi,
pvalena, ruby-packagers-sig, sseago, vondruch)
rubygem-activesupport-1:5.2.3-2.fc31.src requires rubygem(connection_pool) =
2.2.0-1

rubygem-rails (maintained by: jstribny, kanarip, mmorsi, mtasaka, pvalena,
ruby-packagers-sig, sseago, tdawson, vondruch)
rubygem-rails-1:5.2.3-2.fc31.noarch requires rubygem(activestorage) = 5.2.3

rubygem-railties (maintained by: mmorsi, pvalena, vondruch)
rubygem-railties-5.2.3-3.fc31.src requires rubygem(activestorage) = 5.2.3

rubygem-actionpack (maintained by: jaruga, jstribny, kanarip, mmorsi, pvalena,
ruby-packagers-sig, sseago, vondruch)
rubygem-actionpack-1:5.2.3-3.fc31.noarch requires rubygem(activesupport) = 5.2.3
rubygem-actionpack-1:5.2.3-3.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-actionview (maintained by: jaruga, pvalena, ruby-packagers-sig)
rubygem-actionview-5.2.3-3.fc31.noarch requires rubygem(activesupport) = 5.2.3
rubygem-actionview-5.2.3-3.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-activejob (maintained by: pvalena, vondruch)
rubygem-activejob-5.2.3-2.fc31.noarch requires rubygem(activesupport) = 5.2.3
rubygem-activejob-5.2.3-2.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-activemodel (maintained by: jstribny, mmorsi, pvalena, vondruch)
rubygem-activemodel-5.2.3-3.fc31.noarch requires rubygem(activesupport) = 5.2.3
rubygem-activemodel-5.2.3-3.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-activemodel-serializers-xml (maintained by: vondruch)
rubygem-activemodel-serializers-xml-1.0.1-8.fc31.noarch requires
rubygem(activesupport) = 5.2.3
rubygem-activemodel-serializers-xml-1.0.1-8.fc31.src requires
rubygem(activesupport) = 5.2.3

rubygem-activerecord (maintained by: jaruga, kanarip, mmorsi, mtasaka, pvalena,
ruby-packagers-sig, sseago, vondruch)
rubygem-activerecord-1:5.2.3-2.fc31.noarch requires rubygem(activesupport) = 5.2.3
rubygem-activerecord-1:5.2.3-2.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-activeresource (maintained by: jstribny, kanarip, mmorsi, vondruch)
rubygem-activeresource-1:5.0.0-6.fc31.noarch requires rubygem(activesupport) =
5.2.3
rubygem-activeresource-1:5.0.0-6.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-ammeter (maintained by: jaruga, jstribny, ruby-packagers-sig, vondruch)
rubygem-ammeter-1.1.4-4.fc31.noarch requires rubygem(activesupport) = 5.2.3

rubygem-ancestry (maintained by: jaruga, pvalena, ruby-packagers-sig)
rubygem-ancestry-3.0.0-6.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-backports (maintained by: ruby-packagers-sig, vondruch)
rubygem-backports-3.11.4-3.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-clockwork (maintained by: pvalena)
rubygem-clockwork-2.0.4-1.fc32.noarch requires rubygem(activesupport) = 5.2.3
rubygem-clockwork-2.0.4-1.fc32.src requires rubygem(activesupport) = 5.2.3

rubygem-delayed_job (maintained by: vondruch)
rubygem-delayed_job-4.1.5-3.fc31.noarch requires rubygem(activesupport) = 5.2.3

rubygem-delorean (maintained by: jstribny, vondruch)
rubygem-delorean-2.1.0-9.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-excon (maintained by: jstribny, tdawson, vondruch)
rubygem-excon-0.62.0-3.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-factory_bot (maintained by: pvalena)
rubygem-factory_bot-4.10.0-3.fc31.noarch requires rubygem(activesupport) = 5.2.3

rubygem-generator_spec (maintained by: ilgrad)
rubygem-generator_spec-0.9.4-6.fc31.noarch requires rubygem(activesupport) = 5.2.3

rubygem-globalid (maintained by: jaruga, pvalena, ruby-packagers-sig)
rubygem-globalid-0.4.2-2.fc31.noarch requires rubygem(activesupport) = 5.2.3
rubygem-globalid-0.4.2-2.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-i18n (maintained by: humaton, ruby-packagers-sig, stahnma, vondruch)
rubygem-i18n-1.7.0-1.fc32.src requires rubygem(activesupport) = 5.2.3

rubygem-jbuilder (maintained by: pvalena, vondruch)
rubygem-jbuilder-2.7.0-6.fc31.noarch requires rubygem(activesupport) = 5.2.3

rubygem-jquery-rails (maintained by: jstribny, vondruch)
rubygem-jquery-rails-4.2.2-7.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-logstasher (maintained by: valtri)
rubygem-logstasher-1.3.0-3.fc31.noarch requires rubygem(activesupport) = 5.2.3

rubygem-more_core_extensions (maintained by: mmorsi)
rubygem-more_core_extensions-1.2.0-10.fc31.noarch requires
rubygem(activesupport) = 5.2.3

rubygem-multi_test (maintained by: jaruga, pvalena, ruby-packagers-sig)
rubygem-multi_test-0.1.2-8.fc32.src requires rubygem(activesupport) = 5.2.3

rubygem-pdfkit (maintained by: mtasaka)
rubygem-pdfkit-0.8.4.1-2.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-pundit (maintained by: pvalena)
rubygem-pundit-2.0.1-3.fc31.noarch requires rubygem(activesupport) = 5.2.3

rubygem-rack-attack (maintained by: valtri)
rubygem-rack-attack-5.0.1-5.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-rails-controller-testing (maintained by: valtri)
rubygem-rails-controller-testing-1.0.2-6.fc31.noarch requires
rubygem(activesupport) = 5.2.3

rubygem-rails-deprecated_sanitizer (maintained by: vondruch)
rubygem-rails-deprecated_sanitizer-1.0.3-10.fc31.noarch requires
rubygem(activesupport) = 5.2.3
rubygem-rails-deprecated_sanitizer-1.0.3-10.fc31.src requires
rubygem(activesupport) = 5.2.3

rubygem-rails-dom-testing (maintained by: ruby-packagers-sig, vondruch)
rubygem-rails-dom-testing-2.0.2-7.fc31.noarch requires rubygem(activesupport)
= 5.2.3
rubygem-rails-dom-testing-2.0.2-7.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-recaptcha (maintained by: vondruch)
rubygem-recaptcha-3.4.0-7.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-rsolr (maintained by: vondruch)
rubygem-rsolr-1.1.2-7.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-rspec-rails (maintained by: clalance, vondruch)
rubygem-rspec-rails-3.9.0-1.fc32.noarch requires rubygem(activesupport) = 5.2.3

rubygem-shoulda-matchers (maintained by: vondruch)
rubygem-shoulda-matchers-4.1.2-2.fc32.noarch requires rubygem(activesupport) =
5.2.3

rubygem-simple-navigation (maintained by: athoscr)
rubygem-simple-navigation-4.0.5-6.fc31.noarch requires rubygem(activesupport)
= 5.2.3

rubygem-spring (maintained by: jaruga, pvalena, ruby-packagers-sig, vondruch)
rubygem-spring-2.0.0-7.fc31.noarch requires rubygem(activesupport) = 5.2.3
rubygem-spring-2.0.0-7.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-spring-watcher-listen (maintained by: jaruga, ruby-packagers-sig)
rubygem-spring-watcher-listen-2.0.1-8.fc31.src requires rubygem(activesupport)
= 5.2.3

rubygem-sprockets-rails (maintained by: jaruga, pvalena, ruby-packagers-sig)
rubygem-sprockets-rails-3.2.1-4.fc31.noarch requires rubygem(activesupport) =
5.2.3

rubygem-timecop (maintained by: ruby-packagers-sig, vondruch)
rubygem-timecop-0.9.1-1.fc32.src requires rubygem(activesupport) = 5.2.3

rubygem-treetop (maintained by: mmorsi, vondruch)
rubygem-treetop-1.6.10-2.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-wikicloth (maintained by: vondruch)
rubygem-wikicloth-0.8.0-12.fc31.src requires rubygem(activesupport) = 5.2.3

rubygem-yell (maintained by: valtri)
rubygem-yell-2.0.7-6.fc31.src requires rubygem(activesupport) = 5.2.3

Too many dependencies for rubygem-connection_pool, not all listed here

Depending on: rubygem-session (21)
rubygem-rr (maintained by: gomix)
rubygem-rr-1.1.2-11.fc31.src requires rubygem(session) = 3.1.0-1

rubygem-loofah (maintained by: ruby-packagers-sig, vondruch)
rubygem-loofah-2.3.1-1.fc32.src requires rubygem(rr) = 1.1.2

rubygem-rspec-core (maintained by: bkearney, mtasaka, ruby-packagers-sig,
skottler, tdawson, vondruch)
rubygem-rspec-core-3.9.0-2.fc32.src requires rubygem(rr) = 1.1.2

rubygem-test-unit-rr (maintained by: mtasaka)
rubygem-test-unit-rr-1.0.5-8.fc31.noarch requires rubygem(rr) = 1.1.2
rubygem-test-unit-rr-1.0.5-8.fc31.src requires rubygem(rr) = 1.1.2

vim-command-t (maintained by: vondruch)
vim-command-t-5.0.2-8.fc31.src requires rubygem(rr) = 1.1.2

rubygem-rails-html-sanitizer (maintained by: jaruga, pvalena,
ruby-packagers-sig, vondruch)
rubygem-rails-html-sanitizer-1.3.0-1.fc32.noarch requires rubygem(loofah) = 2.3.1
rubygem-rails-html-sanitizer-1.3.0-1.fc32.src requires rubygem(loofah) = 2.3.1

dmlite (maintained by: adev, andreamanzi, gbitzes, okeeble, rocha)
dmlite-puppet-dpm-1.13.99-3.fc32.noarch requires /usr/bin/rspec

rubygem-apipie-rails (maintained by: jaruga, ruby-packagers-sig, vondruch)
rubygem-apipie-rails-0.5.5-5.fc31.src requires /usr/bin/rspec

rubygem-cucumber-expressions (maintained by: jackorp)
rubygem-cucumber-expressions-6.0.1-3.fc31.src requires /usr/bin/rspec

rubygem-cucumber-tag_expressions (maintained by: jackorp)
rubygem-cucumber-tag_expressions-1.1.1-3.fc31.src requires /usr/bin/rspec

rubygem-jekyll-email-protect (maintained by: jackorp)
rubygem-jekyll-email-protect-1.1.0-3.fc31.src requires /usr/bin/rspec

rubygem-rb-inotify (maintained by: jstribny, vondruch)
rubygem-rb-inotify-0.10.0-2.fc31.src requires /usr/bin/rspec

rubygem-ruby-dbus (maintained by: vondruch)
rubygem-ruby-dbus-doc-0.11.0-8.fc31.noarch requires /usr/bin/rspec

rubygem-gettext (maintained by: mtasaka, sseago)
rubygem-gettext-3.2.9-6.fc31.src requires rubygem(test-unit-rr) = 1.0.5,
rubygem(test-unit-rr) = 1.0.5-8.fc31

rubygem-locale (maintained by: mmorsi, mtasaka)
rubygem-locale-2.1.2-1.fc31.7.src requires rubygem(test-unit-rr) = 1.0.5,
rubygem(test-unit-rr) = 1.0.5-8.fc31

rubygem-native-package-installer (maintained by: mtasaka)
rubygem-native-package-installer-1.0.9-1.fc32.src requires
rubygem(test-unit-rr) = 1.0.5, rubygem(test-unit-rr) = 1.0.5-8.fc31

rubygem-rabbit (maintained by: mtasaka)
rubygem-rabbit-3.0.0-2.fc32.src requires rubygem(test-unit-rr) = 1.0.5,
rubygem(test-unit-rr) = 1.0.5-8.fc31

rubygem-cucumber (maintained by: clalance, jstribny, mmorsi,
ruby-packagers-sig, tdawson, vondruch)
rubygem-cucumber-3.1.2-6.fc31.noarch requires rubygem(cucumber-expressions) =
6.0.1
rubygem-cucumber-3.1.2-6.fc31.src requires rubygem(cucumber-expressions) = 6.0.1

rubygem-cucumber-core (maintained by: jaruga, ruby-packagers-sig, vondruch)
rubygem-cucumber-core-3.2.0-3.fc31.noarch requires
rubygem(cucumber-tag_expressions) = 1.1.1
rubygem-cucumber-core-3.2.0-3.fc31.src requires
rubygem(cucumber-tag_expressions) = 1.1.1

rubygem-jekyll-git-authors (maintained by: jackorp)
rubygem-jekyll-git-authors-1.0.0-2.fc31.noarch requires
rubygem(jekyll-email-protect) = 1.1.0

rubygem-listen (maintained by: jaruga, ruby-packagers-sig, vondruch)
rubygem-listen-3.2.0-1.fc32.noarch requires rubygem(rb-inotify) = 0.10.0
rubygem-listen-3.2.0-1.fc32.src requires rubygem(rb-inotify) = 0.10.0

Too many dependencies for rubygem-session, not all listed here

Depending on: tcmu-runner (1)
gluster-block (maintained by: devos, jarrpa)
gluster-block-0.4-4.fc32.x86_64 requires tcmu-runner = 1.1.3-2.fc26

Depending on: telepathy-gabble (61)
ktp-accounts-kcm (maintained by: dvratil, jgrulich, jreznik, mck182, rdieter)
ktp-accounts-kcm-19.08.3-1.fc32.i686 requires telepathy-gabble = 0.18.4-7.fc29
ktp-accounts-kcm-19.08.3-1.fc32.x86_64 requires telepathy-gabble = 0.18.4-7.fc29

sugar (maintained by: aperezbios, dsd, erikos, johnp, pbrobinson, sdz, tuxbrewr)
sugar-0.116-2.fc32.noarch requires telepathy-gabble = 0.18.4-7.fc29

ktp-contact-list (maintained by: dvratil, jgrulich, jreznik, mck182, rdieter)
ktp-contact-list-19.08.3-1.fc32.x86_64 requires ktp-accounts-kcm = 19.08.3-1.fc32

ktp-text-ui (maintained by: dvratil, jgrulich, jreznik, mck182, rdieter)
ktp-text-ui-19.08.3-1.fc32.i686 requires ktp-accounts-kcm = 19.08.3-1.fc32
ktp-text-ui-19.08.3-1.fc32.x86_64 requires ktp-accounts-kcm = 19.08.3-1.fc32

olpc-switch-desktop (maintained by: cjb, dsd, pbrobinson)
olpc-switch-desktop-0.9.2-3.fc32.noarch requires sugar = 0.116-2.fc32

sugar-abacus (maintained by: callkalpa, pbrobinson)
sugar-abacus-60-4.fc31.noarch requires sugar = 0.116-2.fc32

sugar-calculator (maintained by: callkalpa, erikos, pbrobinson, tuxbrewr)
sugar-calculator-44-6.fc30.noarch requires sugar = 0.116-2.fc32

sugar-castle (maintained by: callkalpa, snavin)
sugar-castle-23-15.fc31.noarch requires sugar = 0.116-2.fc32

sugar-chat (maintained by: callkalpa, erikos, pbrobinson, tuxbrewr)
sugar-chat-85-2.fc31.noarch requires sugar = 0.116-2.fc32

sugar-clock (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-clock-21-2.fc31.noarch requires sugar = 0.116-2.fc32

sugar-colordeducto (maintained by: callkalpa, snavin)
sugar-colordeducto-7-14.fc31.noarch requires sugar = 0.116-2.fc32

sugar-connect (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-connect-22-24.fc31.noarch requires sugar = 0.116-2.fc32

sugar-countries (maintained by: callkalpa)
sugar-countries-33-17.fc31.noarch requires sugar = 0.116-2.fc32

sugar-deducto (maintained by: callkalpa, snavin)
sugar-deducto-9-16.fc31.noarch requires sugar = 0.116-2.fc32

sugar-distance (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-distance-35-11.fc31.noarch requires sugar = 0.116-2.fc32

sugar-finance (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-finance-14-4.fc31.noarch requires sugar = 0.116-2.fc32

sugar-flip (maintained by: callkalpa)
sugar-flip-9-14.fc31.noarch requires sugar = 0.116-2.fc32

sugar-flipsticks (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-flipsticks-13-14.fc31.noarch requires sugar = 0.116-2.fc32

sugar-fototoon (maintained by: callkalpa)
sugar-fototoon-23-6.fc31.noarch requires sugar = 0.116-2.fc32

sugar-fractionbounce (maintained by: callkalpa)
sugar-fractionbounce-25-6.fc31.noarch requires sugar = 0.116-2.fc32

sugar-getiabooks (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-getiabooks-18.2-2.fc31.noarch requires sugar = 0.116-2.fc32

sugar-hello-world (maintained by: callkalpa)
sugar-hello-world-6-15.fc31.noarch requires sugar = 0.116-2.fc32

sugar-imageviewer (maintained by: callkalpa, erikos, pbrobinson, sdz, tuxbrewr)
sugar-imageviewer-64-3.fc31.noarch requires sugar = 0.116-2.fc32

sugar-implode (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-implode-19-3.fc31.noarch requires sugar = 0.116-2.fc32

sugar-infoslicer (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-infoslicer-25-7.fc31.noarch requires sugar = 0.116-2.fc32

sugar-jukebox (maintained by: callkalpa, pbrobinson, sdz)
sugar-jukebox-34-4.fc31.noarch requires sugar = 0.116-2.fc32

sugar-kuku (maintained by: callkalpa, snavin)
sugar-kuku-5-11.fc31.noarch requires sugar = 0.116-2.fc32

sugar-labyrinth (maintained by: callkalpa, pbrobinson, sdz)
sugar-labyrinth-16-12.fc31.noarch requires sugar = 0.116-2.fc32

sugar-locosugar (maintained by: callkalpa)
sugar-locosugar-11-13.fc31.noarch requires sugar = 0.116-2.fc32

sugar-log (maintained by: callkalpa, erikos, tuxbrewr)
sugar-log-40-2.fc31.noarch requires sugar = 0.116-2.fc32

sugar-maze (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-maze-28-3.fc31.noarch requires sugar = 0.116-2.fc32

sugar-measure (maintained by: callkalpa)
sugar-measure-102-4.fc31.noarch requires sugar = 0.116-2.fc32

sugar-memorize (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-memorize-55-3.fc31.noarch requires sugar = 0.116-2.fc32

sugar-moon (maintained by: bkearney)
sugar-moon-19-3.fc31.noarch requires sugar = 0.116-2.fc32

sugar-nutrition (maintained by: callkalpa)
sugar-nutrition-15-7.fc31.noarch requires sugar = 0.116-2.fc32

sugar-paint (maintained by: callkalpa, pbrobinson, sdz)
sugar-paint-68-2.fc30.x86_64 requires sugar = 0.116-2.fc32

sugar-physics (maintained by: callkalpa, pbrobinson, sdz)
sugar-physics-34-3.fc31.noarch requires sugar = 0.116-2.fc32

sugar-pippy (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-pippy-72-5.fc31.x86_64 requires sugar = 0.116-2.fc32

sugar-playgo (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-playgo-5-21.fc31.noarch requires sugar = 0.116-2.fc32

sugar-portfolio (maintained by: callkalpa)
sugar-portfolio-51-3.fc31.noarch requires sugar = 0.116-2.fc32

sugar-pukllanapac (maintained by: callkalpa)
sugar-pukllanapac-13-7.fc31.noarch requires sugar = 0.116-2.fc32

sugar-recall (maintained by: callkalpa)
sugar-recall-6-4.fc31.noarch requires sugar = 0.116-2.fc32

sugar-record (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-record-200.2-3.fc31.noarch requires sugar = 0.116-2.fc32

sugar-ruler (maintained by: callkalpa)
sugar-ruler-33-13.fc31.noarch requires sugar = 0.116-2.fc32

sugar-runner (maintained by: pbrobinson)
sugar-runner-0.110.0-9.fc31.i686 requires sugar = 0.116-2.fc32
sugar-runner-0.110.0-9.fc31.x86_64 requires sugar = 0.116-2.fc32

sugar-speak (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-speak-57-3.fc31.noarch requires sugar = 0.116-2.fc32

sugar-srilanka (maintained by: callkalpa, snavin)
sugar-srilanka-3-11.fc31.noarch requires sugar = 0.116-2.fc32

sugar-starchart (maintained by: callkalpa, snavin)
sugar-starchart-16-12.fc31.noarch requires sugar = 0.116-2.fc32

sugar-stopwatch (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-stopwatch-20.1-3.fc31.noarch requires sugar = 0.116-2.fc32

sugar-story (maintained by: snavin)
sugar-story-19-3.fc31.noarch requires sugar = 0.116-2.fc32

sugar-terminal (maintained by: callkalpa, erikos, pbrobinson, tuxbrewr)
sugar-terminal-46-2.fc31.noarch requires sugar = 0.116-2.fc32

sugar-turtleart (maintained by: bkearney, erikos, sdz)
sugar-turtleart-218-3.fc31.noarch requires sugar = 0.116-2.fc32

sugar-typing-turtle (maintained by: callkalpa, sdz)
sugar-typing-turtle-31-11.fc31.noarch requires sugar = 0.116-2.fc32

sugar-view-slides (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-view-slides-8-21.fc31.noarch requires sugar = 0.116-2.fc32

sugar-visualmatch (maintained by: callkalpa, sdz)
sugar-visualmatch-49-12.fc31.noarch requires sugar = 0.116-2.fc32

sugar-words (maintained by: callkalpa)
sugar-words-23-5.fc31.noarch requires sugar = 0.116-2.fc32

sugar-write (maintained by: callkalpa, erikos, pbrobinson, tuxbrewr)
sugar-write-100-2.fc31.noarch requires sugar = 0.116-2.fc32

sugar-xoeditor (maintained by: callkalpa, snavin)
sugar-xoeditor-13-11.fc31.noarch requires sugar = 0.116-2.fc32

sugar-xoirc (maintained by: callkalpa, pbrobinson, tuxbrewr)
sugar-xoirc-12-11.fc31.noarch requires sugar = 0.116-2.fc32

sugar-xomail (maintained by: callkalpa, pbrobinson)
sugar-xomail-0-0.20.20090128.fc31.noarch requires sugar = 0.116-2.fc32

sugar-yupana (maintained by: callkalpa, snavin)
sugar-yupana-17-11.fc31.noarch requires sugar = 0.116-2.fc32

Too many dependencies for telepathy-gabble, not all listed here

Affected (co)maintainers
adev: rubygem-session
andreamanzi: rubygem-session
anujmore: rubygem-connection_pool
aperezbios: telepathy-salut, telepathy-gabble
athoscr: rubygem-connection_pool
bkearney: rubygem-session, telepathy-gabble
callkalpa: telepathy-gabble
cjb: telepathy-gabble
clalance: rubygem-session, rubygem-connection_pool
cwickert: lilyterm
devos: tcmu-runner
dsd: telepathy-gabble
dvratil: telepathy-gabble
erikos: telepathy-gabble
gbitzes: rubygem-session
gomix: rubygem-session
grover: target-isns
hardaker: dnssec-nodes
hubbitus: elasticsearch
humaton: rubygem-connection_pool
ilgrad: rubygem-connection_pool
jackorp: rubygem-session
jamielinux: expresso
jarrpa: tcmu-runner
jaruga: rubygem-session, rubygem-connection_pool
jgrulich: telepathy-gabble
johnp: telepathy-salut, telepathy-gabble
jreznik: telepathy-gabble
jstribny: rubygem-session, rubygem-connection_pool
jvanek: elasticsearch
kanarip: rubygem-connection_pool
lbazan: elasticsearch
martinkg: nuvola-app-logitech-media-server, nuvola-app-google-calendar,
nuvola-app-yandex-music, nuvola-app-groove, nuvola-app-soundcloud, nuvola-app-plex
mck182: telepathy-gabble
mlombard: tcmu-runner, target-isns
mmorsi: rubygem-session, rubygem-connection_pool
mtasaka: rubygem-session, rubygem-connection_pool
nodejs-sig: expresso
ocrdma: libocrdma
okeeble: rubygem-session
patches: expresso
pbrobinson: telepathy-gabble
pjones: shim-unsigned-x64, shim-unsigned-aarch64
pvalena: rubygem-session, rubygem-connection_pool
rdieter: telepathy-gabble
rocha: rubygem-session
ruby-packagers-sig: rubygem-session, rubygem-connection_pool
sdz: telepathy-gabble
skottler: rubygem-session
snavin: telepathy-gabble
sseago: rubygem-session, rubygem-connection_pool
stahnma: rubygem-connection_pool
tdawson: rubygem-session, rubygem-connection_pool
tomh: expresso
tuxbrewr: telepathy-gabble
valtri: rubygem-connection_pool
verdurin: gnomint
vondruch: rubygem-session, rubygem-connection_pool
zbyszek: elasticsearch
_______________________________________________
devel-announce mailing list -- devel-announce@lists.fedoraproject.org
To unsubscribe send an email to devel-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/devel-announce@lists.fedoraproject.org

Thursday, December 12, 2019

Upcoming Fedora 32 Change proposal deadlines

The Fedora 32 deadline season is upon us! Here are the dates of
upcoming deadlines:

* 2019-12-25 Submission deadline for Changes requiring infrastructure changes
* 2019-12-31 Submission deadline for Changes requiring a mass rebuild
* 2019-12-31 Submission deadline for System-Wide Changes
* 2020-01-21 Submission deadline for Self-Contained Changes

As always, key schedule dates (and the rest of the schedule) are on
the schedule webpage at
https://fedorapeople.org/groups/schedule/f-32/f-32-key-tasks.html

--
Ben Cotton
He / Him / His
Fedora Program Manager
Red Hat
TZ=America/Indiana/Indianapolis
_______________________________________________
devel-announce mailing list -- devel-announce@lists.fedoraproject.org
To unsubscribe send an email to devel-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/devel-announce@lists.fedoraproject.org

Fedora 32 System-Wide Change proposal: Drop Optical Media Release Criterion

https://fedoraproject.org/wiki/Changes/Drop_Optical_Media_Criterion

= Drop Optical Media Release Criterion =

== Summary ==
Proposal to make all Fedora optical media non-blocking. This means
we'd stop blocking on bugs found during the installation of Fedora
from optical media (like CDs and DVDs). This doesn't mean that
installation from optical media would stop working, just that the
Fedora Release wouldn't be blocked on any issues that can pop up in
Fedora installation using this method. Installation from USB devices
will remain blocking.

== Owner ==
* Name: [[User:frantisekz| František Zatloukal]]
* Email: fzatlouk@redhat.com

== Detailed Description ==

We are currently blocking Fedora Release on bugs specific to
installation from optical media. It seems wise to believe that only a
fraction of user base installs Fedora from Optical Media rather than
USB drive. New computers and laptops are usually sold without CD/DVD
drives and installation from optical media takes longer and is prone
to errors more compared to the installation using USB drive.

This change would make following images non-blocking for installation
from optical media:

* <code>Fedora-Everything-netinst-x86_64-_RELEASE_MILESTONE_.iso</code>

* <code>Fedora-Workstation-Live-x86_64-_RELEASE_MILESTONE_.iso</code>

== Benefit to Fedora ==

Fedora QE Team and testers from community will have more time to test
parts of Fedora that are far more visible and exposed to end users.

Fedora QE Team would have more time to add and test additional
high-profile blocking deliverables (like Fedora Silverblue) in near
future.

Fedora Releases wouldn't be held by bugs found in corner case
installation method.

== Scope ==
* Proposal owners: Change [[Releases/32/ReleaseBlocking]] to indicate
we no longer block on optical media, change Validation Testing
Matrices

* Other developers: No involvement by other developers needed

* Release engineering: https://pagure.io/releng/issue/9097

* Policies and guidelines: No changes needed

* Trademark approval: N/A (not needed for this Change)

== Upgrade/compatibility impact ==
No change for upgrades/compatibility

== How To Test ==
Testing not applicable (this change shouldn't result in any changes to
the distribution)

== User Experience ==
Users installing Fedora from optical media might hit some bugs and
might not be able to complete Fedora installation using Optical Media
at all. Such bugs will be treated like other non blocking bugs.

== Dependencies ==
N/A

== Contingency Plan ==

* Contingency mechanism: Revert changes to indicate we block on
optical media again
* Contingency deadline: Final Freeze
* Blocks release? No
* Blocks product? No

== Documentation ==
N/A




--
Ben Cotton
He / Him / His
Fedora Program Manager
Red Hat
TZ=America/Indiana/Indianapolis
_______________________________________________
devel-announce mailing list -- devel-announce@lists.fedoraproject.org
To unsubscribe send an email to devel-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/devel-announce@lists.fedoraproject.org

Fedora 32 System-Wide Change proposal: LLVM 10

https://fedoraproject.org/wiki/Changes/LLVM-10

== Summary ==
Update all llvm sub-projects in Fedora to version 10.

== Owner ==
* Name: [[User:tstellar| Tom Stellard]]
* Email: <tstellar@redhat.com>

== Detailed Description ==
All llvm sub-projects in Fedora will be updated to version 10, and
there will be a soname version change for the llvm libraries.
Compatibility packages clang9.0 and llvm9.0 will be added to ensure
that packages that currently depend on clang and llvm version 9
libraries will continue to work.

== Benefit to Fedora ==
New features and bug fixes provided by the latest version of LLVM.

== Scope ==
* Proposal owners:
** Review existing llvm and clang compatibility packages and orphan
any packages that are no longer used.
** Request a f32-llvm side-tag from Release Engineering.
** Build llvm9.0 and clang9.0 into the side-tag.
** When the upstream LLVM project releases version 10.0.0-rc1
(2020-1-15), package this and build it into the side tag.
** Merge side-tag into rawhide prior to the f32 branch date.
** Continue packaging newer release candidates into rawhide and f32
until the final release is complete (~2020-2-26)

* Other developers:
** Maintainers of packages that depend on clang-libs or llvm-libs will
need to update their spec files to depend on the clang9.0 and llvm9.0
compatibility packages if they want to rebuild their package and it
does not work with LLVM 10 yet. The key point here is that spec file
changes are only needed if a package is going to be rebuilt after LLVM
10 is added to Fedora. The compatibility packages will ensure that
already built packages continue to work.
* Release engineering: [https://pagure.io/releng/issues/9099]
* Policies and guidelines: No policies or guidelines will need to be
updated as a result of this change.
* Trademark approval: N/A (not needed for this Change)

== Upgrade/compatibility impact ==
This change should not impact upgradeability.

== How To Test ==
The CI tests for the llvm sub-packages in Fedora will be used to catch
regressions that might be potentially introduced by the update to LLVM
10.

== User Experience ==
Users will benefit from new features and bug-fixes in the latest
version of LLVM.

== Dependencies ==
This change can be made without updating any other packages. However,
as mention before, packages that need to use LLVM 9 will need to
update their spec file on their first rebuild after this change.

== Contingency Plan ==
* Contingency mechanism: (What to do? Who will do it?) If there are
major problems with LLVM 10, the compatibility package provide a way
for other packages to continue using LLVM 9. In the worst case, we
could always revert LLVM back to LLVM 9, but this would only happen if
their were an unprecedented amount of problems.

* Contingency deadline: Beta Freeze
* Blocks release? No
* Blocks product? None

== Documentation ==
Release notes will be added for this change.

== Release Notes ==
LLVM sub-projects in Fedora have been updated to version 10:

* llvm
* clang
* lld
* lldb
* compiler-rt
* libomp
* llvm-test-suite
* libcxx
* libcxxabi
* python-lit



--
Ben Cotton
He / Him / His
Fedora Program Manager
Red Hat
TZ=America/Indiana/Indianapolis
_______________________________________________
devel-announce mailing list -- devel-announce@lists.fedoraproject.org
To unsubscribe send an email to devel-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/devel-announce@lists.fedoraproject.org

Fedora 32 System-Wide Change proposal: Stop shipping individual component libraries in clang-libs package

https://fedoraproject.org/wiki/Changes/Stop-Shipping-Individual-Component-Libraries-In-clang-lib-Package

== Summary ==
Remove the individual component libraries (e.g. libclangBasic.so,
libclangAST.so, etc.) from the clang-libs package. Packages that
depend on the clang libraries should instead link against
libclang-cpp.so.

== Owner ==
* Name: [[User:tstellar| Tom Stellard]]
* Email: <tstellar@redhat.com>

== Detailed Description ==
The individual component libraries will be removed from the clang-libs
package in favor of libclang-cpp.so (which is already present in
clang-libs). The component shared libraries enabled by the
BUILD_SHARED=ON CMake option are not supported as a distribution
configuration by the upstream project and only recommended for use by
clang developers.[1]

The libclang-cpp.so shared object was added in clang 9.0 and now gives
us an alternative shared library option that is supported by the
upstream project and makes it possible for Fedora packages to stop
using the component libraries.

[1] https://llvm.org/docs/CMake.html

== Benefit to Fedora ==
We will improve stability in Fedora by packaging a build configuration
that is supported by the upstream project. In addition,
libclang-cpp.so will provide more LTO optimization opportunities than
the component libraries if LTO is enabled in Fedora builds. Also, in
order to access the clang API with the component libraries, an
application might need to link with up to 37 different shared
libraries, replacing these with a single shared library will help
improve application start-up times.

== Scope ==
* Proposal owners:
** The proposal owner will ensure that that all packages that depend
on clang-libs are updated to use libclang-cpp.so.
** Once all dependent packages have been migrated, the clang package
will be updated to pass -DBUILD_SHARED=OFF to cmake when configuring.

* Other developers: The other maintainers will be responsible for
reviewing and approving changes to their packages.
* Release engineering: [https://pagure.io/releng/issues/9096]
* Policies and guidelines: No policies or guidelines will need to be
updated as a result of this change.
* Trademark approval: N/A (not needed for this Change)

== Upgrade/compatibility impact ==
This change should not impact upgradeability.

== How To Test ==
This can be tested using existing CI tests or tests in the %check
section of spec files. The changes should not be visible to end users
so tests should behave exactly as they did before the change.

== User Experience ==
End users that develop applications using the clang libraries will
need to update their applications to use libclang-cpp.so instead of
the individual component libraries if they want to use libraries
shipped with Fedora. This may be inconvenient, but we don't want
users to continue using a configuration that is not supported by the
upstream project. Once this change is made though, the applications
will see the same benefits mentioned in the "Benefits to Fedora"
section.

End users using Fedora packages that depend on clang libraries will
not need to do anything different.

== Dependencies ==
The following packages depend on clang-libs and will need to be updated:

* bcc
* bpftrace
* castxml
* ccls
* clazy
* gnome-builder
* ispc
* kdevelop
* lldb
* mesa
* pocl
* qt-creator
* qt5-doctools
* shiboken2
* tinygo

== Contingency Plan ==
* Contingency mechanism: (What to do? Who will do it?) If we are
unable to migrate all dependent packages in time, then the proposal
owner will postpone the final step of passing -DBUILD_SHARED_LIBS=OFF
to cmake when configuring clang until a future Fedora release. In this
case, packages that have already been migrated will continue to work,
since libclang-cpp.so is already included in the clang-libs package.

* Contingency deadline: Change Checkpoint: Completion deadline
* Blocks release? No
* Blocks product? None

== Documentation ==
Release notes will be added for this change.

== Release Notes ==
The individual component libraries (e.g. libclangBasic.so,
libclangAST.so, etc.) have been removed from the clang-libs packages.
Developers who want to link their application against the clang
libraries should link against libclang-cpp.so instead.




--
Ben Cotton
He / Him / His
Fedora Program Manager
Red Hat
TZ=America/Indiana/Indianapolis
_______________________________________________
devel-announce mailing list -- devel-announce@lists.fedoraproject.org
To unsubscribe send an email to devel-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/devel-announce@lists.fedoraproject.org

a诚w信e代r理q

你好,老板!我公司有余额正规3%增值税普通发票,13%增值税专用发票可向外代开,点数优惠!100%保真!可验证后付款!需要请联系:13936054042乔薇薇(主管)微信同号13936054042
黑龙江省金城记账税务有限公司
信誉 诚信 长期合作愉快

如打扰到 请原谅十分对不起

[FreeBSD-Announce] FreeBSD 11.3-R image available on Azure marketplace

Hello,

The Microsoft LSG (former Open Source Technology Center) FreeBSD
Team is pleased to announce the availability of FreeBSD 11.3-RELEASE
on Azure.

https://azuremarketplace.microsoft.com/en-us/marketplace/apps/microsoftostc.freebsd-11-3?tab=Overview

Please contact freebsd-cloud mailing list and Microsoft FreeBSD
Integration Services Team, bsdic@microsoft.com if you have any
questions.
_______________________________________________
freebsd-announce@freebsd.org mailing list
https://lists.freebsd.org/mailman/listinfo/freebsd-announce
To unsubscribe, send any mail to "freebsd-announce-unsubscribe@freebsd.org"