[root@releng04 fedora-atomic]# cd /srv/fedora-atomic/production/21 [root@releng04 21]# ls config refsm summary typescript objects remote-cache tmp uncompressed-objects-cache [root@releng04 21]# ostree --repo=. refs fedora-atomic/f21/x86_64/docker-host fedora-atomic/f21/x86_64/updates/docker-host [root@releng04 21]# rpm-ostree rpm diff --repo=. fedora-atomic/f21/x86_64/docker-host fedora-atomic/f21/x86_64/updates/docker-host ostree diff commit old: fedora-atomic/f21/x86_64/docker-host (f12878457a3e97c457317f198e949c9ba82efd6c8a0da55566931973c4214ad7) ostree diff commit new: fedora-atomic/f21/x86_64/updates/docker-host (0f364d8dcacdaa6c675c6128af059d426ba39f96b05fead3a7f3889f6329f699) Upgraded: NetworkManager-1:0.9.10.0-14.git20140704.fc21.x86_64 * Mon Nov 24 2014 Jiří Klimeš - 1:0.9.10.0-14.git20140704 - vpn: propagate daemon exec error correctly (bgo #739436) - core: do not assert when a device is enslaved externally (rh #1167345) NetworkManager-glib-1:0.9.10.0-14.git20140704.fc21.x86_64 * Mon Nov 24 2014 Jiří Klimeš - 1:0.9.10.0-14.git20140704 - vpn: propagate daemon exec error correctly (bgo #739436) - core: do not assert when a device is enslaved externally (rh #1167345) avahi-autoipd-0.6.31-30.fc21.x86_64 * Thu Nov 27 2014 Peter Lemenkov - 0.6.31-30 - Drop post-stage dependency on initscripts (rhbz #1168566). See also rhbz #182462. avahi-libs-0.6.31-30.fc21.x86_64 * Thu Nov 27 2014 Peter Lemenkov - 0.6.31-30 - Drop post-stage dependency on initscripts (rhbz #1168566). See also rhbz #182462. curl-7.37.0-11.fc21.x86_64 * Wed Dec 10 2014 Kamil Dudka 7.37.0-11 - make CURLOPT_LOW_SPEED_LIMIT work again with threaded-resolver (#1172572) * Fri Nov 21 2014 Kamil Dudka 7.37.0-10 - disable libcurl-level downgrade to SSLv3 (#1166567) - low-speed-limit: avoid timeout flood (#1166239) dbus-1:1.8.12-1.fc21.x86_64 * Wed Nov 26 2014 David King - 1:1.8.12-1 - Update to 1.8.12 (#1168438) - Fixes CVE-2014-3635 (fd.o#83622) - Fixes CVE-2014-3636 (fd.o#82820) - Fixes CVE-2014-3637 (fd.o#80559) - Fixes CVE-2014-3638 (fd.o#81053) - Fixes CVE-2014-3639 (fd.o#80919) - Fixes CVE-2014-7824 (fd.o#85105) dbus-libs-1:1.8.12-1.fc21.x86_64 * Wed Nov 26 2014 David King - 1:1.8.12-1 - Update to 1.8.12 (#1168438) - Fixes CVE-2014-3635 (fd.o#83622) - Fixes CVE-2014-3636 (fd.o#82820) - Fixes CVE-2014-3637 (fd.o#80559) - Fixes CVE-2014-3638 (fd.o#81053) - Fixes CVE-2014-3639 (fd.o#80919) - Fixes CVE-2014-7824 (fd.o#85105) docker-io-1.4.0-1.fc21.x86_64 * Thu Dec 11 2014 Lokesh Mandvekar - 1.4.0-1 - Resolves: rhbz#1173324 - Resolves: rhbz#1172761 - CVE-2014-9356 - Resolves: rhbz#1172782 - CVE-2014-9357 - Resolves: rhbz#1172787 - CVE-2014-9358 - update to upstream v1.4.0 - override DOCKER_CERT_PATH in sysconfig instead of patching the source - create dockerroot user if doesn't exist prior - update metaprovides * Mon Dec 01 2014 Lokesh Mandvekar - 1.3.2-4 - Revert to using upstream v1.3.2 release * Sun Nov 30 2014 Lokesh Mandvekar - 1.3.2-3.git353ff40 - Resolves: rhbz#1169035, rhbz#1169151 - bring back golang deps (except libcontainer) dracut-038-31.git20141204.fc21.x86_64 * Thu Dec 04 2014 Harald Hoyer 038-30.git20141204 - add 90-vconsole.rules Resolves: rhbz#1150384 dracut-config-generic-038-31.git20141204.fc21.x86_64 * Thu Dec 04 2014 Harald Hoyer 038-30.git20141204 - add 90-vconsole.rules Resolves: rhbz#1150384 filesystem-3.2-28.fc21.x86_64 * Tue Nov 18 2014 Ondrej Vasik - 3.2-28 - fix wrong redirection of restorecon stderr (#1124623) - add ownership for /usr/share/licenses (#1121416) - add ownership for /usr/share/wayland-sessions (#1022423) grep-2.21-1.fc21.x86_64 * Tue Nov 25 2014 Jaroslav Škarvada - 2.21-1 - New version Resolves: rhbz#1167657 - De-fuzzified patches - Dropped pcre-backported-fixes patch (not needed) hawkey-0.5.2-1.fc21.x86_64 * Tue Nov 25 2014 Jan Silhan - 0.5.2-1 - New version: 0.5.2 (Michal Luscon) - hy_chksum_str() returns NULL in case of incorrect type (Michal Luscon) - Fix defects found by coverity scan (Michal Luscon) - selector: allow selecting provides with globs (RhBug: 1148353) (Michal Luscon) - py: nevra_init() references possibly uninitialized variable. (Ales Kozumplik) - package: add weak deps attributes. (Ales Kozumplik) hwdata-0.272-1.fc21.noarch * Tue Nov 25 2014 Michal Minar 0.272-1 - Updated pci and vendor ids. kernel-3.17.6-300.fc21.x86_64 * Mon Dec 08 2014 Justin M. Forbes - 3.17.6-300 - Linux v3.17.6 * Fri Dec 05 2014 Kyle McMartin - 3.17.4-303 - arm64-fix-xgene_enet_process_ring.patch: fix a panic under load. * Thu Dec 04 2014 Josh Boyer - 3.17.4-302 - CVE-2014-9090 local DoS via do_double_fault due to improper SS faults (rhbz 1170691) * Thu Dec 04 2014 Kyle McMartin - kernel-arm64.patch: update. - arm64-force-serial-to-be-active-consdev.patch: force serial consoles to be the primary console device instead of defaulting to tty0. No changes to drivers outside of ARM-land. - arm64-vgic-error-to-info.patch: change an error to a warning so that kvm will work. * Mon Dec 01 2014 Josh Boyer - Add patch to quiet i915 driver on long hdps - Add patch to fix oops when using xpad (rhbz 1094048) kernel-core-3.17.6-300.fc21.x86_64 * Mon Dec 08 2014 Justin M. Forbes - 3.17.6-300 - Linux v3.17.6 * Fri Dec 05 2014 Kyle McMartin - 3.17.4-303 - arm64-fix-xgene_enet_process_ring.patch: fix a panic under load. * Thu Dec 04 2014 Josh Boyer - 3.17.4-302 - CVE-2014-9090 local DoS via do_double_fault due to improper SS faults (rhbz 1170691) * Thu Dec 04 2014 Kyle McMartin - kernel-arm64.patch: update. - arm64-force-serial-to-be-active-consdev.patch: force serial consoles to be the primary console device instead of defaulting to tty0. No changes to drivers outside of ARM-land. - arm64-vgic-error-to-info.patch: change an error to a warning so that kvm will work. * Mon Dec 01 2014 Josh Boyer - Add patch to quiet i915 driver on long hdps - Add patch to fix oops when using xpad (rhbz 1094048) kernel-modules-3.17.6-300.fc21.x86_64 * Mon Dec 08 2014 Justin M. Forbes - 3.17.6-300 - Linux v3.17.6 * Fri Dec 05 2014 Kyle McMartin - 3.17.4-303 - arm64-fix-xgene_enet_process_ring.patch: fix a panic under load. * Thu Dec 04 2014 Josh Boyer - 3.17.4-302 - CVE-2014-9090 local DoS via do_double_fault due to improper SS faults (rhbz 1170691) * Thu Dec 04 2014 Kyle McMartin - kernel-arm64.patch: update. - arm64-force-serial-to-be-active-consdev.patch: force serial consoles to be the primary console device instead of defaulting to tty0. No changes to drivers outside of ARM-land. - arm64-vgic-error-to-info.patch: change an error to a warning so that kvm will work. * Mon Dec 01 2014 Josh Boyer - Add patch to quiet i915 driver on long hdps - Add patch to fix oops when using xpad (rhbz 1094048) kmod-19-1.fc21.x86_64 * Sun Nov 16 2014 Josh Boyer - 19-1 - Update to version 19 kmod-libs-19-1.fc21.x86_64 * Sun Nov 16 2014 Josh Boyer - 19-1 - Update to version 19 libblkid-2.25.2-2.fc21.x86_64 * Thu Nov 27 2014 Karel Zak 2.25.2-2 - fix #1168490 - CVE-2014-9114 util-linux: command injection flaw in blkid libcurl-7.37.0-11.fc21.x86_64 * Wed Dec 10 2014 Kamil Dudka 7.37.0-11 - make CURLOPT_LOW_SPEED_LIMIT work again with threaded-resolver (#1172572) * Fri Nov 21 2014 Kamil Dudka 7.37.0-10 - disable libcurl-level downgrade to SSLv3 (#1166567) - low-speed-limit: avoid timeout flood (#1166239) libdrm-2.4.58-3.fc21.x86_64 * Wed Nov 19 2014 Dan Horák 2.4.58-3 - valgrind available only on selected arches * Tue Nov 18 2014 Adam Jackson 2.4.58-2 - BR: valgrind-devel so we get ioctl annotations libmount-2.25.2-2.fc21.x86_64 * Thu Nov 27 2014 Karel Zak 2.25.2-2 - fix #1168490 - CVE-2014-9114 util-linux: command injection flaw in blkid libreport-filesystem-2.3.0-5.fc21.x86_64 * Fri Nov 28 2014 Jakub Filak 2.3.0-5 - anaconda: filter out rootpw lines - highglit OpenStack related strings - ureport: do not bother user with the configuration window - Resolves: #1041558 libsmartcols-2.25.2-2.fc21.x86_64 * Thu Nov 27 2014 Karel Zak 2.25.2-2 - fix #1168490 - CVE-2014-9114 util-linux: command injection flaw in blkid libuuid-2.25.2-2.fc21.x86_64 * Thu Nov 27 2014 Karel Zak 2.25.2-2 - fix #1168490 - CVE-2014-9114 util-linux: command injection flaw in blkid libyaml-0.1.6-6.fc21.x86_64 * Mon Dec 01 2014 John Eckersberg - 0.1.6-6 - Add patch for CVE-2014-9130 (RHBZ#1169371) net-tools-2.0-0.31.20141124git.fc21.x86_64 * Mon Nov 24 2014 Jiri Popelka - 2.0-0.31.20141124git - latest upstream snapshot (#1162284) * Thu Nov 20 2014 Jiri Popelka - 2.0-0.30.20141007git - ether-wake: apply Debian's hardening patch * Tue Oct 07 2014 Jiri Popelka - 2.0-0.29.20141007git - latest upstream snapshot (#1149405) nss-3.17.3-1.fc21.x86_64 * Fri Dec 05 2014 Elio Maldonado - 3.17.3-1 - Update to nss-3.17.3 - Resolves: Bug 1171012 - nss-3.17.3 is available * Thu Oct 16 2014 Elio Maldonado - 3.17.2-2 - Resolves: Bug 994599 - Enable TLS 1.2 by default nss-softokn-3.17.3-1.fc21.x86_64 * Fri Dec 05 2014 Elio Maldonado - 3.17.3-1 - Update to nss-3.17.3 * Sat Nov 08 2014 Elio Maldonado - 3.17.2-2 - Resolves: Bug 1155306 - Provide sym key derive mechansm as result of encryption of message nss-softokn-freebl-3.17.3-1.fc21.x86_64 * Fri Dec 05 2014 Elio Maldonado - 3.17.3-1 - Update to nss-3.17.3 * Sat Nov 08 2014 Elio Maldonado - 3.17.2-2 - Resolves: Bug 1155306 - Provide sym key derive mechansm as result of encryption of message nss-sysinit-3.17.3-1.fc21.x86_64 * Fri Dec 05 2014 Elio Maldonado - 3.17.3-1 - Update to nss-3.17.3 - Resolves: Bug 1171012 - nss-3.17.3 is available * Thu Oct 16 2014 Elio Maldonado - 3.17.2-2 - Resolves: Bug 994599 - Enable TLS 1.2 by default nss-tools-3.17.3-1.fc21.x86_64 * Fri Dec 05 2014 Elio Maldonado - 3.17.3-1 - Update to nss-3.17.3 - Resolves: Bug 1171012 - nss-3.17.3 is available * Thu Oct 16 2014 Elio Maldonado - 3.17.2-2 - Resolves: Bug 994599 - Enable TLS 1.2 by default nss-util-3.17.3-1.fc21.x86_64 * Fri Dec 05 2014 Elio Maldonado - 3.17.3-1 - Update to nss-3.17.3 pcre-8.35-8.fc21.x86_64 * Thu Nov 20 2014 Petr Pisar - 8.35-8 - Fix unused memory usage on zero-repeat assertion condition (bug #1165626) ppp-2.4.7-5.fc21.x86_64 * Wed Nov 19 2014 Michal Sekletar - 2.4.7-5 - don't mark logrotate config as executable (#1164435) rpcbind-0.2.2-0.0.fc21.x86_64 * Wed Nov 26 2014 Steve Dickson - 0.2.2-0.0 - Updated to the latest upstream release: 0.2.2 (bz 747363) - Added BuildRequires systemd-compat-libs rpm-4.12.0.1-4.fc21.x86_64 * Fri Dec 12 2014 Lubos Kardos - 4.12.0.1-4 - Add check against malicious CPIO file name size (#1168715) - Fixes CVE-2014-8118 - Fix race condidition where unchecked data is exposed in the file system (#1039811) - Fixes CVE-2013-6435 rpm-build-libs-4.12.0.1-4.fc21.x86_64 * Fri Dec 12 2014 Lubos Kardos - 4.12.0.1-4 - Add check against malicious CPIO file name size (#1168715) - Fixes CVE-2014-8118 - Fix race condidition where unchecked data is exposed in the file system (#1039811) - Fixes CVE-2013-6435 rpm-libs-4.12.0.1-4.fc21.x86_64 * Fri Dec 12 2014 Lubos Kardos - 4.12.0.1-4 - Add check against malicious CPIO file name size (#1168715) - Fixes CVE-2014-8118 - Fix race condidition where unchecked data is exposed in the file system (#1039811) - Fixes CVE-2013-6435 rpm-ostree-2014.113-1.fc21.x86_64 * Tue Nov 25 2014 Colin Walters - 2014.113-1 - New upstream release * Mon Nov 24 2014 Colin Walters - 2014.112-1 - New upstream release * Mon Nov 17 2014 Colin Walters - 2014.111-1 - New upstream release * Fri Nov 14 2014 Colin Walters - 2014.110-1 - New upstream release * Fri Oct 24 2014 Colin Walters - 2014.109-1 - New upstream release * Sat Oct 04 2014 Colin Walters - 2014.107-2 - New upstream release * Mon Sep 08 2014 Colin Walters - 2014.106-3 - New upstream release - Bump requirement on ostree * Mon Aug 18 2014 Fedora Release Engineering - 2014.105-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild rpm-plugin-selinux-4.12.0.1-4.fc21.x86_64 * Fri Dec 12 2014 Lubos Kardos - 4.12.0.1-4 - Add check against malicious CPIO file name size (#1168715) - Fixes CVE-2014-8118 - Fix race condidition where unchecked data is exposed in the file system (#1039811) - Fixes CVE-2013-6435 rpm-python-4.12.0.1-4.fc21.x86_64 * Fri Dec 12 2014 Lubos Kardos - 4.12.0.1-4 - Add check against malicious CPIO file name size (#1168715) - Fixes CVE-2014-8118 - Fix race condidition where unchecked data is exposed in the file system (#1039811) - Fixes CVE-2013-6435 sqlite-3.8.7.2-1.fc21.x86_64 * Tue Nov 25 2014 Jan Stanek - 3.8.7.2-1 - Updated to version 3.8.7.2 (http://sqlite.org/releaselog/3_8_7_2.html) tcpdump-14:4.6.2-2.fc21.x86_64 * Thu Nov 20 2014 Michal Sekletar - 14:4.6.2-2 - fix for CVE-2014-8767 (#1165160) - fix for CVE-2014-8768 (#1165161) - fix for CVE-2014-8769 (#1165162) tzdata-2014j-1.fc21.noarch * Wed Nov 19 2014 Patsy Franklin - 2014j-1 - Rebase to 2014j - Turks & Caicos' switch from US eastern time to UTC-4 year-round did not occur on 2014-11-02 at 02:00. It's currently scheduled for 2015-11-01 at 02:00. util-linux-2.25.2-2.fc21.x86_64 * Thu Nov 27 2014 Karel Zak 2.25.2-2 - fix #1168490 - CVE-2014-9114 util-linux: command injection flaw in blkid Added: flannel-0.1.0-8.gita7b435a.fc21.x86_64