Bug 33369

Summary: python-astropy new security issue CVE-2023-41334
Product: Mageia Reporter: Nicolas Salguero <nicolas.salguero>
Component: SecurityAssignee: Python Stack Maintainers <python>
Status: NEW --- QA Contact: Sec team <security>
Severity: normal    
Priority: Normal    
Version: 9   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Source RPM: python-astropy-5.1.1-1.mga9.src.rpm CVE: CVE-2023-41334
Status comment: Fixed upstream in 5.3.3

Description Nicolas Salguero 2024-07-05 14:42:26 CEST
Fedora has issued an advisory on July 5:
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/AFGTG4EH37DFBG66DWJ2DEZNIO44D3AX/

The problem is fixed in version 5.3.3.
Nicolas Salguero 2024-07-05 14:42:40 CEST

Source RPM: (none) => python-astropy-5.1.1-1.mga9.src.rpm
Status comment: (none) => Fixed upstream in 5.3.3
CVE: (none) => CVE-2023-41334

Comment 1 Lewis Smith 2024-07-05 20:45:48 CEST
Cauldron is well ahead on versions, so this (as indicated) is just for M9.

Assignee: bugsquad => python