New Debian gsl 2.7.1+dfsg-5+deb12u1 fixes: This update addresses the following issue: * gsl: Stack buffer overflow in gsl_stats_quantile_from_sorted_data (CVE-2020-35357)
--- mirror/ftp/pool/main/g/gsl/gsl_2.7.1+dfsg-5.dsc +++ apt/ucs_5.2-0-errata5.2-0/source/gsl_2.7.1+dfsg-5+deb12u1.dsc @@ -1,3 +1,9 @@ +2.7.1+dfsg-5+deb12u1 [Sat, 07 Dec 2024 18:20:21 +0200] Adrian Bunk <bunk@debian.org>: + + * Non-maintainer upload. + * CVE-2020-35357: buffer overflow when calculating the quantile value + (Closes: #1052655) + 2.7.1+dfsg-5 [Fri, 02 Jun 2023 15:21:26 -0500] Dirk Eddelbuettel <edd@debian.org>: * debian/control: Actually add the 'Breaks' that was supposed to be in <http://piuparts.knut.univention.de/5.2-0/#4710730171449021425>
OK: bug OK: yaml OK: announce_errata OK: patch OK: piuparts [5.2-0] 5fd7af1df6 Bug #57923: gsl 2.7.1+dfsg-5+deb12u1 doc/errata/staging/gsl.yaml | 13 +++++++++++++ 1 file changed, 13 insertions(+)
<https://errata.software-univention.de/#/?erratum=5.2x6>