-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-5269-1 [email protected] https://www.debian.org/security/ Moritz Muehlenhoff November 02, 2022 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : pypy3 CVE ID : CVE-2022-37454 Nicky Mouha discovered a buffer overflow in the sha3 module of PyPy, a fast, compliant alternative implementation of the Python language. For the stable distribution (bullseye), this problem has been fixed in version 7.3.5+dfsg-2+deb11u2. We recommend that you upgrade your pypy3 packages. For the detailed security status of pypy3 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/pypy3 Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: [email protected]