--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2024-d329148f1e
2024-07-05 06:20:54.570779
--------------------------------------------------------------------------------

Name        : python-astropy
Product     : Fedora 40
Version     : 5.3.3
Release     : 1.fc40
URL         : http://astropy.org
Summary     : A Community Python Library for Astronomy
Description :
The Astropy project is a common effort to develop a single core package
for Astronomy. Major packages such as PyFITS, PyWCS, vo, and asciitable
already merged in, and many more components being worked on. In
particular, we are developing imaging, photometric, and spectroscopic
functionality, as well as frameworks for cosmology, unit handling, and
coordinate transformations.

--------------------------------------------------------------------------------
Update Information:

Security fix for CVE-2023-41334
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 26 2024 Sergio Pascual  - 5.3.3-1
- New upstream source 5.3.3
- Fixes bug #2270187

- SPDX migration, license is BSD-3-Clause AND CFITSIO
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #2270185 - CVE-2023-41334 python-astropy: Remote code execution in TranformGraph().to_dot_graph function
        https://bugzilla.redhat.com/show_bug.cgi?id=2270185
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2024-d329148f1e' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------

-- 
_______________________________________________
package-announce mailing list -- package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org
Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue

Fedora 40: python-astropy 2024-d329148f1e Security Advisory Updates

July 5, 2024
Security fix for CVE-2023-41334

Summary

The Astropy project is a common effort to develop a single core package

for Astronomy. Major packages such as PyFITS, PyWCS, vo, and asciitable

already merged in, and many more components being worked on. In

particular, we are developing imaging, photometric, and spectroscopic

functionality, as well as frameworks for cosmology, unit handling, and

coordinate transformations.

Update Information:

Security fix for CVE-2023-41334

Change Log

* Wed Jun 26 2024 Sergio Pascual - 5.3.3-1 - New upstream source 5.3.3 - Fixes bug #2270187
- SPDX migration, license is BSD-3-Clause AND CFITSIO

References

[ 1 ] Bug #2270185 - CVE-2023-41334 python-astropy: Remote code execution in TranformGraph().to_dot_graph function https://bugzilla.redhat.com/show_bug.cgi?id=2270185

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-d329148f1e' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
Name : python-astropy
Product : Fedora 40
Version : 5.3.3
Release : 1.fc40
URL : http://astropy.org
Summary : A Community Python Library for Astronomy

Related News