[Bug 1754390] Re: cfitsio vulnerability (fixed in 3.43)

2018-04-25 Thread M. Arida
I would strongly recommend updating to CFITSIO 3.44 which patched a several more issues. Though 3.45 which should be released in the next two weeks will also contain an annoying bug fix. https://heasarc.gsfc.nasa.gov/FTP/software/fitsio/c/docs/changes.txt Log of Changes Made

[Bug 1754390] Re: cfitsio vulnerability (fixed in 3.43)

2018-03-19 Thread Seth Arnold
Thanks Achim, the sync has been requested; it's after feature freeze date, so the release team may decide to hold it up, but the upstream changelog looked encouragingly like bugfixes-only to me: https://heasarc.gsfc.nasa.gov/FTP/software/fitsio/c/docs/changes2.txt Thanks -- You received this

[Bug 1754390] Re: cfitsio vulnerability (fixed in 3.43)

2018-03-19 Thread Achim Bohnet
Debian sid contains the fixed cfitsio version, can someone trigger a sync to bionic? The correspondign debian bug is closed, but nevertheless even after the sync to bionic there are missing backport (in debian & ubuntu): artful xenial trusty ** Changed in: cfitsio (Ubuntu) Status:

[Bug 1754390] Re: cfitsio vulnerability (fixed in 3.43)

2018-03-19 Thread Bug Watch Updater
** Changed in: cfitsio (Debian) Status: New => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1754390 Title: cfitsio vulnerability (fixed in 3.43) To manage notifications about

[Bug 1754390] Re: cfitsio vulnerability (fixed in 3.43)

2018-03-16 Thread Bug Watch Updater
** Changed in: cfitsio (Debian) Status: Unknown => New -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1754390 Title: cfitsio vulnerability (fixed in 3.43) To manage notifications about this

[Bug 1754390] Re: cfitsio vulnerability (fixed in 3.43)

2018-03-16 Thread Achim Bohnet
** Bug watch added: Debian Bug tracker #892458 https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=892458 ** Also affects: cfitsio (Debian) via https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=892458 Importance: Unknown Status: Unknown -- You received this bug notification

[Bug 1754390] Re: cfitsio vulnerability (fixed in 3.43)

2018-03-14 Thread Seth Arnold
Thanks for taking the time to report this bug and helping to make Ubuntu better. Since the package referred to in this bug is in universe or multiverse, it is community maintained. If you are able, I suggest coordinating with upstream and posting a debdiff for this issue. When a debdiff is