Bug#1086206: gsl: CVE-2024-50610

2024-10-29 Thread Salvatore Bonaccorso
Hi Dirk, On Tue, Oct 29, 2024 at 09:10:45AM -0500, Dirk Eddelbuettel wrote: > > On 29 October 2024 at 07:04, Salvatore Bonaccorso wrote: > | Control: found -1 2.7.1+dfsg-5 > | > | Hi Dirk, > | > | Impresinve response time ;-) > > Thanks ;-) > > Adding an assert was an easy and obvious 'fix' t

Bug#1086206: gsl: CVE-2024-50610

2024-10-29 Thread Dirk Eddelbuettel
On 29 October 2024 at 07:04, Salvatore Bonaccorso wrote: | Control: found -1 2.7.1+dfsg-5 | | Hi Dirk, | | Impresinve response time ;-) Thanks ;-) Adding an assert was an easy and obvious 'fix' to avoid allocating badly as they had found possible via negative index. | On Mon, Oct 28, 2024 at

Bug#1086206: gsl: CVE-2024-50610

2024-10-28 Thread Salvatore Bonaccorso
Control: found -1 2.7.1+dfsg-5 Hi Dirk, Impresinve response time ;-) On Mon, Oct 28, 2024 at 04:12:56PM -0500, Dirk Eddelbuettel wrote: > > Hi Salvatore, > > On 28 October 2024 at 21:55, Salvatore Bonaccorso wrote: > | Source: gsl > | Version: 2.8+dfsg-3 > | Severity: important > | Tags: secur

Bug#1086206: gsl: CVE-2024-50610

2024-10-28 Thread Dirk Eddelbuettel
Hi Salvatore, On 28 October 2024 at 21:55, Salvatore Bonaccorso wrote: | Source: gsl | Version: 2.8+dfsg-3 | Severity: important | Tags: security upstream | Forwarded: https://lists.gnu.org/archive/html/bug-gsl/2024-09/msg0.html | X-Debbugs-Cc: car...@debian.org, Debian Security Team | |

Bug#1086206: gsl: CVE-2024-50610

2024-10-28 Thread Salvatore Bonaccorso
Source: gsl Version: 2.8+dfsg-3 Severity: important Tags: security upstream Forwarded: https://lists.gnu.org/archive/html/bug-gsl/2024-09/msg0.html X-Debbugs-Cc: car...@debian.org, Debian Security Team Hi, The following vulnerability was published for gsl. CVE-2024-50610[0]: | GSL (GNU Scie