--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2021-bc2153d8f0
2021-10-29 22:48:33.387435
--------------------------------------------------------------------------------
Name : python-mpmath
Product : Fedora 35
Version : 1.2.1
Release : 2.fc35
URL :
https://mpmath.org
Summary : A pure Python library for multiprecision floating-point arithmetic
Description :
Mpmath is a pure-Python library for multiprecision floating-point
arithmetic. It provides an extensive set of transcendental functions,
unlimited exponent sizes, complex numbers, interval arithmetic,
numerical integration and differentiation, root-finding, linear
algebra, and much more. Almost any calculation can be performed just
as well at 10-digit or 1000-digit precision, and in many cases mpmath
implements asymptotically fast algorithms that scale well for
extremely high precision work. If available, mpmath will (optionally)
use gmpy to speed up high precision operations.
--------------------------------------------------------------------------------
Update Information:
Update to latest bugfix version, fix CVE.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 29 2021 Zbigniew J��drzejewski-Szmek <zbyszek(a)in.waw.pl> 1.2.1-2
- Fix CVE-2021-29063 regular expression denial of service (#1974835)
* Wed Sep 29 2021 Zbigniew J��drzejewski-Szmek <zbyszek(a)in.waw.pl> 1.2.1-1
- Version 1.2.1 (#1927057)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1927057 - python-mpmath-1.2.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1927057
[ 2 ] Bug #1974835 - CVE-2021-29063 python-mpmath: Regular expression denial of service
in the mpmathify function [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1974835
--------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2021-bc2153d8f0' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------