Skip to content

Conversation

@johng42
Copy link

@johng42 johng42 commented Mar 6, 2023

mitigate https://www.cve.org/CVERecord?id=CVE-2021-41495 and https://www.cve.org/CVERecord?id=CVE-2021-41496

buffer overflow and NPE fixes

These are corner cases - to exploit either fix, you need to be a priveleged user anyway

@fhchl
Copy link
Owner

fhchl commented Mar 7, 2023

Thanks for the pull request, John. As the Numpy version is unspecified right now, using pip install would always get the updated package automatically. What is your use-case to specify this version specifically?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants