Issued at: 2024-07-15
Updated at: 2024-07-15
Synopsis
Moderate: python-pillow security update
Description
The python-pillow packages contain a Python image processing library that provides extensive file format support, an efficient internal representation, and powerful image-processing capabilities.
Security Fix(es):
* python-pillow: buffer overflow in _imagingcms.c (CVE-2024-28219)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected products
Rocky Linux 8 aarch64
Rocky Linux 8 x86_64
Fixes
2272563
CVEs
CVE-2024-28219
Affected packages
Rocky Linux 8 aarch64 - AppStream
python3-pillow-0:5.1.1-21.el8_10.aarch64.rpm
python3-pillow-debuginfo-0:5.1.1-21.el8_10.aarch64.rpm
python-pillow-0:5.1.1-21.el8_10.src.rpm
python-pillow-debuginfo-0:5.1.1-21.el8_10.aarch64.rpm
python-pillow-debugsource-0:5.1.1-21.el8_10.aarch64.rpm
Rocky Linux 8 x86_64 - PowerTools
python3-pillow-0:5.1.1-21.el8_10.i686.rpm
python3-pillow-debuginfo-0:5.1.1-21.el8_10.i686.rpm
python3-pillow-devel-0:5.1.1-21.el8_10.i686.rpm
python3-pillow-devel-0:5.1.1-21.el8_10.x86_64.rpm
python3-pillow-doc-0:5.1.1-21.el8_10.noarch.rpm
python3-pillow-tk-0:5.1.1-21.el8_10.x86_64.rpm
python3-pillow-tk-debuginfo-0:5.1.1-21.el8_10.x86_64.rpm
python-pillow-debuginfo-0:5.1.1-21.el8_10.i686.rpm
python-pillow-debugsource-0:5.1.1-21.el8_10.i686.rpm
Rocky Linux 8 x86_64 - AppStream
python3-pillow-0:5.1.1-21.el8_10.x86_64.rpm
python3-pillow-debuginfo-0:5.1.1-21.el8_10.x86_64.rpm
python-pillow-0:5.1.1-21.el8_10.src.rpm
python-pillow-debuginfo-0:5.1.1-21.el8_10.x86_64.rpm
python-pillow-debugsource-0:5.1.1-21.el8_10.x86_64.rpm
Rocky Linux 8 aarch64 - PowerTools
python3-pillow-devel-0:5.1.1-21.el8_10.aarch64.rpm
python3-pillow-doc-0:5.1.1-21.el8_10.noarch.rpm
python3-pillow-tk-0:5.1.1-21.el8_10.aarch64.rpm
python3-pillow-tk-debuginfo-0:5.1.1-21.el8_10.aarch64.rpm