mirror of
https://github.com/openembedded/meta-openembedded.git
synced 2026-01-27 12:01:38 +01:00
In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because
strcpy is used instead of strncpy.
References:
https://nvd.nist.gov/vuln/detail/CVE-2024-28219
https://security-tracker.debian.org/tracker/CVE-2024-28219
Upstream patch:
|
||
|---|---|---|
| .. | ||
| 0001-explicitly-set-compile-options.patch | ||
| 0001-support-cross-compiling.patch | ||
| CVE-2023-44271.patch | ||
| CVE-2023-50447-1.patch | ||
| CVE-2023-50447-2.patch | ||
| CVE-2023-50447-3.patch | ||
| CVE-2023-50447-4.patch | ||
| CVE-2024-28219.patch | ||
| run-ptest | ||