meta-openembedded/meta-python/recipes-devtools/python/python3-pillow
Soumya Sambu 7c7ab8ad4e python3-pillow: Fix CVE-2024-28219
In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because
strcpy is used instead of strncpy.

References:
https://nvd.nist.gov/vuln/detail/CVE-2024-28219
https://security-tracker.debian.org/tracker/CVE-2024-28219

Upstream patch:
2a93aba5cf

Signed-off-by: Soumya Sambu <soumya.sambu@windriver.com>
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com>
2025-11-07 12:41:54 +01:00
..
0001-explicitly-set-compile-options.patch python3-pillow: Upgrade 6.2.1 -> 7.2.0 2020-09-02 08:55:52 -07:00
0001-support-cross-compiling.patch python3-pillow: Upgrade 7.2.0 -> 8.1.0 2021-01-12 09:16:03 -08:00
CVE-2023-44271.patch python3-pillow: Fix CVE-2023-44271 2024-01-12 07:14:16 -05:00
CVE-2023-50447-1.patch python3-pillow: Fix CVE-2023-50447 2024-04-28 13:10:23 -04:00
CVE-2023-50447-2.patch python3-pillow: Fix CVE-2023-50447 2024-04-28 13:10:23 -04:00
CVE-2023-50447-3.patch python3-pillow: Fix CVE-2023-50447 2024-04-28 13:10:23 -04:00
CVE-2023-50447-4.patch python3-pillow: Fix CVE-2023-50447 2024-04-28 13:10:23 -04:00
CVE-2024-28219.patch python3-pillow: Fix CVE-2024-28219 2025-11-07 12:41:54 +01:00
run-ptest python3-pillow: add ptest support 2023-02-06 10:20:34 -05:00