ELA-1079-1 pillow security update

buffer overflow

2024-04-28
Packagepillow
Version2.6.1-2+deb8u10 (jessie), 4.0.0-4+deb9u6 (stretch)
Related CVEs CVE-2024-28219


A buffer overflow in _imagingcms.c was fixed in Pillow, an image processing library for Python.



For Debian 8 jessie, these problems have been fixed in version 2.6.1-2+deb8u10.

For Debian 9 stretch, these problems have been fixed in version 4.0.0-4+deb9u6.

We recommend that you upgrade your pillow packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.