Bugs fixes in "pillow"
| Origin | Bug number | Title | Date fixed |
|---|---|---|---|
| CVE | CVE-2026-25990 | Pillow is a Python imaging library. From 10.3.0 to before 12.1.1, n out-of-bounds write may be triggered when loading a specially crafted PSD image. | 2026-02-17 |
| CVE | CVE-2026-25990 | Pillow is a Python imaging library. From 10.3.0 to before 12.1.1, n out-of-bounds write may be triggered when loading a specially crafted PSD image. | 2026-02-17 |
| CVE | CVE-2026-25990 | Pillow is a Python imaging library. From 10.3.0 to before 12.1.1, n out-of-bounds write may be triggered when loading a specially crafted PSD image. | 2026-02-17 |
| CVE | CVE-2026-25990 | Pillow is a Python imaging library. From 10.3.0 to before 12.1.1, n out-of-bounds write may be triggered when loading a specially crafted PSD image. | 2026-02-17 |
| Launchpad | 2084457 | [SRU] Please enable frame-pointer on Noble | 2024-11-15 |
| Launchpad | 2077744 | pillow: Does not respect compiler flags | 2024-11-15 |
| Launchpad | 2084457 | [SRU] Please enable frame-pointer on Noble | 2024-11-15 |
| Launchpad | 2077744 | pillow: Does not respect compiler flags | 2024-11-15 |
| CVE | CVE-2024-28219 | In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy. | 2024-04-29 |
| CVE | CVE-2024-28219 | In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy. | 2024-04-29 |
| CVE | CVE-2024-28219 | In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy. | 2024-04-29 |
| CVE | CVE-2024-28219 | In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy. | 2024-04-29 |
| CVE | CVE-2024-28219 | In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy. | 2024-04-22 |
| CVE | CVE-2024-28219 | In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy. | 2024-04-22 |
| CVE | CVE-2024-28219 | In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy. | 2024-04-22 |
| CVE | CVE-2024-28219 | In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy. | 2024-04-22 |
| CVE | CVE-2024-28219 | In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy. | 2024-04-22 |
| CVE | CVE-2024-28219 | In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy. | 2024-04-22 |
| CVE | CVE-2023-50447 | Pillow through 10.1.0 allows PIL.ImageMath.eval Arbitrary Code Execution via the environment parameter, a different vulnerability than CVE-2022-22817 | 2024-01-31 |
| CVE | CVE-2023-44271 | An issue was discovered in Pillow before 10.0.0. It is a Denial of Service that uncontrollably allocates memory to process a given task, potentially | 2024-01-31 |
About
-
Send Feedback to @ubuntu_updates