pillow 8.1.2-1ubuntu0.1 source package in Ubuntu
Changelog
pillow (8.1.2-1ubuntu0.1) hirsute-security; urgency=medium * SECURITY UPDATE: OOB read in Jpeg2KDecode - debian/patches/CVE-2021-25287_8.patch: handle different widths for each band in src/libImaging/Jpeg2KDecode.c. - CVE-2021-25287 - CVE-2021-25288 * SECURITY UPDATE: DOS in PsdImagePlugin - debian/patches/CVE-2021-28675.patch: sanity check the number of input layers in Tests/test_decompression_bomb.py, Tests/test_file_apng.py, Tests/test_file_blp.py, Tests/test_file_tiff.py, src/PIL/ImageFile.py, src/PIL/PsdImagePlugin.py. - CVE-2021-28675 * SECURITY UPDATE: FLI DOS - debian/patches/CVE-2021-28676.patch: check the block advance in src/libImaging/FliDecode.c. - CVE-2021-28676 * SECURITY UPDATE: EPS DOS on _open - debian/patches/CVE-2021-28677.patch: properly handle line endings in src/PIL/EpsImagePlugin.py. - CVE-2021-28677 * SECURITY UPDATE: BLP DOS - debian/patches/CVE-2021-28678.patch: check that reads return data in src/PIL/BlpImagePlugin.py. - CVE-2021-28678 -- Marc Deslauriers <email address hidden> Tue, 18 May 2021 07:09:08 -0400
Upload details
- Uploaded by:
- Marc Deslauriers
- Uploaded to:
- Hirsute
- Original maintainer:
- Ubuntu Developers
- Architectures:
- any all
- Section:
- python
- Urgency:
- Medium Urgency
See full publishing history Publishing
Series | Published | Component | Section |
---|
Downloads
File | Size | SHA-256 Checksum |
---|---|---|
pillow_8.1.2.orig.tar.xz | 37.5 MiB | f0c6476d4cbea59610df8c35218f8caac3ee3f5774bd732dfcdcfb5af67f855b |
pillow_8.1.2-1ubuntu0.1.debian.tar.xz | 20.6 KiB | 04ac8ef797151d27b23917412fc9e1a44f8c3ac7bf7738ebaf9240abe06150f8 |
pillow_8.1.2-1ubuntu0.1.dsc | 2.5 KiB | 2e95dd3683a55a7ebfed06e2a941a205c6ea4985edb2b330148e016b9eb6f10f |
Available diffs
Binary packages built by this source
- python-pil-doc: No summary available for python-pil-doc in ubuntu hirsute.
No description available for python-pil-doc in ubuntu hirsute.
- python3-pil: No summary available for python3-pil in ubuntu hirsute.
No description available for python3-pil in ubuntu hirsute.
- python3-pil-dbg: No summary available for python3-pil-dbg in ubuntu hirsute.
No description available for python3-pil-dbg in ubuntu hirsute.
- python3-pil.imagetk: No summary available for python3-pil.imagetk in ubuntu hirsute.
No description available for python3-pil.imagetk in ubuntu hirsute.
- python3-pil.imagetk-dbg: No summary available for python3-pil.imagetk-dbg in ubuntu hirsute.
No description available for python3-
pil.imagetk- dbg in ubuntu hirsute.