From 514d1bbe260df2521fe60f1a3ec87cfcfde1a829 Mon Sep 17 00:00:00 2001 From: V3n3RiX Date: Sat, 17 Jul 2021 19:04:28 +0100 Subject: gentoo resync : 17.07.2021 --- metadata/glsa/glsa-202107-33.xml | 62 ++++++++++++++++++++++++++++++++++++++++ 1 file changed, 62 insertions(+) create mode 100644 metadata/glsa/glsa-202107-33.xml (limited to 'metadata/glsa/glsa-202107-33.xml') diff --git a/metadata/glsa/glsa-202107-33.xml b/metadata/glsa/glsa-202107-33.xml new file mode 100644 index 000000000000..ab54702ebb12 --- /dev/null +++ b/metadata/glsa/glsa-202107-33.xml @@ -0,0 +1,62 @@ + + + + Pillow: Multiple vulnerabilities + Multiple vulnerabilities have been found in Pillow, the worst of + which could result in a Denial of Service condition. + + pillow + 2021-07-14 + 2021-07-14 + 773559 + 774387 + 779760 + remote + + + 8.2.0 + 8.2.0 + + + +

Python Imaging Library (fork)

+
+ +

Multiple vulnerabilities have been discovered in Pillow. Please review + the CVE identifiers referenced below for details. +

+
+ +

Please review the referenced CVE identifiers for details.

+
+ +

There is no known workaround at this time.

+
+ +

All Pillow users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=dev-python/pillow-8.2.0" + + +
+ + CVE-2021-25287 + CVE-2021-25288 + CVE-2021-25289 + CVE-2021-25290 + CVE-2021-25291 + CVE-2021-25292 + CVE-2021-25293 + CVE-2021-27921 + CVE-2021-27922 + CVE-2021-27923 + CVE-2021-28675 + CVE-2021-28676 + CVE-2021-28677 + CVE-2021-28678 + + ajak + ajak +
-- cgit v1.2.3