HomeDefectsLIN1023-4457
Fixed

LIN1023-4457 : Security Advisory - python3-pillow - CVE-2024-28219

Created: Apr 1, 2024    Updated: Oct 28, 2025
Resolved Date: Oct 19, 2025
Found In Version: 10.23.30.1
Fix Version: 10.23.30.19
Severity: Standard
Applicable for: Wind River Linux LTS 23
Component/s: Userspace

Description

In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy.

https://nvd.nist.gov/vuln/detail/CVE-2024-28219

CVEs