A python-pillow security update has been released for Oracle Linux 8.
Oracle Linux Security Advisory ELSA-2020-0580
http://linux.oracle.com/errata/ELSA-2020-0580.html
The following updated rpms for Oracle Linux 8 have been uploaded to the
Unbreakable Linux Network:
x86_64:
python3-pillow-5.1.1-10.el8_1.x86_64.rpm
aarch64:
python3-pillow-5.1.1-10.el8_1.aarch64.rpm
SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/python-pillow-5.1.1-10.el8_1.src.rpm
Description of changes:
[5.1.1-10]
- Bump and rebuild for gating to deliver CVE fixes
Resolves: rhbz#1789535
[5.1.1-9]
- Fix for CVE-2020-5311 - out-of-bounds write in expandrow
Resolves: rhbz#1789535
[5.1.1-8]
- Combined fixes for CVE-2020-5312 and CVE-2019-16865
Resolves: rhbz#1789533
Resolves: rhbz#1774066