Werk #13900: Update Pillow and Paramiko

Component Core & setup
Title Update Pillow and Paramiko
Date Apr 25, 2022
Level Trivial Change
Class Security Fix
Compatibility Compatible - no manual interaction needed
Checkmk versions & editions
2.2.0b1 Checkmk Raw (CRE), Checkmk Enterprise (CEE), Checkmk Cloud (CCE), Checkmk MSP (CME)
2.1.0b7 Checkmk Raw (CRE), Checkmk Enterprise (CEE), Checkmk MSP (CME)
2.0.0p24 Checkmk Raw (CRE), Checkmk Enterprise (CEE), Checkmk MSP (CME)

This updates paramiko to 2.3.10 and Pillow to 9.1.0. These new versions include fixes for these CVEs:

  • CVE-2022-24302
  • CVE-2022-22817
  • CVE-2022-22816
  • CVE-2022-22815
  • CVE-2022-24303

To the list of all Werks