Out-of-bounds read In pillow
Description
Out-of-bounds Read in Pillow path_getbbox in path.c in Pillow before 9.0.0 has a buffer over-read during initialization of ImagePath.Path.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
pypi | 9.0.0 | ||
alpine v3.15 | 8.4.0-r2 | ||
debian 11 | 8.1.2+dfsg-0.3+deb11u1 | ||
debian 12 | 9.0.0-1 | ||
debian 13 | 9.0.0-1 | ||
debian 14 | 9.0.0-1 | ||
rpm rhel8.2 | 0:5.1.1-14.el8_2 | ||
rpm rhel7 | 0:2.0.0-23.gitd1c6db8.el7_9 | ||
rpm rhel8 | 0:5.1.1-18.el8_5 | ||
rpm rhel8.4 | 0:5.1.1-14.el8_4 |
Aliases
1. 2. 3. 4. 5. 6. 7. 8. 9. 10. 11.
References
1. 2. 3. 4. 5. 6.