Improper resource allocation - Buffer overflow In pillow
Description
Pillow buffer overflow in ImagingPcdDecode
Buffer overflow in the ImagingPcdDecode function in PcdDecode.c in Pillow before 3.1.1 and Python Imaging Library (PIL) 1.1.7 and earlier allows remote attackers to cause a denial of service (crash) via a crafted PhotoCD file.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
pypi | 3.1.1 | ||
pypi | - | - | |
debian 13 | 3.1.1-1 | ||
debian 11 | 3.1.1-1 | ||
rpm rhel6 | - | - | |
rpm rhel7 | - | - | |
debian 12 | 3.1.1-1 | ||
debian 14 | 3.1.1-1 | ||
rpm rhel5 | - | - |
Aliases
1. 2. 3. 4. 5. 6. 7. 8. 9.
References
1. 2. 3. 4. 5. 6. 7. 8. 9. 10. 11.