Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-11538

Опубликовано: 25 июн. 2020
Источник: debian

Описание

In libImaging/SgiRleDecode.c in Pillow through 7.0.0, a number of out-of-bounds reads exist in the parsing of SGI image files, a different issue than CVE-2020-5311.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pillowfixed7.2.0-1package
pillowfixed5.4.1-2+deb10u2busterpackage
pillownot-affectedstretchpackage

Примечания

  • https://github.com/python-pillow/Pillow/pull/4504

  • https://github.com/python-pillow/Pillow/pull/4538

Связанные уязвимости

CVSS3: 8.1
ubuntu
больше 5 лет назад

In libImaging/SgiRleDecode.c in Pillow through 7.0.0, a number of out-of-bounds reads exist in the parsing of SGI image files, a different issue than CVE-2020-5311.

CVSS3: 8.1
redhat
больше 5 лет назад

In libImaging/SgiRleDecode.c in Pillow through 7.0.0, a number of out-of-bounds reads exist in the parsing of SGI image files, a different issue than CVE-2020-5311.

CVSS3: 8.1
nvd
больше 5 лет назад

In libImaging/SgiRleDecode.c in Pillow through 7.0.0, a number of out-of-bounds reads exist in the parsing of SGI image files, a different issue than CVE-2020-5311.

CVSS3: 8.1
github
больше 5 лет назад

Out-of-bounds read in Pillow

rocky
больше 5 лет назад

Important: python-pillow security update