Описание
Pillow is a Python imaging library. Prior to 12.3.0, WindowsViewer.get_command() constructed a cmd.exe shell command by directly embedding a file path into an f-string without escaping and passed the result to subprocess.Popen(..., shell=True), allowing shell metacharacters in the file path to inject arbitrary cmd.exe commands. This issue is fixed in version 12.3.0.
Ссылки
- Release Notes
- Patch
- Patch
- Patch
- ExploitVendor Advisory
- ExploitVendor Advisory
Уязвимые конфигурации
EPSS
4.5 Medium
CVSS3
Дефекты
Связанные уязвимости
Pillow is a Python imaging library. Prior to 12.3.0, WindowsViewer.get_command() constructed a cmd.exe shell command by directly embedding a file path into an f-string without escaping and passed the result to subprocess.Popen(..., shell=True), allowing shell metacharacters in the file path to inject arbitrary cmd.exe commands. This issue is fixed in version 12.3.0.
Pillow is a Python imaging library. Prior to 12.3.0, WindowsViewer.get_command() constructed a cmd.exe shell command by directly embedding a file path into an f-string without escaping and passed the result to subprocess.Popen(..., shell=True), allowing shell metacharacters in the file path to inject arbitrary cmd.exe commands. This issue is fixed in version 12.3.0.
Pillow is a Python imaging library. Prior to 12.3.0, WindowsViewer.get ...
Pillow: WindowsViewer.get_command() OS command injection via unescaped shell path
EPSS
4.5 Medium
CVSS3