Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-22817

Опубликовано: 02 янв. 2022
Источник: redhat
CVSS3: 9.8
EPSS Низкий

Описание

PIL.ImageMath.eval in Pillow before 9.0.0 allows evaluation of arbitrary expressions, such as ones that use the Python exec method. A lambda expression could also be used.

A flaw was found in python-pillow. The vulnerability occurs due to Improper Neutralization, leading to command injection. This flaw allows an attacker to externally-influenced input commands that modify the intended command.

Отчет

Red Hat Quay ships a vulnerable version of Pillow as a dependency of xhtml2pdf. The xhtml2pdf package is used in the invoice generation feature of Quay, however, the vulnerable ImageMath module is not used by xhtml2pdf. Therefore impact for Quay is rated Low.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Quay 3quay/quay-rhel8Affected
Red Hat Enterprise Linux 7python-pillowFixedRHSA-2022:060922.02.2022
Red Hat Enterprise Linux 8python-pillowFixedRHSA-2022:064322.02.2022
Red Hat Enterprise Linux 8.1 Update Services for SAP Solutionspython-pillowFixedRHSA-2022:066924.02.2022
Red Hat Enterprise Linux 8.2 Extended Update Supportpython-pillowFixedRHSA-2022:066724.02.2022
Red Hat Enterprise Linux 8.4 Extended Update Supportpython-pillowFixedRHSA-2022:066524.02.2022

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-77
https://bugzilla.redhat.com/show_bug.cgi?id=2042527python-pillow: PIL.ImageMath.eval allows evaluation of arbitrary expressions

EPSS

Процентиль: 85%
0.02548
Низкий

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 3 лет назад

PIL.ImageMath.eval in Pillow before 9.0.0 allows evaluation of arbitrary expressions, such as ones that use the Python exec method. A lambda expression could also be used.

CVSS3: 9.8
nvd
больше 3 лет назад

PIL.ImageMath.eval in Pillow before 9.0.0 allows evaluation of arbitrary expressions, such as ones that use the Python exec method. A lambda expression could also be used.

CVSS3: 9.8
debian
больше 3 лет назад

PIL.ImageMath.eval in Pillow before 9.0.0 allows evaluation of arbitra ...

CVSS3: 9.8
github
больше 3 лет назад

Arbitrary expression injection in Pillow

CVSS3: 9.8
fstec
больше 3 лет назад

Уязвимость компонента PIL.ImageMath.eval библиотеки изображений Python Pillow, связанная с использованием опасных методов или функций, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 85%
0.02548
Низкий

9.8 Critical

CVSS3