Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-45198

Опубликовано: 14 нояб. 2022
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS3: 7.5

Описание

Pillow before 9.2.0 performs Improper Handling of Highly Compressed GIF Data (Data Amplification).

РелизСтатусПримечание
bionic

not-affected

code-not-present
devel

not-affected

9.2.0-1
esm-infra-legacy/trusty

not-affected

code-not-present
esm-infra/bionic

not-affected

code-not-present
esm-infra/focal

released

7.0.0-4ubuntu0.7
esm-infra/xenial

not-affected

code-not-present
focal

released

7.0.0-4ubuntu0.7
jammy

released

9.0.1-1ubuntu0.1
kinetic

not-affected

9.2.0-1
lunar

not-affected

9.2.0-1

Показывать по

РелизСтатусПримечание
bionic

DNE

esm-apps/focal

released

6.2.1-3ubuntu0.1~esm1
focal

ignored

end of standard support, was needed
jammy

DNE

kinetic

DNE

trusty

DNE

upstream

needs-triage

xenial

DNE

Показывать по

EPSS

Процентиль: 41%
0.00191
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
около 3 лет назад

Pillow before 9.2.0 performs Improper Handling of Highly Compressed GIF Data (Data Amplification).

CVSS3: 7.5
debian
около 3 лет назад

Pillow before 9.2.0 performs Improper Handling of Highly Compressed GI ...

suse-cvrf
больше 1 года назад

Security update for python-Pillow

suse-cvrf
больше 1 года назад

Security update for python-Pillow

CVSS3: 7.5
github
около 3 лет назад

Pillow vulnerable to Data Amplification attack.

EPSS

Процентиль: 41%
0.00191
Низкий

7.5 High

CVSS3