Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2023-44271

Опубликовано: 03 нояб. 2023
Источник: ubuntu
Приоритет: low
CVSS3: 7.5

Описание

An issue was discovered in Pillow before 10.0.0. It is a Denial of Service that uncontrollably allocates memory to process a given task, potentially causing a service to crash by having it run out of memory. This occurs for truetype in ImageFont when textlength in an ImageDraw instance operates on a long text argument.

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

not-affected

10.0.0-1
esm-infra-legacy/trusty

needs-triage

esm-infra/bionic

needs-triage

esm-infra/focal

not-affected

7.0.0-4ubuntu0.8
esm-infra/xenial

needs-triage

focal

released

7.0.0-4ubuntu0.8
jammy

released

9.0.1-1ubuntu0.2
lunar

ignored

end of life, was needed
mantic

not-affected

10.0.0-1

Показывать по

РелизСтатусПримечание
bionic

DNE

devel

DNE

esm-apps/focal

needs-triage

focal

ignored

end of standard support, was needs-triage
jammy

DNE

lunar

DNE

mantic

DNE

noble

DNE

oracular

DNE

plucky

DNE

Показывать по

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
почти 2 года назад

An issue was discovered in Pillow before 10.0.0. It is a Denial of Service that uncontrollably allocates memory to process a given task, potentially causing a service to crash by having it run out of memory. This occurs for truetype in ImageFont when textlength in an ImageDraw instance operates on a long text argument.

CVSS3: 7.5
nvd
больше 1 года назад

An issue was discovered in Pillow before 10.0.0. It is a Denial of Service that uncontrollably allocates memory to process a given task, potentially causing a service to crash by having it run out of memory. This occurs for truetype in ImageFont when textlength in an ImageDraw instance operates on a long text argument.

CVSS3: 7.5
debian
больше 1 года назад

An issue was discovered in Pillow before 10.0.0. It is a Denial of Ser ...

suse-cvrf
больше 1 года назад

Security update for python-Pillow

suse-cvrf
больше 1 года назад

Security update for python-Pillow

7.5 High

CVSS3