Описание
Pillow is a Python imaging library. From version 10.3.0 to before version 12.2.0, processing a malicious PSD file could lead to memory corruption, potentially resulting in a crash or arbitrary code execution. This issue has been patched in version 12.2.0.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | pending | 12.3.0-1 |
| esm-infra-legacy/trusty | not-affected | see notes |
| esm-infra-legacy/xenial | not-affected | see notes |
| esm-infra/bionic | not-affected | see notes |
| esm-infra/focal | not-affected | see notes |
| esm-infra/xenial | ignored | end of ESM support, was needs-triage |
| jammy | not-affected | see notes |
| noble | not-affected | see notes |
| questing | released | 11.3.0-1ubuntu1.3 |
| resolute | released | 12.1.1-2ubuntu1.2 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-apps/focal | needs-triage | |
| jammy | DNE | |
| noble | DNE | |
| questing | DNE | |
| resolute | DNE | |
| upstream | needs-triage |
Показывать по
7.8 High
CVSS3
Связанные уязвимости
Pillow is a Python imaging library. From version 10.3.0 to before version 12.2.0, processing a malicious PSD file could lead to memory corruption, potentially resulting in a crash or arbitrary code execution. This issue has been patched in version 12.2.0.
Pillow is a Python imaging library. From version 10.3.0 to before version 12.2.0, processing a malicious PSD file could lead to memory corruption, potentially resulting in a crash or arbitrary code execution. This issue has been patched in version 12.2.0.
Pillow is a Python imaging library. From version 10.3.0 to before vers ...
Pillow has an OOB Write with Invalid PSD Tile Extents (Integer Overflow)
7.8 High
CVSS3