Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 8

Количество 8

fstec логотип

BDU:2026-09901

около 1 месяца назад

Уязвимость функции PdfParser.PdfStream.decode() модуля PIL/PdfParser.py библиотеки для работы с изображениями Pillow, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2026-59200

18 дней назад

Pillow is a Python imaging library. From 5.1.0 until 12.3.0, PdfParser.PdfStream.decode() in PIL/PdfParser.py calls zlib.decompress() with bufsize set to the PDF stream Length field without bounding the decompressed output size, allowing a crafted FlateDecode PDF stream to exhaust memory from a small file. This issue is fixed in version 12.3.0.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-59200

18 дней назад

Pillow is a Python imaging library. From 5.1.0 until 12.3.0, PdfParser.PdfStream.decode() in PIL/PdfParser.py calls zlib.decompress() with bufsize set to the PDF stream Length field without bounding the decompressed output size, allowing a crafted FlateDecode PDF stream to exhaust memory from a small file. This issue is fixed in version 12.3.0.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-59200

18 дней назад

Pillow is a Python imaging library. From 5.1.0 until 12.3.0, PdfParser.PdfStream.decode() in PIL/PdfParser.py calls zlib.decompress() with bufsize set to the PDF stream Length field without bounding the decompressed output size, allowing a crafted FlateDecode PDF stream to exhaust memory from a small file. This issue is fixed in version 12.3.0.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-59200

18 дней назад

Pillow is a Python imaging library. From 5.1.0 until 12.3.0, PdfParser ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-jjj6-mw9f-p565

12 дней назад

Pillow: Decompression Bomb DoS via PdfParser.PdfStream.decode()

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3084-1

16 дней назад

Security update for python-Pillow

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3268-1

5 дней назад

Security update for python-Pillow

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2026-09901

Уязвимость функции PdfParser.PdfStream.decode() модуля PIL/PdfParser.py библиотеки для работы с изображениями Pillow, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
ubuntu логотип
CVE-2026-59200

Pillow is a Python imaging library. From 5.1.0 until 12.3.0, PdfParser.PdfStream.decode() in PIL/PdfParser.py calls zlib.decompress() with bufsize set to the PDF stream Length field without bounding the decompressed output size, allowing a crafted FlateDecode PDF stream to exhaust memory from a small file. This issue is fixed in version 12.3.0.

CVSS3: 7.5
0%
Низкий
18 дней назад
redhat логотип
CVE-2026-59200

Pillow is a Python imaging library. From 5.1.0 until 12.3.0, PdfParser.PdfStream.decode() in PIL/PdfParser.py calls zlib.decompress() with bufsize set to the PDF stream Length field without bounding the decompressed output size, allowing a crafted FlateDecode PDF stream to exhaust memory from a small file. This issue is fixed in version 12.3.0.

CVSS3: 7.5
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-59200

Pillow is a Python imaging library. From 5.1.0 until 12.3.0, PdfParser.PdfStream.decode() in PIL/PdfParser.py calls zlib.decompress() with bufsize set to the PDF stream Length field without bounding the decompressed output size, allowing a crafted FlateDecode PDF stream to exhaust memory from a small file. This issue is fixed in version 12.3.0.

CVSS3: 7.5
0%
Низкий
18 дней назад
debian логотип
CVE-2026-59200

Pillow is a Python imaging library. From 5.1.0 until 12.3.0, PdfParser ...

CVSS3: 7.5
0%
Низкий
18 дней назад
github логотип
GHSA-jjj6-mw9f-p565

Pillow: Decompression Bomb DoS via PdfParser.PdfStream.decode()

CVSS3: 7.5
0%
Низкий
12 дней назад
suse-cvrf логотип
SUSE-SU-2026:3084-1

Security update for python-Pillow

16 дней назад
suse-cvrf логотип
SUSE-SU-2026:3268-1

Security update for python-Pillow

5 дней назад

Уязвимостей на страницу