Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 8

Количество 8

github логотип

GHSA-fj7v-r99m-22gq

12 дней назад

Pillow TGA RLE encoder can serialize up to ~57 KB of adjacent heap data into generated images

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2026-59198

18 дней назад

Pillow is a Python imaging library. From 5.2.0 until 12.3.0, Pillow's TGA RLE encoder reads past its packed row buffer when saving a mode 1 image with TGA RLE compression, allowing adjacent process heap bytes to be copied into the generated TGA file. This issue is fixed in version 12.3.0.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2026-59198

18 дней назад

Pillow is a Python imaging library. From 5.2.0 until 12.3.0, Pillow's TGA RLE encoder reads past its packed row buffer when saving a mode 1 image with TGA RLE compression, allowing adjacent process heap bytes to be copied into the generated TGA file. This issue is fixed in version 12.3.0.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2026-59198

18 дней назад

Pillow is a Python imaging library. From 5.2.0 until 12.3.0, Pillow's TGA RLE encoder reads past its packed row buffer when saving a mode 1 image with TGA RLE compression, allowing adjacent process heap bytes to be copied into the generated TGA file. This issue is fixed in version 12.3.0.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2026-59198

18 дней назад

Pillow is a Python imaging library. From 5.2.0 until 12.3.0, Pillow's ...

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2026-09899

около 1 месяца назад

Уязвимость функции ImagingTgaRleEncode() компонента TgaRleEncode.c библиотеки для работы с изображениями Pillow, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3084-1

16 дней назад

Security update for python-Pillow

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3268-1

5 дней назад

Security update for python-Pillow

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-fj7v-r99m-22gq

Pillow TGA RLE encoder can serialize up to ~57 KB of adjacent heap data into generated images

CVSS3: 6.5
0%
Низкий
12 дней назад
ubuntu логотип
CVE-2026-59198

Pillow is a Python imaging library. From 5.2.0 until 12.3.0, Pillow's TGA RLE encoder reads past its packed row buffer when saving a mode 1 image with TGA RLE compression, allowing adjacent process heap bytes to be copied into the generated TGA file. This issue is fixed in version 12.3.0.

CVSS3: 6.5
0%
Низкий
18 дней назад
redhat логотип
CVE-2026-59198

Pillow is a Python imaging library. From 5.2.0 until 12.3.0, Pillow's TGA RLE encoder reads past its packed row buffer when saving a mode 1 image with TGA RLE compression, allowing adjacent process heap bytes to be copied into the generated TGA file. This issue is fixed in version 12.3.0.

CVSS3: 6.5
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-59198

Pillow is a Python imaging library. From 5.2.0 until 12.3.0, Pillow's TGA RLE encoder reads past its packed row buffer when saving a mode 1 image with TGA RLE compression, allowing adjacent process heap bytes to be copied into the generated TGA file. This issue is fixed in version 12.3.0.

CVSS3: 6.5
0%
Низкий
18 дней назад
debian логотип
CVE-2026-59198

Pillow is a Python imaging library. From 5.2.0 until 12.3.0, Pillow's ...

CVSS3: 6.5
0%
Низкий
18 дней назад
fstec логотип
BDU:2026-09899

Уязвимость функции ImagingTgaRleEncode() компонента TgaRleEncode.c библиотеки для работы с изображениями Pillow, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 6.5
0%
Низкий
около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:3084-1

Security update for python-Pillow

16 дней назад
suse-cvrf логотип
SUSE-SU-2026:3268-1

Security update for python-Pillow

5 дней назад

Уязвимостей на страницу