Pillow-simd

Latest version: v9.5.0.post2

Vulnerabilities (59)

CVE/PVE Vulnerability ID Advisory Affected versions Severity Severity Score
CVE-2014-3589 39576

pillow-simd affected versions are vulnerable to CVE-2014-3589, a DOS …

  • <2.3.2
  • >=2.5.0,<2.5.2
MEDIUM 5.0
CVE-2022-45199 72824

Pillow-simd affected versions allows denial of service via SAMPLESPER…

  • >=9.2.0,<9.3.0
HIGH 7.5
CVE-2022-45198 72825

Pillow affected versions performs Improper Handling of Highly Compres…

  • <9.2.0
HIGH 7.5
PVE-2023-55182 72860

Pillow-simd includes a security fix: Pillow will now decode the data …

  • >=9.1.0,<9.3.0
- -
CVE-2022-24303 73079

Pillow-simd affected versions allows attackers to delete files becaus…

  • <9.0.1
CRITICAL 9.1
CVE-2022-22817 72602

Affected versions of Pillow-simd are vulnerable due to improper handl…

  • <9.0.1
CRITICAL 9.8
CVE-2022-22815 72601

Affected versions of Pillow-simd are vulnerable due to improper initi…

  • <9.0.0
MEDIUM 6.5
PVE-2022-44524 72861

Pillow-simd affected versions ensures JpegImagePlugin stops at the en…

  • <9.0.0
HIDDEN X.Y
CVE-2022-22816 72569

Affected versions of Pillow-simd are vulnerable to a buffer over-read…

  • <9.0.0
MEDIUM 6.5
PVE-2021-44525 72862

Pillow-simd fixed versions exclude carriage return in PDF regex to he…

  • <9.0.0
HIDDEN X.Y
CVE-2021-34552 72570

Affected versions of Pillow-simd are vulnerable to a buffer overflow …

  • <8.3.0
CRITICAL 9.8
CVE-2021-25287 72832

Pillow-simd includes a fix for CVE-2021-25287: There is an out-of-bou…

  • <8.2.0
CRITICAL 9.1
CVE-2021-25288 72831

Pillow-simd includes a fix for CVE-2021-25288: There is an out-of-bou…

  • <8.2.0
CRITICAL 9.1
CVE-2021-28678 72826

Pillow-simd includes a fix for CVE-2021-28678: For BLP data, BlpImage…

  • <8.2.0
MEDIUM 5.5
CVE-2021-28677 72833

Pillow-simd includes a fix for CVE-2021-28677: For EPS data, the read…

  • <8.2.0
HIGH 7.5
CVE-2021-25293 72605

Affected versions of Pillow-simd, a highly optimized version of the P…

  • <8.1.1
HIGH 7.5
CVE-2021-25290 72604

Affected versions of Pillow-simd, a highly optimized version of the P…

  • <8.1.1
HIGH 7.5
CVE-2021-27921 72834

Pillow-simd includes a fix for CVE-2021-27921: Pillow before 8.1.1 al…

  • <8.1.1
HIGH 7.5
CVE-2021-27922 72835

Pillow-simd includes a fix for CVE-2021-27922: Pillow before 8.1.1 al…

  • <8.1.1
HIGH 7.5
CVE-2021-25289 72606

Affected versions of Pillow-simd, a highly optimized version of the P…

  • <8.1.1
CRITICAL 9.8
CVE-2021-25291 72603

Affected versions of Pillow-simd, a highly optimized version of the P…

  • <8.1.1
HIGH 7.5
CVE-2021-25292 72571

Affected versions of Pillow-simd, a highly optimized version of the P…

  • <8.1.1
MEDIUM 6.5
CVE-2020-35653 72837

In Pillow-simd affected versions, PcxDecode has a buffer over-read wh…

  • <8.1.0
HIGH 7.1
CVE-2020-35654 72838

Pillow-simd includes a fix for TIFF OOB Write error.

  • <8.1.0
HIGH 8.8
CVE-2020-35655 72836

Pillow-simd includes a fix for SGI Decode buffer overrun.

  • <8.1.0
MEDIUM 5.4
CVE-2020-15999 72839

Pillow-simd includes an updated 'FreeType' used in binary wheels to v…

  • <8.0.1
MEDIUM 6.5
CVE-2020-10994 72840

In libImaging/Jpeg2KDecode.c in Pillow-simd affected versions, there …

  • <7.1.0
MEDIUM 5.5
CVE-2020-10379 72841

In Pillow-simd affected versions, there are two Buffer Overflows in l…

  • <7.1.0
HIGH 7.8
CVE-2020-10378 72843

In libImaging/PcxDecode.c in Pillow-simd affected versions, an out-of…

  • <7.1.0
MEDIUM 5.5
CVE-2020-10177 72842

Pillow-simd affected versions have multiple out-of-bounds reads in li…

  • <7.1.0
MEDIUM 5.5
CVE-2020-11538 72844

In libImaging/SgiRleDecode.c in Pillow-simd affected versions, a numb…

  • <=7.0.0
HIGH 8.1
CVE-2020-5313 72846

libImaging/FliDecode.c in Pillow-simd affected versions have an FLI b…

  • <6.2.2
HIGH 7.1
CVE-2019-19911 72847

There is a DoS vulnerability in Pillow-simd affected versions caused …

  • <6.2.2
HIGH 7.5
CVE-2020-5310 72845

libImaging/TiffDecode.c in Pillow-simd affected versions have a TIFF …

  • <6.2.2
HIGH 8.8
CVE-2020-5311 72848

libImaging/SgiRleDecode.c in Pillow-simd affected versions have an SG…

  • <6.2.2
CRITICAL 9.8
CVE-2020-5312 72849

libImaging/PcxDecode.c in Pillow-simd affected versions have a PCX P …

  • <6.2.2
CRITICAL 9.8
CVE-2019-16865 72850

Pillow-simd includes a fix for CVE-2019-16865: An issue was discovere…

  • <6.2.0
HIGH 7.5
CVE-2021-23437 72851

Pillow-simd affected versions are vulnerable to Regular Expression De…

  • >=5.2.0,<8.3.2
HIGH 7.5
CVE-2021-27923 72852

Pillow-simd affected versions allow attackers to cause a denial of se…

  • >=4.3.0,<8.1.1
HIGH 7.5
CVE-2016-9189 72854

Pillow-simd affected versions allow context-dependent attackers to ob…

  • <3.3.2
MEDIUM 5.5
CVE-2016-9190 72853

Pillow-simd affected versions allows context-dependent attackers to e…

  • <3.3.2
HIGH 7.8
CVE-2016-3076 25954

pillow-simd before 3.1.2 is vulnerable to an integer overflow in Jpeg…

  • <3.1.2
MEDIUM 5.5
CVE-2016-4009 72855

Integer overflow in the ImagingResampleHorizontal function in libImag…

  • <3.1.1
CRITICAL 9.8
CVE-2016-0740 42331

Buffer overflow in the ImagingLibTiffDecode function in libImaging/Ti…

  • <3.1.1
MEDIUM 6.5
CVE-2016-2533 42329

Buffer overflow in the ImagingPcdDecode function in PcdDecode.c in Pi…

  • <3.1.1
MEDIUM 6.5
CVE-2016-0775 42330

Buffer overflow in the ImagingFliDecode function in libImaging/FliDec…

  • <3.1.1
MEDIUM 6.5
PVE-2021-25953 25953

pillow-simd before 3.1.1 is vulnerable to multiple buffer overlows in…

  • <3.1.1
- -
CVE-2014-9601 25951

pillow-simd before 2.6.2 is vulnerable to a PNG decompression DoS (CV…

  • <2.6.2
MEDIUM 5.0
CVE-2014-3598 25949

Pillow-simd before 2.5.3 is vulnerable to CVE-2014-3598.

  • <2.5.3
MEDIUM 5.0
CVE-2023-4863 72953

Pillow-simd updates its C dependency 'libwebp' to 1.3.2 to include a …

  • >=2.5.0,<10.0.1
HIGH 8.8
PVE-2021-43447 43447

Pillow-simd 2.5.0 includes changes to prevent shell injection. This i…

  • <2.5.0
- -
CVE-2014-3007 72856

Pillow-simd includes a fix that prevents shell injection.

  • <2.5.0
HIGH 10.0
CVE-2014-1933 47660

Pillow-simd 2.3.1 includes a fix for CVE-2014-1933: The (1) JpegImage…

  • <2.3.1
LOW 2.1
CVE-2014-1932 34340

Pillow-simd 2.3.1 includes a fix for CVE-2014-1932: The (1) load_djpe…

  • <2.3.1
MEDIUM 4.4
CVE-2023-50447 72955

Pillow-simd is affected by an arbitrary code execution vulnerability.…

  • <10.2.0
HIGH 8.1
PVE-2024-64437 73080

Pillow-simd is potentially vulnerable to DoS attacks through PIL.Imag…

  • <10.2.0
- -
CVE-2021-28675 72859

An issue was discovered in Pillow-simd affected versions. PSDImagePlu…

  • >=0,<8.2.0
MEDIUM 5.5
CVE-2023-44271 72858

Pillow-simd affected versions are vulnerable to a denial of Service t…

  • >=0
HIGH 7.5
CVE-2024-28219 72857

In _imagingcms.c in Pillow-simd affected versions, a buffer overflow …

  • >=0
- -