Safety vulnerability ID: 38452
The information on this page was manually curated by our Cybersecurity Intelligence Team.
In libImaging/SgiRleDecode.c in Pillow through 7.0.0, a number of out-of-bounds reads exist in the parsing of SGI image files, a different issue than CVE-2020-5311.
Latest version: 11.0.0
Python Imaging Library (Fork)
In libImaging/SgiRleDecode.c in Pillow through 7.0.0, a number of out-of-bounds reads exist in the parsing of SGI image files, a different issue than CVE-2020-5311.
MISC:https://github.com/python-pillow/Pillow/pull/4504: https://github.com/python-pillow/Pillow/pull/4504
MISC:https://github.com/python-pillow/Pillow/pull/4538: https://github.com/python-pillow/Pillow/pull/4538
MISC:https://pillow.readthedocs.io/en/stable/releasenotes/7.1.0.html: https://pillow.readthedocs.io/en/stable/releasenotes/7.1.0.html
MISC:https://pillow.readthedocs.io/en/stable/releasenotes/index.html: https://pillow.readthedocs.io/en/stable/releasenotes/index.html
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application