Safety vulnerability ID: 49150
The information on this page was manually curated by our Cybersecurity Intelligence Team.
[This advisory has been limited. Please create a free account to view the full advisory.]
Latest version: 12.1.1
Python Imaging Library (fork)
[This affected versions has been limited. Please create a free account to view the full affected versions.]
[This fixed versions has been limited. Please create a free account to view the full fixed versions.]
libImaging/TgaRleDecode.c in Pillow 9.1.0 has a heap buffer overflow in the processing of invalid TGA image files. See CVE-2022-30595.
MISC:https://github.com/python-pillow/Pillow/blob/main/src/libImaging/TgaRleDecode.c: https://github.com/python-pillow/Pillow/blob/main/src/libImaging/TgaRleDecode.c
MISC:https://pillow.readthedocs.io/en/stable/releasenotes/9.1.1.html: https://pillow.readthedocs.io/en/stable/releasenotes/9.1.1.html
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application