Safety vulnerability ID: 51885
The information on this page was manually curated by our Cybersecurity Intelligence Team.
[This advisory has been limited. Please create a free account to view the full advisory.]
Latest version: 12.1.1
Python Imaging Library (fork)
[This affected versions has been limited. Please create a free account to view the full affected versions.]
[This fixed versions has been limited. Please create a free account to view the full fixed versions.]
Pillow before 9.2.0 performs Improper Handling of Highly Compressed GIF Data (Data Amplification). See CVE-2022-45198.
MISC:https://bugs.gentoo.org/855683: https://bugs.gentoo.org/855683
MISC:https://cwe.mitre.org/data/definitions/409.html: https://cwe.mitre.org/data/definitions/409.html
MISC:https://github.com/python-pillow/Pillow/commit/11918eac0628ec8ac0812670d9838361ead2d6a4: https://github.com/python-pillow/Pillow/commit/11918eac0628ec8ac0812670d9838361ead2d6a4
MISC:https://github.com/python-pillow/Pillow/pull/6402: https://github.com/python-pillow/Pillow/pull/6402
MISC:https://github.com/python-pillow/Pillow/releases/tag/9.2.0: https://github.com/python-pillow/Pillow/releases/tag/9.2.0
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application