Python / Pillow
73 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2022-30595 | python-pillow: heap buffer overflow in crafted TGA file | HIGH | 8.7 | May 25, 2022 |
| CVE-2022-24303 | python-pillow: temporary directory with a space character allows removal of unrelated file after im.show() and related actions | HIGH | 8.8 | Mar 28, 2022 |
| CVE-2022-22817 | python-pillow: PIL.ImageMath.eval allows evaluation of arbitrary expressions | CRITICAL | 9.3 | Jan 7, 2022 |
| CVE-2022-22816 | python-pillow: buffer over-read during initialization of ImagePath.Path in path_getbbox() in path.c | MEDIUM | 6.9 | Jan 7, 2022 |
| CVE-2022-22815 | python-pillow: improperly initializes ImagePath.Path in path_getbbox() in path.c | MEDIUM | 6.9 | Jan 7, 2022 |
| CVE-2021-23437 | Regular Expression Denial of Service (ReDoS) | HIGH | 8.7 | Sep 3, 2021 |
| CVE-2021-34552 | python-pillow: Buffer overflow in image convert function | CRITICAL | 9.3 | Jul 13, 2021 |
| CVE-2021-28677 | python-pillow: Excessive CPU use in EPS image reader | HIGH | 8.7 | Jun 2, 2021 |
| CVE-2021-28678 | python-pillow: Excessive looping in BLP image reader | MEDIUM | 6.8 | Jun 2, 2021 |
| CVE-2021-25288 | python-pillow: Out-of-bounds read in J2K image reader | HIGH | 8.8 | Jun 2, 2021 |
| CVE-2021-25287 | python-pillow: Out-of-bounds read in J2K image reader | HIGH | 8.8 | Jun 2, 2021 |
| CVE-2021-28675 | python-pillow: Excessive memory allocation in PSD image reader | HIGH | 7.1 | Jun 2, 2021 |
| CVE-2021-28676 | python-pillow: Infinite loop in FLI image reader | HIGH | 8.7 | Jun 2, 2021 |
| CVE-2021-25293 | python-pillow: Out-of-bounds read in SGI RLE image reader | HIGH | 8.7 | Mar 19, 2021 |
| CVE-2021-25292 | python-pillow: Regular expression DoS in PDF format parser | MEDIUM | 6.9 | Mar 19, 2021 |
| CVE-2021-25291 | python-pillow: out-of-bounds read in TiffReadRGBATile in TiffDecode.c | HIGH | 8.7 | Mar 19, 2021 |
| CVE-2021-25290 | python-pillow: Negative-offset memcpy in TIFF image reader | HIGH | 8.7 | Mar 19, 2021 |
| CVE-2021-25289 | python-pillow: insufficent fix for CVE-2020-35654 due to incorrect error checking in TiffDecode.c | CRITICAL | 9.3 | Mar 19, 2021 |
| CVE-2021-27921 | python-pillow: Excessive memory allocation in BLP image reader | HIGH | 8.7 | Mar 3, 2021 |
| CVE-2021-27922 | python-pillow: Excessive memory allocation in ICNS image reader | HIGH | 8.7 | Mar 3, 2021 |
| CVE-2021-27923 | python-pillow: Excessive memory allocation in ICO image reader | HIGH | 8.7 | Mar 3, 2021 |
| CVE-2020-35655 | python-pillow: Buffer over-read in SGI RLE image reader | MEDIUM | 6.3 | Jan 12, 2021 |
| CVE-2020-35654 | python-pillow: decoding crafted YCbCr files could result in heap-based buffer overflow | HIGH | 8.6 | Jan 12, 2021 |
| CVE-2020-35653 | python-pillow: Buffer over-read in PCX image reader | HIGH | 8.3 | Jan 12, 2021 |
| CVE-2020-10177 | python-pillow: multiple out-of-bounds reads in libImaging/FliDecode.c | HIGH | 7.1 | Jun 25, 2020 |
Showing 26 to 50 of 73 CVEs