QID 980868
QID 980868: Python (pip) Security Update for Pillow (GHSA-rwr3-c2q8-gm56)
Pillow before 3.3.2 allows context-dependent attackers to obtain sensitive information by using the "crafted image file" approach, related to an "Integer Overflow" issue affecting the Image.core.map_buffer in map.c component.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-rwr3-c2q8-gm56 for updates pertaining to this vulnerability.
Vendor References
- GHSA-rwr3-c2q8-gm56 -
github.com/advisories/GHSA-rwr3-c2q8-gm56
CVEs related to QID 980868
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-rwr3-c2q8-gm56 | Pillow |
|