QID 981044
QID 981044: Python (pip) Security Update for Pillow (GHSA-hggx-3h72-49ww)
Buffer overflow in the ImagingLibTiffDecode function in libImaging/TiffDecode.c in Pillow before 3.1.1 allows remote attackers to overwrite memory via a crafted TIFF file.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-hggx-3h72-49ww for updates pertaining to this vulnerability.
Vendor References
- GHSA-hggx-3h72-49ww -
github.com/advisories/GHSA-hggx-3h72-49ww
CVEs related to QID 981044
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-hggx-3h72-49ww | Pillow |
|