QID 982878
QID 982878: Python (pip) Security Update for Pillow (GHSA-mvg9-xffr-p774)
An issue was discovered in Pillow before 8.1.1. In TiffDecode.c, there is an out-of-bounds read in TiffreadRGBATile via invalid tile boundaries.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-mvg9-xffr-p774 for updates pertaining to this vulnerability.
Vendor References
- GHSA-mvg9-xffr-p774 -
github.com/advisories/GHSA-mvg9-xffr-p774
CVEs related to QID 982878
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-mvg9-xffr-p774 | Pillow |
|