Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-54036
HistoryMar 08, 2021 - 12:00 a.m.

Pillow Buffer Overflow Vulnerability (CNVD-2021-54036)

2021-03-0800:00:00
China National Vulnerability Database
www.cnvd.org.cn
15

0.001 Low

EPSS

Percentile

45.6%

Pillow is a Python-based image processing library. Pillow is vulnerable to a buffer overflow vulnerability, which can be exploited by remote attackers to submit special file requests and trick users into parsing them, which can crash the application.

CPENameOperatorVersion
pillow pillowlt8.1.1