Lucene search

K
osvGoogleOSV:GHSA-F5G8-5QQ7-938W
HistoryMar 18, 2021 - 7:55 p.m.

Pillow Out-of-bounds Read

2021-03-1819:55:41
Google
osv.dev
11

0.002 Low

EPSS

Percentile

52.2%

In Pillow before 8.1.0, PcxDecode has a buffer over-read when decoding a crafted PCX file because the user-supplied stride value is trusted for buffer calculations.