Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22249
HistoryJan 06, 2020 - 3:50 a.m.

Denial Of Service (DoS)

2020-01-0603:50:25
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

0.008 Low

EPSS

Percentile

81.9%

pillow is vulnerable to denial of service (DoS). The vulnerability exists as there was a lack of validation of image size during decompression of images in the ImagingSgiRleDecode function, causing an SGI buffer overflow.

CPENameOperatorVersion
pillowle6.2.1