Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22250
HistoryJan 06, 2020 - 3:53 a.m.

Arbitrary Code Execution

2020-01-0603:53:35
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

0.003 Low

EPSS

Percentile

68.2%

pillow is vulnerable to integer overflow. A TIFF decoding integer overflow in libImaging/TiffDecode.c can potentially allow an attacker to execute arbitrary code using a malicious tif image.

CPENameOperatorVersion
pillowle6.2.1
pillowle6.2.1