CVE-2026-54058
- EPSS 0.48%
- Veröffentlicht 14.07.2026 16:27:38
- Zuletzt bearbeitet 06.08.2026 15:46:05
Pillow is a Python imaging library. Prior to 12.3.0, when Pillow loads an uncompressed McIdas AREA image from a filename through the mmap raw codec path, attacker-controlled header words can set a row stride smaller than the natural row width, causin...
CVE-2026-59197
- EPSS 0.44%
- Veröffentlicht 14.07.2026 16:25:23
- Zuletzt bearbeitet 21.07.2026 19:17:11
Pillow is a Python imaging library. Prior to 12.3.0, Pillow's public rank-filter API can trigger a native heap out-of-bounds write when given a very large odd filter size because ImageFilter.RankFilter.filter() calls image.expand(size // 2, size // 2...
CVE-2026-59205
- EPSS 0.39%
- Veröffentlicht 14.07.2026 16:17:02
- Zuletzt bearbeitet 14.07.2026 20:09:27
Pillow is a Python imaging library. Prior to 12.3.0, Pillow's ImageCms.ImageCmsTransform.apply(im, imOut) API can trigger controlled native heap corruption when the caller supplies an output image whose mode does not match the transform's declared ou...
CVE-2026-59203
- EPSS 0.4%
- Veröffentlicht 14.07.2026 16:17:02
- Zuletzt bearbeitet 15.07.2026 14:18:32
Pillow is a Python imaging library. From 12.0.0 through 12.2.0, Pillow's EPS parser in PIL/EpsImagePlugin.py accepts a negative byte count in the %%BeginBinary directive, allowing a crafted EPS file to cause Image.open() to seek backwards to the same...
CVE-2026-59199
- EPSS 0.39%
- Veröffentlicht 14.07.2026 16:17:01
- Zuletzt bearbeitet 15.07.2026 16:16:49
Pillow is a Python imaging library. Prior to 12.3.0, Pillow public image coordinate APIs can trigger a native heap out-of-bounds write when given coordinates near the signed 32-bit integer limits in Image.paste(), Image.crop(), or Image.alpha_composi...
CVE-2026-59198
- EPSS 0.31%
- Veröffentlicht 14.07.2026 16:17:01
- Zuletzt bearbeitet 14.07.2026 20:18:43
Pillow is a Python imaging library. From 5.2.0 until 12.3.0, Pillow's TGA RLE encoder reads past its packed row buffer when saving a mode 1 image with TGA RLE compression, allowing adjacent process heap bytes to be copied into the generated TGA file....
CVE-2026-59200
- EPSS 0.39%
- Veröffentlicht 14.07.2026 16:09:05
- Zuletzt bearbeitet 21.07.2026 15:52:40
Pillow is a Python imaging library. From 5.1.0 until 12.3.0, PdfParser.PdfStream.decode() in PIL/PdfParser.py calls zlib.decompress() with bufsize set to the PDF stream Length field without bounding the decompressed output size, allowing a crafted Fl...
CVE-2026-59204
- EPSS 0.39%
- Veröffentlicht 14.07.2026 15:38:29
- Zuletzt bearbeitet 21.07.2026 19:17:12
Pillow is a Python imaging library. From 8.2.0 through 12.2.0, src/libImaging/Jpeg2KDecode.c accumulates total_component_width across every tile in a JPEG2000 image instead of recomputing it per tile, allowing a crafted tiled JPEG2000 file to force s...
CVE-2026-55379
- EPSS 0.42%
- Veröffentlicht 06.07.2026 18:52:11
- Zuletzt bearbeitet 07.07.2026 18:59:01
Pillow is a Python imaging library. Prior to 12.3.0, PIL/BdfFontFile.py bdf_char() read the BBX width and height field from a BDF font file and passed attacker-controlled dimensions to Image.new() without calling Image._decompression_bomb_check(), by...
CVE-2026-55380
- EPSS 0.42%
- Veröffentlicht 06.07.2026 18:50:14
- Zuletzt bearbeitet 07.07.2026 18:58:54
Pillow is a Python imaging library. Prior to 12.3.0, PIL/GdImageFile.py GdImageFile._open() read image dimensions from the GD 2.x header and stored them in self._size without calling Image._decompression_bomb_check(), allowing a crafted .gd file to t...