UbuntuUpdates.org

Bugs fixes in "pillow"

Origin Bug number Title Date fixed
CVE CVE-2014-9601 Pillow before 2.7.0 allows remote attackers to cause a denial of service via a compressed text chunk in a PNG image that has a large size when it is 2016-09-27
CVE CVE-2014-3589 PIL/IcnsImagePlugin.py in Python Imaging Library (PIL) and Pillow before 2.3.2 and 2.5.x before 2.5.2 allows remote attackers to cause a denial of se 2016-09-27
CVE CVE-2016-2533 Buffer overflow in the ImagingPcdDecode function in PcdDecode.c in Pillow before 3.1.1 and Python Imaging Library (PIL) 1.1.7 and earlier allows remo 2016-09-27
CVE CVE-2016-0740 Buffer overflow in the ImagingLibTiffDecode function in libImaging/TiffDecode.c in Pillow before 3.1.1 allows remote attackers to overwrite memory vi 2016-09-27
CVE CVE-2016-0775 Buffer overflow in the ImagingFliDecode function in libImaging/FliDecode.c in Pillow before 3.1.1 allows remote attackers to cause a denial of servic 2016-09-27
CVE CVE-2014-9601 Pillow before 2.7.0 allows remote attackers to cause a denial of service via a compressed text chunk in a PNG image that has a large size when it is 2016-09-27
CVE CVE-2014-3589 PIL/IcnsImagePlugin.py in Python Imaging Library (PIL) and Pillow before 2.3.2 and 2.5.x before 2.5.2 allows remote attackers to cause a denial of se 2016-09-27
CVE CVE-2016-2533 Buffer overflow in the ImagingPcdDecode function in PcdDecode.c in Pillow before 3.1.1 and Python Imaging Library (PIL) 1.1.7 and earlier allows remo 2016-09-27
CVE CVE-2016-0740 Buffer overflow in the ImagingLibTiffDecode function in libImaging/TiffDecode.c in Pillow before 3.1.1 allows remote attackers to overwrite memory vi 2016-09-27
CVE CVE-2016-0775 Buffer overflow in the ImagingFliDecode function in libImaging/FliDecode.c in Pillow before 3.1.1 allows remote attackers to cause a denial of servic 2016-09-27
CVE CVE-2016-3076 j2k integer overflow error on encode 2016-04-16
CVE CVE-2016-3076 j2k integer overflow error on encode 2016-04-16
CVE CVE-2016-3076 j2k integer overflow error on encode 2016-04-16
CVE CVE-2016-3076 j2k integer overflow error on encode 2016-04-16
CVE CVE-2014-1933 sensitive filename information on commandline visible 2014-03-31
CVE CVE-2014-1932 insecure use of /tmp 2014-03-31
CVE CVE-2014-1933 sensitive filename information on commandline visible 2014-03-31
CVE CVE-2014-1932 insecure use of /tmp 2014-03-31
CVE CVE-2014-1933 sensitive filename information on commandline visible 2014-03-31
CVE CVE-2014-1932 insecure use of /tmp 2014-03-31



About   -   Send Feedback to @ubuntu_updates