CVE-2016-3076
24.04.2017, 18:59
Heap-based buffer overflow in the j2k_encode_entry function in Pillow 2.5.0 through 3.1.1 allows remote attackers to cause a denial of service (memory corruption) via a crafted Jpeg2000 file.Enginsight
Vendor | Product | Version |
---|---|---|
python | pillow | 2.5.0 |
python | pillow | 2.5.1 |
python | pillow | 2.5.2 |
python | pillow | 2.5.3 |
python | pillow | 2.6.0 |
python | pillow | 2.6.0:rc1 |
python | pillow | 2.6.1 |
python | pillow | 2.6.2 |
python | pillow | 2.7.0 |
python | pillow | 2.8.0 |
python | pillow | 2.8.1 |
python | pillow | 2.8.2 |
python | pillow | 2.9.0 |
python | pillow | 2.9.0:dev0 |
python | pillow | 2.9.0:dev1 |
python | pillow | 2.9.0:dev2 |
python | pillow | 3.0.0 |
python | pillow | 3.0.0:rc1 |
python | pillow | 3.1.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References