CVE-2021-27923
03.03.2021, 09:15
Pillow before 8.1.1 allows attackers to cause a denial of service (memory consumption) because the reported size of a contained image is not properly checked for an ICO container, and thus an attempted memory allocation can be very large.Enginsight
Vendor | Product | Version |
---|---|---|
python | pillow | 𝑥 < 8.1.1 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
pillow |
| ||||||||||||||||||||||||
pillow-python2 |
| ||||||||||||||||||||||||
python-imaging |
|
Common Weakness Enumeration
References