CVE-2022-22816
10.01.2022, 14:12
path_getbbox in path.c in Pillow before 9.0.0 has a buffer over-read during initialization of ImagePath.Path.Enginsight
| Vendor | Product | Version |
|---|---|---|
| python | pillow | 𝑥 < 9.0.0 |
| debian | debian_linux | 9.0 |
| debian | debian_linux | 10.0 |
| debian | debian_linux | 11.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| pillow |
| ||||||||||||||||||||||
| pillow-python2 |
| ||||||||||||||||||||||
| python-imaging |
|
Common Weakness Enumeration
References