CVE-2021-34552
Pillow through 8.2.0 and PIL (aka Python Imaging Library) through 1.1.7 allow an attacker to pass controlled parameters
Pillow through 8.2.0 and PIL (aka Python Imaging Library) through 1.1.7 allow an attacker to pass controlled parameters directly into a convert function to trigger a buffer overflow in Convert.c.
CRITICAL · CVSS 9.8
EPSS 0.00337
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0