Total vulnerabilities in the database
Pillow before 3.3.2 allows context-dependent attackers to execute arbitrary code by using the "crafted image file" approach, related to an "Insecure Sign Extension" issue affecting the ImagingNew in Storage.c component.
Software | From | Fixed in |
---|---|---|
python / pillow | - | 3.3.1.x |
debian / debian_linux | 8.0 | 8.0.x |
![]() |
- | 3.3.2 |