Tuesday, May 25, 2021

Ubuntu: USN-4963-1 (CVE-2021-28676): Pillow vulnerabilities

Description
Details for this vulnerability have not been published by NIST at this point. Descriptions from software vendor advisories for this issue are provided below.From USN-4963-1:It was discovered that Pillow incorrectly handled certain image files. If a user or automated system were tricked into opening a specially-crafted file, a remote attacker could cause Pillow to crash or hand, resulting in a denial of service.
Solution(s)
  • ubuntu-upgrade-python-pil
  • ubuntu-upgrade-python3-pil


  • References
  • USN-4963-1
  • CVE-2021-28676




  •  

    Copyright © 2021 Vulnerability Database | Cyber Details™

    thank you Templateism for the design - You should have written the code a little more complicated - Nothing Encrypted anymore