← Volver a CVEs
CVE-2014-3589
N/ADescripcion
PIL/IcnsImagePlugin.py in Python Imaging Library (PIL) and Pillow before 2.3.2 and 2.5.x before 2.5.2 allows remote attackers to cause a denial of service via a crafted block size.
Detalles CVE
Puntuacion CVSS v3.1N/A
Publicado8/25/2014
Ultima modificacion4/12/2025
Fuentenvd
Avistamientos honeypot0
Productos afectados
debian:python-imagingopensuse:opensusepython:pillow
Debilidades (CWE)
CWE-20
Referencias
http://lists.opensuse.org/opensuse-updates/2015-04/msg00056.html(secalert@redhat.com)
http://secunia.com/advisories/59825(secalert@redhat.com)
http://www.debian.org/security/2014/dsa-3009(secalert@redhat.com)
https://github.com/python-pillow/Pillow/commit/205e056f8f9b06ed7b925cf8aa0874bc4aaf8a7d(secalert@redhat.com)
https://pypi.python.org/pypi/Pillow/2.3.2(secalert@redhat.com)
https://pypi.python.org/pypi/Pillow/2.5.2(secalert@redhat.com)
http://lists.opensuse.org/opensuse-updates/2015-04/msg00056.html(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/59825(af854a3a-2127-422b-91ae-364da2661108)
http://www.debian.org/security/2014/dsa-3009(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/python-pillow/Pillow/commit/205e056f8f9b06ed7b925cf8aa0874bc4aaf8a7d(af854a3a-2127-422b-91ae-364da2661108)
https://pypi.python.org/pypi/Pillow/2.3.2(af854a3a-2127-422b-91ae-364da2661108)
https://pypi.python.org/pypi/Pillow/2.5.2(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.