← Voltar para CVEs
CVE-2014-3589
N/ADescricao
PIL/IcnsImagePlugin.py in Python Imaging Library (PIL) and Pillow before 2.3.2 and 2.5.x before 2.5.2 allows remote attackers to cause a denial of service via a crafted block size.
Detalhes CVE
Pontuacao CVSS v3.1N/A
Publicado8/25/2014
Ultima modificacao4/12/2025
Fontenvd
Avistamentos honeypot0
Produtos afetados
debian:python-imagingopensuse:opensusepython:pillow
Fraquezas (CWE)
CWE-20
Referencias
http://lists.opensuse.org/opensuse-updates/2015-04/msg00056.html(secalert@redhat.com)
http://secunia.com/advisories/59825(secalert@redhat.com)
http://www.debian.org/security/2014/dsa-3009(secalert@redhat.com)
https://github.com/python-pillow/Pillow/commit/205e056f8f9b06ed7b925cf8aa0874bc4aaf8a7d(secalert@redhat.com)
https://pypi.python.org/pypi/Pillow/2.3.2(secalert@redhat.com)
https://pypi.python.org/pypi/Pillow/2.5.2(secalert@redhat.com)
http://lists.opensuse.org/opensuse-updates/2015-04/msg00056.html(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/59825(af854a3a-2127-422b-91ae-364da2661108)
http://www.debian.org/security/2014/dsa-3009(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/python-pillow/Pillow/commit/205e056f8f9b06ed7b925cf8aa0874bc4aaf8a7d(af854a3a-2127-422b-91ae-364da2661108)
https://pypi.python.org/pypi/Pillow/2.3.2(af854a3a-2127-422b-91ae-364da2661108)
https://pypi.python.org/pypi/Pillow/2.5.2(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.