CVE-2021-25292 - log back

CVE-2021-25292 edited at 03 Mar 2021 10:53:45
Severity
- Unknown
+ Low
Remote
- Unknown
+ Local
Type
- Unknown
+ Denial of service
Description
+ A security issue was found in python-pillow before version 8.1.1. The PDF parser has a catastrophic backtracking regex that could be used in a denial of service (DoS) attack.
References
+ https://pillow.readthedocs.io/en/stable/releasenotes/8.1.1.html
+ https://github.com/python-pillow/Pillow/commit/521dab94c7ab72b037bd9a83e9663401e0fd2cee
Notes
CVE-2021-25292 created at 03 Mar 2021 10:43:53