CVE-2021-25293 log

Source
Severity Medium
Remote No
Type Information disclosure
Description
A security issue was found in python-pillow before version 8.1.1. There is an out of bounds read in SGIRleDecode.c, since pillow 4.3.0.
Group Package Affected Fixed Severity Status Ticket
AVG-1439 python2-pillow 6.2.1-3 Medium Unknown
AVG-1635 python-pillow 8.1.0-1 8.1.2-1 Medium Fixed FS#70044
References
https://pillow.readthedocs.io/en/stable/releasenotes/8.1.1.html
https://github.com/python-pillow/Pillow/commit/f891baa604636cd2506a9360d170bc2cf4963cc5