CVE-2021-25293 - log back

CVE-2021-25293 edited at 03 Mar 2021 10:55:08
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Local
Type
- Unknown
+ Information disclosure
Description
+ A security issue was found in python-pillow before version 8.1.1. There is an out of bounds read in SGIRleDecode.c, since pillow 4.3.0.
References
+ https://pillow.readthedocs.io/en/stable/releasenotes/8.1.1.html
+ https://github.com/python-pillow/Pillow/commit/f891baa604636cd2506a9360d170bc2cf4963cc5
Notes
CVE-2021-25293 created at 03 Mar 2021 10:43:53