CVE-2016-2533
published 2016-04-13CVE-2016-2533: Buffer overflow in the ImagingPcdDecode function in PcdDecode.c in Pillow before 3.1.1 and Python Imaging Library (PIL) 1.1.7 and earlier allows remote…
PriorityP429medium6.5CVSS 3.0
AVNACLPRNUIRSUCNINAH
EPSS
4.00%
89.4th percentile
Buffer overflow in the ImagingPcdDecode function in PcdDecode.c in Pillow before 3.1.1 and Python Imaging Library (PIL) 1.1.7 and earlier allows remote attackers to cause a denial of service (crash) via a crafted PhotoCD file.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | pillow | < pillow 3.1.1-1 (bookworm) | pillow 3.1.1-1 (bookworm) |
| python | pillow | <= 3.1.0 | — |
| python | pillow | >= 0 < 3.1.1-1 | 3.1.1-1 |
| python | pillow | >= 0 < 3.1.1-1 | 3.1.1-1 |
| python | pillow | >= 0 < 3.1.1-1 | 3.1.1-1 |
| python | pillow | >= 0 < 3.1.1-1 | 3.1.1-1 |
| python | pillow | >= 0 < 3.1.1 | 3.1.1 |
| python | pillow | >= 0 < 2.3.0-1ubuntu3.3 | 2.3.0-1ubuntu3.3 |
| python | pillow | >= 0 < 2.3.0-1ubuntu3.2 | 2.3.0-1ubuntu3.2 |
| python_imaging_project | python_imaging | <= 1.1.7 | — |
CVSS provenance
nvdv3.06.5MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv6.5MEDIUM
vendor_debian6.5MEDIUM
vendor_redhat6.5MEDIUM
vendor_ubuntu5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Pillow buffer overflow in ImagingPcdDecode
osv·2018-07-24
CVE-2016-2533 [HIGH] Pillow buffer overflow in ImagingPcdDecode
Pillow buffer overflow in ImagingPcdDecode
Buffer overflow in the `ImagingPcdDecode` function in `PcdDecode.c` in Pillow before 3.1.1 and Python Imaging Library (PIL) 1.1.7 and earlier allows remote attackers to cause a denial of service (crash) via a crafted PhotoCD file.
GHSA
Pillow buffer overflow in ImagingPcdDecode
ghsa·2018-07-24
CVE-2016-2533 [HIGH] CWE-119 Pillow buffer overflow in ImagingPcdDecode
Pillow buffer overflow in ImagingPcdDecode
Buffer overflow in the `ImagingPcdDecode` function in `PcdDecode.c` in Pillow before 3.1.1 and Python Imaging Library (PIL) 1.1.7 and earlier allows remote attackers to cause a denial of service (crash) via a crafted PhotoCD file.
OSV
Pillow regression
osv·2016-09-30·CVSS 5.0
CVE-2014-9601 [MEDIUM] Pillow regression
Pillow regression
USN-3090-1 fixed vulnerabilities in Pillow. The patch to fix CVE-2014-9601
caused a regression which resulted in failures when processing certain
png images. This update temporarily reverts the security fix for CVE-2014-9601
pending further investigation.
We apologize for the inconvenience.
Original advisory details:
It was discovered that a flaw in processing a compressed text chunk in
a PNG image could cause the image to have a large size when decompressed,
potentially leading to a denial of service. (CVE-2014-9601)
Andrew Drake discovered that Pillow incorrectly validated input. A remote
attacker could use this to cause Pillow to crash, resulting in a denial
of service. (CVE-2014-3589)
Eric Soroos discovered that Pillow incorrectly handled certain malformed
FLI,
OSV
Pillow vulnerabilities
osv·2016-09-27·CVSS 5.0
CVE-2014-9601 [MEDIUM] Pillow vulnerabilities
Pillow vulnerabilities
It was discovered that a flaw in processing a compressed text chunk in
a PNG image could cause the image to have a large size when decompressed,
potentially leading to a denial of service. (CVE-2014-9601)
Andrew Drake discovered that Pillow incorrectly validated input. A remote
attacker could use this to cause Pillow to crash, resulting in a denial
of service. (CVE-2014-3589)
Eric Soroos discovered that Pillow incorrectly handled certain malformed
FLI, Tiff, and PhotoCD files. A remote attacker could use this issue to
cause Pillow to crash, resulting in a denial of service.
(CVE-2016-0740, CVE-2016-0775, CVE-2016-2533)
OSV
CVE-2016-2533: Buffer overflow in the ImagingPcdDecode function in PcdDecode
osv·2016-04-13·CVSS 6.5
CVE-2016-2533 [MEDIUM] CVE-2016-2533: Buffer overflow in the ImagingPcdDecode function in PcdDecode
Buffer overflow in the ImagingPcdDecode function in PcdDecode.c in Pillow before 3.1.1 and Python Imaging Library (PIL) 1.1.7 and earlier allows remote attackers to cause a denial of service (crash) via a crafted PhotoCD file.
Ubuntu
Pillow regresssion
vendor_ubuntu·2016-09-30·CVSS 5.0
CVE-2014-9601 [MEDIUM] Pillow regresssion
Title: Pillow regresssion
Summary: Pillow regresssion
USN-3090-1 fixed vulnerabilities in Pillow. The patch to fix CVE-2014-9601
caused a regression which resulted in failures when processing certain
png images. This update temporarily reverts the security fix for CVE-2014-9601
pending further investigation.
We apologize for the inconvenience.
Original advisory details:
It was discovered that a flaw in processing a compressed text chunk in
a PNG image could cause the image to have a large size when decompressed,
potentially leading to a denial of service. (CVE-2014-9601)
Andrew Drake discovered that Pillow incorrectly validated input. A remote
attacker could use this to cause Pillow to crash, resulting in a denial
of service. (CVE-2014-3589)
Eric Soroos discovered that Pillow incorr
Ubuntu
Pillow vulnerabilities
vendor_ubuntu·2016-09-27·CVSS 5.0
CVE-2014-3589 [MEDIUM] Pillow vulnerabilities
Title: Pillow vulnerabilities
Summary: Pillow could be made to crash if it received specially crafted input or opened
a specially crafted file.
It was discovered that a flaw in processing a compressed text chunk in
a PNG image could cause the image to have a large size when decompressed,
potentially leading to a denial of service. (CVE-2014-9601)
Andrew Drake discovered that Pillow incorrectly validated input. A remote
attacker could use this to cause Pillow to crash, resulting in a denial
of service. (CVE-2014-3589)
Eric Soroos discovered that Pillow incorrectly handled certain malformed
FLI, Tiff, and PhotoCD files. A remote attacker could use this issue to
cause Pillow to crash, resulting in a denial of service.
(CVE-2016-0740, CVE-2016-0775, CVE-2016-2533)
Instructions: In general
Ubuntu
Python Imaging Library vulnerabilities
vendor_ubuntu·2016-09-15·CVSS 5.0
CVE-2014-3589 [MEDIUM] Python Imaging Library vulnerabilities
Title: Python Imaging Library vulnerabilities
Summary: Python Imaging Libary could be made to crash if it received specially crafted
input or opened a specially crafted file.
Eric Soroos discovered that the Python Imaging Library incorrectly handled
certain malformed FLI or PhotoCD files. A remote attacker could use this
issue to cause Python Imaging Library to crash, resulting in a denial of
service. (CVE-2016-0775, CVE-2016-2533)
Andrew Drake discovered that the Python Imaging Libray incorrectly validated
input. A remote attacker could use this to cause Python Imaging Library to
crash, resulting in a denial of service. (CVE-2014-3589)
Instructions: In general, a standard system update will make all the necessary changes.
Debian
CVE-2016-2533: pillow - Buffer overflow in the ImagingPcdDecode function in PcdDecode.c in Pillow before...
vendor_debian·2016·CVSS 6.5
CVE-2016-2533 [MEDIUM] CVE-2016-2533: pillow - Buffer overflow in the ImagingPcdDecode function in PcdDecode.c in Pillow before...
Buffer overflow in the ImagingPcdDecode function in PcdDecode.c in Pillow before 3.1.1 and Python Imaging Library (PIL) 1.1.7 and earlier allows remote attackers to cause a denial of service (crash) via a crafted PhotoCD file.
Scope: local
bookworm: resolved (fixed in 3.1.1-1)
bullseye: resolved (fixed in 3.1.1-1)
forky: resolved (fixed in 3.1.1-1)
sid: resolved (fixed in 3.1.1-1)
trixie: resolved (fixed in 3.1.1-1)
Red Hat
python-pillow: Buffer overflow in PCD decoding
vendor_redhat·2014-03-24·CVSS 6.5
CVE-2016-2533 [MEDIUM] CWE-122 python-pillow: Buffer overflow in PCD decoding
python-pillow: Buffer overflow in PCD decoding
Buffer overflow in the ImagingPcdDecode function in PcdDecode.c in Pillow before 3.1.1 and Python Imaging Library (PIL) 1.1.7 and earlier allows remote attackers to cause a denial of service (crash) via a crafted PhotoCD file.
Package: python-imaging (Red Hat Enterprise Linux 5) - Will not fix
Package: python-imaging (Red Hat Enterprise Linux 6) - Will not fix
Package: python-pillow (Red Hat Enterprise Linux 7) - Will not fix
No detection rules found.
No public exploits indexed.
http://www.debian.org/security/2016/dsa-3499http://www.openwall.com/lists/oss-security/2016/02/02/5http://www.openwall.com/lists/oss-security/2016/02/22/2http://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.htmlhttps://github.com/python-pillow/Pillow/blob/c3cb690fed5d4bf0c45576759de55d054916c165/CHANGES.rsthttps://github.com/python-pillow/Pillow/commit/5bdf54b5a76b54fb00bd05f2d733e0a4173eefc9#diff-8ff6909c159597e22288ad818938fd6bhttps://github.com/python-pillow/Pillow/commit/ae453aa18b66af54e7ff716f4ccb33adca60afd4#diff-8ff6909c159597e22288ad818938fd6bhttps://github.com/python-pillow/Pillow/pull/1706https://security.gentoo.org/glsa/201612-52http://www.debian.org/security/2016/dsa-3499http://www.openwall.com/lists/oss-security/2016/02/02/5http://www.openwall.com/lists/oss-security/2016/02/22/2http://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.htmlhttps://github.com/python-pillow/Pillow/blob/c3cb690fed5d4bf0c45576759de55d054916c165/CHANGES.rsthttps://github.com/python-pillow/Pillow/commit/5bdf54b5a76b54fb00bd05f2d733e0a4173eefc9#diff-8ff6909c159597e22288ad818938fd6bhttps://github.com/python-pillow/Pillow/commit/ae453aa18b66af54e7ff716f4ccb33adca60afd4#diff-8ff6909c159597e22288ad818938fd6bhttps://github.com/python-pillow/Pillow/pull/1706https://security.gentoo.org/glsa/201612-52
2016-04-13
Published