CVE-2016-9189
published 2016-11-04CVE-2016-9189: Pillow before 3.3.2 allows context-dependent attackers to obtain sensitive information by using the "crafted image file" approach, related to an "Integer…
PriorityP425medium5.5CVSS 3.0
AVLACLPRNUIRSUCHINAN
EPSS
1.88%
77.2th percentile
Pillow before 3.3.2 allows context-dependent attackers to obtain sensitive information by using the "crafted image file" approach, related to an "Integer Overflow" issue affecting the Image.core.map_buffer in map.c component.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | pillow | < pillow 3.4.2-1 (bookworm) | pillow 3.4.2-1 (bookworm) |
| python | pillow | <= 3.3.1 | — |
| python | pillow | >= 0 < 3.4.2-1 | 3.4.2-1 |
| python | pillow | >= 0 < 3.4.2-1 | 3.4.2-1 |
| python | pillow | >= 0 < 3.4.2-1 | 3.4.2-1 |
| python | pillow | >= 0 < 3.4.2-1 | 3.4.2-1 |
| python | pillow | >= 0 < 3.3.2 | 3.3.2 |
| python | pillow | >= 0 < 2.3.0-1ubuntu3.4 | 2.3.0-1ubuntu3.4 |
| python | pillow | >= 0 < 3.1.2-0ubuntu1.1 | 3.1.2-0ubuntu1.1 |
CVSS provenance
nvdv3.05.5MEDIUMCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
vendor_ubuntu5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Pillow Integer overflow in Map.c
osv·2018-07-24
CVE-2016-9189 [MEDIUM] Pillow Integer overflow in Map.c
Pillow Integer overflow in Map.c
Pillow before 3.3.2 allows context-dependent attackers to obtain sensitive information by using the "crafted image file" approach, related to an "Integer Overflow" issue affecting the `Image.core.map_buffer` in `map.c` component.
GHSA
Pillow Integer overflow in Map.c
ghsa·2018-07-24
CVE-2016-9189 [MEDIUM] CWE-190 Pillow Integer overflow in Map.c
Pillow Integer overflow in Map.c
Pillow before 3.3.2 allows context-dependent attackers to obtain sensitive information by using the "crafted image file" approach, related to an "Integer Overflow" issue affecting the `Image.core.map_buffer` in `map.c` component.
OSV
pillow vulnerabilities
osv·2017-03-13·CVSS 5.0
CVE-2014-9601 [MEDIUM] pillow vulnerabilities
pillow vulnerabilities
It was discovered that Pillow incorrectly handled certain compressed text
chunks in PNG images. A remote attacker could possibly use this issue to
cause Pillow to crash, resulting in a denial of service. This issue only
affected Ubuntu 14.04 LTS. (CVE-2014-9601)
Cris Neckar discovered that Pillow incorrectly handled certain malformed
images. A remote attacker could use this issue to cause Pillow to crash,
resulting in a denial of service, or possibly obtain sensitive information.
(CVE-2016-9189)
Cris Neckar discovered that Pillow incorrectly handled certain malformed
images. A remote attacker could use this issue to cause Pillow to crash,
resulting in a denial of service, or possibly execute arbitrary code.
(CVE-2016-9190)
OSV
CVE-2016-9189: Pillow before 3
osv·2016-11-04·CVSS 5.5
CVE-2016-9189 [MEDIUM] CVE-2016-9189: Pillow before 3
Pillow before 3.3.2 allows context-dependent attackers to obtain sensitive information by using the "crafted image file" approach, related to an "Integer Overflow" issue affecting the Image.core.map_buffer in map.c component.
Ubuntu
Pillow vulnerabilities
vendor_ubuntu·2017-03-13·CVSS 5.0
CVE-2014-9601 [MEDIUM] Pillow vulnerabilities
Title: Pillow vulnerabilities
Summary: Several security issues were fixed in Pillow.
It was discovered that Pillow incorrectly handled certain compressed text
chunks in PNG images. A remote attacker could possibly use this issue to
cause Pillow to crash, resulting in a denial of service. This issue only
affected Ubuntu 14.04 LTS. (CVE-2014-9601)
Cris Neckar discovered that Pillow incorrectly handled certain malformed
images. A remote attacker could use this issue to cause Pillow to crash,
resulting in a denial of service, or possibly obtain sensitive information.
(CVE-2016-9189)
Cris Neckar discovered that Pillow incorrectly handled certain malformed
images. A remote attacker could use this issue to cause Pillow to crash,
resulting in a denial of service, or possibly execute arbitrary
Ubuntu
Python Imaging Library vulnerabilities
vendor_ubuntu·2017-03-13·CVSS 5.0
CVE-2014-9601 [MEDIUM] Python Imaging Library vulnerabilities
Title: Python Imaging Library vulnerabilities
Summary: Several security issues were fixed in the Python Imaging Library.
It was discovered that the Python Imaging Library incorrectly handled
certain compressed text chunks in PNG images. A remote attacker could
possibly use this issue to cause the Python Imaging Library to crash,
resulting in a denial of service. (CVE-2014-9601)
Cris Neckar discovered that the Python Imaging Library incorrectly handled
certain malformed images. A remote attacker could use this issue to cause
the Python Imaging Library to crash, resulting in a denial of service, or
possibly obtain sensitive information. (CVE-2016-9189)
Cris Neckar discovered that the Python Imaging Library incorrectly handled
certain malformed images. A remote attacker could use this iss
Red Hat
python-pillow: Integer overflows leading to memory disclosure in PyImaging_MapBuffer (Map.c)
vendor_redhat·2016-10-03·CVSS 5.5
CVE-2016-9189 [MEDIUM] CWE-190 python-pillow: Integer overflows leading to memory disclosure in PyImaging_MapBuffer (Map.c)
python-pillow: Integer overflows leading to memory disclosure in PyImaging_MapBuffer (Map.c)
Pillow before 3.3.2 allows context-dependent attackers to obtain sensitive information by using the "crafted image file" approach, related to an "Integer Overflow" issue affecting the Image.core.map_buffer in map.c component.
A memory disclosure vulnerability was found in python-pillow. Functions in map.c failed to check for image overflow and check that an offset parameter was within bounds, allowing a crafted image to cause a crash or disclosure of memory.
Statement: Red Hat Product Security has rated this issue as having Moderate security
impact. This issue is not currently planned to be addressed in future
updates. For additional information, refer to the Issue Severity
Classification: https
Debian
CVE-2016-9189: pillow - Pillow before 3.3.2 allows context-dependent attackers to obtain sensitive infor...
vendor_debian·2016·CVSS 5.5
CVE-2016-9189 [MEDIUM] CVE-2016-9189: pillow - Pillow before 3.3.2 allows context-dependent attackers to obtain sensitive infor...
Pillow before 3.3.2 allows context-dependent attackers to obtain sensitive information by using the "crafted image file" approach, related to an "Integer Overflow" issue affecting the Image.core.map_buffer in map.c component.
Scope: local
bookworm: resolved (fixed in 3.4.2-1)
bullseye: resolved (fixed in 3.4.2-1)
forky: resolved (fixed in 3.4.2-1)
sid: resolved (fixed in 3.4.2-1)
trixie: resolved (fixed in 3.4.2-1)
No detection rules found.
No public exploits indexed.
http://pillow.readthedocs.io/en/3.4.x/releasenotes/3.3.2.htmlhttp://www.debian.org/security/2016/dsa-3710http://www.securityfocus.com/bid/94234https://github.com/python-pillow/Pillow/issues/2105https://github.com/python-pillow/Pillow/pull/2146/commits/c50ebe6459a131a1ea8ca531f10da616d3ceaa0fhttps://security.gentoo.org/glsa/201612-52http://pillow.readthedocs.io/en/3.4.x/releasenotes/3.3.2.htmlhttp://www.debian.org/security/2016/dsa-3710http://www.securityfocus.com/bid/94234https://github.com/python-pillow/Pillow/issues/2105https://github.com/python-pillow/Pillow/pull/2146/commits/c50ebe6459a131a1ea8ca531f10da616d3ceaa0fhttps://security.gentoo.org/glsa/201612-52
2016-11-04
Published