CVE-2016-9190
published 2016-11-04CVE-2016-9190: Pillow before 3.3.2 allows context-dependent attackers to execute arbitrary code by using the "crafted image file" approach, related to an "Insecure Sign…
PriorityP339high7.8CVSS 3.0
AVLACLPRNUIRSUCHIHAH
EPSS
2.03%
78.7th percentile
Pillow before 3.3.2 allows context-dependent attackers to execute arbitrary code by using the "crafted image file" approach, related to an "Insecure Sign Extension" issue affecting the ImagingNew in Storage.c component.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | pillow | < pillow 3.4.2-1 (bookworm) | pillow 3.4.2-1 (bookworm) |
| python | pillow | <= 3.3.1 | — |
| python | pillow | >= 0 < 3.4.2-1 | 3.4.2-1 |
| python | pillow | >= 0 < 3.4.2-1 | 3.4.2-1 |
| python | pillow | >= 0 < 3.4.2-1 | 3.4.2-1 |
| python | pillow | >= 0 < 3.4.2-1 | 3.4.2-1 |
| python | pillow | >= 0 < 3.3.2 | 3.3.2 |
| python | pillow | >= 0 < 2.3.0-1ubuntu3.4 | 2.3.0-1ubuntu3.4 |
| python | pillow | >= 0 < 3.1.2-0ubuntu1.1 | 3.1.2-0ubuntu1.1 |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Pillow vulnerabilities
vendor_ubuntu·2017-03-13·CVSS 5.0
CVE-2014-9601 [MEDIUM] Pillow vulnerabilities
Title: Pillow vulnerabilities
Summary: Several security issues were fixed in Pillow.
It was discovered that Pillow incorrectly handled certain compressed text
chunks in PNG images. A remote attacker could possibly use this issue to
cause Pillow to crash, resulting in a denial of service. This issue only
affected Ubuntu 14.04 LTS. (CVE-2014-9601)
Cris Neckar discovered that Pillow incorrectly handled certain malformed
images. A remote attacker could use this issue to cause Pillow to crash,
resulting in a denial of service, or possibly obtain sensitive information.
(CVE-2016-9189)
Cris Neckar discovered that Pillow incorrectly handled certain malformed
images. A remote attacker could use this issue to cause Pillow to crash,
resulting in a denial of service, or possibly execute arbitrary
Ubuntu
Python Imaging Library vulnerabilities
vendor_ubuntu·2017-03-13·CVSS 5.0
CVE-2014-9601 [MEDIUM] Python Imaging Library vulnerabilities
Title: Python Imaging Library vulnerabilities
Summary: Several security issues were fixed in the Python Imaging Library.
It was discovered that the Python Imaging Library incorrectly handled
certain compressed text chunks in PNG images. A remote attacker could
possibly use this issue to cause the Python Imaging Library to crash,
resulting in a denial of service. (CVE-2014-9601)
Cris Neckar discovered that the Python Imaging Library incorrectly handled
certain malformed images. A remote attacker could use this issue to cause
the Python Imaging Library to crash, resulting in a denial of service, or
possibly obtain sensitive information. (CVE-2016-9189)
Cris Neckar discovered that the Python Imaging Library incorrectly handled
certain malformed images. A remote attacker could use this iss
Red Hat
python-pillow: Missing check for negative image dimensions in ImagingNew (Storage.c)
vendor_redhat·2016-10-03·CVSS 7.8
CVE-2016-9190 [HIGH] CWE-20 python-pillow: Missing check for negative image dimensions in ImagingNew (Storage.c)
python-pillow: Missing check for negative image dimensions in ImagingNew (Storage.c)
Pillow before 3.3.2 allows context-dependent attackers to execute arbitrary code by using the "crafted image file" approach, related to an "Insecure Sign Extension" issue affecting the ImagingNew in Storage.c component.
A vulnerability was found in python-pillow. A crafted image file with negative dimensions could cause a buffer to be under-allocated, leading to arbitrary writes on the heap which could cause a crash or, potentially, code execution.
Statement: Red Hat Product Security has rated this issue as having Moderate security
impact. This issue is not currently planned to be addressed in future
updates. For additional information, refer to the Issue Severity
Classification: https://access.redhat.c
Debian
CVE-2016-9190: pillow - Pillow before 3.3.2 allows context-dependent attackers to execute arbitrary code...
vendor_debian·2016·CVSS 7.8
CVE-2016-9190 [HIGH] CVE-2016-9190: pillow - Pillow before 3.3.2 allows context-dependent attackers to execute arbitrary code...
Pillow before 3.3.2 allows context-dependent attackers to execute arbitrary code by using the "crafted image file" approach, related to an "Insecure Sign Extension" issue affecting the ImagingNew in Storage.c component.
Scope: local
bookworm: resolved (fixed in 3.4.2-1)
bullseye: resolved (fixed in 3.4.2-1)
forky: resolved (fixed in 3.4.2-1)
sid: resolved (fixed in 3.4.2-1)
trixie: resolved (fixed in 3.4.2-1)
OSV
Arbitrary code using "crafted image file" approach affecting Pillow
osv·2018-07-12
CVE-2016-9190 [HIGH] Arbitrary code using "crafted image file" approach affecting Pillow
Arbitrary code using "crafted image file" approach affecting Pillow
Pillow before 3.3.2 allows context-dependent attackers to execute arbitrary code by using the "crafted image file" approach, related to an "Insecure Sign Extension" issue affecting the ImagingNew in Storage.c component.
GHSA
Arbitrary code using "crafted image file" approach affecting Pillow
ghsa·2018-07-12
CVE-2016-9190 [HIGH] CWE-284 Arbitrary code using "crafted image file" approach affecting Pillow
Arbitrary code using "crafted image file" approach affecting Pillow
Pillow before 3.3.2 allows context-dependent attackers to execute arbitrary code by using the "crafted image file" approach, related to an "Insecure Sign Extension" issue affecting the ImagingNew in Storage.c component.
OSV
pillow vulnerabilities
osv·2017-03-13·CVSS 5.0
CVE-2014-9601 [MEDIUM] pillow vulnerabilities
pillow vulnerabilities
It was discovered that Pillow incorrectly handled certain compressed text
chunks in PNG images. A remote attacker could possibly use this issue to
cause Pillow to crash, resulting in a denial of service. This issue only
affected Ubuntu 14.04 LTS. (CVE-2014-9601)
Cris Neckar discovered that Pillow incorrectly handled certain malformed
images. A remote attacker could use this issue to cause Pillow to crash,
resulting in a denial of service, or possibly obtain sensitive information.
(CVE-2016-9189)
Cris Neckar discovered that Pillow incorrectly handled certain malformed
images. A remote attacker could use this issue to cause Pillow to crash,
resulting in a denial of service, or possibly execute arbitrary code.
(CVE-2016-9190)
OSV
CVE-2016-9190: Pillow before 3
osv·2016-11-04·CVSS 7.8
CVE-2016-9190 [HIGH] CVE-2016-9190: Pillow before 3
Pillow before 3.3.2 allows context-dependent attackers to execute arbitrary code by using the "crafted image file" approach, related to an "Insecure Sign Extension" issue affecting the ImagingNew in Storage.c component.
No detection rules found.
No public exploits indexed.
http://pillow.readthedocs.io/en/3.4.x/releasenotes/3.3.2.htmlhttp://www.debian.org/security/2016/dsa-3710http://www.securityfocus.com/bid/94234https://github.com/python-pillow/Pillow/issues/2105https://github.com/python-pillow/Pillow/pull/2146/commits/5d8a0be45aad78c5a22c8d099118ee26ef8144afhttps://security.gentoo.org/glsa/201612-52http://pillow.readthedocs.io/en/3.4.x/releasenotes/3.3.2.htmlhttp://www.debian.org/security/2016/dsa-3710http://www.securityfocus.com/bid/94234https://github.com/python-pillow/Pillow/issues/2105https://github.com/python-pillow/Pillow/pull/2146/commits/5d8a0be45aad78c5a22c8d099118ee26ef8144afhttps://security.gentoo.org/glsa/201612-52
2016-11-04
Published