CVE-2020-10378
published 2020-06-25CVE-2020-10378: In libImaging/PcxDecode.c in Pillow before 7.1.0, an out-of-bounds read can occur when reading PCX files where state->shuffle is instructed to read beyond…
PriorityP421medium5.5CVSS 3.1
AVLACLPRNUIRSUCHINAN
EPSS
1.10%
62.1th percentile
In libImaging/PcxDecode.c in Pillow before 7.1.0, an out-of-bounds read can occur when reading PCX files where state->shuffle is instructed to read beyond state->buffer.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | pillow | < pillow 7.2.0-1 (bookworm) | pillow 7.2.0-1 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| python | pillow | < 7.1.0 | 7.1.0 |
| python | pillow | >= 0 < 7.2.0-1 | 7.2.0-1 |
| python | pillow | >= 0 < 7.2.0-1 | 7.2.0-1 |
| python | pillow | >= 0 < 7.2.0-1 | 7.2.0-1 |
| python | pillow | >= 0 < 7.2.0-1 | 7.2.0-1 |
| python | pillow | >= 0 < 7.1.0 | 7.1.0 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Out-of-bounds read in Pillow
osv·2021-11-03
CVE-2020-10378 [HIGH] Out-of-bounds read in Pillow
Out-of-bounds read in Pillow
In `libImaging/PcxDecode.c` in Pillow before 7.1.0, an out-of-bounds read can occur when reading PCX files where `state->shuffle` is instructed to read beyond `state->buffer`.
GHSA
Out-of-bounds read in Pillow
ghsa·2021-11-03
CVE-2020-10378 [HIGH] CWE-125 Out-of-bounds read in Pillow
Out-of-bounds read in Pillow
In `libImaging/PcxDecode.c` in Pillow before 7.1.0, an out-of-bounds read can occur when reading PCX files where `state->shuffle` is instructed to read beyond `state->buffer`.
OSV
CVE-2020-10378: In libImaging/PcxDecode
osv·2020-06-25·CVSS 5.5
CVE-2020-10378 [MEDIUM] CVE-2020-10378: In libImaging/PcxDecode
In libImaging/PcxDecode.c in Pillow before 7.1.0, an out-of-bounds read can occur when reading PCX files where state->shuffle is instructed to read beyond state->buffer.
Ubuntu
Pillow vulnerabilities
vendor_ubuntu·2020-07-23
CVE-2020-10177 Pillow vulnerabilities
Title: Pillow vulnerabilities
Summary: Pillow could be made to crash if it opened a specially crafted file.
USN-4430-1 fixed vulnerabilities in Pillow. This update provides the
corresponding updates for Ubuntu 20.04 LTS.
Original advisory details:
It was discovered that Pillow incorrectly handled certain image files. If
a user or automated system were tricked into opening a specially-crafted
image file, a remote attacker could possibly cause Pillow to crash,
resulting in a denial of service.
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
Pillow vulnerabilities
vendor_ubuntu·2020-07-22
CVE-2020-10177 Pillow vulnerabilities
Title: Pillow vulnerabilities
Summary: Pillow could be made to crash if it opened a specially crafted file.
It was discovered that Pillow incorrectly handled certain image files. If
a user or automated system were tricked into opening a specially-crafted
image file, a remote attacker could possibly cause Pillow to crash,
resulting in a denial of service.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
python-pillow: an out-of-bounds read in libImaging/PcxDecode.c can occur when reading PCX files
vendor_redhat·2020-06-25·CVSS 5.5
CVE-2020-10378 [MEDIUM] CWE-125 python-pillow: an out-of-bounds read in libImaging/PcxDecode.c can occur when reading PCX files
python-pillow: an out-of-bounds read in libImaging/PcxDecode.c can occur when reading PCX files
In libImaging/PcxDecode.c in Pillow before 7.1.0, an out-of-bounds read can occur when reading PCX files where state->shuffle is instructed to read beyond state->buffer.
A flaw was found in python-pillow. In libImaging/PcxDecode.c, an out-of-bounds read occurs when reading PCX files where state->shuffle is instructed to read beyond state->buffer.
Package: python-imaging (Red Hat Enterprise Linux 5) - Out of support scope
Package: python-imaging (Red Hat Enterprise Linux 6) - Out of support scope
Package: python-pillow (Red Hat Enterprise Linux 7) - Fix deferred
Package: python-pillow (Red Hat Enterprise Linux 8) - Fix deferred
Debian
CVE-2020-10378: pillow - In libImaging/PcxDecode.c in Pillow before 7.1.0, an out-of-bounds read can occu...
vendor_debian·2020·CVSS 5.5
CVE-2020-10378 [MEDIUM] CVE-2020-10378: pillow - In libImaging/PcxDecode.c in Pillow before 7.1.0, an out-of-bounds read can occu...
In libImaging/PcxDecode.c in Pillow before 7.1.0, an out-of-bounds read can occur when reading PCX files where state->shuffle is instructed to read beyond state->buffer.
Scope: local
bookworm: resolved (fixed in 7.2.0-1)
bullseye: resolved (fixed in 7.2.0-1)
forky: resolved (fixed in 7.2.0-1)
sid: resolved (fixed in 7.2.0-1)
trixie: resolved (fixed in 7.2.0-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-10378 python-pillow: an out-of-bounds read in libImaging/PcxDecode.c can occur when reading PCX files
bugzilla·2020-07-01·CVSS 5.5
CVE-2020-10378 [MEDIUM] CVE-2020-10378 python-pillow: an out-of-bounds read in libImaging/PcxDecode.c can occur when reading PCX files
CVE-2020-10378 python-pillow: an out-of-bounds read in libImaging/PcxDecode.c can occur when reading PCX files
In libImaging/PcxDecode.c in Pillow before 6.2.3 and 7.x before 7.0.1, an out-of-bounds read can occur when reading PCX files where state->shuffle is instructed to read beyond state->buffer.
Pull Request:
https://github.com/python-pillow/Pillow/pull/4538
Upstream Advisory:
https://pillow.readthedocs.io/en/stable/releasenotes/7.1.0.html
Upstream Advisory:
https://pillow.readthedocs.io/en/stable/releasenotes/6.2.3.html
Discussion:
Created python-pillow tracking bugs for this issue:
Affects: fedora-31 [bug 1852833]
Affects: fedora-32 [bug 1852835]
---
Upstream Commit:
https://github.com/python-pillow/Pillow/commit/f260acc30a2c14800db4feacad80924488ec88bf
---
This issue
Bugzilla
CVE-2020-10378 python-pillow: an out-of-bounds read in libImaging/PcxDecode.c can occur when reading PCX files [fedora-31]
bugzilla·2020-07-01·CVSS 5.5
CVE-2020-10378 [MEDIUM] CVE-2020-10378 python-pillow: an out-of-bounds read in libImaging/PcxDecode.c can occur when reading PCX files [fedora-31]
CVE-2020-10378 python-pillow: an out-of-bounds read in libImaging/PcxDecode.c can occur when reading PCX files [fedora-31]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-31.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discuss
Bugzilla
CVE-2020-10378 python-pillow: an out-of-bounds read in libImaging/PcxDecode.c can occur when reading PCX files [fedora-32]
bugzilla·2020-07-01·CVSS 5.5
CVE-2020-10378 [MEDIUM] CVE-2020-10378 python-pillow: an out-of-bounds read in libImaging/PcxDecode.c can occur when reading PCX files [fedora-32]
CVE-2020-10378 python-pillow: an out-of-bounds read in libImaging/PcxDecode.c can occur when reading PCX files [fedora-32]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-32.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discuss
https://github.com/python-pillow/Pillow/commit/6a83e4324738bb0452fbe8074a995b1c73f08de7#diff-9478f2787e3ae9668a15123b165c23achttps://github.com/python-pillow/Pillow/commits/master/src/libImaginghttps://github.com/python-pillow/Pillow/pull/4538https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BEBCPE4F2VHTIT6EZA2YZQZLPVDEBJGD/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HOKHNWV2VS5GESY7IBD237E7C6T3I427/https://pillow.readthedocs.io/en/stable/releasenotes/7.1.0.htmlhttps://usn.ubuntu.com/4430-1/https://usn.ubuntu.com/4430-2/https://github.com/python-pillow/Pillow/commit/6a83e4324738bb0452fbe8074a995b1c73f08de7#diff-9478f2787e3ae9668a15123b165c23achttps://github.com/python-pillow/Pillow/commits/master/src/libImaginghttps://github.com/python-pillow/Pillow/pull/4538https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BEBCPE4F2VHTIT6EZA2YZQZLPVDEBJGD/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HOKHNWV2VS5GESY7IBD237E7C6T3I427/https://pillow.readthedocs.io/en/stable/releasenotes/7.1.0.htmlhttps://usn.ubuntu.com/4430-1/https://usn.ubuntu.com/4430-2/
2020-06-25
Published