CVE-2020-11538

In libImaging/SgiRleDecode.c in Pillow through 7.0.0, a number of out-of-bounds reads exist in the parsing of SGI image files, a different issue than CVE-2020-5311.
Configurations

Configuration 1 (hide)

cpe:2.3:a:python:pillow:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:fedoraproject:fedora:31:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*

Information

Published : 2020-06-25 19:15

Updated : 2020-07-27 19:15


NVD link : CVE-2020-11538

Mitre link : CVE-2020-11538


JSON object : View

Products Affected

fedoraproject

  • fedora

python

  • pillow
CWE
CWE-125

Out-of-bounds Read