CVE-2014-9601
Publication date 16 January 2015
Last updated 24 July 2024
Ubuntu priority
Pillow before 2.7.0 allows remote attackers to cause a denial of service via a compressed text chunk in a PNG image that has a large size when it is decompressed.
Status
Package | Ubuntu Release | Status |
---|---|---|
pillow | ||
16.04 LTS xenial |
Not affected
|
|
14.04 LTS trusty |
Fixed 2.3.0-1ubuntu3.4
|
|
python-imaging | ||
16.04 LTS xenial | Not in release | |
14.04 LTS trusty | Not in release | |
References
Related Ubuntu Security Notices (USN)
- USN-3090-1
- Pillow vulnerabilities
- 27 September 2016
- USN-3229-1
- Python Imaging Library vulnerabilities
- 13 March 2017
- USN-3230-1
- Pillow vulnerabilities
- 13 March 2017
- USN-3090-2
- Pillow regresssion
- 30 September 2016