Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2014-9601
Pillow before 2.7.0 allows remote attackers to cause a denial of service via a compressed text chunk in a PNG image that has a large size when it is decompressed.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.011
EPSS Ranking
76.9%
CVSS Severity
CVSS v2 Score
5.0
References
http://lists.fedoraproject.org/pipermail/package-announce/2015-January/148442.html
http://lists.opensuse.org/opensuse-updates/2015-04/msg00056.html
http://pillow.readthedocs.org/releasenotes/2.7.0.html
http://www.oracle.com/technetwork/topics/security/bulletinjul2015-2511963.html
http://www.securityfocus.com/bid/77758
https://github.com/python-pillow/Pillow/pull/1060
https://www.djangoproject.com/weblog/2015/jan/02/pillow-security-release/
http://lists.fedoraproject.org/pipermail/package-announce/2015-January/148442.html
http://lists.opensuse.org/opensuse-updates/2015-04/msg00056.html
http://pillow.readthedocs.org/releasenotes/2.7.0.html
http://www.oracle.com/technetwork/topics/security/bulletinjul2015-2511963.html
http://www.securityfocus.com/bid/77758
https://github.com/python-pillow/Pillow/pull/1060
https://www.djangoproject.com/weblog/2015/jan/02/pillow-security-release/
Products affected by CVE-2014-9601
Python
»
Pillow
»
Version:
N/A
cpe:2.3:a:python:pillow:-
Python
»
Pillow
»
Version:
1.0
cpe:2.3:a:python:pillow:1.0
Python
»
Pillow
»
Version:
1.1
cpe:2.3:a:python:pillow:1.1
Python
»
Pillow
»
Version:
1.2
cpe:2.3:a:python:pillow:1.2
Python
»
Pillow
»
Version:
1.3
cpe:2.3:a:python:pillow:1.3
Python
»
Pillow
»
Version:
1.4
cpe:2.3:a:python:pillow:1.4
Python
»
Pillow
»
Version:
1.5
cpe:2.3:a:python:pillow:1.5
Python
»
Pillow
»
Version:
1.6
cpe:2.3:a:python:pillow:1.6
Python
»
Pillow
»
Version:
1.7.0
cpe:2.3:a:python:pillow:1.7.0
Python
»
Pillow
»
Version:
1.7.1
cpe:2.3:a:python:pillow:1.7.1
Python
»
Pillow
»
Version:
1.7.2
cpe:2.3:a:python:pillow:1.7.2
Python
»
Pillow
»
Version:
1.7.3
cpe:2.3:a:python:pillow:1.7.3
Python
»
Pillow
»
Version:
1.7.4
cpe:2.3:a:python:pillow:1.7.4
Python
»
Pillow
»
Version:
1.7.5
cpe:2.3:a:python:pillow:1.7.5
Python
»
Pillow
»
Version:
1.7.6
cpe:2.3:a:python:pillow:1.7.6
Python
»
Pillow
»
Version:
1.7.7
cpe:2.3:a:python:pillow:1.7.7
Python
»
Pillow
»
Version:
1.7.8
cpe:2.3:a:python:pillow:1.7.8
Python
»
Pillow
»
Version:
2.0.0
cpe:2.3:a:python:pillow:2.0.0
Python
»
Pillow
»
Version:
2.1.0
cpe:2.3:a:python:pillow:2.1.0
Python
»
Pillow
»
Version:
2.2.0
cpe:2.3:a:python:pillow:2.2.0
Python
»
Pillow
»
Version:
2.2.1
cpe:2.3:a:python:pillow:2.2.1
Python
»
Pillow
»
Version:
2.2.2
cpe:2.3:a:python:pillow:2.2.2
Python
»
Pillow
»
Version:
2.3.0
cpe:2.3:a:python:pillow:2.3.0
Python
»
Pillow
»
Version:
2.3.1
cpe:2.3:a:python:pillow:2.3.1
Python
»
Pillow
»
Version:
2.4.0
cpe:2.3:a:python:pillow:2.4.0
Python
»
Pillow
»
Version:
2.5.0
cpe:2.3:a:python:pillow:2.5.0
Python
»
Pillow
»
Version:
2.5.1
cpe:2.3:a:python:pillow:2.5.1
Python
»
Pillow
»
Version:
2.5.2
cpe:2.3:a:python:pillow:2.5.2
Python
»
Pillow
»
Version:
2.5.3
cpe:2.3:a:python:pillow:2.5.3
Python
»
Pillow
»
Version:
2.6.0
cpe:2.3:a:python:pillow:2.6.0
Python
»
Pillow
»
Version:
2.6.1
cpe:2.3:a:python:pillow:2.6.1
Python
»
Pillow
»
Version:
2.6.2
cpe:2.3:a:python:pillow:2.6.2
Fedoraproject
»
Fedora
»
Version:
21
cpe:2.3:o:fedoraproject:fedora:21
Opensuse
»
Opensuse
»
Version:
13.2
cpe:2.3:o:opensuse:opensuse:13.2
Oracle
»
Solaris
»
Version:
11.2
cpe:2.3:o:oracle:solaris:11.2
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved