Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2016-2533
Buffer overflow in the ImagingPcdDecode function in PcdDecode.c in Pillow before 3.1.1 and Python Imaging Library (PIL) 1.1.7 and earlier allows remote attackers to cause a denial of service (crash) via a crafted PhotoCD file.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.022
EPSS Ranking
83.7%
CVSS Severity
CVSS v3 Score
6.5
CVSS v2 Score
4.3
References
http://www.debian.org/security/2016/dsa-3499
http://www.openwall.com/lists/oss-security/2016/02/02/5
http://www.openwall.com/lists/oss-security/2016/02/22/2
http://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.html
https://github.com/python-pillow/Pillow/blob/c3cb690fed5d4bf0c45576759de55d054916c165/CHANGES.rst
https://github.com/python-pillow/Pillow/commit/5bdf54b5a76b54fb00bd05f2d733e0a4173eefc9#diff-8ff6909c159597e22288ad818938fd6b
https://github.com/python-pillow/Pillow/commit/ae453aa18b66af54e7ff716f4ccb33adca60afd4#diff-8ff6909c159597e22288ad818938fd6b
https://github.com/python-pillow/Pillow/pull/1706
https://security.gentoo.org/glsa/201612-52
http://www.debian.org/security/2016/dsa-3499
http://www.openwall.com/lists/oss-security/2016/02/02/5
http://www.openwall.com/lists/oss-security/2016/02/22/2
http://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.html
https://github.com/python-pillow/Pillow/blob/c3cb690fed5d4bf0c45576759de55d054916c165/CHANGES.rst
https://github.com/python-pillow/Pillow/commit/5bdf54b5a76b54fb00bd05f2d733e0a4173eefc9#diff-8ff6909c159597e22288ad818938fd6b
https://github.com/python-pillow/Pillow/commit/ae453aa18b66af54e7ff716f4ccb33adca60afd4#diff-8ff6909c159597e22288ad818938fd6b
https://github.com/python-pillow/Pillow/pull/1706
https://security.gentoo.org/glsa/201612-52
Products affected by CVE-2016-2533
Python
»
Pillow
»
Version:
N/A
cpe:2.3:a:python:pillow:-
Python
»
Pillow
»
Version:
1.0
cpe:2.3:a:python:pillow:1.0
Python
»
Pillow
»
Version:
1.1
cpe:2.3:a:python:pillow:1.1
Python
»
Pillow
»
Version:
1.2
cpe:2.3:a:python:pillow:1.2
Python
»
Pillow
»
Version:
1.3
cpe:2.3:a:python:pillow:1.3
Python
»
Pillow
»
Version:
1.4
cpe:2.3:a:python:pillow:1.4
Python
»
Pillow
»
Version:
1.5
cpe:2.3:a:python:pillow:1.5
Python
»
Pillow
»
Version:
1.6
cpe:2.3:a:python:pillow:1.6
Python
»
Pillow
»
Version:
1.7.0
cpe:2.3:a:python:pillow:1.7.0
Python
»
Pillow
»
Version:
1.7.1
cpe:2.3:a:python:pillow:1.7.1
Python
»
Pillow
»
Version:
1.7.2
cpe:2.3:a:python:pillow:1.7.2
Python
»
Pillow
»
Version:
1.7.3
cpe:2.3:a:python:pillow:1.7.3
Python
»
Pillow
»
Version:
1.7.4
cpe:2.3:a:python:pillow:1.7.4
Python
»
Pillow
»
Version:
1.7.5
cpe:2.3:a:python:pillow:1.7.5
Python
»
Pillow
»
Version:
1.7.6
cpe:2.3:a:python:pillow:1.7.6
Python
»
Pillow
»
Version:
1.7.7
cpe:2.3:a:python:pillow:1.7.7
Python
»
Pillow
»
Version:
1.7.8
cpe:2.3:a:python:pillow:1.7.8
Python
»
Pillow
»
Version:
2.0.0
cpe:2.3:a:python:pillow:2.0.0
Python
»
Pillow
»
Version:
2.1.0
cpe:2.3:a:python:pillow:2.1.0
Python
»
Pillow
»
Version:
2.2.0
cpe:2.3:a:python:pillow:2.2.0
Python
»
Pillow
»
Version:
2.2.1
cpe:2.3:a:python:pillow:2.2.1
Python
»
Pillow
»
Version:
2.2.2
cpe:2.3:a:python:pillow:2.2.2
Python
»
Pillow
»
Version:
2.3.0
cpe:2.3:a:python:pillow:2.3.0
Python
»
Pillow
»
Version:
2.3.1
cpe:2.3:a:python:pillow:2.3.1
Python
»
Pillow
»
Version:
2.4.0
cpe:2.3:a:python:pillow:2.4.0
Python
»
Pillow
»
Version:
2.5.0
cpe:2.3:a:python:pillow:2.5.0
Python
»
Pillow
»
Version:
2.5.1
cpe:2.3:a:python:pillow:2.5.1
Python
»
Pillow
»
Version:
2.5.2
cpe:2.3:a:python:pillow:2.5.2
Python
»
Pillow
»
Version:
2.5.3
cpe:2.3:a:python:pillow:2.5.3
Python
»
Pillow
»
Version:
2.6.0
cpe:2.3:a:python:pillow:2.6.0
Python
»
Pillow
»
Version:
2.6.1
cpe:2.3:a:python:pillow:2.6.1
Python
»
Pillow
»
Version:
2.6.2
cpe:2.3:a:python:pillow:2.6.2
Python
»
Pillow
»
Version:
2.7.0
cpe:2.3:a:python:pillow:2.7.0
Python
»
Pillow
»
Version:
2.8.0
cpe:2.3:a:python:pillow:2.8.0
Python
»
Pillow
»
Version:
2.8.1
cpe:2.3:a:python:pillow:2.8.1
Python
»
Pillow
»
Version:
2.8.2
cpe:2.3:a:python:pillow:2.8.2
Python
»
Pillow
»
Version:
2.9.0
cpe:2.3:a:python:pillow:2.9.0
Python
»
Pillow
»
Version:
3.0.0
cpe:2.3:a:python:pillow:3.0.0
Python
»
Pillow
»
Version:
3.1.0
cpe:2.3:a:python:pillow:3.1.0
Python Imaging Project
»
Python Imaging
»
Version:
1.1.7
cpe:2.3:a:python_imaging_project:python_imaging:1.1.7
Debian
»
Debian Linux
»
Version:
7.0
cpe:2.3:o:debian:debian_linux:7.0
Debian
»
Debian Linux
»
Version:
8.0
cpe:2.3:o:debian:debian_linux:8.0
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved