Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2020-10379
In Pillow before 7.1.0, there are two Buffer Overflows in libImaging/TiffDecode.c.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.003
EPSS Ranking
54.8%
CVSS Severity
CVSS v3 Score
7.8
CVSS v2 Score
6.8
References
https://github.com/python-pillow/Pillow/commit/46f4a349b88915787fea3fb91348bb1665831bbb#diff-9478f2787e3ae9668a15123b165c23ac
https://github.com/python-pillow/Pillow/commits/master/src/libImaging
https://github.com/python-pillow/Pillow/pull/4538
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BEBCPE4F2VHTIT6EZA2YZQZLPVDEBJGD/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HOKHNWV2VS5GESY7IBD237E7C6T3I427/
https://pillow.readthedocs.io/en/stable/releasenotes/7.1.0.html
https://usn.ubuntu.com/4430-2/
https://github.com/python-pillow/Pillow/commit/46f4a349b88915787fea3fb91348bb1665831bbb#diff-9478f2787e3ae9668a15123b165c23ac
https://github.com/python-pillow/Pillow/commits/master/src/libImaging
https://github.com/python-pillow/Pillow/pull/4538
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BEBCPE4F2VHTIT6EZA2YZQZLPVDEBJGD/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HOKHNWV2VS5GESY7IBD237E7C6T3I427/
https://pillow.readthedocs.io/en/stable/releasenotes/7.1.0.html
https://usn.ubuntu.com/4430-2/
Products affected by CVE-2020-10379
Python
»
Pillow
»
Version:
N/A
cpe:2.3:a:python:pillow:-
Python
»
Pillow
»
Version:
1.0
cpe:2.3:a:python:pillow:1.0
Python
»
Pillow
»
Version:
1.1
cpe:2.3:a:python:pillow:1.1
Python
»
Pillow
»
Version:
1.2
cpe:2.3:a:python:pillow:1.2
Python
»
Pillow
»
Version:
1.3
cpe:2.3:a:python:pillow:1.3
Python
»
Pillow
»
Version:
1.4
cpe:2.3:a:python:pillow:1.4
Python
»
Pillow
»
Version:
1.5
cpe:2.3:a:python:pillow:1.5
Python
»
Pillow
»
Version:
1.6
cpe:2.3:a:python:pillow:1.6
Python
»
Pillow
»
Version:
1.7.0
cpe:2.3:a:python:pillow:1.7.0
Python
»
Pillow
»
Version:
1.7.1
cpe:2.3:a:python:pillow:1.7.1
Python
»
Pillow
»
Version:
1.7.2
cpe:2.3:a:python:pillow:1.7.2
Python
»
Pillow
»
Version:
1.7.3
cpe:2.3:a:python:pillow:1.7.3
Python
»
Pillow
»
Version:
1.7.4
cpe:2.3:a:python:pillow:1.7.4
Python
»
Pillow
»
Version:
1.7.5
cpe:2.3:a:python:pillow:1.7.5
Python
»
Pillow
»
Version:
1.7.6
cpe:2.3:a:python:pillow:1.7.6
Python
»
Pillow
»
Version:
1.7.7
cpe:2.3:a:python:pillow:1.7.7
Python
»
Pillow
»
Version:
1.7.8
cpe:2.3:a:python:pillow:1.7.8
Python
»
Pillow
»
Version:
2.0.0
cpe:2.3:a:python:pillow:2.0.0
Python
»
Pillow
»
Version:
2.1.0
cpe:2.3:a:python:pillow:2.1.0
Python
»
Pillow
»
Version:
2.2.0
cpe:2.3:a:python:pillow:2.2.0
Python
»
Pillow
»
Version:
2.2.1
cpe:2.3:a:python:pillow:2.2.1
Python
»
Pillow
»
Version:
2.2.2
cpe:2.3:a:python:pillow:2.2.2
Python
»
Pillow
»
Version:
2.3.0
cpe:2.3:a:python:pillow:2.3.0
Python
»
Pillow
»
Version:
2.3.1
cpe:2.3:a:python:pillow:2.3.1
Python
»
Pillow
»
Version:
2.4.0
cpe:2.3:a:python:pillow:2.4.0
Python
»
Pillow
»
Version:
2.5.0
cpe:2.3:a:python:pillow:2.5.0
Python
»
Pillow
»
Version:
2.5.1
cpe:2.3:a:python:pillow:2.5.1
Python
»
Pillow
»
Version:
2.5.2
cpe:2.3:a:python:pillow:2.5.2
Python
»
Pillow
»
Version:
2.5.3
cpe:2.3:a:python:pillow:2.5.3
Python
»
Pillow
»
Version:
2.6.0
cpe:2.3:a:python:pillow:2.6.0
Python
»
Pillow
»
Version:
2.6.1
cpe:2.3:a:python:pillow:2.6.1
Python
»
Pillow
»
Version:
2.6.2
cpe:2.3:a:python:pillow:2.6.2
Python
»
Pillow
»
Version:
2.7.0
cpe:2.3:a:python:pillow:2.7.0
Python
»
Pillow
»
Version:
2.8.0
cpe:2.3:a:python:pillow:2.8.0
Python
»
Pillow
»
Version:
2.8.1
cpe:2.3:a:python:pillow:2.8.1
Python
»
Pillow
»
Version:
2.8.2
cpe:2.3:a:python:pillow:2.8.2
Python
»
Pillow
»
Version:
2.9.0
cpe:2.3:a:python:pillow:2.9.0
Python
»
Pillow
»
Version:
3.0.0
cpe:2.3:a:python:pillow:3.0.0
Python
»
Pillow
»
Version:
3.1.0
cpe:2.3:a:python:pillow:3.1.0
Python
»
Pillow
»
Version:
3.3.1
cpe:2.3:a:python:pillow:3.3.1
Python
»
Pillow
»
Version:
3.3.2
cpe:2.3:a:python:pillow:3.3.2
Python
»
Pillow
»
Version:
3.4.0
cpe:2.3:a:python:pillow:3.4.0
Python
»
Pillow
»
Version:
4.0.0
cpe:2.3:a:python:pillow:4.0.0
Python
»
Pillow
»
Version:
4.1.0
cpe:2.3:a:python:pillow:4.1.0
Python
»
Pillow
»
Version:
4.1.1
cpe:2.3:a:python:pillow:4.1.1
Python
»
Pillow
»
Version:
4.2.0
cpe:2.3:a:python:pillow:4.2.0
Python
»
Pillow
»
Version:
4.2.1
cpe:2.3:a:python:pillow:4.2.1
Python
»
Pillow
»
Version:
4.3.0
cpe:2.3:a:python:pillow:4.3.0
Python
»
Pillow
»
Version:
5.0.0
cpe:2.3:a:python:pillow:5.0.0
Python
»
Pillow
»
Version:
5.1.0
cpe:2.3:a:python:pillow:5.1.0
Python
»
Pillow
»
Version:
5.2.0
cpe:2.3:a:python:pillow:5.2.0
Python
»
Pillow
»
Version:
5.3.0
cpe:2.3:a:python:pillow:5.3.0
Python
»
Pillow
»
Version:
5.4.0
cpe:2.3:a:python:pillow:5.4.0
Python
»
Pillow
»
Version:
5.4.1
cpe:2.3:a:python:pillow:5.4.1
Python
»
Pillow
»
Version:
6.0.0
cpe:2.3:a:python:pillow:6.0.0
Python
»
Pillow
»
Version:
6.2.0
cpe:2.3:a:python:pillow:6.2.0
Python
»
Pillow
»
Version:
6.2.2
cpe:2.3:a:python:pillow:6.2.2
Python
»
Pillow
»
Version:
6.2.3
cpe:2.3:a:python:pillow:6.2.3
Python
»
Pillow
»
Version:
7.0.0
cpe:2.3:a:python:pillow:7.0.0
Canonical
»
Ubuntu Linux
»
Version:
20.04
cpe:2.3:o:canonical:ubuntu_linux:20.04
Fedoraproject
»
Fedora
»
Version:
31
cpe:2.3:o:fedoraproject:fedora:31
Fedoraproject
»
Fedora
»
Version:
32
cpe:2.3:o:fedoraproject:fedora:32
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved