VDB

GCVE-110-MAGEIA-2020-88

GCVE-110-MAGEIA-2020-88
Advisory Published
Vulnetix · Advisory published February 18, 2020
Updated python-pillow packages fix security vulnerabilities: It was discovered that Pillow incorrectly handled certain images. An attacker could possibly use this issue to cause a denial of service (CVE-2019-16865, CVE-2019-19911). It was discovered that Pillow incorrectly handled certain TIFF images. An attacker could possibly use this issue to cause a crash (CVE-2020-5310). It was discovered that Pillow incorrectly handled certain SGI images. An attacker could possibly use this issue to execute arbitrary code or cause a crash (CVE-2020-5311). It was discovered that Pillow incorrectly handled certain PCX images. An attacker could possibly use this issue to execute arbitrary code or cause a crash (CVE-2020-5312). It was discovered that Pillow incorrectly handled certain Flip images. An attacker could possibly use this issue to execute arbitrary code or cause a crash (CVE-2020-5313).

Affected Products

VendorProductVersionsPlatforms
Mageiapython-pillow0 (affected), 5.4.1-1.1.mga7 (unaffected), 0 (affected), 5.4.1-1.1.mga7 (unaffected)
Mageiakazam0 (affected), 1.4.5-7.1.mga7 (unaffected)

Browse GCVE Records

74,581 records in the GCVE database · Updated July 24, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›