VDB

GCVE-VVD-MAGEIA-2024-133

GCVE-VVD-MAGEIA-2024-133
Advisory Published
Vulnetix · Advisory published April 25, 2024
CVE-2023-44271 Denial of Service that uncontrollably allocates memory to process a given task, potentially causing a service to crash by having it run out of memory. This occurs for truetype in ImageFont when textlength in an ImageDraw instance operates on a long text argument. CVE-2024-28219 A buffer overflow exists because strcpy is used instead of strncpy.

Affected Products

VendorProductVersionsPlatforms
Mageiatimezone0 (affected), 2024a-1.mga9 (unaffected)
Mageiapython-pillow0 (affected), 9.2.0-3.2.mga9 (unaffected), 0 (affected), 9.2.0-3.2.mga9 (unaffected)

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›