7.5
CVSSv3

CVE-2022-45199

Published: 14/11/2022 Updated: 10/01/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Pillow prior to 9.3.0 allows denial of service via SAMPLESPERPIXEL.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

python pillow

Vendor Advisories

Debian Bug report logs - #1024512 pillow: CVE-2022-45199: Limit SAMPLESPERPIXEL to avoid runtime DOS Package: src:pillow; Maintainer for src:pillow is Matthias Klose <doko@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sun, 20 Nov 2022 20:06:02 UTC Severity: important Tags: security, upstrea ...
PAN-SA-2024-0001 Informational Bulletin: Impact of OSS CVEs in PAN-OS ...