CVE-2020-35653 - CERT CVE
ID CVE-2020-35653
Sažetak In Pillow before 8.1.0, PcxDecode has a buffer over-read when decoding a crafted PCX file because the user-supplied stride value is trusted for buffer calculations.
Reference
CVSS
Base: 5.8
Impact: 4.9
Exploitability:8.6
Pristup
VektorSloženostAutentikacija
NETWORK MEDIUM NONE
Impact
PovjerljivostCjelovitostDostupnost
PARTIAL NONE PARTIAL
CVSS vektor AV:N/AC:M/Au:N/C:P/I:N/A:P
Zadnje važnije ažuriranje 07-11-2023 - 03:22
Objavljeno 12-01-2021 - 09:15