Description
Pillow before 9.0.1 allows attackers to delete files because spaces in temporary pathnames are mishandled.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-4462-1 | pillow security update |
EUVD |
EUVD-2022-0196 | Pillow before 9.0.1 allows attackers to delete files because spaces in temporary pathnames are mishandled. |
Github GHSA |
GHSA-9j59-75qj-795w | Path traversal in Pillow |
Ubuntu USN |
USN-5777-1 | Pillow vulnerabilities |
Ubuntu USN |
USN-5777-2 | Pillow vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T04:07:02.356Z
Reserved: 2022-02-02T00:00:00.000Z
Link: CVE-2022-24303
No data.
Status : Modified
Published: 2022-03-28T02:15:07.140
Modified: 2024-11-21T06:50:07.900
Link: CVE-2022-24303
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Github GHSA
Ubuntu USN