In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy.
History

Wed, 21 Aug 2024 06:45:00 +0000

Type Values Removed Values Added
First Time appeared Redhat satellite
Redhat satellite Capsule
CPEs cpe:/a:redhat:satellite:6.15::el8
cpe:/a:redhat:satellite_capsule:6.15::el8
Vendors & Products Redhat satellite
Redhat satellite Capsule

Tue, 20 Aug 2024 21:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-680

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-04-03T00:00:00

Updated: 2024-08-20T19:27:26.783Z

Reserved: 2024-03-07T00:00:00

Link: CVE-2024-28219

cve-icon Vulnrichment

Updated: 2024-08-02T00:48:49.828Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-04-03T03:15:09.710

Modified: 2024-08-20T20:35:22.290

Link: CVE-2024-28219

cve-icon Redhat

Severity : Moderate

Publid Date: 2024-04-01T00:00:00Z

Links: CVE-2024-28219 - Bugzilla