Ubuntu Security Notice USN-6744-2

Discussion in 'News Aggregator' started by Packet Storm, 24 Apr 2024.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 6744-2 - USN-6744-1 fixed a vulnerability in Pillow. This update provides the corresponding updates for Pillow in Ubuntu 20.04 LTS. Hugo van Kemenade discovered that Pillow was not properly performing bounds checks when processing an ICC file, which could lead to a buffer overflow. If a user or automated system were tricked into processing a specially crafted ICC file, an attacker could possibly use this issue to cause a denial of service or execute arbitrary code.

    Continue reading...
     

Share This Page

Loading...