In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy.
2024-04-03T03:15:09.710
2025-11-04T19:17:05.253
Modified
CVSSv3.1: 6.7 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | python | pillow | < 10.3.0 | Yes |
| Operating System | debian | debian_linux | 10.0 | Yes |