CVE-2016-0775: Buffer Overflow
Buffer overflow in the ImagingFliDecode function in libImaging/FliDecode.c in Pillow before 3.1.1 allows remote attackers to cause a denial of service (crash) via a crafted FLI file.
Other sources
Buffer overflow in the ImagingFliDecode function in libImaging/FliDecode.c in Pillow before 3.1.1 allows remote attackers to cause a denial of service (crash) via a crafted FLI file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-0775?
CVE-2016-0775 has a high severity rating due to the potential for remote denial of service attacks.
How do I fix CVE-2016-0775?
To fix CVE-2016-0775, upgrade to Pillow version 3.1.1 or later.
What kind of attack does CVE-2016-0775 allow?
CVE-2016-0775 allows remote attackers to cause a denial of service via a crafted FLI file.
Which software versions are affected by CVE-2016-0775?
CVE-2016-0775 affects Pillow versions prior to 3.1.1, as well as certain Debian Linux versions.
Is CVE-2016-0775 an issue for both Windows and Linux systems?
CVE-2016-0775 affects multiple systems, specifically targeting Python Pillow on Debian Linux.