libImaging/SgiRleDecode.c in Pillow before 6.2.2 has an SGI buffer overflow.
{ "severity": "Critical", "cpes": [ "cpe:2.3:a:python:pillow:*:*:*:*:*:*:*:*" ] }