An issue was discovered in Pillow before 8.2.0. In TiffDecode.c
, there is an out-of-bounds read in TiffreadRGBATile
via invalid tile boundaries.
{ "github_reviewed_at": "2021-03-22T22:05:25Z", "severity": "HIGH", "nvd_published_at": "2021-03-19T04:15:00Z", "github_reviewed": true, "cwe_ids": [ "CWE-125" ] }