PIL/IcnsImagePlugin.py in Python Imaging Library (PIL) and Pillow before 2.3.2 and 2.5.x before 2.5.2 allows remote attackers to cause a denial of service via a crafted block size.
"https://github.com/pypa/advisory-database/blob/main/vulns/pillow/PYSEC-2014-10.yaml"