CVE-2014-3589
Publication date 25 August 2014
Last updated 26 May 2025
Ubuntu priority
Description
PIL/IcnsImagePlugin.py in Python Imaging Library (PIL) and Pillow before 2.3.2 and 2.5.x before 2.5.2 allows remote attackers to cause a denial of service via a crafted block size.
Status
| Package | Ubuntu Release | Status | 
|---|---|---|
| pillow | 16.04 LTS xenial | 
                                Not affected 
                                
                               | 
| 14.04 LTS trusty | 
                                Fixed 2.3.0-1ubuntu3.2 
                                
                               | |
| python-imaging | 16.04 LTS xenial | Not in release | 
| 14.04 LTS trusty | Not in release | |
References
Related Ubuntu Security Notices (USN)
- USN-3090-1
- Pillow vulnerabilities
- 27 September 2016
- USN-3080-1
- Python Imaging Library vulnerabilities
- 15 September 2016