all InfoSec news
USN-6744-2: Pillow vulnerability
April 22, 2024, 1:46 p.m. |
Ubuntu security notices ubuntu.com
provides the corresponding updates for Pillow (Python 2) in
Ubuntu 20.04 LTS.
Original advisory details:
Hugo van Kemenade discovered that Pillow was not properly performing
bounds checks when processing an ICC file, which could lead to a buffer
overflow. If a user or automated system were tricked into processing a
specially crafted ICC file, an attacker could possibly use this issue
to cause a denial of service or execute arbitrary …
advisory automated buffer buffer overflow file icc lts overflow performing python python 3 system ubuntu ubuntu 20.04 update updates usn van vulnerability
More from ubuntu.com / Ubuntu security notices
USN-6757-2: PHP vulnerabilities
1 day, 1 hour ago |
ubuntu.com
USN-6762-1: GNU C Library vulnerabilities
1 day, 5 hours ago |
ubuntu.com
USN-6747-2: Firefox regressions
1 day, 14 hours ago |
ubuntu.com
USN-6760-1: Gerbv vulnerability
2 days, 19 hours ago |
ubuntu.com
LSN-0103-1: Kernel Live Patch Security Notice
3 days, 6 hours ago |
ubuntu.com
USN-6758-1: JSON5 vulnerability
3 days, 6 hours ago |
ubuntu.com
USN-6761-1: Anope vulnerability
3 days, 10 hours ago |
ubuntu.com
USN-6759-1: FreeRDP vulnerabilities
4 days, 1 hour ago |
ubuntu.com
USN-6757-1: PHP vulnerabilities
4 days, 3 hours ago |
ubuntu.com
Jobs in InfoSec / Cybersecurity
Intern, Cyber Security Vulnerability Management
@ Grab | Petaling Jaya, Malaysia
Compliance - Global Privacy Office - Associate - Bengaluru
@ Goldman Sachs | Bengaluru, Karnataka, India
Cyber Security Engineer (m/w/d) Operational Technology
@ MAN Energy Solutions | Oberhausen, DE, 46145
Armed Security Officer - Hospital
@ Allied Universal | Sun Valley, CA, United States
Governance, Risk and Compliance Officer (Africa)
@ dLocal | Lagos (Remote)
Junior Cloud DevSecOps Network Engineer
@ Accenture Federal Services | Arlington, VA