In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy.
{ "cpes": [ "cpe:2.3:a:python:pillow:*:*:*:*:*:python:*:*" ], "severity": "Medium" }