libImaging/TgaRleDecode.c in Pillow 9.1.0 has a heap buffer overflow in the processing of invalid TGA image files.
{
"binaries": [
{
"binary_name": "python-pil-doc",
"binary_version": "9.0.1-1build1"
},
{
"binary_name": "python3-pil",
"binary_version": "9.0.1-1build1"
},
{
"binary_name": "python3-pil-dbgsym",
"binary_version": "9.0.1-1build1"
},
{
"binary_name": "python3-pil.imagetk",
"binary_version": "9.0.1-1build1"
},
{
"binary_name": "python3-pil.imagetk-dbgsym",
"binary_version": "9.0.1-1build1"
}
],
"availability": "No subscription required"
}