Back to search
CVE-2021-27923
Published: Mar 3, 2021
Modified: Aug 15, 2025
PUBLISHED
Description
Pillow before 8.1.2 allows attackers to cause a denial of service (memory consumption) because the reported size of a contained image is not properly checked for an ICO container, and thus an attempted memory allocation can be very large.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
FEDORA-2021-0ece308612
vendor-advisory
FEDORA-2021-15845d3abe
vendor-advisory
FEDORA-2021-9016a9b7bd
vendor-advisory
GLSA-202107-33
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now