

Image moduleImageChops (“channel operations”) moduleImageCms moduleImageColor moduleImageDraw moduleImageEnhance moduleImageFile moduleImageFilter moduleImageFont moduleImageGrab moduleImageMath moduleImageMorph moduleImageOps moduleImagePalette moduleImagePath moduleImageQt moduleImageSequence moduleImageShow moduleImageStat moduleImageText moduleImageTk moduleImageTransform moduleImageWin module (Windows-only)ExifTags moduleTiffTags moduleJpegPresets modulePSDraw modulePixelAccess classfeatures moduleThe previous fix forCVE 2020-35654 was insufficient due to incorrecterror checking inTiffDecode.c.
TiffDecode.c¶InTiffDecode.c, there is a negative-offsetmemcpy with an invalid size.
TIFFReadRGBATile¶InTiffDecode.c, invalid tile boundaries could lead to an out-of-boundsread inTIFFReadRGBATile.
The PDF parser has a catastrophic backtracking regex that could be used as aDOS attack.
SgiRleDecode.c¶There is an out-of-bounds read inSgiRleDecode.c since Pillow 4.3.0.
A crash with the feature flags for libimagequant, libjpeg-turbo, WebP and XCB onunreleased Python 3.10 has been fixed (#5193).