Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2023-44271
Description:An issue was discovered in Pillow before 10.0.0. It is a Denial of Service that uncontrollably allocates memory to process a given task, potentially causing a service to crash by having it run out of memory. This occurs for truetype in ImageFont when textlength in an ImageDraw instance operates on a long text argument.
Test IDs: 1.3.6.1.4.1.25623.1.1.2.2024.1368   1.3.6.1.4.1.25623.1.0.885251   1.3.6.1.4.1.25623.1.1.2.2024.1420   1.3.6.1.4.1.25623.1.0.833100   1.3.6.1.4.1.25623.1.0.884301   1.3.6.1.4.1.25623.1.1.10.2024.0133   1.3.6.1.4.1.25623.1.1.2.2024.1389   1.3.6.1.4.1.25623.1.0.833330   1.3.6.1.4.1.25623.1.1.2.2024.1112   1.3.6.1.4.1.25623.1.1.2.2024.1128   1.3.6.1.4.1.25623.1.1.2.2024.1095   1.3.6.1.4.1.25623.1.1.2.2024.1071   1.3.6.1.4.1.25623.1.1.2.2024.1448  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2023-44271
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/N2JOEDUJDQLCUII2LQYZYSM7RJL2I3P4/
https://devhub.checkmarx.com/cve-details/CVE-2023-44271/
https://github.com/python-pillow/Pillow/commit/1fe1bb49c452b0318cad12ea9d97c3bef188e9a7
https://github.com/python-pillow/Pillow/pull/7244
https://lists.debian.org/debian-lts-announce/2024/03/msg00021.html




© 1998-2025 E-Soft Inc. All rights reserved.