Pillow before 9.2.0 performs Improper Handling of Highly Compressed GIF Data (Data Amplification).
https://bugs.gentoo.org/855683
https://github.com/python-pillow/Pillow/commit/11918eac0628ec8ac0812670d9838361ead2d6a4
https://github.com/python-pillow/Pillow/pull/6402
https://github.com/python-pillow/Pillow/releases/tag/9.2.0
Source: MITRE
Published: 2022-11-14
Updated: 2023-01-10
Type: NVD-CWE-Other
Base Score: 7.5
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Impact Score: 3.6
Exploitability Score: 3.9
Severity: HIGH