FlawAtlas
Search the atlas
CVE-2014-3598 High

CVE-2014-3598

The Jpeg2KImagePlugin plugin in Pillow before 2.5.3 allows remote attackers to cause a denial of service via a crafted image.

Exploit probability 2.0%
Published May 1, 2015
Required by Not available
Last source change June 10, 2026

02 / AFFECTED SOFTWARE

Affected packages

PyPI pillow

28 explicit affected versions

PyPI pillow

28 explicit affected versions

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities CVE-2014-3598

The Jpeg2KImagePlugin plugin in Pillow before 2.5.3 allows remote attackers to cause a denial of service via a crafted image.

View original source
Open Source Vulnerabilities PYSEC-2015-15

The Jpeg2KImagePlugin plugin in Pillow before 2.5.3 allows remote attackers to cause a denial of service via a crafted image.

View original source
Open Source Vulnerabilities GHSA-j6f7-g425-4gmx

The Jpeg2KImagePlugin plugin in Pillow before 2.5.3 allows remote attackers to cause a denial of service via a crafted image.

View original source

05 / REFERENCES

Further evidence