VDB
KO

OSV-2022-1074

Invalid-free in _dealloc

Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=52587

``` Crash type: Invalid-free Crash state: _dealloc _Py_DECREF frame_dealloc ```

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI / pillow
Introduced in: bb2016794f1f9bf9e4726727080e1beb789823fb Fixed in: f7363c1091c70356d92e56abfca6b65bef9e7b26
Fix pip install --upgrade 'pillow>=f7363c1091c70356d92e56abfca6b65bef9e7b26'

References