Skip to main content
EPSS 0.5%top 57%

Pillow: Out-of-bounds read via attacker-controlled row stride on Pillow's mmap path (McIdas AREA files) (CVE-2026-54058)

0
Critical
Published: 07/19/2026 (07/19/2026, 23:50:11 UTC)
Source: GCVE Database
Product: pillow

Description

Pillow is a Python imaging library. Prior to 12.3.0, when Pillow loads an uncompressed McIdas AREA image from a filename through the mmap raw codec path, attacker-controlled header words can set a row stride smaller than the natural row width, causing pixel access such as Image.tobytes(), getpixel, convert, or save to read beyond the mapped region and disclose adjacent process memory or fault. This issue is fixed in version 12.3.0.

Affected software

Bitnamimore threats →ghsa
pillow
pkg:bitnami/pillow
Affected versions
<12.3.0

Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 08/16/2026, 18:28:21 UTC

Technical Analysis

The python-pillow library in Red Hat Enterprise Linux 8 contains several security flaws: CVE-2026-59197 is a native heap out-of-bounds write vulnerability; CVE-2026-54058 allows memory disclosure or denial of service via crafted McIdas AREA images; CVE-2026-55379, CVE-2026-55380, CVE-2026-54059, and CVE-2026-54060 involve denial of service via crafted BDF font files, GD 2.x image files, PCF font data, and excessive memory allocation when processing font files, respectively. These vulnerabilities could lead to memory corruption, information leakage, or denial of service conditions. Red Hat has issued security advisories RHSA-2026:48021 and RHSA-2026:52551 providing updates to mitigate these issues.

Potential Impact

Successful exploitation of these vulnerabilities could result in memory corruption (heap out-of-bounds write), memory disclosure, or denial of service conditions when processing specially crafted image or font files using the python-pillow library. This could affect applications relying on pillow for image processing, potentially leading to crashes or exposure of sensitive information. There are no known exploits in the wild at this time.

Mitigation Recommendations

Red Hat has released security updates for python-pillow in Red Hat Enterprise Linux 8 and related products. Users should apply the updates provided in advisories RHSA-2026:48021 and RHSA-2026:52551 to remediate these vulnerabilities. For detailed update instructions, refer to https://access.redhat.com/articles/11258. No additional mitigation actions are indicated by the vendor advisory.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Gcve Source
db.gcve.eu
Csaf Category
csaf_security_advisory
Csaf Version
2.0
Publisher
Red Hat Product Security
Advisory Id
RHSA-2026:48021
Cve Count
2
Additional Cves
["CVE-2026-59197"]
State
PUBLISHED

Threat ID: 6a6b72c19c2644c7f8474b15

Added to database: 07/30/2026, 15:50:25 UTC

Last enriched: 08/16/2026, 18:28:21 UTC

Last updated: 09/11/2026, 22:08:23 UTC

Views: 48

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses