CVE-2021-27923 | Pillow up to 8.1.0 ICO Container memory allocation (Nessus ID 236661 / WID-SEC-2022-1835)
A vulnerability was found in Pillow up to 8.1.0. It has been classified as problematic. Affected is an unknown function of the component ICO Container Handler. The manipulation leads to uncontrolled memory allocation.
This vulnerability is traded as CVE-2021-27923. Access to the local network is required for this attack to succeed. There is no exploit available.
Upgrading the affected component is recommended.