{"id":"CVE-2016-3076","details":"Heap-based buffer overflow in the j2k_encode_entry function in Pillow 2.5.0 through 3.1.1 allows remote attackers to cause a denial of service (memory corruption) via a crafted Jpeg2000 file.","aliases":["GHSA-v9pc-9mvp-x87g","PYSEC-2017-92"],"modified":"2026-08-07T11:31:11.556778489Z","published":"2017-04-24T18:59:00.430Z","related":["SUSE-SU-2018:1174-1","SUSE-SU-2018:1191-1","SUSE-SU-2019:1321-1","openSUSE-SU-2024:10511-1","openSUSE-SU-2024:11209-1","openSUSE-SU-2024:13827-1","openSUSE-SU-2026:11261-1"],"database_specific":{"unresolved_ranges":[{"extracted_events":[{"introduced":"3.0.0-rc1"},{"last_affected":"3.0.0-rc1"}],"source":"CPE_STRING","vendor_product":"python:pillow","cpes":["cpe:2.3:a:python:pillow:3.0.0:rc1:*:*:*:*:*:*"]}]},"references":[{"type":"WEB","url":"http://www.securityfocus.com/bid/98042"},{"type":"ADVISORY","url":"http://pillow.readthedocs.io/en/4.1.x/releasenotes/3.1.2.html"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1321929"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/python-pillow/pillow","events":[{"introduced":"80d6137c860b9322572ee1390514df1975acb2e7"},{"last_affected":"fff5536b37c2d619c66c1189b6925fa0a8df3822"}],"database_specific":{"extracted_events":[{"introduced":"2.5.0"},{"last_affected":"2.5.0"},{"introduced":"2.5.1"},{"last_affected":"2.5.1"},{"introduced":"2.5.2"},{"last_affected":"2.5.2"},{"introduced":"2.5.3"},{"last_affected":"2.5.3"},{"introduced":"2.6.0"},{"last_affected":"2.6.0"},{"introduced":"2.6.0-rc1"},{"last_affected":"2.6.0-rc1"},{"introduced":"2.6.1"},{"last_affected":"2.6.1"},{"introduced":"2.6.2"},{"last_affected":"2.6.2"},{"introduced":"2.7.0"},{"last_affected":"2.7.0"},{"introduced":"2.8.0"},{"last_affected":"2.8.0"},{"introduced":"2.8.1"},{"last_affected":"2.8.1"},{"introduced":"2.8.2"},{"last_affected":"2.8.2"},{"introduced":"2.9.0"},{"last_affected":"2.9.0"},{"introduced":"2.9.0-dev0"},{"last_affected":"2.9.0-dev0"},{"introduced":"2.9.0-dev1"},{"last_affected":"2.9.0-dev1"},{"introduced":"2.9.0-dev2"},{"last_affected":"2.9.0-dev2"},{"introduced":"3.0.0"},{"last_affected":"3.0.0"},{"introduced":"3.1.0"},{"last_affected":"3.1.0"}],"source":"CPE_STRING","cpe":["cpe:2.3:a:python:pillow:2.5.0:*:*:*:*:*:*:*","cpe:2.3:a:python:pillow:2.5.1:*:*:*:*:*:*:*","cpe:2.3:a:python:pillow:2.5.2:*:*:*:*:*:*:*","cpe:2.3:a:python:pillow:2.5.3:*:*:*:*:*:*:*","cpe:2.3:a:python:pillow:2.6.0:*:*:*:*:*:*:*","cpe:2.3:a:python:pillow:2.6.0:rc1:*:*:*:*:*:*","cpe:2.3:a:python:pillow:2.6.1:*:*:*:*:*:*:*","cpe:2.3:a:python:pillow:2.6.2:*:*:*:*:*:*:*","cpe:2.3:a:python:pillow:2.7.0:*:*:*:*:*:*:*","cpe:2.3:a:python:pillow:2.8.0:*:*:*:*:*:*:*","cpe:2.3:a:python:pillow:2.8.1:*:*:*:*:*:*:*","cpe:2.3:a:python:pillow:2.8.2:*:*:*:*:*:*:*","cpe:2.3:a:python:pillow:2.9.0:*:*:*:*:*:*:*","cpe:2.3:a:python:pillow:2.9.0:dev0:*:*:*:*:*:*","cpe:2.3:a:python:pillow:2.9.0:dev1:*:*:*:*:*:*","cpe:2.3:a:python:pillow:2.9.0:dev2:*:*:*:*:*:*","cpe:2.3:a:python:pillow:3.0.0:*:*:*:*:*:*:*","cpe:2.3:a:python:pillow:3.1.0:*:*:*:*:*:*:*"]}}],"versions":["2.5.0","2.5.1","2.5.2","2.5.3","2.6.0","2.6.0-rc1","2.6.1","2.6.2","2.7.0","2.8.0","2.8.1","2.8.2","2.9.0","2.9.0-dev0","2.9.0-dev1","2.9.0-dev2","3.0.0","3.1.0","3.1.0-rc1","2.9.0.dev2","2.9.0.dev1","2.9.0.dev0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-3076.json"}}],"schema_version":"1.8.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"}]}