PushMe

Live Event Page

USN-8135-1: Pillow vulnerabilities

It was discovered that Pillow did not correctly handle reading J2K files, which could lead to an out-of-bounds read vulnerability. If a user or automated system were tricked int...

Early report Major update Updated Mar 31, 2026, 12:19 AM UTC

What changed

Ubuntu Security Notices: USN-8135-1: Pillow vulnerabilities.

First seen Mar 31, 2026, 12:19 AM UTC Latest source Mar 31, 2026, 12:19 AM UTC