← Vulnerability feed

Vulnerability record · CVE-2014-1932 · published 17 April 2014

CVE-2014-1932: Python pillow link following vulnerability

Python · Pillow

The (1) load_djpeg function in JpegImagePlugin.py, (2) Ghostscript function in EpsImagePlugin.py, (3) load function in IptcImagePlugin.py, and (4) _copy function in Image.py in Python Image Library (PIL) 1.1.7 and earlier and Pillow before 2.3.1 do not properly create temporary files, which allow local users to overwrite arbitrary files and obtain sensitive information via a symlink attack on the temporary file.

4.4 CVSS 2.0 Medium EPSS 0.50% · top 59.9% CWE-59 · Link following
4.4CVSS 2.0 base score
0.50%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
14References, 2 tagged exploit
17 Jun 2026Last modified by NVD

Description

The (1) load_djpeg function in JpegImagePlugin.py, (2) Ghostscript function in EpsImagePlugin.py, (3) load function in IptcImagePlugin.py, and (4) _copy function in Image.py in Python Image Library (PIL) 1.1.7 and earlier and Pillow before 2.3.1 do not properly create temporary files, which allow local users to overwrite arbitrary files and obtain sensitive information via a symlink attack on the temporary file.

AV:L/AC:M/Au:N/C:P/I:P/A:P

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2014-1932 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2014-3007Python pillow os command injection vulnerabilityPython Image Library (PIL) 1.1.7 and earlier and Pillow 2.3 might allow remote attackers to execute arbitrary commands via shell metacharacters in un…EPSS 12%9.8CVE-2022-30595Python pillow out-of-bounds write vulnerabilitylibImaging/TgaRleDecode.c in Pillow 9.1.0 has a heap buffer overflow in the processing of invalid TGA image files.EPSS 2.3%9.8CVE-2022-22817Python pillow vulnerabilityPIL.ImageMath.eval in Pillow before 9.0.0 allows evaluation of arbitrary expressions, such as ones that use the Python exec method. A lambda expressi…EPSS 3.3%9.8CVE-2021-34552Python pillow classic buffer overflow vulnerabilityPillow through 8.2.0 and PIL (aka Python Imaging Library) through 1.1.7 allow an attacker to pass controlled parameters directly into a convert funct…EPSS 3.2%9.8CVE-2021-25289Python pillow out-of-bounds write vulnerabilityAn issue was discovered in Pillow before 8.1.1. TiffDecode has a heap-based buffer overflow when decoding crafted YCbCr files because of certain inte…EPSS 2.3%9.8CVE-2020-5311Python pillow classic buffer overflow vulnerabilitylibImaging/SgiRleDecode.c in Pillow before 6.2.2 has an SGI buffer overflow.EPSS 4.2%9.8CVE-2020-5312Python pillow classic buffer overflow vulnerabilitylibImaging/PcxDecode.c in Pillow before 6.2.2 has a PCX P mode buffer overflow.EPSS 3.7%9.8CVE-2016-4009Python pillow memory buffer overflow vulnerabilityInteger overflow in the ImagingResampleHorizontal function in libImaging/Resample.c in Pillow before 3.1.1 allows remote attackers to have unspecifie…EPSS 7.9%

Source: NIST National Vulnerability Database (record CVE-2014-1932), CISA KEV, FIRST EPSS (scores of 2026-09-29). This page is refreshed as NVD updates the record.