---
schema_version: '1.0'
id: security-20260714-f651a5
url: https://osv.dev/vulnerability/PYSEC-2026-2250
url_hash: f651a56eb3f90dfecb7636b8b6452607443af9bb6cfaec329bfa67373fe821ea
canonical_url: https://osv.dev/vulnerability/PYSEC-2026-2250
source: osv:pypa
category: security/library
category_raw: cve/library
region: null
tags:
- cve
- CVE-2026-40192
- PYSEC-2026-2250
- severity:CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- pillow
- PyPI
lang: en
published_at: '2026-04-15T23:16:10Z'
fetched_at: '2026-07-14T06:42:23Z'
updated_at: '2026-07-14T06:43:41Z'
status: published
content_hash: 68b3719af3af0fd3a41675c1ba374b31714b4ac52391a63117ab2455a2321aba
license_note: full
summary: Pillow is a Python imaging library. Versions 10.3.0 through 12.1.1 did not
  limit the amount of GZIP-compressed data read when decoding a FITS image, making
  them vulnerable to decompression bomb attacks. A specially crafted FITS file could
  cause unbounded memory consumption, leadi
summary_source: rss
summary_en: Pillow is a Python imaging library. Versions 10.3.0 through 12.1.1 did
  not limit the amount of GZIP-compressed data read when decoding a FITS image, making
  them vulnerable to decompression bomb attacks. A specially crafted FITS file could
  cause unbounded memory consumption, leadi
entities:
- name: Pillow
  type: artifact
key_facts: []
related: []
related_auto: []
title: CVE-2026-40192 — pillow
---

# CVE-2026-40192 — pillow

## TL;DR
Pillow is a Python imaging library. Versions 10.3.0 through 12.1.1 did not limit the amount of GZIP-compressed data read when decoding a FITS image, making them vulnerable to decompression bomb attacks. A specially crafted FITS file could cause unbounded memory consumption, leadi

## Key Points
- cve / CVE-2026-40192 / PYSEC-2026-2250 / severity:CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H / pillow / PyPI

## Details
**Severity:** CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
**Advisory:** PYSEC-2026-2250 (CVE-2026-40192)

**Affected (your watchlist):**
- `PyPI:pillow` 12.1.1 → fixed in 12.2.0 [docker/docker-llmwiki]

**Details:**
Pillow is a Python imaging library. Versions 10.3.0 through 12.1.1 did not limit the amount of GZIP-compressed data read when decoding a FITS image, making them vulnerable to decompression bomb attacks. A specially crafted FITS file could cause unbounded memory consumption, leading to denial of service (OOM crash or severe performance degradation). If users are unable to immediately upgrade, they should only open specific image formats, excluding FITS, as a workaround.

**References:**
- https://access.redhat.com/security/cve/CVE-2026-40192
- https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-40192.json
- https://access.redhat.com/errata/RHSA-2026:16008
- https://access.redhat.com/errata/RHSA-2026:16009
- https://access.redhat.com/errata/RHSA-2026:16030
- https://access.redhat.com/errata/RHSA-2026:16174
- https://access.redhat.com/errata/RHSA-2026:17609
- https://access.redhat.com/errata/RHSA-2026:17611
- https://access.redhat.com/errata/RHSA-2026:19375
- https://access.redhat.com/errata/RHSA-2026:19712

_Data: OSV.dev (upstream: pypa) — https://osv.dev/vulnerability/PYSEC-2026-2250_

## Source
元記事: [CVE-2026-40192 — pillow](https://osv.dev/vulnerability/PYSEC-2026-2250) — published 2026-04-15T23:16:10Z
