openSUSE Tumbleweed — python38-Pillow — multiple vulnerabilities (3 CVEs) — patch and remediation guide
🔴 Critical ⏱ 15–90 min Last verified: 25 May 2026 Affected versions: openSUSE Tumbleweed 📖 ~4 min read • Source: SUSE advisory openSUSE-SU-2025:14645-1 (see also SUSE bugzilla) Related CVEs: CVE-2022-30595 CVE-2022-22817 CVE-2022-24303 Upstream summary: libImaging/TgaRleDecode.c in Pillow 9.1.0 has a heap buffer overflow in the processing of invalid TGA image files. Table of contents […]