In _imagingcms
In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy.
Exploitability
AC:H
AV:L
PR:L
UI:R
Scope
S:U
Impact
A:H
C:H
I:H
6.7/CVSS:3.1/AC:H/AV:L/A:H/C:H/I:H/PR:L/S:U/UI:R