An issue was discovered in Pillow before 8.1.1. In TiffDecode.c, there is an out-of-bounds read in TiffreadRGBATile via invalid tile boundaries.
References
https://nvd.nist.gov/vuln/detail/CVE-2021-25291
https://github.com/python-pillow/Pillow/commit/…