Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| gimp | fixed | 3.2.4-1 | package |
Примечания
https://gitlab.gnome.org/GNOME/gimp/-/work_items/16213
Fixed by: https://gitlab.gnome.org/GNOME/gimp/-/commit/fb63e036f89382ce739da1d0cd8aaaf47e3cbb4e (GIMP_3_2_4)
Связанные уязвимости
CVSS3: 7.3
redhat
4 месяца назад
A flaw was found in GIMP's Jeff's Image Format (JIF) parser. A heap-based out-of-bounds write occurs in the ReadJeffsImage() function when a crafted JIF file sets bits-per-pixel to 0, causing the unpack loop to never advance and to write indefinitely past the destination buffer. This could lead to memory corruption, potentially resulting in denial of service or arbitrary code execution.