Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| gimp | fixed | 3.2.4-1 | package | |
| gimp | not-affected | trixie | package | |
| gimp | not-affected | bookworm | package | |
| gimp | not-affected | bullseye | package |
Примечания
https://gitlab.gnome.org/GNOME/gimp/-/work_items/16222
Fixed by: https://gitlab.gnome.org/GNOME/gimp/-/commit/88a0a895da560d2e684b13eb8f532a314c01a504 (GIMP_3_2_4)
Introduced by: https://gitlab.gnome.org/GNOME/gimp/-/commit/d5cdeb96e868308fa529916edbf3034981a664f3 (GIMP_3_1_2)
Связанные уязвимости
CVSS3: 7.3
redhat
5 месяцев назад
A flaw was found in GIMP's TIM loader. File-controlled width, height, and palette size values are used directly in multiple variable-length array declarations in load_image(), allowing a crafted TIM file to force oversized stack allocations and memory corruption. This could lead to denial of service or arbitrary code execution.