Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| gimp | fixed | 3.2.4-1 | package |
Примечания
https://gitlab.gnome.org/GNOME/gimp/-/work_items/16222
Fixed by: https://gitlab.gnome.org/GNOME/gimp/-/commit/88a0a895da560d2e684b13eb8f532a314c01a504 (GIMP_3_2_4)
Связанные уязвимости
CVSS3: 7.3
redhat
4 месяца назад
A flaw was found in GIMP's TIM loader. File-controlled width, height, and palette size values are used directly in multiple variable-length array declarations in load_image(), allowing a crafted TIM file to force oversized stack allocations and memory corruption. This could lead to denial of service or arbitrary code execution.