Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-38496

Опубликовано: 13 июл. 2026
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2026-38496: gimp security update (IMPORTANT)

[2:3.0.4-4.5]

  • fix CVE-2026-58379
  • Resolves: RHEL-192170

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

gimp

3.0.4-4.el9_8.5

gimp-libs

3.0.4-4.el9_8.5

Oracle Linux x86_64

gimp

3.0.4-4.el9_8.5

gimp-libs

3.0.4-4.el9_8.5

Связанные CVE

Связанные уязвимости

CVSS3: 7.3
ubuntu
28 дней назад

A flaw was found in GIMP's Paint Shop Pro (PSP) file format parser. This heap buffer overflow vulnerability allows a remote attacker to cause arbitrary code execution or a denial of service (DoS) by tricking a user into opening a specially crafted PSP image file. The vulnerability occurs because the software incorrectly calculates buffer sizes when processing low bit-depth images, leading to an overwrite of adjacent memory.

CVSS3: 7.3
redhat
4 месяца назад

A flaw was found in GIMP's Paint Shop Pro (PSP) file format parser. This heap buffer overflow vulnerability allows a remote attacker to cause arbitrary code execution or a denial of service (DoS) by tricking a user into opening a specially crafted PSP image file. The vulnerability occurs because the software incorrectly calculates buffer sizes when processing low bit-depth images, leading to an overwrite of adjacent memory.

CVSS3: 7.3
nvd
28 дней назад

A flaw was found in GIMP's Paint Shop Pro (PSP) file format parser. This heap buffer overflow vulnerability allows a remote attacker to cause arbitrary code execution or a denial of service (DoS) by tricking a user into opening a specially crafted PSP image file. The vulnerability occurs because the software incorrectly calculates buffer sizes when processing low bit-depth images, leading to an overwrite of adjacent memory.

CVSS3: 7.3
debian
28 дней назад

A flaw was found in GIMP's Paint Shop Pro (PSP) file format parser. Th ...

CVSS3: 7.3
github
28 дней назад

A flaw was found in GIMP's Paint Shop Pro (PSP) file format parser. This heap buffer overflow vulnerability allows a remote attacker to cause arbitrary code execution or a denial of service (DoS) by tricking a user into opening a specially crafted PSP image file. The vulnerability occurs because the software incorrectly calculates buffer sizes when processing low bit-depth images, leading to an overwrite of adjacent memory.