Описание
Security update for gimp
This update for gimp fixes the following issues:
- CVE-2022-32990: Fixed an unhandled exception which may lead to denial of service (bsc#1201192).
Список пакетов
SUSE Linux Enterprise Module for Package Hub 15 SP4
gimp-2.10.30-150400.3.6.2
gimp-devel-2.10.30-150400.3.6.2
gimp-lang-2.10.30-150400.3.6.2
gimp-plugin-aa-2.10.30-150400.3.6.2
libgimp-2_0-0-2.10.30-150400.3.6.2
libgimpui-2_0-0-2.10.30-150400.3.6.2
SUSE Linux Enterprise Workstation Extension 15 SP4
gimp-2.10.30-150400.3.6.2
gimp-devel-2.10.30-150400.3.6.2
gimp-lang-2.10.30-150400.3.6.2
libgimp-2_0-0-2.10.30-150400.3.6.2
libgimpui-2_0-0-2.10.30-150400.3.6.2
openSUSE Leap 15.4
gimp-2.10.30-150400.3.6.2
gimp-devel-2.10.30-150400.3.6.2
gimp-lang-2.10.30-150400.3.6.2
gimp-plugin-aa-2.10.30-150400.3.6.2
libgimp-2_0-0-2.10.30-150400.3.6.2
libgimp-2_0-0-32bit-2.10.30-150400.3.6.2
libgimpui-2_0-0-2.10.30-150400.3.6.2
libgimpui-2_0-0-32bit-2.10.30-150400.3.6.2
Ссылки
- Link for SUSE-SU-2022:3106-1
- E-Mail link for SUSE-SU-2022:3106-1
- SUSE Security Ratings
- SUSE Bug 1201192
- SUSE CVE CVE-2022-32990 page
Описание
An issue in gimp_layer_invalidate_boundary of GNOME GIMP 2.10.30 allows attackers to trigger an unhandled exception via a crafted XCF file, causing a Denial of Service (DoS).
Затронутые продукты
SUSE Linux Enterprise Module for Package Hub 15 SP4:gimp-2.10.30-150400.3.6.2
SUSE Linux Enterprise Module for Package Hub 15 SP4:gimp-devel-2.10.30-150400.3.6.2
SUSE Linux Enterprise Module for Package Hub 15 SP4:gimp-lang-2.10.30-150400.3.6.2
SUSE Linux Enterprise Module for Package Hub 15 SP4:gimp-plugin-aa-2.10.30-150400.3.6.2
Ссылки
- CVE-2022-32990
- SUSE Bug 1201192