Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2026:21869-1

Опубликовано: 16 сент. 2026
Источник: suse-cvrf

Описание

Security update for gimp

This update for gimp fixes the following issues:

Changes in gimp:

  • CVE-2026-78465: 32-bit integer overflow in PCX image memory calculations can cause undersized heap allocations (bsc#1277378)
  • CVE-2026-78475: unbounded variable-length stack allocations in the PIX loader can cause stack exhaustion crashes and stack memory disclosures (bsc#1277380)
  • CVE-2026-80101: independent header field validation in the XWD loader can cause heap out-of-bounds reads (bsc#1276911)

Список пакетов

openSUSE Leap 16.0
gimp-3.0.8-bp160.9.1
gimp-devel-3.0.8-bp160.9.1
gimp-extension-goat-excercises-3.0.8-bp160.9.1
gimp-lang-3.0.8-bp160.9.1
gimp-plugin-aa-3.0.8-bp160.9.1
gimp-plugin-python3-3.0.8-bp160.9.1
gimp-vala-3.0.8-bp160.9.1
libgimp-3_0-0-3.0.8-bp160.9.1
libgimpui-3_0-0-3.0.8-bp160.9.1

Описание

A flaw was found in the file-pcx plugin in GIMP, affecting 32-bit builds only. When processing a PCX image file, the plugin calculates memory allocation sizes based on the image dimensions and the number of color planes. If a crafted file sets the number of planes to 4 alongside sufficiently large dimensions, the calculation exceeds the 32-bit integer limit and overflows, resulting in an undersized heap-based buffer allocation. This integer overflow issue results in a heap-based buffer overflow when the plugin subsequently writes image data into the undersized buffer, causing memory corruption, potentially leading to arbitrary code execution or a denial of service.


Затронутые продукты
openSUSE Leap 16.0:gimp-3.0.8-bp160.9.1
openSUSE Leap 16.0:gimp-devel-3.0.8-bp160.9.1
openSUSE Leap 16.0:gimp-extension-goat-excercises-3.0.8-bp160.9.1
openSUSE Leap 16.0:gimp-lang-3.0.8-bp160.9.1

Ссылки

Описание

A flaw was found in the file-pix (ESM) plugin in GIMP. When processing a specially crafted PIX image file, the plugin allocates a Variable-Length Array (VLA) on the stack without proper bounds checking, causing an unbounded stack allocation followed by a 21-byte stack over-read. This can result in a denial of service due to stack exhaustion and a limited information disclosure of stack memory contents into an intermediate file.


Затронутые продукты
openSUSE Leap 16.0:gimp-3.0.8-bp160.9.1
openSUSE Leap 16.0:gimp-devel-3.0.8-bp160.9.1
openSUSE Leap 16.0:gimp-extension-goat-excercises-3.0.8-bp160.9.1
openSUSE Leap 16.0:gimp-lang-3.0.8-bp160.9.1

Ссылки

Описание

A flaw was found in the file-xwd plugin in GIMP. When processing a specially crafted XWD image file, the plugin validates the image width and bytes-per-line parameters independently rather than ensuring their combined values are consistent with the allocated buffer size. This incorrect validation leads to improper bounds checking, causing a heap out-of-bounds read. This issue can result in an application crash, leading to a denial of service or a limited information disclosure of heap memory contents into the produced image.


Затронутые продукты
openSUSE Leap 16.0:gimp-3.0.8-bp160.9.1
openSUSE Leap 16.0:gimp-devel-3.0.8-bp160.9.1
openSUSE Leap 16.0:gimp-extension-goat-excercises-3.0.8-bp160.9.1
openSUSE Leap 16.0:gimp-lang-3.0.8-bp160.9.1

Ссылки