Количество 16
Количество 16
GHSA-34qx-mf6r-5f7m
GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-22094.
CVE-2023-44442
GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-22094.
CVE-2023-44442
GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-22094.
CVE-2023-44442
GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-22094.
CVE-2023-44442
GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution ...
BDU:2024-06921
Уязвимость графического редактора GIMP, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
SUSE-SU-2023:4697-1
Security update for gimp
ELSA-2024-10666
ELSA-2024-10666: gimp:2.8.22 security update (IMPORTANT)
ELSA-2024-0861
ELSA-2024-0861: gimp:2.8 security update (IMPORTANT)
ELSA-2025-0746
ELSA-2025-0746: gimp:2.8 security update (IMPORTANT)
SUSE-SU-2023:4692-1
Security update for gimp
ROS-20240701-01
Множественные уязвимости gimp
RLSA-2024:0675
Important: gimp security update
ELSA-2025-7417
ELSA-2025-7417: gimp security update (IMPORTANT)
ELSA-2025-3617
ELSA-2025-3617: gimp security update (IMPORTANT)
ELSA-2024-0675
ELSA-2024-0675: gimp security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-34qx-mf6r-5f7m GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-22094. | CVSS3: 7.8 | 60% Средний | больше 1 года назад | |
CVE-2023-44442 GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-22094. | CVSS3: 7.8 | 60% Средний | больше 1 года назад | |
CVE-2023-44442 GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-22094. | CVSS3: 7.8 | 60% Средний | почти 2 года назад | |
CVE-2023-44442 GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-22094. | CVSS3: 7.8 | 60% Средний | больше 1 года назад | |
CVE-2023-44442 GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution ... | CVSS3: 7.8 | 60% Средний | больше 1 года назад | |
BDU:2024-06921 Уязвимость графического редактора GIMP, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании | CVSS3: 7.8 | 60% Средний | около 2 лет назад | |
SUSE-SU-2023:4697-1 Security update for gimp | почти 2 года назад | |||
ELSA-2024-10666 ELSA-2024-10666: gimp:2.8.22 security update (IMPORTANT) | 11 месяцев назад | |||
ELSA-2024-0861 ELSA-2024-0861: gimp:2.8 security update (IMPORTANT) | больше 1 года назад | |||
ELSA-2025-0746 ELSA-2025-0746: gimp:2.8 security update (IMPORTANT) | 9 месяцев назад | |||
SUSE-SU-2023:4692-1 Security update for gimp | почти 2 года назад | |||
ROS-20240701-01 Множественные уязвимости gimp | CVSS3: 7.8 | больше 1 года назад | ||
RLSA-2024:0675 Important: gimp security update | больше 1 года назад | |||
ELSA-2025-7417 ELSA-2025-7417: gimp security update (IMPORTANT) | 6 месяцев назад | |||
ELSA-2025-3617 ELSA-2025-3617: gimp security update (IMPORTANT) | 7 месяцев назад | |||
ELSA-2024-0675 ELSA-2024-0675: gimp security update (IMPORTANT) | больше 1 года назад |
Уязвимостей на страницу