Количество 16
Количество 16

CVE-2023-44442
GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-22094.

CVE-2023-44442
GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-22094.

CVE-2023-44442
GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-22094.
CVE-2023-44442
GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution ...
GHSA-34qx-mf6r-5f7m
GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-22094.

BDU:2024-06921
Уязвимость графического редактора GIMP, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

SUSE-SU-2023:4697-1
Security update for gimp
ELSA-2024-10666
ELSA-2024-10666: gimp:2.8.22 security update (IMPORTANT)
ELSA-2024-0861
ELSA-2024-0861: gimp:2.8 security update (IMPORTANT)
ELSA-2025-0746
ELSA-2025-0746: gimp:2.8 security update (IMPORTANT)

SUSE-SU-2023:4692-1
Security update for gimp

ROS-20240701-01
Множественные уязвимости gimp

RLSA-2024:0675
Important: gimp security update
ELSA-2025-7417
ELSA-2025-7417: gimp security update (IMPORTANT)
ELSA-2025-3617
ELSA-2025-3617: gimp security update (IMPORTANT)
ELSA-2024-0675
ELSA-2024-0675: gimp security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2023-44442 GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-22094. | CVSS3: 7.8 | 59% Средний | около 1 года назад |
![]() | CVE-2023-44442 GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-22094. | CVSS3: 7.8 | 59% Средний | больше 1 года назад |
![]() | CVE-2023-44442 GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-22094. | CVSS3: 7.8 | 59% Средний | около 1 года назад |
CVE-2023-44442 GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution ... | CVSS3: 7.8 | 59% Средний | около 1 года назад | |
GHSA-34qx-mf6r-5f7m GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-22094. | CVSS3: 7.8 | 59% Средний | около 1 года назад | |
![]() | BDU:2024-06921 Уязвимость графического редактора GIMP, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании | CVSS3: 7.8 | 59% Средний | больше 1 года назад |
![]() | SUSE-SU-2023:4697-1 Security update for gimp | больше 1 года назад | ||
ELSA-2024-10666 ELSA-2024-10666: gimp:2.8.22 security update (IMPORTANT) | 6 месяцев назад | |||
ELSA-2024-0861 ELSA-2024-0861: gimp:2.8 security update (IMPORTANT) | больше 1 года назад | |||
ELSA-2025-0746 ELSA-2025-0746: gimp:2.8 security update (IMPORTANT) | 5 месяцев назад | |||
![]() | SUSE-SU-2023:4692-1 Security update for gimp | больше 1 года назад | ||
![]() | ROS-20240701-01 Множественные уязвимости gimp | CVSS3: 7.8 | 12 месяцев назад | |
![]() | RLSA-2024:0675 Important: gimp security update | около 1 года назад | ||
ELSA-2025-7417 ELSA-2025-7417: gimp security update (IMPORTANT) | 29 дней назад | |||
ELSA-2025-3617 ELSA-2025-3617: gimp security update (IMPORTANT) | 2 месяца назад | |||
ELSA-2024-0675 ELSA-2024-0675: gimp security update (IMPORTANT) | больше 1 года назад |
Уязвимостей на страницу