Advisories ยป MGASA-2023-0346

Updated gimp packages fix security vulnerabilities

Publication date: 15 Dec 2023
Modification date: 16 Dec 2023
Type: security
Affected Mageia releases : 8 , 9
CVE: CVE-2023-44441 , CVE-2023-44442 , CVE-2023-44443 , CVE-2023-44444

Description

GIMP has been updated to version 2.10.36 to fix several security issues.
CVE-2023-44441: GIMP DDS File Parsing Heap-based Buffer Overflow Remote
Code Execution Vulnerability
CVE-2023-44442: GIMP PSD File Parsing Heap-based Buffer Overflow Remote
Code Execution Vulnerability
CVE-2023-44443: GIMP PSP File Parsing Integer Overflow Remote Code
Execution Vulnerability
CVE-2023-44444: GIMP PSP File Parsing Off-By-One Remote Code Execution
Vulnerability
                

References

SRPMS

8/core

9/core