diff --git a/gimp b/gimp index fa630de..5393739 160000 --- a/gimp +++ b/gimp @@ -1 +1 @@ -Subproject commit fa630de895b97b845678e64b7c282db7f55f3124036ef774fe3aba117cd096dd +Subproject commit 539373922daa71662b16777ee4d099782ada2761529bfb6ad6b88d66b9a7a9ad diff --git a/patchinfo.20260121084821180176.93181000773252/_patchinfo b/patchinfo.20260121084821180176.93181000773252/_patchinfo new file mode 100644 index 0000000..ac2fcbb --- /dev/null +++ b/patchinfo.20260121084821180176.93181000773252/_patchinfo @@ -0,0 +1,24 @@ + + + + VUL-0: CVE-2025-14422: gimp: PNM File Parsing Integer Overflow Remote Code Execution Vulnerability + VUL-0: CVE-2025-14425: gimp: JP2 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability + + VUL-0: CVE-2025-14424: gimp: XCF File Parsing Use-After-Free Remote Code Execution Vulnerability + VUL-0: CVE-2025-14423: gimp: LBM File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability + + mgorse + important + security + Security update for gimp + This update for gimp fixes the following issues: + +Changes in gimp: + +- CVE-2025-14422: Fixed PNM File Parsing Integer Overflow (bsc#1255293) +- CVE-2025-14423: Fixed LBM File Parsing Stack-based Buffer Overflow (bsc#1255294) +- CVE-2025-14424: Fixed XCF File Parsing Use-After-Free (bsc#1255295) +- CVE-2025-14425: Fixed JP2 File Parsing Heap-based Buffer Overflow(bsc#1255296) + + gimp +