diff --git a/gimp b/gimp index d7bae19..fd2840f 160000 --- a/gimp +++ b/gimp @@ -1 +1 @@ -Subproject commit d7bae19de05557a72782941663569b6eb24cc8a746ae635eaeeb928e16dcd1c8 +Subproject commit fd2840fcd9330ecc68dcc3f1b4dd83d76c1b1f2da826ad23b6640a74ecba4549 diff --git a/patchinfo.20260225083803306467.93181000773252/_patchinfo b/patchinfo.20260225083803306467.93181000773252/_patchinfo new file mode 100644 index 0000000..9d77dfa --- /dev/null +++ b/patchinfo.20260225083803306467.93181000773252/_patchinfo @@ -0,0 +1,15 @@ + + VUL-0: CVE-2026-2239: gimp: missing null terminator when processing a specially crafted PSD file can lead to a heap buffer overflow and an application crash + + mgorse + low + security + Security update for gimp + This update for gimp fixes the following issues: + +Changes in gimp: + +- CVE-2026-2239: Fixed a heap buffer overflow in psd-util.c (bsc#1257959). + + gimp +