Publishing details
Changelog
gimp (2.10.34-1ubuntu0.23.10.1) mantic-security; urgency=medium
* SECURITY UPDATE: DDS File Parsing Heap-based Buffer Overflow
- debian/patches/CVE-2023-44441-1.patch: verify header information in
plug-ins/file-dds/ddsread.c.
- debian/patches/CVE-2023-44441-2.patch: fix checks in
plug-ins/file-dds/ddsread.c.
- debian/patches/CVE-2023-44441-3.patch: add additional fixes in
plug-ins/file-dds/ddsread.c.
- CVE-2023-44441
* SECURITY UPDATE: PSD File Parsing Heap-based Buffer Overflow
- debian/patches/CVE-2023-44442.patch: add missing break statement in
plug-ins/file-psd/psd-util.c.
- CVE-2023-44442
* SECURITY UPDATE: PSP File Parsing Integer Overflow and Off-By-One
- debian/patches/CVE-2023-44443_44444.patch: check
color_palette_entries and fix buffer size in
plug-ins/common/file-psp.c.
- CVE-2023-44443
- CVE-2023-44444
-- Marc Deslauriers <email address hidden> Tue, 28 Nov 2023 08:59:52 -0500
Builds
Built packages
-
gimp
GNU Image Manipulation Program
-
gimp-data
Data files for GIMP
-
gimp-dbgsym
debug symbols for gimp
-
libgimp2.0
Libraries for the GNU Image Manipulation Program
-
libgimp2.0-dbgsym
debug symbols for libgimp2.0
-
libgimp2.0-dev
Headers and other files for compiling plugins for GIMP
-
libgimp2.0-dev-dbgsym
debug symbols for libgimp2.0-dev
-
libgimp2.0-doc
Developers' Documentation for the GIMP library
Package files