gimp (2.4.5-1ubuntu2.1) hardy-security; urgency=low

  * SECURITY UPDATE: arbitrary code execution via crafted BMP file
    - debian/patches/04_security_CVE-2009-1570.patch: validate bit depths,
      width and height in plug-ins/bmp/bmpread.c.
    - CVE-2009-1570
 -- Marc Deslauriers <email address hidden>   Mon, 04 Jan 2010 15:27:17 -0500

Marc Deslauriers on 2010-01-05
Ubuntu Development Team
File Size MD5 Checksum
gimp_2.4.5.orig.tar.gz 24.5 MiB 9d254f575862a64c56e00d5bab97e12c
gimp_2.4.5-1ubuntu2.1.diff.gz 44.5 KiB e3a0607d09505759d3527f9fa0136d05
gimp_2.4.5-1ubuntu2.1.dsc 1.7 KiB b9f0e7cd8df8c21dfa32dfdbcd5b04c0

Binary packages built by this source

gimp: The GNU Image Manipulation Program

 GIMP lets you draw, paint, edit images, and much more! GIMP
 includes the functionality and plug-ins of other famous image
 editing and processing programs.
 If you'd like to use a MIDI device as an input controller in GIMP,
 install libasound2 and read the how-to at /usr/share/doc/gimp/README.MIDI
 If you'd like to be able to read and write PostScript files from GIMP,
 install the ghostscript package.

gimp-data: Data files for GIMP

 This package contains architecture-independent supporting data files
 for use with GIMP.

gimp-dbg: Debugging symbols for GIMP

 This package includes the debugging symbols useful for debugging
 GIMP and its libraries, contained in the gimp and libgimp2.0 packages.
 The debugging symbols are used for execution tracing and core dump

gimp-gnomevfs: GNOME-VFS URI plugin for GIMP

 This package includes a plugin for GIMP which will open URIs (e.g.
 ftp:, http:, smb:, and sftp:) using protocol handlers from GNOME-VFS.

gimp-libcurl: libcurl URI plugin for GIMP

 This package includes a plugin for GIMP which will open URIs (e.g.
 ftp: and http:) using protocol handlers from libcurl.

gimp-python: Python support and plugins for GIMP

 This package includes the Python modules necessary to write Python-based
 plugins for GIMP. It includes several plugins with various useful
  * Clothify: Make the specified layer look like it's printed on cloth
  * ColorXHTML: Save the image as colored XHTML text
  * Console: Python interactive interpreter with Gimp extensions
  * Drop Shadow and Bevel - Add a drop shadow and/or bevel to a layer
  * Foggify: Add a layer of fog to an image
  * Py-Slice: Cuts an image along its guides and saves subimages + HTML
  * Sphere: Generate simple spheres with drop shadows
  * Whirl and Pinch: Distorts an image by whirling and pinching

libgimp2.0: Libraries for the GNU Image Manipulation Program

 This package includes the libgimp libraries, which are
 necessary to run GIMP and third-party GIMP plugins.

libgimp2.0-dev: Headers and other files for compiling plugins for GIMP

 This package contains the header files for the GNU Image Manipulation
 Program, along with the static versions of libgimp.
 It also includes the gimptool-2.0 utility.
 Install this package if you wish to compile your own plugins,
 or if you wish to develop packages that use libgimp.

libgimp2.0-doc: Developers' Documentation for the GIMP library

 This package contains the HTML documentation for the GIMP library in
 /usr/share/gtk-doc/html/ .