[ALSA-2022:7978] Moderate: gimp security and enhancement update
Type:
security
Severity:
moderate
Release date:
2022-11-18
Description:
The GIMP (GNU Image Manipulation Program) is an image composition and editing program. GIMP provides a large image manipulation toolbox, including channel operations and layers, effects, sub-pixel imaging and anti-aliasing, and conversions, all with multi-level undo. Security Fix(es): * gimp: buffer overflow through a crafted XCF file (CVE-2022-30067) * gimp: unhandled exception via a crafted XCF file may lead to DoS (CVE-2022-32990) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 gimp-2.99.8-3.el9.aarch64.rpm 664f6fca9e33d9f6a455714dbb6eba13db9fcac51c4ed4223701b5087b5d8ee2
aarch64 gimp-libs-2.99.8-3.el9.aarch64.rpm a35e404ab94cd1f5b7b6715251dbd382615aed9585f83a3245a53a4a9b3869f8
i686 gimp-libs-2.99.8-3.el9.i686.rpm e9fc43cd3f4a0d027441300881599f506b924ee2a965293e7f99b751f5a4409c
ppc64le gimp-libs-2.99.8-3.el9.ppc64le.rpm 432a74a864f26587e3a568f69f374c5a0df4b92db2faaef5d44284ac7068ddb5
ppc64le gimp-2.99.8-3.el9.ppc64le.rpm 66ba6e2dd1afcc8966707dc17109d620b392f518ace522b90e9df2ecc222747c
s390x gimp-2.99.8-3.el9.s390x.rpm 0402338b885bcac316b5a45a34e2c0b40ac19cd9ce1ffcd3358c5aa3abb84a2a
s390x gimp-libs-2.99.8-3.el9.s390x.rpm a5b4b4dcd6f4db985cccc3fc666b62c2a41e5972e4780b3c9550cc978bc0babd
x86_64 gimp-libs-2.99.8-3.el9.x86_64.rpm 63f8f8b2b72f076fa6b2c6052b2960c917a9f88997afdcd0cbfc68151b986628
x86_64 gimp-2.99.8-3.el9.x86_64.rpm b297b7f02616e8e793df5bff99c4f416e805e8997effc93b7e54beaf59f46a19
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.