[ALSA-2025:3617] Important: gimp security update
Type:
security
Severity:
important
Release date:
2025-04-07
Description:
The GIMP (GNU Image Manipulation Program) is an image composition and editing program. GIMP provides a large image manipulation toolbox, including channel operations and layers, effects, sub-pixel imaging and anti-aliasing, and conversions, all with multi-level undo. Security Fix(es): * gimp: dds buffer overflow RCE (CVE-2023-44441) * gimp: PSD buffer overflow RCE (CVE-2023-44442) * gimp: psp integer overflow RCE (CVE-2023-44443) * gimp: psp off-by-one RCE (CVE-2023-44444) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 gimp-2.99.8-4.el9_5.aarch64.rpm 2cfa559d8487f0f64dda64c4bcef9d0e18da179f6b1bc6e28ba27a93a0f69070
aarch64 gimp-libs-2.99.8-4.el9_5.aarch64.rpm b40d74aa9d5f73913e56a49613fb3435d74e1c8a646d0a80842b3cf1f1b5c46c
i686 gimp-libs-2.99.8-4.el9_5.i686.rpm 35b5d67b3f4343af7e0edd21c16cc94a5ac19d10ecdd6cdcc644983786fb53df
ppc64le gimp-2.99.8-4.el9_5.ppc64le.rpm a543b1c31413b0a94c9e4d2834935da85c2376c70017a26290f215b17fd29b7f
ppc64le gimp-libs-2.99.8-4.el9_5.ppc64le.rpm f16fad9890a9da126fe9e7303cf2ac50ba1a746f8a27e61fe960e474918376ed
s390x gimp-2.99.8-4.el9_5.s390x.rpm 49686d8f3cd96eabba6e2a70edea1f6a8a94d6ab812a2362bd1200e10eb2e87b
s390x gimp-libs-2.99.8-4.el9_5.s390x.rpm a9065f4182c54adb55c5a348f1a5e33d22de833ab20476e56d5b1b6dd35c2515
x86_64 gimp-2.99.8-4.el9_5.x86_64.rpm 0ea8355389b44b33124ef1b0d28eef7f18193b39facd298d7ce326725ac591b3
x86_64 gimp-libs-2.99.8-4.el9_5.x86_64.rpm 3a6c1119c6c6deb96a67ddb44e55ae48fd23911bcbe6cc34f71425c81dd710f6
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.