[ALSA-2025:7417] Important: gimp security update
Type:
security
Severity:
important
Release date:
2025-05-21
Description:
The GIMP (GNU Image Manipulation Program) is an image composition and editing program. GIMP provides a large image manipulation toolbox, including channel operations and layers, effects, sub-pixel imaging and anti-aliasing, and conversions, all with multi-level undo. Security Fix(es): * gimp: dds buffer overflow RCE (CVE-2023-44441) * gimp: PSD buffer overflow RCE (CVE-2023-44442) * gimp: psp integer overflow RCE (CVE-2023-44443) * gimp: psp off-by-one RCE (CVE-2023-44444) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 gimp-2.99.8-4.el9_6.aarch64.rpm 8679afae885b847edcee52f4e6d8036c68262c89543660ce3bb70c4cff87e900
aarch64 gimp-libs-2.99.8-4.el9_6.aarch64.rpm eb4594867ca6d48612938a70049cbfe323fdabe99a28043bb31f1dfff8f6eab2
i686 gimp-libs-2.99.8-4.el9_6.i686.rpm ebb45f5900a5730486157b151de20206d8b73d633f01c92aefa6d700a8146fee
ppc64le gimp-2.99.8-4.el9_6.ppc64le.rpm 7cb94f7f3d8cac14182eba18b4322939898432020cb43d820a31f67892aef426
ppc64le gimp-libs-2.99.8-4.el9_6.ppc64le.rpm a8da7c3e85f37690c25d07ecda73bf3e5896a9910613849a1b41070d98ec51ee
s390x gimp-libs-2.99.8-4.el9_6.s390x.rpm 48edf71696eb4eb4fa0e9ce080045b5c285e8e4c8d39f0c2006d58c6fafc963d
s390x gimp-2.99.8-4.el9_6.s390x.rpm a6fb4af2825307f586b99d1399b213bd88ad17d863a5b8cbf9680e63225c6131
x86_64 gimp-2.99.8-4.el9_6.x86_64.rpm 8f03754142260986d316d0d266808ea0df5408f31764292bba30789f76c54dd8
x86_64 gimp-libs-2.99.8-4.el9_6.x86_64.rpm d6107b50d3c5561554b696f6d96351a1ca9c552318e15b4fc313113e077bdbc7
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.