GIMP 2.10.36 fixed multiple image format parser vulnerabilities
Open Source Security
Posted by Alan Coopersmith on Nov 20
https://www.gimp.org/news/2023/11/07/gimp-2-10-36-released/#fixed-vulnerabilities
reported:
These vulnerabilities also had advisories released by ZDI which gave
the corresponding CVE ids:
ZDI-CAN-22093: CVE-2023-44441
GIMP DDS File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
https://www.zerodayinitiative.com/advisories/ZDI-23-1592/
ZDI-CAN-22094: CVE-2023-44442
GIMP PSD File Parsing Heap-based Buffer Overflow…
Read More