GIMP 2.10.36 fixed multiple image format parser vulnerabilities

GIMP 2.10.36 fixed multiple image format parser vulnerabilities

Open Source Security 

Posted by Alan Coopersmith on Nov 20

https://www.gimp.org/news/2023/11/07/gimp-2-10-36-released/#fixed-vulnerabilities
reported:

These vulnerabilities also had advisories released by ZDI which gave
the corresponding CVE ids:

ZDI-CAN-22093: CVE-2023-44441
GIMP DDS File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
https://www.zerodayinitiative.com/advisories/ZDI-23-1592/

ZDI-CAN-22094: CVE-2023-44442
GIMP PSD File Parsing Heap-based Buffer Overflow…
 Read More 

Schreibe einen Kommentar

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert