gegl04-0.4.62-1.el9_8.2
エラータID: AXSA:2026-1775:03
GEGL (Generic Graphics Library) is a graph-based image processing framework.
Security Fix(es):
* gimp: gegl: GIMP: Remote code execution via integer overflow in HDR file parsing (CVE-2026-18300)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE-2026-18300
GIMP HDR File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of HDR files. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29289.
Update packages.
GIMP HDR File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of HDR files. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29289.
N/A
SRPMS
- gegl04-0.4.62-1.el9_8.2.src.rpm
MD5: 2d44ea38c1063df923c0317c0d8443c0
SHA-256: 12fe63afe099ebe4b97b440dbe1cd5dc80604e772ea1eca0539eb5bc0b0b2939
Size: 5.76 MB
Asianux Server 9 for x86_64
- gegl04-0.4.62-1.el9_8.2.i686.rpm
MD5: 0c7813d8f7279d88d33339ef80e21ace
SHA-256: 4eddc09cd6d0f45d0c196dd6665d4cfa5b2c7cf657f53f7760d348853df6c5bb
Size: 2.37 MB - gegl04-0.4.62-1.el9_8.2.x86_64.rpm
MD5: bdea4a69d9b2dbf5212fe6344e1813c3
SHA-256: d9668276bea5eba5694569736ab72724d9ea11a4b0131b283cc8cd8d6b898333
Size: 2.61 MB - gegl04-devel-0.4.62-1.el9_8.2.i686.rpm
MD5: c1ebbd9e9b3e27d649f09c9b1138e898
SHA-256: 1401131239e8b4b8210f15fec5c699101000ea8a315343e969bd922e10a7d316
Size: 214.59 kB - gegl04-devel-0.4.62-1.el9_8.2.x86_64.rpm
MD5: df6b83693c52066caa35ac36c4691dbb
SHA-256: 8149bf0358c15026d64484f4fc3319f0743c441a479788eb0d6868feb8a291e0
Size: 214.52 kB - gegl04-devel-docs-0.4.62-1.el9_8.2.x86_64.rpm
MD5: b4816eaaa50297fe35e4bce18c3dd844
SHA-256: f46e62762c8fca0b52a347e6c57babc884cd3200cc0ab8bc901eaa5858c7d47f
Size: 95.72 kB - gegl04-tools-0.4.62-1.el9_8.2.x86_64.rpm
MD5: 50a961633e7241a0ea3f24487e2107b2
SHA-256: 06031ab5e6f7ed642647f3777e314ab1d976cfebe39e24462626d9e822e4bfb2
Size: 35.99 kB