gimp-3.0.4-4.el9_8.14

エラータID: AXSA:2026-1989:11

Release date: 
Wednesday, October 7, 2026 - 22:03
Subject: 
gimp-3.0.4-4.el9_8.14
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
High
Description: 

The GIMP (GNU Image Manipulation Program) is an image composition and editing program. GIMP provides a large image manipulation toolbox, including channel operations and layers, effects, sub-pixel imaging and anti-aliasing, and conversions, all with multi-level undo.

Security Fix(es):

* gimp: gimp: out-of-bounds write in lighting effects plugin via crafted preset file (CVE-2026-90947)
* gimp: gimp: heap-based buffer overflow in ICO loader via integer overflow in embedded PNG dimensions (CVE-2026-90948)
* gimp: integer overflow when generating a thumbnail preview for a PSD file (CVE-2026-92248)
* gimp: gimp: out-of-bounds write in GIMPressionist plugin via crafted preset file (CVE-2026-97185)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2026-90947
A flaw was found in GIMP. When processing a specially crafted lighting preset file, the Lighting Effects filter does not properly validate the number of light sources. This can lead to an out-of-bounds write, corrupting memory. An attacker could exploit this by convincing a user to open a malicious preset file, potentially causing a crash or enabling arbitrary code execution.
CVE-2026-90948
A flaw was found in GIMP's ICO file loader. When processing an ICO file containing an embedded PNG image, an integer overflow can occur during the calculation of the required buffer size. This leads to an undersized buffer being allocated, causing a heap-based buffer overflow when the decoded pixel data is written. A remote attacker could exploit this by crafting a malicious ICO file, which, when opened, could lead to arbitrary code execution or a crash.
CVE-2026-92248
A flaw was found in the file-psd plugin in GIMP. When generating a thumbnail preview for a specially crafted PSD (Photoshop Document) image file, an integer overflow occurs during the multiplication of values from an embedded JPEG header. This leads to an undersized heap allocation, resulting in a heap-based buffer overflow when the image data is decoded. This buffer overflow corrupts adjacent heap objects, allowing for a controlled memory write that can result in an application crash or arbitrary code execution.
CVE-2026-97185
A flaw was found in GIMP. When processing a specially crafted GIMPressionist preset file, the plug-in does not properly validate vector indices before writing into fixed-size arrays. This can lead to an out-of-bounds write, corrupting memory. An attacker could exploit this by convincing a user to load a malicious preset file, potentially causing a crash or enabling arbitrary code execution.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. gimp-3.0.4-4.el9_8.14.src.rpm
    MD5: 3f03bbdc8a118a0f9139a21e050be06a
    SHA-256: dd9d65d44aa76b631eef33300e9374b839fec4dc595afb7343da85ece41ba375
    Size: 25.90 MB

Asianux Server 9 for x86_64
  1. gimp-3.0.4-4.el9_8.14.x86_64.rpm
    MD5: e94ef5e8bc191d103373373010f5177a
    SHA-256: b351b1a1a4243bc06c23610e6bf1acea1f76ebc43cd534ca7e5328b1dc74c2fd
    Size: 20.92 MB
  2. gimp-libs-3.0.4-4.el9_8.14.i686.rpm
    MD5: 48f73f19c6f45be8e3a38da2a24e0698
    SHA-256: 74d5d56a4ca338c41ce3d6863f95d9c31e16bdd99cd2a02d3089af735b36700e
    Size: 853.37 kB
  3. gimp-libs-3.0.4-4.el9_8.14.x86_64.rpm
    MD5: ed02969220e6263110790b637eff70f2
    SHA-256: 629510f99a8e70b1f8d8dfbcab394f5ec5aa7e262a9adbdc661707679277f5f8
    Size: 803.94 kB