Package: gimp
Version: 2.8.2-1
Severity: important
Tags: security, fixed-upstream

GIMP 2.8.2 is vulnerable to memory corruption when reading XWD files, which 
could lead even to arbitrary code execution.

Upstream fix: 
http://git.gnome.org/browse/gimp/commit/?id=2873262fccba12af144ed96ed91be144d92ff2e1
 (fixed in master and gimp-2-8)
References: https://bugzilla.gnome.org/show_bug.cgi?id=687392
Details from CVE request: 
http://www.openwall.com/lists/oss-security/2012/11/21/2

Please note that other versions might be vulnerable as well.

- Henri Salo


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to