Security News

Cybersecurity news aggregator

🐧
MEDIUM Updates Debian Security

DSA-6156-1 gimp - security update

  • What: Security update for GIMP.
  • Impact: Debian users may be affected by multiple vulnerabilities.
Read Full Article →

[SECURITY] [DSA 6156-1] gimp security update To : debian-security-announce@lists.debian.org Subject : [SECURITY] [DSA 6156-1] gimp security update From : Moritz Muehlenhoff < jmm@debian.org > Date : Tue, 3 Mar 2026 22:05:57 +0000 Message-id : < [🔎] aadbRZiyhorVFsjv@seger.debian.org > Reply-to : debian-security-announce-request@lists.debian.org -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-6156-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff March 03, 2026 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : gimp CVE ID : CVE-2026-0797 CVE-2026-2044 CVE-2026-2045 CVE-2026-2048 CVE-2026-2047 Several vulnerabilities were discovered in GIMP, the GNU Image Manipulation Program, which could result in denial of service or potentially the execution of arbitrary code if malformed XWD, ICNS, PGM or ICO files are opened. For the oldstable distribution (bookworm), these problems have been fixed in version 2.10.34-1+deb12u9. For the stable distribution (trixie), these problems have been fixed in version 3.0.4-3+deb13u7. We recommend that you upgrade your gimp packages. For the detailed security status of gimp please refer to its security tracker page at: https://security-tracker.debian.org/tracker/gimp Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmmnWhEACgkQEMKTtsN8 TjYVdw/9F32ahzO5U3OD9Hdd9ZaOGu9uhITh0lAh18Qzl9rF/VYs47DqlhjRPXCY VZW4uBKGF9hWzAmjKmdj1HIhRltaFG9O2R85IjJaIT3+4ODJ+VB1P9rW69V9bTst HYNNFviGd0rmEq6gFGlcKa48zfKQ3vwGWBVRfKNfVepglAa0vbmrPAD+DzfeA/bF 6N8YdHWbU2iWfMyDwcGAN8ykJmtO36B3XXxrfeTEOz8hAc0MatnpIyzineASy/+G op7VtDbTxAm80UnlRHzsLuOkSG9MGKYLhVV2YX6duWCmyetKdZ8+JpZXAv8buX0L oXW7G2fGG9wY8kJQkhBJjSF0sxuXrqvliR6uyjKVaFA0EcHi8gkdpPAGQysR/EXQ n3Do6KJ4AiIonlExGxEcoz6YaAE2dJTKIfyKd4s4ZF8XxxL2ho4Yi/XoXoJ68qo1 0+OBuaW9u03DvHD+c+LVP0hHbwuw0/20zsSk1Uc/ZfQm6KFcmI3YjSEZC1ydSQZL JBC6dmnyCFQO/DAdgysvUVpSKY9IGc3xI1XE/PsJzi0itGwP9F6R5FZDiRoiNEcc 3Z4Um3mjMiuyN3qZaUGzgmmEpypbUD4r1DxXlwSVmZluK3Meam2bk9WQkU8VdDcs qWRC6KTLQE5Qn/9JNekuHcV/a5G0rEJ+31QhYfClCGBiB8iXimc= =5Qvb -----END PGP SIGNATURE----- Reply to: debian-security-announce@lists.debian.org Moritz Muehlenhoff (on-list) Moritz Muehlenhoff (off-list) Prev by Date: [SECURITY] [DSA 6155-1] spip security update Previous by thread: [SECURITY] [DSA 6155-1] spip security update Index(es): Date Thread

Share this article