[CLSA-2026:1773655369] gimp: Fix of 4 CVEs
Type:
security
Severity:
Important
Release date:
2026-03-16 12:49:29 UTC
Description:
- CVE-2026-2044: fix uninitialized memory read in PGM file parser - CVE-2026-2045: fix heap buffer overflow in XWD file loader - CVE-2026-2048: fix out-of-bounds write in XWD file loader - CVE-2026-0797: fix missing fread return value checks in ICO file loader
Updated packages:
  • gimp-2.99.8-4.el9_6.2.tuxcare.els5.x86_64.rpm
    sha:ea46c99c497fd462329cafa2b80f65b90c1d8f743bfb3126238ffe8e62527f84
  • gimp-devel-2.99.8-4.el9_6.2.tuxcare.els5.x86_64.rpm
    sha:c09cb689dedb1e42dedf4d7e4df93d83c987e0712a30eb216aed09831ea8e868
  • gimp-devel-tools-2.99.8-4.el9_6.2.tuxcare.els5.x86_64.rpm
    sha:10153a323b2dff96138afe5568c0a1a5812d5a36cea5bf6dac52294add9b8583
  • gimp-libs-2.99.8-4.el9_6.2.tuxcare.els5.i686.rpm
    sha:ffe720b89aa02d033336beed739ed0dc89a8560d10ded667313bec8bf6b8e95d
  • gimp-libs-2.99.8-4.el9_6.2.tuxcare.els5.x86_64.rpm
    sha:d321d6269c04e05e3e354eb95770a5af8a140c8a76f1182c2ed61c6a787db2ee
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.