load_cache in GEGL before 0.4.34 allows shell expansion when a pathname in a constructed command line is not escaped or filtered. This is caused by use of the system library function for execution of the ImageMagick convert fallback in magick-load. NOTE: GEGL releases before 0.4.34 are used in GIMP releases before 2.10.30; however, this does not imply that GIMP builds enable the vulnerable feature.
[
{
"target": {
"file": "operations/common/magick-load.c"
},
"digest": {
"line_hashes": [
"204656693516598797247944687334630417858",
"205331999004398618638246065926072621471",
"228401211117260601025838507140243530877",
"128084200600833044840767920327319656820",
"229353021992037806657788438028261732048",
"277025921432043170450961430521714974645",
"212021369364349033691515206338755461274",
"42701105836285997329738907707896860258",
"95804032509790756066560248792450264421",
"150580133441633138264085914028941774675",
"129882534599325522544587683728747787904",
"229691599292752779220264139035702382086",
"243679414377773392827599810021157269145",
"187515048314288443767184081863520467544",
"140017922328239657363293799199866067736"
],
"threshold": 0.9
},
"signature_version": "v1",
"source": "https://gitlab.gnome.org/GNOME/gegl@bfce470f0f2f37968862129d5038b35429f2909b",
"deprecated": false,
"signature_type": "Line",
"id": "CVE-2021-45463-545bf2e7"
},
{
"target": {
"function": "load_cache",
"file": "operations/common/magick-load.c"
},
"digest": {
"length": 710.0,
"function_hash": "280631963024744360037893231292509707580"
},
"signature_version": "v1",
"source": "https://gitlab.gnome.org/GNOME/gegl@bfce470f0f2f37968862129d5038b35429f2909b",
"deprecated": false,
"signature_type": "Function",
"id": "CVE-2021-45463-c5a1f042"
}
]
[
{
"target": {
"function": "goat_load",
"file": "plug-ins/common/file-gegl.c"
},
"digest": {
"length": 406.0,
"function_hash": "232567990407567124372225211955018739781"
},
"signature_version": "v1",
"source": "https://gitlab.gnome.org/GNOME/gimp@e8a31ba4f2ce7e6bc34882dc27c97fba993f5868",
"deprecated": false,
"signature_type": "Function",
"id": "CVE-2021-45463-5ae9f593"
},
{
"target": {
"function": "goat_save",
"file": "plug-ins/common/file-gegl.c"
},
"digest": {
"length": 1095.0,
"function_hash": "325602421300498487202634313381657981326"
},
"signature_version": "v1",
"source": "https://gitlab.gnome.org/GNOME/gimp@e8a31ba4f2ce7e6bc34882dc27c97fba993f5868",
"deprecated": false,
"signature_type": "Function",
"id": "CVE-2021-45463-64911cc2"
},
{
"target": {
"function": "load_image",
"file": "plug-ins/common/file-gegl.c"
},
"digest": {
"length": 2677.0,
"function_hash": "220066541736347867209311728067584543521"
},
"signature_version": "v1",
"source": "https://gitlab.gnome.org/GNOME/gimp@e8a31ba4f2ce7e6bc34882dc27c97fba993f5868",
"deprecated": false,
"signature_type": "Function",
"id": "CVE-2021-45463-a763ccce"
},
{
"target": {
"file": "plug-ins/common/file-gegl.c"
},
"digest": {
"line_hashes": [
"272355342410279859200826449940732078216",
"324400641763123594579210667561706815373",
"235505275591528674691157382777669610340",
"215824229624990727436204877334804017392",
"181589116391935387571594862115903002932",
"279465298659772877855523181035851941811",
"334341149011514124079492006720996730189",
"317030243397957380348600845567091220239",
"54424063384633919811258116659936780285",
"92998827775754452642798917802355732074",
"194932751598075961106514575301898891341",
"318786257860524084384494445960337263874",
"289138753077097370229557165962101892854",
"24863878829336642332148864407896463737",
"335864620174623435181102889705911347865",
"212599900754437769694055468349206947140",
"318117430156887949656114466621380106341",
"81360032140243083960943025747048761786",
"157418235021329835352358433129639248562",
"321310820852474849479991814631385176602",
"115012443917198528407241006097493931500",
"47173065112754956769934608677630296064",
"59420160105179762507729431794242463734",
"288493376445613227417009495093694473638",
"214088543806392939212070825383719589400",
"33689843734907134598701751413783625246",
"220342008517660425405062078147346592113",
"144395637085529591303603678045860380667",
"29947780552631738547556174106330106120",
"262703065364262072953933543703953177562",
"271736429866693375991702996492175954928",
"4807296305166374992204834111740800583",
"99467678680880245147391170983675341849",
"57431013448229491917792384876134377358",
"6530549309846771520116362263691968041",
"116054503070981095299400209565211261503",
"38354132420779939999267953934731745871",
"158883592015470921037188804759709653265",
"265108779084176093252823803114582457551",
"277476885363283269475407040529590529150",
"109175038096058314839869500804619486794",
"187264887567532893245228710209294774963",
"232448609230946971671442622550773520556",
"153721642834316080960014703264218891922",
"175373228955969771784033446084672707265",
"163452849989639564698913566641238463334",
"172709241644344740961671989268748148711",
"328759954698707742257083527056416596916",
"136446029032000232400191303087623791045",
"108067668611992499637184986294257872038",
"258816244616607520829607895406153354415",
"214364533003955601603654637650747066583",
"316174101673895719567079115638092316751",
"67819920075577049609648579443451550455",
"316212450106252100294399902419568501658",
"324967466155000942719537488793828467078",
"266007541595927864595621828431183211916",
"336016390179506323133132871787641020029",
"187807664928611604160508634214980051427",
"318057149261586649519745373904696255765",
"250716165746099866005971001251423461849"
],
"threshold": 0.9
},
"signature_version": "v1",
"source": "https://gitlab.gnome.org/GNOME/gimp@e8a31ba4f2ce7e6bc34882dc27c97fba993f5868",
"deprecated": false,
"signature_type": "Line",
"id": "CVE-2021-45463-bc9db6c2"
},
{
"target": {
"function": "save_image",
"file": "plug-ins/common/file-gegl.c"
},
"digest": {
"length": 490.0,
"function_hash": "183386392641819766480614366880294978864"
},
"signature_version": "v1",
"source": "https://gitlab.gnome.org/GNOME/gimp@e8a31ba4f2ce7e6bc34882dc27c97fba993f5868",
"deprecated": false,
"signature_type": "Function",
"id": "CVE-2021-45463-fe289a83"
}
]