A flaw was found in GIMP. This vulnerability, a heap buffer over-read in the icns_slurp() function, occurs when processing specially crafted ICNS image files. An attacker could provide a malicious ICNS file, potentially leading to application crashes or information disclosure on systems that process such files.
{
"binaries": [
{
"binary_name": "gimp",
"binary_version": "3.0.4-6.1"
},
{
"binary_name": "gimp-data",
"binary_version": "3.0.4-6.1"
},
{
"binary_name": "gir1.2-gimp-3.0",
"binary_version": "3.0.4-6.1"
},
{
"binary_name": "libgimp-3.0-0",
"binary_version": "3.0.4-6.1"
},
{
"binary_name": "libgimp-3.0-bin",
"binary_version": "3.0.4-6.1"
}
]
}