Alerts This Week
Warning Icon 1 640
Alerts This Week
Warning Icon 1 640

Debian: DSA-5939-1 gimp severe: denial of service, code execution

debian
Calendar Grey June 6, 2025
Debian Logo
Uncover significant weaknesses identified in GIMP that may result in system outages or allow for the execution of unauthorized commands.
Several vulnerabilities were discovered in GIMP, the GNU Image Manipulation Program, which could result in denial of service or potentially the execution of arbitrary code if malfo...

Summary

Several vulnerabilities were discovered in GIMP, the GNU Image
Manipulation Program, which could result in denial of service or
potentially the execution of arbitrary code if malformed XCF, TGA, DDS,
FLI or ICO files are opened.

For the stable distribution (bookworm), these problems have been fixed in
version 2.10.34-1+deb12u3.

We recommend that you upgrade your gimp packages.

For the detailed security status of gimp please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/gimp

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Package: gimp
CVE ID: CVE-2025-2760 CVE-2025-2761 CVE-2025-48797 CVE-2025-48798

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here