Important: gdk-pixbuf2 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:10741", "synopsis": "Important: gdk-pixbuf2 security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for gdk-pixbuf2.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The gdk-pixbuf2 packages provide an image loading library that can be extended by loadable modules for new image formats. It is used by toolkits such as GTK+ or clutter.\n\nSecurity Fix(es):\n\n* gdk-pixbuf: gdk-pixbuf: Denial of Service via heap-based buffer overflow when processing a specially crafted JPEG image (CVE-2026-5201)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "2453291", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2453291", "description": ""}], "cves": [{"name": "CVE-2026-5201", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-5201", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-122"}], "references": [], "publishedAt": "2026-04-28T06:00:41.703152Z", "rpms": {"Rocky Linux 8": {"nvras": ["gdk-pixbuf2-0:2.36.12-8.el8_10.aarch64.rpm", "gdk-pixbuf2-0:2.36.12-8.el8_10.i686.rpm", "gdk-pixbuf2-0:2.36.12-8.el8_10.src.rpm", "gdk-pixbuf2-0:2.36.12-8.el8_10.x86_64.rpm", "gdk-pixbuf2-debuginfo-0:2.36.12-8.el8_10.aarch64.rpm", "gdk-pixbuf2-debuginfo-0:2.36.12-8.el8_10.i686.rpm", "gdk-pixbuf2-debuginfo-0:2.36.12-8.el8_10.x86_64.rpm", "gdk-pixbuf2-debugsource-0:2.36.12-8.el8_10.aarch64.rpm", "gdk-pixbuf2-debugsource-0:2.36.12-8.el8_10.i686.rpm", "gdk-pixbuf2-debugsource-0:2.36.12-8.el8_10.x86_64.rpm","gdk-pixbuf2-devel-0:2.36.12-8.el8_10.aarch64.rpm", "gdk-pixbuf2-devel-0:2.36.12-8.el8_10.i686.rpm", "gdk-pixbuf2-devel-0:2.36.12-8.el8_10.x86_64.rpm", "gdk-pixbuf2-devel-debuginfo-0:2.36.12-8.el8_10.aarch64.rpm", "gdk-pixbuf2-devel-debuginfo-0:2.36.12-8.el8_10.i686.rpm", "gdk-pixbuf2-devel-debuginfo-0:2.36.12-8.el8_10.x86_64.rpm", "gdk-pixbuf2-modules-0:2.36.12-8.el8_10.aarch64.rpm", "gdk-pixbuf2-modules-0:2.36.12-8.el8_10.i686.rpm", "gdk-pixbuf2-modules-0:2.36.12-8.el8_10.x86_64.rpm", "gdk-pixbuf2-modules-debuginfo-0:2.36.12-8.el8_10.aarch64.rpm", "gdk-pixbuf2-modules-debuginfo-0:2.36.12-8.el8_10.i686.rpm", "gdk-pixbuf2-modules-debuginfo-0:2.36.12-8.el8_10.x86_64.rpm", "gdk-pixbuf2-xlib-0:2.36.12-8.el8_10.aarch64.rpm", "gdk-pixbuf2-xlib-0:2.36.12-8.el8_10.i686.rpm", "gdk-pixbuf2-xlib-0:2.36.12-8.el8_10.x86_64.rpm", "gdk-pixbuf2-xlib-debuginfo-0:2.36.12-8.el8_10.aarch64.rpm", "gdk-pixbuf2-xlib-debuginfo-0:2.36.12-8.el8_10.i686.rpm", "gdk-pixbuf2-xlib-debuginfo-0:2.36.12-8.el8_10.x86_64.rpm", "gdk-pixbuf2-xlib-devel-0:2.36.12-8.el8_10.aarch64.rpm", "gdk-pixbuf2-xlib-devel-0:2.36.12-8.el8_10.i686.rpm", "gdk-pixbuf2-xlib-devel-0:2.36.12-8.el8_10.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. An important gdk-pixbuf2 security update for Rocky Linux addresses a denial of service issue related to JPEG images.. gdk-pixbuf2 update, Rocky Linux security, denial of service, image loading library. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.