Important: gimp:2.8 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:5113", "synopsis": "Important: gimp:2.8 security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for module.pygtk2, module.python2-pycairo, python2-pycairo, pygobject2, module.pygobject2, module.gimp, gimp, pygtk2.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The GIMP (GNU Image Manipulation Program) is an image composition and editing program. GIMP provides a large image manipulation toolbox, including channel operations and layers, effects, sub-pixel imaging and anti-aliasing, and conversions, all with multi-level undo.\n\nSecurity Fix(es):\n\n* gimp: GIMP: Remote Code Execution via uninitialized memory in PGM file parsing (CVE-2026-2044)\n\n* gimp: GIMP: Remote Code Execution via out-of-bounds write in XWD file parsing (CVE-2026-2045)\n\n* gimp: GIMP: Remote Code Execution via ICO File Parsing Vulnerability (CVE-2026-0797)\n\n* gimp: GIMP: Remote Code Execution via XWD file parsing vulnerability (CVE-2026-2048)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "2441521", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2441521", "description": ""}, {"ticket": "2441522", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2441522", "description": ""}, {"ticket": "2441524", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2441524", "description": ""}, {"ticket": "2441527", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2441527", "description": ""}], "cves": [{"name":"CVE-2026-0797", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-0797", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "8.8", "cwe": "CWE-120"}, {"name": "CVE-2026-2044", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-2044", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "8.8", "cwe": "CWE-908"}, {"name": "CVE-2026-2045", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-2045", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.3", "cwe": "CWE-787"}, {"name": "CVE-2026-2048", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-2048", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.8", "cwe": "CWE-787"}], "references": [], "publishedAt": "2026-03-19T18:01:30.215085Z", "rpms": {"Rocky Linux 8": {"nvras": ["gimp-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm","gimp-devel-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.src.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.src.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.src.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.src.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm","gimp-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "pygobject2-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm","pygobject2-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.src.rpm", "pygobject2-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygobject2-codegen-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-codegen-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygobject2-debuginfo-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-debuginfo-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygobject2-debugsource-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-debugsource-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygobject2-devel-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-devel-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygobject2-doc-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-doc-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygtk2-0:2.24.0-25.module+el8.9.0+1723+9bc93544.aarch64.rpm", "pygtk2-0:2.24.0-25.module+el8.9.0+1723+9bc93544.src.rpm", "pygtk2-0:2.24.0-25.module+el8.9.0+1723+9bc93544.x86_64.rpm", "pygtk2-codegen-0:2.24.0-25.module+el8.9.0+1723+9bc93544.aarch64.rpm", "pygtk2-codegen-0:2.24.0-25.module+el8.9.0+1723+9bc93544.x86_64.rpm", "pygtk2-debuginfo-0:2.24.0-25.module+el8.9.0+1723+9bc93544.aarch64.rpm", "pygtk2-debuginfo-0:2.24.0-25.module+el8.9.0+1723+9bc93544.x86_64.rpm", "pygtk2-debugsource-0:2.24.0-25.module+el8.9.0+1723+9bc93544.aarch64.rpm", "pygtk2-debugsource-0:2.24.0-25.module+el8.9.0+1723+9bc93544.x86_64.rpm", "pygtk2-devel-0:2.24.0-25.module+el8.9.0+1723+9bc93544.aarch64.rpm", "pygtk2-devel-0:2.24.0-25.module+el8.9.0+1723+9bc93544.x86_64.rpm", "pygtk2-doc-0:2.24.0-25.module+el8.9.0+1723+9bc93544.noarch.rpm", "python2-cairo-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "python2-cairo-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "python2-cairo-debuginfo-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "python2-cairo-debuginfo-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.x86_64.rpm","python2-cairo-devel-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "python2-cairo-devel-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "python2-pycairo-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.src.rpm", "python2-pycairo-debugsource-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "python2-pycairo-debugsource-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Important gimp update for Rocky Linux patches remote code execution threats. Details on the vulnerabilities included.. gimp security, remote code execution, Rocky Linux update, image manipulation vulnerabilities, security fixes. . Severity: Important. LinuxSecurity.com Team
Important: gimp:2.8 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:5113", "synopsis": "Important: gimp:2.8 security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for module.pygtk2, module.python2-pycairo, python2-pycairo, pygobject2, module.pygobject2, module.gimp, gimp, pygtk2.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The GIMP (GNU Image Manipulation Program) is an image composition and editing program. GIMP provides a large image manipulation toolbox, including channel operations and layers, effects, sub-pixel imaging and anti-aliasing, and conversions, all with multi-level undo.\n\nSecurity Fix(es):\n\n* gimp: GIMP: Remote Code Execution via uninitialized memory in PGM file parsing (CVE-2026-2044)\n\n* gimp: GIMP: Remote Code Execution via out-of-bounds write in XWD file parsing (CVE-2026-2045)\n\n* gimp: GIMP: Remote Code Execution via ICO File Parsing Vulnerability (CVE-2026-0797)\n\n* gimp: GIMP: Remote Code Execution via XWD file parsing vulnerability (CVE-2026-2048)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "2441521", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2441521", "description": ""}, {"ticket": "2441522", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2441522", "description": ""}, {"ticket": "2441524", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2441524", "description": ""}, {"ticket": "2441527", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2441527", "description": ""}], "cves": [{"name":"CVE-2026-0797", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-0797", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "8.8", "cwe": "CWE-120"}, {"name": "CVE-2026-2044", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-2044", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "8.8", "cwe": "CWE-908"}, {"name": "CVE-2026-2045", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-2045", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.3", "cwe": "CWE-787"}, {"name": "CVE-2026-2048", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-2048", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.8", "cwe": "CWE-787"}], "references": [], "publishedAt": "2026-03-19T18:01:30.215085Z", "rpms": {"Rocky Linux 8": {"nvras": ["gimp-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.aarch64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.src.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.x86_64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.aarch64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.x86_64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.aarch64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.x86_64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.aarch64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.x86_64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.aarch64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.x86_64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.aarch64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.x86_64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.aarch64.rpm","gimp-libs-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.x86_64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.aarch64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.x86_64.rpm", "pygobject2-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.src.rpm", "pygobject2-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygobject2-codegen-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-codegen-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygobject2-debuginfo-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-debuginfo-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygobject2-debugsource-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-debugsource-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygobject2-devel-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-devel-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygobject2-doc-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-doc-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygtk2-0:2.24.0-25.module+el8.9.0+1723+9bc93544.aarch64.rpm", "pygtk2-0:2.24.0-25.module+el8.9.0+1723+9bc93544.src.rpm", "pygtk2-0:2.24.0-25.module+el8.9.0+1723+9bc93544.x86_64.rpm", "pygtk2-codegen-0:2.24.0-25.module+el8.9.0+1723+9bc93544.aarch64.rpm", "pygtk2-codegen-0:2.24.0-25.module+el8.9.0+1723+9bc93544.x86_64.rpm", "pygtk2-debuginfo-0:2.24.0-25.module+el8.9.0+1723+9bc93544.aarch64.rpm", "pygtk2-debuginfo-0:2.24.0-25.module+el8.9.0+1723+9bc93544.x86_64.rpm", "pygtk2-debugsource-0:2.24.0-25.module+el8.9.0+1723+9bc93544.aarch64.rpm", "pygtk2-debugsource-0:2.24.0-25.module+el8.9.0+1723+9bc93544.x86_64.rpm", "pygtk2-devel-0:2.24.0-25.module+el8.9.0+1723+9bc93544.aarch64.rpm", "pygtk2-devel-0:2.24.0-25.module+el8.9.0+1723+9bc93544.x86_64.rpm", "pygtk2-doc-0:2.24.0-25.module+el8.9.0+1723+9bc93544.noarch.rpm","python2-cairo-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "python2-cairo-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "python2-cairo-debuginfo-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "python2-cairo-debuginfo-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "python2-cairo-devel-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "python2-cairo-devel-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "python2-pycairo-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.src.rpm", "python2-pycairo-debugsource-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "python2-pycairo-debugsource-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.src.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.src.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.src.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.src.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm","gimp-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm","gimp-devel-tools-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. GIMP 2.8 update for Rocky Linux resolves critical security flaws to prevent remote code execution risks.. GIMP update Rocky Linux security patch remote code. . Severity: Important. LinuxSecurity.com Team
Important: gimp:2.8 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:5113", "synopsis": "Important: gimp:2.8 security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for module.pygtk2, module.python2-pycairo, python2-pycairo, pygobject2, module.pygobject2, module.gimp, gimp, pygtk2.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The GIMP (GNU Image Manipulation Program) is an image composition and editing program. GIMP provides a large image manipulation toolbox, including channel operations and layers, effects, sub-pixel imaging and anti-aliasing, and conversions, all with multi-level undo.\n\nSecurity Fix(es):\n\n* gimp: GIMP: Remote Code Execution via uninitialized memory in PGM file parsing (CVE-2026-2044)\n\n* gimp: GIMP: Remote Code Execution via out-of-bounds write in XWD file parsing (CVE-2026-2045)\n\n* gimp: GIMP: Remote Code Execution via ICO File Parsing Vulnerability (CVE-2026-0797)\n\n* gimp: GIMP: Remote Code Execution via XWD file parsing vulnerability (CVE-2026-2048)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "2441521", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2441521", "description": ""}, {"ticket": "2441522", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2441522", "description": ""}, {"ticket": "2441524", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2441524", "description": ""}, {"ticket": "2441527", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2441527", "description": ""}], "cves": [{"name":"CVE-2026-0797", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-0797", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "8.8", "cwe": "CWE-120"}, {"name": "CVE-2026-2044", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-2044", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "8.8", "cwe": "CWE-908"}, {"name": "CVE-2026-2045", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-2045", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.3", "cwe": "CWE-787"}, {"name": "CVE-2026-2048", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-2048", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.8", "cwe": "CWE-787"}], "references": [], "publishedAt": "2026-03-19T18:01:30.215085Z", "rpms": {"Rocky Linux 8": {"nvras": ["gimp-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.aarch64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.src.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.x86_64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.aarch64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.x86_64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.aarch64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.x86_64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.aarch64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.x86_64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.aarch64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.x86_64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.aarch64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.x86_64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.aarch64.rpm","gimp-libs-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.x86_64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.aarch64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+40134+eab491b1.5.x86_64.rpm", "pygobject2-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.src.rpm", "pygobject2-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygobject2-codegen-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-codegen-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygobject2-debuginfo-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-debuginfo-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygobject2-debugsource-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-debugsource-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygobject2-devel-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-devel-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygobject2-doc-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "pygobject2-doc-0:2.28.7-5.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "pygtk2-0:2.24.0-25.module+el8.9.0+1723+9bc93544.aarch64.rpm", "pygtk2-0:2.24.0-25.module+el8.9.0+1723+9bc93544.src.rpm", "pygtk2-0:2.24.0-25.module+el8.9.0+1723+9bc93544.x86_64.rpm", "pygtk2-codegen-0:2.24.0-25.module+el8.9.0+1723+9bc93544.aarch64.rpm", "pygtk2-codegen-0:2.24.0-25.module+el8.9.0+1723+9bc93544.x86_64.rpm", "pygtk2-debuginfo-0:2.24.0-25.module+el8.9.0+1723+9bc93544.aarch64.rpm", "pygtk2-debuginfo-0:2.24.0-25.module+el8.9.0+1723+9bc93544.x86_64.rpm", "pygtk2-debugsource-0:2.24.0-25.module+el8.9.0+1723+9bc93544.aarch64.rpm", "pygtk2-debugsource-0:2.24.0-25.module+el8.9.0+1723+9bc93544.x86_64.rpm", "pygtk2-devel-0:2.24.0-25.module+el8.9.0+1723+9bc93544.aarch64.rpm", "pygtk2-devel-0:2.24.0-25.module+el8.9.0+1723+9bc93544.x86_64.rpm", "pygtk2-doc-0:2.24.0-25.module+el8.9.0+1723+9bc93544.noarch.rpm","python2-cairo-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "python2-cairo-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "python2-cairo-debuginfo-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "python2-cairo-debuginfo-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "python2-cairo-devel-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "python2-cairo-devel-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "python2-pycairo-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.src.rpm", "python2-pycairo-debugsource-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "python2-pycairo-debugsource-0:1.16.3-7.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.src.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.src.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.src.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.src.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm","gimp-debugsource-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-debugsource-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-devel-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-devel-tools-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm","gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-devel-tools-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm", "gimp-libs-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.aarch64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.aarch64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.aarch64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.aarch64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+40075+a21479b4.4.x86_64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+1927+52edb5a0.x86_64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+1998+a08ccc48.2.x86_64.rpm", "gimp-libs-debuginfo-2:2.8.22-26.module+el8.10.0+40033+6fd27379.3.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. An important advisory for Rocky Linux regarding GIMP updates due to remote code execution flaws. Patching is essential.. Rocky Linux GIMP security updates code execution. . Severity: Important. LinuxSecurity.com Team
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-16313 http://linux.oracle.com/errata/ELSA-2025-16313.html The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: x86_64: ImageMagick-6.9.10.68-7.0.3.el7_9.i686.rpm ImageMagick-6.9.10.68-7.0.3.el7_9.x86_64.rpm ImageMagick-c++-6.9.10.68-7.0.3.el7_9.i686.rpm ImageMagick-c++-6.9.10.68-7.0.3.el7_9.x86_64.rpm ImageMagick-c++-devel-6.9.10.68-7.0.3.el7_9.i686.rpm ImageMagick-c++-devel-6.9.10.68-7.0.3.el7_9.x86_64.rpm ImageMagick-devel-6.9.10.68-7.0.3.el7_9.i686.rpm ImageMagick-devel-6.9.10.68-7.0.3.el7_9.x86_64.rpm ImageMagick-doc-6.9.10.68-7.0.3.el7_9.x86_64.rpm ImageMagick-perl-6.9.10.68-7.0.3.el7_9.x86_64.rpm SRPMS: http://oss.oracle.com/ol7/SRPMS-updates/ImageMagick-6.9.10.68-7.0.3.el7_9.src.rpm Related CVEs: CVE-2025-57803 Description of changes: [6.9.10.68-7.0.3] - Security update CVE-2025-57803 [Orabug: 38455460] [6.9.10.68-7.0.1] - Fix for CVE-2025-55154 [Orabug: 38417011] _______________________________________________ El-errata mailing list
Automatic update for ImageMagick-7.1.1.47-1.fc41. Changelog for ImageMagick * Sun Mar 30 2025 Packit - 1:7.1.1.47-1 - Update to version 7.1.1.47 - Resolves: rhbz#2356054. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-e2287efebb 2025-04-25 01:47:40.996703+00:00 -------------------------------------------------------------------------------- Name : ImageMagick Product : Fedora 41 Version : 7.1.1.47 Release : 1.fc41 URL : https://imagemagick.org/ Summary : An X application for displaying and manipulating images Description : ImageMagick is an image display and manipulation tool for the X Window System. ImageMagick can read and write JPEG, TIFF, PNM, GIF, and Photo CD image formats. It can resize, rotate, sharpen, color reduce, or add special effects to an image, and when finished you can either save the completed work in the original format or a different one. ImageMagick also includes command line programs for creating animated or transparent .gifs, creating composite images, creating thumbnail images, and more. ImageMagick is one of your choices if you need a program to manipulate and display images. If you want to develop your own applications which use ImageMagick code or APIs, you need to install ImageMagick-devel as well. -------------------------------------------------------------------------------- Update Information: Automatic update for ImageMagick-7.1.1.47-1.fc41. Changelog for ImageMagick * Sun Mar 30 2025 Packit - 1:7.1.1.47-1 - Update to version 7.1.1.47 - Resolves: rhbz#2356054 -------------------------------------------------------------------------------- ChangeLog: * Sun Mar 30 2025 Packit - 1:7.1.1.47-1 - Update to version 7.1.1.47 - Resolves: rhbz#2356054 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2356054 - ImageMagick-7.1.1.47 is available https://bugzilla.redhat.com/show_bug.cgi?id=2356054 [ 2 ] Bug #2361983 - CVE-2025-46393 ImageMagick: Incorrect Calculation of Buffer Size in ImageMagick's Multispectral MIFF Processing [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2361983 [ 3 ] Bug #2361986 - CVE-2025-43965 ImageMagick: Incorrect Handling of Image Depth in MIFF Processing in ImageMagick [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2361986 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-e2287efebb' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Upstream release. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2023-90ed807e04 2023-09-20 01:30:28.946871 -------------------------------------------------------------------------------- Name : libpano13 Product : Fedora 38 Version : 2.9.22 Release : 1.fc38 URL : Summary : Library for manipulating panoramic images Description : Helmut Dersch's Panorama Tools library. Provides very high quality manipulation, correction and stitching of panoramic photographs. -------------------------------------------------------------------------------- Update Information: Upstream release -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 11 2023 Bruno Postle - 2.9.22-1 - Upstream release * Thu Jul 20 2023 Fedora Release Engineering - 2.9.21-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-90ed807e04' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
Upstream release. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2023-f5a6136ac8 2023-09-20 01:05:47.011057 -------------------------------------------------------------------------------- Name : libpano13 Product : Fedora 37 Version : 2.9.22 Release : 1.fc37 URL : Summary : Library for manipulating panoramic images Description : Helmut Dersch's Panorama Tools library. Provides very high quality manipulation, correction and stitching of panoramic photographs. -------------------------------------------------------------------------------- Update Information: Upstream release -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 11 2023 Bruno Postle - 2.9.22-1 - Upstream release * Thu Jul 20 2023 Fedora Release Engineering - 2.9.21-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Thu Jan 19 2023 Fedora Release Engineering - 2.9.21-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild * Tue Jan 17 2023 Florian Weimer - 2.9.21-4 - C99 compatibility fix -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-f5a6136ac8' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
Multiple vulnerabilities were fixed in imagemagick, a software suite, used for editing and manipulating digital images. CVE-2021-20176 . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-3429-1
Get the latest Linux and open source security news straight to your inbox.