New krita packages are available for Slackware 15.0 to fix a security issue.. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [slackware-security] krita (SSA:2026-093-02) New krita packages are available for Slackware 15.0 to fix a security issue. Here are the details from the Slackware 15.0 ChangeLog: +--------------------------+ patches/packages/krita-5.0.2-i586-3_slack15.0.txz: Rebuilt. This update fixes a security issue: Heap-based buffer overflow when parsing TGA files. Thanks to pbslxw for the heads-up. For more information, see: https://kde.org/info/security/advisory-20250929-1.txt https://www.cve.org/CVERecord?id=CVE-2025-59820 (* Security fix *) +--------------------------+ Where to find the new packages: +-----------------------------+ Thanks to the friendly folks at the OSU Open Source Lab (http://osuosl.org) for donating FTP and rsync hosting to the Slackware project! :-) Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you. Updated package for Slackware 15.0: ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/krita-5.0.2-i586-3_slack15.0.txz Updated package for Slackware x86_64 15.0: ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/krita-5.0.2-x86_64-3_slack15.0.txz MD5 signatures: +-------------+ Slackware 15.0 package: e6c6a2224f180c85bf081ba93ab19e61 krita-5.0.2-i586-3_slack15.0.txz Slackware x86_64 15.0 package: 6de3b2e0ed7da333bdb77eab98c1331a krita-5.0.2-x86_64-3_slack15.0.txz Installation instructions: +------------------------+ Upgrade the package as root: # upgradepkg krita-5.0.2-i586-3_slack15.0.txz +-----+ . Krita packages for Slackware 15.0 are updated to fix a critical heap-based buffer overflow issue that could lead to security risks.. Krita Security Update, Slackware 15.0 Advisory, Heap Buffer Overflow. . Severity: Critical. LinuxSecurity.com Team
Loading a manipulated TGA file in krita, an image manipulation program, could result in a heap-based buffer overflow in KisTgaImport. . ------------------------------------------------------------------------- Debian LTS Advisory DLA-4395-1
An update that solves one vulnerability can now be installed.. # krita-5.2.13-1.1 on GA media Announcement ID: openSUSE-SU-2025:15577-1 Rating: moderate Cross-References: * CVE-2025-59820 Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the krita-5.2.13-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * krita 5.2.13-1.1 * krita-devel 5.2.13-1.1 * krita-lang 5.2.13-1.1 ## References: * https://www.suse.com/security/cve/CVE-2025-59820.html . Krita-5.2.13-1.1 on openSUSE Tumbleweed fixed moderate severity issues with CVE-2025-59820; install updates now!. openSUSE Tumbleweed, Krita update, security issues, system vulnerability. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.