Red Hat Bugzilla – Bug 1529144
CVE-2017-17784 gimp: Heap-based buffer over-read in load_image function in plug-ins/common/file-gbr.c
Last modified: 2017-12-26 13:30:47 EST
In GIMP 2.8.22, there is a heap-based buffer over-read in load_image in plug-ins/common/file-gbr.c in the gbr import parser, related to mishandling of UTF-8 data. Upstream bug: https://bugzilla.gnome.org/show_bug.cgi?id=790784 Upstream patch: https://git.gnome.org/browse/gimp/commit/?id=c57f9dcf1934a9ab0cd67650f2dea18cb0902270 https://git.gnome.org/browse/gimp/commit/?id=06d24a79af94837d615d0024916bb95a01bf3c59
Created gimp tracking bugs for this issue: Affects: fedora-all [bug 1529149]