In GIMP 2.8.22, there is a heap-based buffer overflow in read_channel_data in plug-ins/common/file-psp.c. Upstream bug: https://bugzilla.gnome.org/show_bug.cgi?id=790849 Upstream patch: https://git.gnome.org/browse/GIMP/commit/?id=28e95fbeb5720e6005a088fa811f5bf3c1af48b8 https://git.gnome.org/browse/GIMP/commit/?id=01898f10f87a094665a7fdcf7153990f4e511d3f
Created gimp tracking bugs for this issue: Affects: fedora-all [bug 1529149]