Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
d00e59c7 by Salvatore Bonaccorso at 2026-01-31T13:41:01+01:00
Update status for CVE-2025-10925
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -47546,14 +47546,14 @@ CVE-2025-10858 (An issue was discovered in GitLab
CE/EE affecting all versions b
CVE-2025-10544 (Unrestricted file upload vulnerability in DocAve 6.13.2,
Perimeter 1.1 ...)
NOT-FOR-US: DocAve
CVE-2025-10925 (GIMP ILBM File Parsing Stack-based Buffer Overflow Remote Code
Executi ...)
- - gimp <unfixed> (unimportant)
+ - gimp 3.2.0~RC2-1 (unimportant)
[bookworm] - gimp <not-affected> (Vulnerable code not present)
[bullseye] - gimp <not-affected> (Vulnerable code not present)
NOTE: https://www.zerodayinitiative.com/advisories/ZDI-25-914/
NOTE: https://gitlab.gnome.org/GNOME/gimp/-/issues/14816
NOTE: https://gitlab.gnome.org/GNOME/gimp/-/merge_requests/2450
NOTE: Introduced after:
https://gitlab.gnome.org/GNOME/gimp/-/commit/222bef78c71ed8562a610f6863d56c0b3e2bef68
(GIMP_2_99_16)
- NOTE: Fixed by:
https://gitlab.gnome.org/GNOME/gimp/-/commit/002b22c15028b18557bd0823a081af9ed5316679
+ NOTE: Fixed by:
https://gitlab.gnome.org/GNOME/gimp/-/commit/002b22c15028b18557bd0823a081af9ed5316679
(GIMP_3_2_0_RC1)
NOTE: Building of optional Plug-In for Amiga IFF/ILBM not enabled.
CVE-2025-10924 (GIMP FF File Parsing Integer Overflow Remote Code Execution
Vulnerabil ...)
{DSA-6014-1}
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d00e59c7a5f941622758ae7c34a552c10261744f
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d00e59c7a5f941622758ae7c34a552c10261744f
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits