Source: gimp Version: 2.8.14-1 Severity: normal Tags: security upstream Forwarded: https://bugzilla.gnome.org/show_bug.cgi?id=739134
Hi, the following vulnerability was published for gimp. CVE-2017-17786[0]: | In GIMP 2.8.22, there is a heap-based buffer over-read in ReadImage in | plug-ins/common/file-tga.c (related to bgr2rgb.part.1) via an | unexpected bits-per-pixel value for an RGBA image. If you fix the vulnerability please also make sure to include the CVE (Common Vulnerabilities & Exposures) id in your changelog entry. For further information see: [0] https://security-tracker.debian.org/tracker/CVE-2017-17786 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-17786 [1] https://bugzilla.gnome.org/show_bug.cgi?id=739134 Regards, Salvatore _______________________________________________ Secure-testing-team mailing list Secure-testing-team@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-team