GIMP是GIMP组织开源的一款开源的位图图像编辑器。 GIMP存在数字错误漏洞,该漏洞源于PSD解析器中read_RLE_channel()函数存在整数溢出,导致堆分配不足,后续逐行写入可能破坏堆内存,进而可能导致内存损坏,造成拒绝服务或任意代码执行。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 6 | any |
unaffected |
| Red Hat | Red Hat Enterprise Linux 7 | any |
unaffected |
| Red Hat | Red Hat Enterprise Linux 8 | any |
unaffected |
| Red Hat | Red Hat Enterprise Linux 9 | 2:3.0.4-4.el9_8.7< * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 9 | 2:3.0.4-4.el9_8.7 ~ * |
cpe:/a:redhat:enterprise_linux:9::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 6 | - |
cpe:/o:redhat:enterprise_linux:6
|
|
| Red Hat | Red Hat Enterprise Linux 7 | - |
cpe:/o:redhat:enterprise_linux:7
|
|
| Red Hat | Red Hat Enterprise Linux 8 | - |
cpe:/o:redhat:enterprise_linux:8
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-14474 | 8.8 HIGH | Sssd: sssd: sudo ldap provider searches entire directory tree for sudorole objects by defa |
| CVE-2026-14476 | 8.0 HIGH | Sssd: sssd: gpo cache path traversal via unsanitized gpcfilesyspath allows kerberos authen |
| CVE-2025-12799 | 6.5 MEDIUM | Jastow: jastow cross-site scripting attack due to unsanitized uri |
| CVE-2026-14940 | 5.3 MEDIUM | 389-ds-base: 389-ds-base: heap-buffer-overflow in dn normalization via quoted multivalued |
| CVE-2026-14969 | 4.4 MEDIUM | 389-ds-base: 389-ds-base: static initialization vector in aes-cbc/3des-cbc attribute encry |
| CVE-2026-14935 | 3.7 LOW | Gstreamer1-plugins-bad-free: gstreamer: webrtcbin accepts remote sdp without a=fingerprint |
No comments yet