Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.1.10.2023.0346
Categoría:Mageia Linux Local Security Checks
Título:Mageia: Security Advisory (MGASA-2023-0346)
Resumen:The remote host is missing an update for the 'gegl, gimp' package(s) announced via the MGASA-2023-0346 advisory.
Descripción:Summary:
The remote host is missing an update for the 'gegl, gimp' package(s) announced via the MGASA-2023-0346 advisory.

Vulnerability Insight:
GIMP has been updated to version 2.10.36 to fix several security issues.
CVE-2023-44441: GIMP DDS File Parsing Heap-based Buffer Overflow Remote
Code Execution Vulnerability
CVE-2023-44442: GIMP PSD File Parsing Heap-based Buffer Overflow Remote
Code Execution Vulnerability
CVE-2023-44443: GIMP PSP File Parsing Integer Overflow Remote Code
Execution Vulnerability
CVE-2023-44444: GIMP PSP File Parsing Off-By-One Remote Code Execution
Vulnerability

Affected Software/OS:
'gegl, gimp' package(s) on Mageia 8, Mageia 9.

Solution:
Please install the updated package(s).

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:N

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2023-44441
ZDI-23-1592
https://www.zerodayinitiative.com/advisories/ZDI-23-1592/
vendor-provided URL
https://www.gimp.org/news/2023/11/07/gimp-2-10-36-released/
Common Vulnerability Exposure (CVE) ID: CVE-2023-44442
ZDI-23-1594
https://www.zerodayinitiative.com/advisories/ZDI-23-1594/
Common Vulnerability Exposure (CVE) ID: CVE-2023-44443
ZDI-23-1593
https://www.zerodayinitiative.com/advisories/ZDI-23-1593/
Common Vulnerability Exposure (CVE) ID: CVE-2023-44444
ZDI-23-1591
https://www.zerodayinitiative.com/advisories/ZDI-23-1591/
CopyrightCopyright (C) 2023 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.