Logo
vulnerabilityCVE-2022-30067
Name
CVE-2022-30067
Source
NVD ( link)Debian ( link)
Description
GIMP 2.10.30 and 2.99.10 are vulnerable to Buffer Overflow. Through a crafted XCF file, the program will allocate for a huge amount of memory, resulting in insufficient memory or program crash.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
gimp
Patched

Vulnerability Ratings#


5.5
CVSSv31
4.3
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
yocto
master
3.2.4
Not Affected
yocto
scarthgap
2.10.38
Not Affected

Resolved with patches#


gimp (yocto:kirkstone)

#
Title
Author
Resolve
1
app: fix #8120 GIMP 2.10.30 crashed when allocate large
Jacob Boerema <jgboerema@gmail.com>
CVE-2022-30067