CVE-2017-17789: Buffer Overflow
In GIMP 2.8.22, there is a heap-based buffer overflow in readchanneldata in plug-ins/common/file-psp.c.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2017-17789?
CVE-2017-17789 is a vulnerability in GIMP 2.8.22 that allows a heap-based buffer overflow in read_channel_data in plug-ins/common/file-psp.c.
What is the severity of CVE-2017-17789?
The severity of CVE-2017-17789 is high with a CVSS score of 7.8.
How does CVE-2017-17789 impact GIMP?
CVE-2017-17789 can potentially lead to a heap-based buffer overflow, which may allow attackers to execute arbitrary code or cause a denial of service on an affected system running GIMP 2.8.22.
Which versions of GIMP are affected by CVE-2017-17789?
GIMP versions 2.8.22 and below are affected by CVE-2017-17789.
How can I fix the CVE-2017-17789 vulnerability in GIMP?
To fix the CVE-2017-17789 vulnerability in GIMP, it is recommended to upgrade to version 2.10.8 or later, or apply the specific remedies mentioned for your operating system and package manager.