CVE-2022-30067: Buffer Overflow
GIMP 2.10.30 and 2.99.10 are vulnerable to Buffer Overflow. Through a crafted XCF file, the program will allocate for a huge amount of memory, resulting in insufficient memory or program crash.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2022-30067?
CVE-2022-30067 is a vulnerability that affects GIMP versions 2.10.30 and 2.99.10, where a crafted XCF file can cause a buffer overflow leading to insufficient memory or program crash.
What is the severity of CVE-2022-30067?
CVE-2022-30067 has a severity rating of medium, with a CVSS score of 5.5.
How does CVE-2022-30067 affect GIMP?
CVE-2022-30067 affects GIMP versions 2.10.30 and 2.99.10, causing a buffer overflow when processing a specially crafted XCF file.
What is the impact of CVE-2022-30067?
The impact of CVE-2022-30067 is the allocation of a large amount of memory, leading to insufficient memory or program crash.
Is there a fix for CVE-2022-30067?
Yes, upgrading to a patched version of GIMP is recommended to fix CVE-2022-30067.