First published: Tue Jul 10 2012(Updated: )
A heap-based buffer overflow flaw was found in the way Adobe Photoshop(tm) PSD plug-in of Gimp, the GNU Image Manipulation Program, performed decoding of headers, when loading certain Adobe Photoshop image files. A remote attacker could provide a specially-crafted PSD image file that, when opened in Gimp would lead to PSD plug-in crash or, potentially, arbitrary code execution with the privileges of the user running gimp executable. This issue was found by Jan Lieskovsky of the Red Hat Security Response Team
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Photoshop | ||
GIMP |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-838941 is categorized as critical due to the potential for remote code execution.
To fix REDHAT-BUG-838941, update GIMP to the latest version provided by your distribution which contains the security patch.
REDHAT-BUG-838941 is a heap-based buffer overflow vulnerability found in the Adobe Photoshop PSD plug-in of GIMP.
Users of GIMP who load certain Adobe Photoshop image files are affected by REDHAT-BUG-838941.
Yes, a remote attacker can exploit REDHAT-BUG-838941 by crafting a malicious PSD file that triggers the vulnerability.