REDHAT-BUG-838941: Buffer Overflow
A heap-based buffer overflow flaw was found in the way Adobe Photoshop(tm) PSD plug-in of Gimp, the GNU Image Manipulation Program, performed decoding of headers, when loading certain Adobe Photoshop image files. A remote attacker could provide a specially-crafted PSD image file that, when opened in Gimp would lead to PSD plug-in crash or, potentially, arbitrary code execution with the privileges of the user running gimp executable.
This issue was found by Jan Lieskovsky of the Red Hat Security Response Team
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-838941?
The severity of REDHAT-BUG-838941 is categorized as critical due to the potential for remote code execution.
How do I fix REDHAT-BUG-838941?
To fix REDHAT-BUG-838941, update GIMP to the latest version provided by your distribution which contains the security patch.
What type of vulnerability is REDHAT-BUG-838941?
REDHAT-BUG-838941 is a heap-based buffer overflow vulnerability found in the Adobe Photoshop PSD plug-in of GIMP.
Who is affected by REDHAT-BUG-838941?
Users of GIMP who load certain Adobe Photoshop image files are affected by REDHAT-BUG-838941.
Can REDHAT-BUG-838941 be exploited remotely?
Yes, a remote attacker can exploit REDHAT-BUG-838941 by crafting a malicious PSD file that triggers the vulnerability.