Vulnerability Bulletins

DSA-3612 gimp - security update

   
Affected software Debian
 
Shmuel H discovered that GIMP, the GNU Image Manipulation Program, isprone to a use-after-free vulnerability in the channel and layerproperties parsing process when loading a XCF file. An attacker can takeadvantage of this flaw to potentially execute arbitrary code with theprivileges of the user running GIMP if a specially crafted XCF file isprocessed.

More info:

https://www.debian.org/security/2016/dsa-3612