rpm package
almalinux/pygobject2
pkg:rpm/almalinux/pygobject2
Vulnerabilities (30)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-18307 | Hig | 7.8 | < 2.28.7-5.module_el8.10.0+4267+35168c80 | 2.28.7-5.module_el8.10.0+4267+35168c80 | Aug 20, 2026 | GIMP TIF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a | |
| CVE-2026-18306 | Hig | 7.8 | < 2.28.7-5.module_el8.10.0+4267+35168c80 | 2.28.7-5.module_el8.10.0+4267+35168c80 | Aug 20, 2026 | GIMP SGI File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious | |
| CVE-2026-18305 | Hig | 7.8 | < 2.28.7-5.module_el8.10.0+4267+35168c80 | 2.28.7-5.module_el8.10.0+4267+35168c80 | Aug 20, 2026 | GIMP TIF File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious | |
| CVE-2026-18304 | Hig | 7.8 | < 2.28.7-5.module_el8.10.0+4267+35168c80 | 2.28.7-5.module_el8.10.0+4267+35168c80 | Aug 20, 2026 | GIMP TIF File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious | |
| CVE-2026-18303 | Hig | 7.8 | < 2.28.7-5.module_el8.10.0+4267+35168c80 | 2.28.7-5.module_el8.10.0+4267+35168c80 | Aug 20, 2026 | GIMP TIF File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit | |
| CVE-2026-18301 | Hig | 7.8 | < 2.28.7-5.module_el8.10.0+4267+35168c80 | 2.28.7-5.module_el8.10.0+4267+35168c80 | Aug 20, 2026 | GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious | |
| CVE-2026-66758 | Hig | 7.8 | < 2.28.7-5.module_el8.10.0+4267+35168c80 | 2.28.7-5.module_el8.10.0+4267+35168c80 | Jul 27, 2026 | A flaw was found in the file-fits plugin in GIMP. When processing a FITS image file, the plugin calculates memory allocation sizes using signed 32-bit integers for width and height. If a crafted file sets both values to large values, their product exceeds 2^31 and overflows, resu | |
| CVE-2026-58380 | Hig | 7.3 | < 2.28.7-5.module_el8.10.0+4267+35168c80 | 2.28.7-5.module_el8.10.0+4267+35168c80 | Jul 6, 2026 | A flaw was found in GIMP's PNM file format parser. When parsing a specially crafted PNM file, the pnmscanner_gettoken() function writes a null terminator one byte past the end of a stack-allocated buffer due to an off-by-one error in the loop boundary check. This could lead to me | |
| CVE-2026-4154 | Hig | 7.8 | < 2.28.7-5.module_el8.10.0+4175+c208a0bf | 2.28.7-5.module_el8.10.0+4175+c208a0bf | Apr 11, 2026 | GIMP XPM File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious | |
| CVE-2026-4153 | Hig | 7.8 | < 2.28.7-5.module_el8.10.0+4175+c208a0bf | 2.28.7-5.module_el8.10.0+4175+c208a0bf | Apr 11, 2026 | GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a | |
| CVE-2026-4150 | Hig | 7.8 | < 2.28.7-5.module_el8.10.0+4175+c208a0bf | 2.28.7-5.module_el8.10.0+4175+c208a0bf | Apr 11, 2026 | GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious | |
| CVE-2026-4887 | Med | 6.1 | < 2.28.7-5.module_el8.10.0+4175+c208a0bf | 2.28.7-5.module_el8.10.0+4175+c208a0bf | Mar 26, 2026 | A flaw was found in GIMP. This issue is a heap buffer over-read in GIMP PCX file loader due to an off-by-one error. A remote attacker could exploit this by convincing a user to open a specially crafted PCX image. Successful exploitation could lead to out-of-bounds memory disclosu | |
| CVE-2026-2048 | Hig | 7.8 | < 2.28.7-5.module_el8.10.0+3952+571e801c | 2.28.7-5.module_el8.10.0+3952+571e801c | Feb 20, 2026 | GIMP XWD File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malici | |
| CVE-2026-2045 | Hig | 7.3 | < 2.28.7-5.module_el8.10.0+3952+571e801c | 2.28.7-5.module_el8.10.0+3952+571e801c | Feb 20, 2026 | GIMP XWD File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malici | |
| CVE-2026-2044 | Hig | 8.8 | < 2.28.7-5.module_el8.10.0+3952+571e801c | 2.28.7-5.module_el8.10.0+3952+571e801c | Feb 20, 2026 | GIMP PGM File Parsing Uninitialized Memory Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malic | |
| CVE-2026-0797 | Hig | 8.8 | < 2.28.7-5.module_el8.10.0+3952+571e801c | 2.28.7-5.module_el8.10.0+3952+571e801c | Feb 20, 2026 | GIMP ICO File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a | |
| CVE-2025-14422 | Hig | 7.8 | < 2.28.7-5.module_el8.10.0+3952+571e801c | 2.28.7-5.module_el8.10.0+3952+571e801c | Dec 23, 2025 | GIMP PNM File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious | |
| CVE-2025-10934 | Hig | 7.8 | < 2.28.7-5.module_el8.10.0+3952+571e801c | 2.28.7-5.module_el8.10.0+3952+571e801c | Oct 29, 2025 | GIMP XWD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a | |
| CVE-2025-10925 | Hig | 7.8 | < 2.28.7-5.module_el8.10.0+3952+571e801c | 2.28.7-5.module_el8.10.0+3952+571e801c | Oct 29, 2025 | GIMP ILBM File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit | |
| CVE-2025-10924 | Hig | 7.8 | < 2.28.7-5.module_el8.10.0+3952+571e801c | 2.28.7-5.module_el8.10.0+3952+571e801c | Oct 29, 2025 | GIMP FF File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious |
- affected < 2.28.7-5.module_el8.10.0+4267+35168c80fixed 2.28.7-5.module_el8.10.0+4267+35168c80
GIMP TIF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a
- affected < 2.28.7-5.module_el8.10.0+4267+35168c80fixed 2.28.7-5.module_el8.10.0+4267+35168c80
GIMP SGI File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious
- affected < 2.28.7-5.module_el8.10.0+4267+35168c80fixed 2.28.7-5.module_el8.10.0+4267+35168c80
GIMP TIF File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious
- affected < 2.28.7-5.module_el8.10.0+4267+35168c80fixed 2.28.7-5.module_el8.10.0+4267+35168c80
GIMP TIF File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious
- affected < 2.28.7-5.module_el8.10.0+4267+35168c80fixed 2.28.7-5.module_el8.10.0+4267+35168c80
GIMP TIF File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit
- affected < 2.28.7-5.module_el8.10.0+4267+35168c80fixed 2.28.7-5.module_el8.10.0+4267+35168c80
GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious
- affected < 2.28.7-5.module_el8.10.0+4267+35168c80fixed 2.28.7-5.module_el8.10.0+4267+35168c80
A flaw was found in the file-fits plugin in GIMP. When processing a FITS image file, the plugin calculates memory allocation sizes using signed 32-bit integers for width and height. If a crafted file sets both values to large values, their product exceeds 2^31 and overflows, resu
- affected < 2.28.7-5.module_el8.10.0+4267+35168c80fixed 2.28.7-5.module_el8.10.0+4267+35168c80
A flaw was found in GIMP's PNM file format parser. When parsing a specially crafted PNM file, the pnmscanner_gettoken() function writes a null terminator one byte past the end of a stack-allocated buffer due to an off-by-one error in the loop boundary check. This could lead to me
- affected < 2.28.7-5.module_el8.10.0+4175+c208a0bffixed 2.28.7-5.module_el8.10.0+4175+c208a0bf
GIMP XPM File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious
- affected < 2.28.7-5.module_el8.10.0+4175+c208a0bffixed 2.28.7-5.module_el8.10.0+4175+c208a0bf
GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a
- affected < 2.28.7-5.module_el8.10.0+4175+c208a0bffixed 2.28.7-5.module_el8.10.0+4175+c208a0bf
GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious
- affected < 2.28.7-5.module_el8.10.0+4175+c208a0bffixed 2.28.7-5.module_el8.10.0+4175+c208a0bf
A flaw was found in GIMP. This issue is a heap buffer over-read in GIMP PCX file loader due to an off-by-one error. A remote attacker could exploit this by convincing a user to open a specially crafted PCX image. Successful exploitation could lead to out-of-bounds memory disclosu
- affected < 2.28.7-5.module_el8.10.0+3952+571e801cfixed 2.28.7-5.module_el8.10.0+3952+571e801c
GIMP XWD File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malici
- affected < 2.28.7-5.module_el8.10.0+3952+571e801cfixed 2.28.7-5.module_el8.10.0+3952+571e801c
GIMP XWD File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malici
- affected < 2.28.7-5.module_el8.10.0+3952+571e801cfixed 2.28.7-5.module_el8.10.0+3952+571e801c
GIMP PGM File Parsing Uninitialized Memory Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malic
- affected < 2.28.7-5.module_el8.10.0+3952+571e801cfixed 2.28.7-5.module_el8.10.0+3952+571e801c
GIMP ICO File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a
- affected < 2.28.7-5.module_el8.10.0+3952+571e801cfixed 2.28.7-5.module_el8.10.0+3952+571e801c
GIMP PNM File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious
- affected < 2.28.7-5.module_el8.10.0+3952+571e801cfixed 2.28.7-5.module_el8.10.0+3952+571e801c
GIMP XWD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a
- affected < 2.28.7-5.module_el8.10.0+3952+571e801cfixed 2.28.7-5.module_el8.10.0+3952+571e801c
GIMP ILBM File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit
- affected < 2.28.7-5.module_el8.10.0+3952+571e801cfixed 2.28.7-5.module_el8.10.0+3952+571e801c
GIMP FF File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious
Page 1 of 2