Debian Patches

Status for gimp/3.2.0~RC2-3.1

Patch Description Author Forwarded Bugs Origin Last update
devel-docs-Use-API-version-not-app-version-for-install-lo.patch devel-docs: Use API version not app version for install location
In other words, 3.0 instead of 3.2
Jeremy BĂ­cha <jbicha@debian.org> yes 2025-12-05
plug-ins-fix-15284-ZDI-CAN-28232-vulnerability-in-fi.patch plug-ins: fix #15284 ZDI-CAN-28232 vulnerability in file-psp
We were not checking whether channel types were valid for grayscale
images. Using a blue color channel caused an invalid computation of
the offset which could cause us to access an invalid memory location.

Now we separate RGB from non-RGB images when checking which channels
are valid, and if not return with an error.
Jacob Boerema <jgboerema@gmail.com> yes debian upstream https://gitlab.gnome.org/GNOME/gimp/-/commit/03575ac8cbb0ef3103b0a15d6598475088dcc15e 2025-12-20

All known versions for source package 'gimp'

Links