CVE-2010-4543
Publication date 7 January 2011
Last updated 24 July 2024
Ubuntu priority
Heap-based buffer overflow in the read_channel_data function in file-psp.c in the Paint Shop Pro (PSP) plugin in GIMP 2.6.11 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a PSP_COMP_RLE (aka RLE compression) image file that begins a long run count at the end of the image. NOTE: some of these details are obtained from third party information.
Status
Package | Ubuntu Release | Status |
---|---|---|
gimp | 10.10 maverick |
Fixed 2.6.10-1ubuntu3.2
|
10.04 LTS lucid |
Fixed 2.6.8-2ubuntu1.2
|
|
9.10 karmic |
Fixed 2.6.7-1ubuntu1.2
|
|
8.04 LTS hardy |
Fixed 2.4.5-1ubuntu2.3
|
|
6.06 LTS dapper | Ignored end of life |
References
Related Ubuntu Security Notices (USN)
- USN-1109-1
- GIMP vulnerabilities
- 13 April 2011