In GIMP 2.8.22, there is a heap-based buffer over-read in load_image in plug-ins/common/file-gbr.c in the gbr import parser, related to mishandling of UTF-8 data.
References
Link Resource
http://www.openwall.com/lists/oss-security/2017/12/19/5 Mailing List Third Party Advisory
http://www.securityfocus.com/bid/102899 Third Party Advisory VDB Entry
https://bugzilla.gnome.org/show_bug.cgi?id=790784 Issue Tracking Third Party Advisory
https://lists.debian.org/debian-lts-announce/2017/12/msg00023.html Mailing List Third Party Advisory
https://usn.ubuntu.com/3539-1/ Third Party Advisory
https://www.debian.org/security/2017/dsa-4077 Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2017-12-20T09:00:00

Updated: 2018-05-01T09:57:01

Reserved: 2017-12-20T00:00:00


Link: CVE-2017-17784

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2017-12-20T09:29:00.880

Modified: 2022-02-07T19:00:30.443


Link: CVE-2017-17784

JSON object: View

cve-icon Redhat Information

No data.

CWE