Integer overflow in the seek_to_and_unpack_pixeldata function in the psd.c plugin in Gimp 2.2.15 allows remote attackers to execute arbitrary code via a crafted PSD file that contains a large (1) width or (2) height value.

Subscriptions

Vendors Products
Canonical Subscribe
Ubuntu Linux Subscribe
Enterprise Linux Subscribe

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-1335-1 New gimp packages fix arbitrary code execution
Ubuntu USN Ubuntu USN USN-480-1 Gimp vulnerability
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

References
Link Providers
http://issues.foresightlinux.org/browse/FL-457 cve-icon cve-icon
http://osvdb.org/37804 cve-icon cve-icon
http://secunia.com/advisories/25677 cve-icon cve-icon
http://secunia.com/advisories/25949 cve-icon cve-icon
http://secunia.com/advisories/26044 cve-icon cve-icon
http://secunia.com/advisories/26132 cve-icon cve-icon
http://secunia.com/advisories/26215 cve-icon cve-icon
http://secunia.com/advisories/26384 cve-icon cve-icon
http://secunia.com/advisories/26575 cve-icon cve-icon
http://secunia.com/advisories/26939 cve-icon cve-icon
http://secunia.com/advisories/28114 cve-icon cve-icon
http://secunia.com/secunia_research/2007-63/advisory/ cve-icon cve-icon
http://security.gentoo.org/glsa/glsa-200707-09.xml cve-icon cve-icon
http://sunsolve.sun.com/search/document.do?assetkey=1-26-103170-1 cve-icon cve-icon
http://sunsolve.sun.com/search/document.do?assetkey=1-66-201320-1 cve-icon cve-icon
http://svn.gnome.org/viewcvs/gimp?view=revision&revision=22798 cve-icon cve-icon
http://www.debian.org/security/2007/dsa-1335 cve-icon cve-icon
http://www.kb.cert.org/vuls/id/399896 cve-icon cve-icon
http://www.mandriva.com/security/advisories?name=MDKSA-2007:170 cve-icon cve-icon
http://www.novell.com/linux/security/advisories/2007_15_sr.html cve-icon cve-icon
http://www.redhat.com/support/errata/RHSA-2007-0513.html cve-icon cve-icon
http://www.securityfocus.com/bid/24745 cve-icon cve-icon
http://www.slackware.org/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.360191 cve-icon cve-icon
http://www.ubuntu.com/usn/usn-480-1 cve-icon cve-icon
http://www.vupen.com/english/advisories/2007/2421 cve-icon cve-icon
http://www.vupen.com/english/advisories/2007/4241 cve-icon cve-icon
https://exchange.xforce.ibmcloud.com/vulnerabilities/35246 cve-icon cve-icon
https://issues.rpath.com/browse/RPL-1487 cve-icon cve-icon
https://nvd.nist.gov/vuln/detail/CVE-2007-2949 cve-icon
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11276 cve-icon cve-icon
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5772 cve-icon cve-icon
https://www.cve.org/CVERecord?id=CVE-2007-2949 cve-icon
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: flexera

Published:

Updated: 2024-08-07T13:57:54.632Z

Reserved: 2007-05-31T00:00:00.000Z

Link: CVE-2007-2949

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2007-07-04T15:30:00.000

Modified: 2025-04-09T00:30:58.490

Link: CVE-2007-2949

cve-icon Redhat

Severity : Moderate

Publid Date: 2007-06-27T00:00:00Z

Links: CVE-2007-2949 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses