[Git][security-tracker-team/security-tracker][master] Add CVE-2026-58380/gimp

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Jul 6 20:22:51 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
826927bd by Salvatore Bonaccorso at 2026-07-06T21:22:26+02:00
Add CVE-2026-58380/gimp

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -23,6 +23,9 @@ CVE-2026-59194 (pnpm is a package manager. Prior to 10.34.4 and 11.7.0, a crafte
 CVE-2026-59152 (LangSmith Client SDKs provide SDK's for interacting with the LangSmith ...)
 	TODO: check
 CVE-2026-58380 (A flaw was found in GIMP's PNM file format parser. When parsing a spec ...)
+	- gimp 3.2.4-1
+	NOTE: https://gitlab.gnome.org/GNOME/gimp/-/work_items/16206
+	NOTE: Fixed by: https://gitlab.gnome.org/GNOME/gimp/-/commit/8369981756fc2742226b79296fd1886156001d94 (GIMP_3_2_4)
 	TODO: check
 CVE-2026-58226 (Inefficient Algorithmic Complexity vulnerability in elixir-mint hpax a ...)
 	TODO: check



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/826927bdf5113f999b90a2efa6f963199aaeca4e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/826927bdf5113f999b90a2efa6f963199aaeca4e
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260706/e30f5803/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list