CVE-2007-2356
gimp
EPSS 41.0%
Description
Stack-based buffer overflow in the set_color_table function in sunras.c in the SUNRAS plugin in Gimp 2.2.14 allows user-assisted remote attackers to execute arbitrary code via a crafted RAS file.
How to fix CVE-2007-2356
To remediate CVE-2007-2356, upgrade the affected package to a fixed version below.
- Debian/gimp—upgrade to 2.2.14-2 or later
- Debian/gimp—upgrade to 2.2.6-1sarge2 or later
Is CVE-2007-2356 being exploited?
Moderate — EPSS is 41.0%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (2)
- from 0, < 2.2.14-2
- from 0, < 2.2.6-1sarge2