ELA-1748-1 gimp security update

denial of service or potentially execution of code

2026-06-04
Packagegimp
Version2.8.18-1+deb9u10 (stretch)
Related CVEs CVE-2026-4150 CVE-2026-4153


Several vulnerabilities were discovered in GIMP, the GNU Image Manipulation Program, which could result in denial of service or potentially the execution of arbitrary code if malformed PSP or PSD files are opened.



For Debian 9 stretch, these problems have been fixed in version 2.8.18-1+deb9u10.

We recommend that you upgrade your gimp packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.