-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 16 Feb 2026 17:20:06 +0100 Source: gimp Binary: gimp gimp-dbgsym libgimp2.0 libgimp2.0-dbgsym libgimp2.0-dev libgimp2.0-dev-dbgsym Architecture: s390x Version: 2.10.34-1+deb12u8 Distribution: bookworm-security Urgency: high Maintainer: s390x Build Daemon (zani) Changed-By: Salvatore Bonaccorso Description: gimp - GNU Image Manipulation Program libgimp2.0 - Libraries for the GNU Image Manipulation Program libgimp2.0-dev - Headers and other files for compiling plugins for GIMP Closes: 1127838 1127841 1127842 Changes: gimp (2.10.34-1+deb12u8) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * plug-ins: fix PSD loader: heap-buffer-overflow in fread_pascal_string (CVE-2026-2239) (Closes: #1127838) * Fix PSP File Parsing Integer Overflow Leading to Heap Corruption (CVE-2026-2271) (Closes: #1127841) * plug-ins: Add overflow checks for ICO loading (CVE-2026-2272) (Closes: #1127842) * plug-ins: fix crash due to uninitialized ptr_array when loading a specially crafted PSD Checksums-Sha1: eaf03d2e675903f7fc43d6a8b5dfee220fa9005f 15544808 gimp-dbgsym_2.10.34-1+deb12u8_s390x.deb a19d33124788045635f2b9d58de3a3ed88a594b0 21014 gimp_2.10.34-1+deb12u8_s390x-buildd.buildinfo 7e7ad859b0d75777eef7eff16e257826505ed05f 3990136 gimp_2.10.34-1+deb12u8_s390x.deb b2c1457d7e8a9efd9b7338beed218fedef3340fd 1339908 libgimp2.0-dbgsym_2.10.34-1+deb12u8_s390x.deb 14f4232b5c7236888e07205b3028862e12b9a387 15944 libgimp2.0-dev-dbgsym_2.10.34-1+deb12u8_s390x.deb 24a3d954b3f2ca0761dac41ba58939a2effd715c 120416 libgimp2.0-dev_2.10.34-1+deb12u8_s390x.deb b12df7d63ae75cdaff4094c4a0b81e6612fcdf28 772980 libgimp2.0_2.10.34-1+deb12u8_s390x.deb Checksums-Sha256: 6f233300a074c9f81a07691a26048d8262afc1ced6f6a3ea599f66fdc901ee12 15544808 gimp-dbgsym_2.10.34-1+deb12u8_s390x.deb eafaeee17c2e3112f17d8c461944c6f8b38eda7b080219148cca9b2e77fd5b05 21014 gimp_2.10.34-1+deb12u8_s390x-buildd.buildinfo 793a545e561193f40b039c897d38e49626daca73d009c56619bde96443737633 3990136 gimp_2.10.34-1+deb12u8_s390x.deb f4d962a963eb89bd1ef565f1da3d362a1fbf89008c761112e450e12542f6af16 1339908 libgimp2.0-dbgsym_2.10.34-1+deb12u8_s390x.deb 30c44e7dbcb693b73c4558b2023bb48008536159e28c73d1bf55eaaa66e9892b 15944 libgimp2.0-dev-dbgsym_2.10.34-1+deb12u8_s390x.deb 62b384484658d82868acd4f4ebbf15a2d81cb8dec2590e43ab7e5a08684e7b44 120416 libgimp2.0-dev_2.10.34-1+deb12u8_s390x.deb bf057a6d374add384210a04bb6014c08287da30478f2c79027c20d91d419c8d4 772980 libgimp2.0_2.10.34-1+deb12u8_s390x.deb Files: 82dc487ac43451919efcbad650732f80 15544808 debug optional gimp-dbgsym_2.10.34-1+deb12u8_s390x.deb 4c53ceb64e4383fbf246f68d21818b6c 21014 graphics optional gimp_2.10.34-1+deb12u8_s390x-buildd.buildinfo 15dddf026f4570ce6e0bbf03acf80a79 3990136 graphics optional gimp_2.10.34-1+deb12u8_s390x.deb 1c4875895b73a167eeba3d3cea8dfd1f 1339908 debug optional libgimp2.0-dbgsym_2.10.34-1+deb12u8_s390x.deb 9ec365aa480add0245b432c7db433128 15944 debug optional libgimp2.0-dev-dbgsym_2.10.34-1+deb12u8_s390x.deb 91f84940897b3efbf65176cacbc7dffa 120416 libdevel optional libgimp2.0-dev_2.10.34-1+deb12u8_s390x.deb 8ec41c137411dcfd8c38d728c2b3e2d9 772980 libs optional libgimp2.0_2.10.34-1+deb12u8_s390x.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEgh4msZ+e2PZfd5KckaCrxAR3BY0FAmmTkh0ACgkQkaCrxAR3 BY0kRg//QLOLM2wk8+iInivB/+XZKXAuv1fqA9ddnUDYw74WyuWPfYRUvUnawGEQ wXcBjypPw4AHwYvX9BGw45gF1BtRpIQImYlTxZPzn3X5lOk+EZKdIJOpfrxPkN5A JmoItiISGlLdfwDQUVn6xr3PMFJK6wil9J7GMapQ+yLwt5l75LPNY8DoVTFaMwgh TMnIXHYlZGXO2TIJxAHyRUN5Bk95r4EOORyS+R9+OIF8vDg5TIiF+swK9aK5HNeq jcVaurCzN7AIV8HQlLeREN4a8gn1Md8s/nMO0o+Lj1+E1nBMwQ1X26AHR73UUkoS LUTXrIc6GoY6qbHDeM1edlzmHn973uQWLCMI6DGppnchS9EEpFzk1cJuVD2AMNeq vhb3JAYSg1vLnChldAMl7YSpFQIVcK5vj3VuiLFH0dJe9YGvvVF2/LDVPGcCAm72 Zuu7WQBVJ9bDGnkbjOwVim0kaNirBlL3djOwq74TXa6bo2IJgv62WFq5fg3wI8S4 Vjb1OSS2M0Lnkk/UkOewqk46VxjtuqLHCSuANA6DctaE4FQRRnPtnShKIn4kWKmJ OZQIueaEgxG+3Qy3UKSi95x90frZb2KxkJ23u2sYHFLnVXKP87iArbp4XarIgKyK dxaYKYfc/KDYkpentctIdKdBEScWZksbdgyrMN/36HsGAFcgwHg= =ZpVd -----END PGP SIGNATURE-----