Sunday, January 2, 2022

SUSE: CVE-2021-45463: SUSE Linux Security Advisory

Description
GEGL before 0.4.34, as used (for example) in GIMP before 2.10.30, allows shell expansion when a pathname in a constructed command line is not escaped or filtered. This is caused by use of the system library function for execution of the ImageMagick convert fallback in magick-load.
Solution(s)
  • suse-upgrade-gegl-devel
  • suse-upgrade-libgegl-0_2-0


  • References
  • SUSE-SU-2021:4193-1
  • CVE-2021-45463




  •  

    Copyright © 2021 Vulnerability Database | Cyber Details™

    thank you Templateism for the design - You should have written the code a little more complicated - Nothing Encrypted anymore