Intrusion Prevention

GIMP.XWD.File.Handling.Heap.Buffer.Overflow

Description

This indicates an attack attempt to exploit a Buffer Overflow vulnerability in GNU Image Manipulation
Program (GIMP).
The vulnerability is due to an insufficient validation error on certain fields when the vulnerable software handles a XWD file. A remote attacker may be able to exploit this to execute arbitrary code within the context of the application, via a crafted XWD file.

Affected Products

GNU GIMP 2.8.10 and prior

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Recommended Actions

Apply the most recent upgrade or patch from the vendor.
http://git.gnome.org/browse/gimp/commit/?id=23f685931e5f000dd033a45c60c1e60d7f78caf4

CVE References

CVE-2013-1978