FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

The GIMP -- Use after Free vulnerability

Affected packages
gimp-app < 2.8.18,1

Details

VuXML ID 6fb8a90f-c9d5-4d14-b940-aed3d63c2edc
Discovery 2016-06-20
Entry 2016-07-19

The GIMP team reports:

A Use-after-free vulnerability was found in the xcf_load_image function.

References

CVE Name CVE-2016-4994
URL https://bugzilla.gnome.org/show_bug.cgi?id=767873
URL https://mail.gnome.org/archives/gimp-developer-list/2016-July/msg00020.html