cbcvebase.
CVE-2021-45463
published 2021-12-23

CVE-2021-45463: load_cache in GEGL before 0.4.34 allows shell expansion when a pathname in a constructed command line is not escaped or filtered. This is caused by use of the…

high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
load_cache in GEGL before 0.4.34 allows shell expansion when a pathname in a constructed command line is not escaped or filtered. This is caused by use of the system library function for execution of the ImageMagick convert fallback in magick-load. NOTE: GEGL releases before 0.4.34 are used in GIMP releases before 2.10.30; however, this does not imply that GIMP builds enable the vulnerable feature.

Affected

11 ranges
VendorProductVersion rangeFixed in
debiangegl< gegl 1:0.4.34-1 (bookworm)gegl 1:0.4.34-1 (bookworm)
fedoraprojectfedora
fedoraprojectfedora
geglgegl< 0.4.340.4.34
geglgegl>= 0 < 1:0.4.26-2+deb11u11:0.4.26-2+deb11u1
geglgegl>= 0 < 1:0.4.34-11:0.4.34-1
geglgegl>= 0 < 1:0.4.34-11:0.4.34-1
geglgegl>= 0 < 1:0.4.34-11:0.4.34-1
gimpgimp< 2.10.302.10.30
redhatenterprise_linux
redhatenterprise_linux

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv7.8HIGH