cbcvebase.
CVE-2021-45463
published 2021-12-23

CVE-2021-45463: load_cache in GEGL before 0.4.34 allows shell expansion when a pathname in a constructed command line is not escaped or filtered. This is caused by use of the…

PriorityP337high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
1.44%
70.2th percentile
load_cache in GEGL before 0.4.34 allows shell expansion when a pathname in a constructed command line is not escaped or filtered. This is caused by use of the system library function for execution of the ImageMagick convert fallback in magick-load. NOTE: GEGL releases before 0.4.34 are used in GIMP releases before 2.10.30; however, this does not imply that GIMP builds enable the vulnerable feature.

Affected

11 ranges
VendorProductVersion rangeFixed in
debiangegl< gegl 1:0.4.34-1 (bookworm)gegl 1:0.4.34-1 (bookworm)
fedoraprojectfedora
fedoraprojectfedora
geglgegl< 0.4.340.4.34
geglgegl>= 0 < 1:0.4.26-2+deb11u11:0.4.26-2+deb11u1
geglgegl>= 0 < 1:0.4.34-11:0.4.34-1
geglgegl>= 0 < 1:0.4.34-11:0.4.34-1
geglgegl>= 0 < 1:0.4.34-11:0.4.34-1
gimpgimp< 2.10.302.10.30
redhatenterprise_linux
redhatenterprise_linux

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.