Gimp/plug-ins
Alx Sa 51f1de8844 plug-ins: Add bounds checks to JIF loading
Resolves #16076
As reported by chamal, it is possible to craft a
Jeff's Image Format image with header values that
are larger than the file size. This can lead to buffer
overflows when loading the data. This patch adds
bounding checks based on the size of the stream.
2026-03-21 17:33:39 +00:00
..
common plug-ins: Add bounds checks to JIF loading 2026-03-21 17:33:39 +00:00
file-bmp plug-ins: Do not call in-build-gimp.py before building plugins 2026-01-04 09:39:02 -03:00
file-dds plug-ins: Comment some unused functions on file-dds 2026-03-18 18:04:11 -03:00
file-exr plug-ins: Import YUV OpenEXR chroma channels as RGB 2026-02-28 14:19:27 +00:00
file-faxg3 app, libgimpthumb, plug-ins, tools: Fix POSIX namespace warnings on MSVC 2026-02-28 10:06:46 -03:00
file-fits plug-ins: Protect against too-large FITS images 2026-03-19 12:05:47 +00:00
file-fli plug-ins: Do not call in-build-gimp.py before building plugins 2026-01-04 09:39:02 -03:00
file-icns plug-ins: Clean up ICNS file loading 2026-03-20 14:10:15 +00:00
file-ico plug-ins: Resolve ZDI-CAN-28813 in ANI loading 2026-03-05 23:58:45 +00:00
file-jpeg file-jpeg: fix loading of photoshop path split across multiple segments 2026-03-12 15:08:39 +01:00
file-psd file-psd: fix 'path_flatness' being read with wrong type leading to incorrect values 2026-03-12 04:17:02 +00:00
file-raw plug-ins: Do not free null 'urls' array 2026-02-05 15:19:46 -03:00
file-sgi plug-ins: Do not call in-build-gimp.py before building plugins 2026-01-04 09:39:02 -03:00
file-tiff plug-ins: Don't show TIFF Reduced Image toggle... 2026-03-12 03:16:22 +00:00
file-webp plug-ins: Don't translate "ms" for WEBP animation 2026-01-07 20:09:21 +00:00
filter-browser plug-ins: improve describing enum and choice arguments. 2026-03-06 22:49:14 +01:00
flame plug-ins: Do not call in-build-gimp.py before building plugins 2026-01-04 09:39:02 -03:00
fractal-explorer plug-ins: Do not call in-build-gimp.py before building plugins 2026-01-04 09:39:02 -03:00
gfig plug-ins/gfig: Fix value updates after port from GimpScaleEntry to GimpSpinScale 2026-03-08 03:15:31 +02:00
gimpressionist plug-ins: Do not call in-build-gimp.py before building plugins 2026-01-04 09:39:02 -03:00
gradient-flare plug-ins: don't fail loading gflare files with Windows line endings 2026-02-07 13:52:10 -05:00
help plug-ins: Do not call in-build-gimp.py before building plugins 2026-01-04 09:39:02 -03:00
help-browser plug-ins: Do not call in-build-gimp.py before building plugins 2026-01-04 09:39:02 -03:00
ifs-compose plug-ins: Do not call in-build-gimp.py before building plugins 2026-01-04 09:39:02 -03:00
imagemap app, libgimpthumb, plug-ins, tools: Fix POSIX namespace warnings on MSVC 2026-02-28 10:06:46 -03:00
lighting plug-ins: Do not call in-build-gimp.py before building plugins 2026-01-04 09:39:02 -03:00
map-object plug-ins: Do not call in-build-gimp.py before building plugins 2026-01-04 09:39:02 -03:00
metadata plug-ins: show default text for licensor_phone_type2 in metadata-editor 2026-03-12 20:04:54 +01:00
pagecurl plug-ins: Do not call in-build-gimp.py before building plugins 2026-01-04 09:39:02 -03:00
print plug-ins: Do not call in-build-gimp.py before building plugins 2026-01-04 09:39:02 -03:00
python tests: fix typo psp has extension psp not psd 2026-03-11 09:28:39 -04:00
screenshot plug-ins: Show correct cursor in Windows Screenshot 2026-03-05 15:54:34 +00:00
script-fu i18n: Mark "Mask image" as translatable 2026-03-17 19:10:33 -03:00
selection-to-path plug-ins: Do not call in-build-gimp.py before building plugins 2026-01-04 09:39:02 -03:00
twain plug-ins: Do not call in-build-gimp.py before building plugins 2026-01-04 09:39:02 -03:00
generate_mime_ext.py build/macos, plug-ins: Generate file associations for macOS automatically 2026-01-17 18:13:23 -03:00
meson.build meson: Add explicit build option to build 32-bit TWAIN 2026-03-17 09:56:20 -03:00