CVE-2021-45463

EUVD-2021-32229
load_cache in GEGL before 0.4.34 allows shell expansion when a pathname in a constructed command line is not escaped or filtered. This is caused by use of the system library function for execution of the ImageMagick convert fallback in magick-load. NOTE: GEGL releases before 0.4.34 are used in GIMP releases before 2.10.30; however, this does not imply that GIMP builds enable the vulnerable feature.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.8 HIGH
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 76%
Affected Products (NVD)
VendorProductVersion
geglgegl
𝑥
< 0.4.34
gimpgimp
𝑥
< 2.10.30
redhatenterprise_linux
7.0
redhatenterprise_linux
8.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
gegl
bookworm
1:0.4.42-2
fixed
bullseye
no-dsa
buster
no-dsa
sid
1:0.4.50-1
fixed
stretch
no-dsa
trixie
1:0.4.48-2.5
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
gegl
bionic
Fixed 0.3.30-1ubuntu1+esm1
released
focal
Fixed 0.4.22-3ubuntu0.1~esm1
released
hirsute
ignored
impish
ignored
jammy
Fixed 1:0.4.34-1
released
kinetic
Fixed 1:0.4.34-1
released
lunar
Fixed 1:0.4.34-1
released
mantic
Fixed 1:0.4.34-1
released
noble
Fixed 1:0.4.34-1
released
trusty
Fixed 0.2.0-4ubuntu1+esm1
released
xenial
Fixed 0.3.4-1ubuntu2+esm1
released