Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
RHSA-2025:22417
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2025:22417
Import Source
https://security.access.redhat.com/data/osv/RHSA-2025:22417.json
JSON Data
https://api.test.osv.dev/v1/vulns/RHSA-2025:22417
Upstream
CVE-2025-10920
CVE-2025-10921
CVE-2025-10922
CVE-2025-10923
CVE-2025-10924
CVE-2025-10925
CVE-2025-10934
Published
2025-12-02T10:06:45Z
Modified
2025-12-02T23:50:56.162521Z
Severity
7.8 (High)
CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: gimp:2.8 security update
Details
References
https://access.redhat.com/errata/RHSA-2025:22417
https://access.redhat.com/security/updates/classification/#important
https://bugzilla.redhat.com/show_bug.cgi?id=2407188
https://bugzilla.redhat.com/show_bug.cgi?id=2407191
https://bugzilla.redhat.com/show_bug.cgi?id=2407192
https://bugzilla.redhat.com/show_bug.cgi?id=2407194
https://bugzilla.redhat.com/show_bug.cgi?id=2407199
https://bugzilla.redhat.com/show_bug.cgi?id=2407200
https://bugzilla.redhat.com/show_bug.cgi?id=2407233
https://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_22417.json
https://access.redhat.com/security/cve/CVE-2025-10920
https://www.cve.org/CVERecord?id=CVE-2025-10920
https://nvd.nist.gov/vuln/detail/CVE-2025-10920
https://gitlab.gnome.org/GNOME/gimp/-/merge_requests/2443
https://www.zerodayinitiative.com/advisories/ZDI-25-909/
https://access.redhat.com/security/cve/CVE-2025-10921
https://www.cve.org/CVERecord?id=CVE-2025-10921
https://nvd.nist.gov/vuln/detail/CVE-2025-10921
https://gitlab.gnome.org/GNOME/gegl/-/commit/0e68b7471dabf2800d780819c19bd5e6462f565f
https://www.zerodayinitiative.com/advisories/ZDI-25-910/
https://access.redhat.com/security/cve/CVE-2025-10922
https://www.cve.org/CVERecord?id=CVE-2025-10922
https://nvd.nist.gov/vuln/detail/CVE-2025-10922
https://gitlab.gnome.org/GNOME/gimp/-/commit/3d909166463731e94dfe62042d76225ecfc4c1e4
https://www.zerodayinitiative.com/advisories/ZDI-25-911/
https://access.redhat.com/security/cve/CVE-2025-10923
https://www.cve.org/CVERecord?id=CVE-2025-10923
https://nvd.nist.gov/vuln/detail/CVE-2025-10923
https://gitlab.gnome.org/GNOME/gimp/-/commit/2d2d39f3da1d0b01ca7d71ad2b7a8725ee92ed96
https://www.zerodayinitiative.com/advisories/ZDI-25-912/
https://access.redhat.com/security/cve/CVE-2025-10924
https://www.cve.org/CVERecord?id=CVE-2025-10924
https://nvd.nist.gov/vuln/detail/CVE-2025-10924
https://gitlab.gnome.org/GNOME/gimp/-/merge_requests/2448
https://www.zerodayinitiative.com/advisories/ZDI-25-913/
https://access.redhat.com/security/cve/CVE-2025-10925
https://www.cve.org/CVERecord?id=CVE-2025-10925
https://nvd.nist.gov/vuln/detail/CVE-2025-10925
https://gitlab.gnome.org/GNOME/gimp/-/merge_requests/2450
https://www.zerodayinitiative.com/advisories/ZDI-25-914/
https://access.redhat.com/security/cve/CVE-2025-10934
https://www.cve.org/CVERecord?id=CVE-2025-10934
https://nvd.nist.gov/vuln/detail/CVE-2025-10934
https://gitlab.gnome.org/GNOME/gimp/-/commit/5c3e2122d53869599d77ef0f1bdece117b24fd7c
https://www.zerodayinitiative.com/advisories/ZDI-25-978/
Affected packages
Red Hat:enterprise_linux:8::appstream
gimp
Package
Name
gimp
Purl
pkg:rpm/redhat/gimp
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:2.8.22-26.module+el8.10.0+23719+f0b80de8.3
gimp-debuginfo
Package
Name
gimp-debuginfo
Purl
pkg:rpm/redhat/gimp-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:2.8.22-26.module+el8.10.0+23719+f0b80de8.3
gimp-debugsource
Package
Name
gimp-debugsource
Purl
pkg:rpm/redhat/gimp-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:2.8.22-26.module+el8.10.0+23719+f0b80de8.3
gimp-devel
Package
Name
gimp-devel
Purl
pkg:rpm/redhat/gimp-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:2.8.22-26.module+el8.10.0+23719+f0b80de8.3
gimp-devel-tools
Package
Name
gimp-devel-tools
Purl
pkg:rpm/redhat/gimp-devel-tools
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:2.8.22-26.module+el8.10.0+23719+f0b80de8.3
gimp-devel-tools-debuginfo
Package
Name
gimp-devel-tools-debuginfo
Purl
pkg:rpm/redhat/gimp-devel-tools-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:2.8.22-26.module+el8.10.0+23719+f0b80de8.3
gimp-libs
Package
Name
gimp-libs
Purl
pkg:rpm/redhat/gimp-libs
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:2.8.22-26.module+el8.10.0+23719+f0b80de8.3
gimp-libs-debuginfo
Package
Name
gimp-libs-debuginfo
Purl
pkg:rpm/redhat/gimp-libs-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:2.8.22-26.module+el8.10.0+23719+f0b80de8.3
pygobject2
Package
Name
pygobject2
Purl
pkg:rpm/redhat/pygobject2
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.28.7-5.module+el8.10.0+22676+becd68d6
pygobject2-codegen
Package
Name
pygobject2-codegen
Purl
pkg:rpm/redhat/pygobject2-codegen
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.28.7-5.module+el8.10.0+22676+becd68d6
pygobject2-debuginfo
Package
Name
pygobject2-debuginfo
Purl
pkg:rpm/redhat/pygobject2-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.28.7-5.module+el8.10.0+22676+becd68d6
pygobject2-debugsource
Package
Name
pygobject2-debugsource
Purl
pkg:rpm/redhat/pygobject2-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.28.7-5.module+el8.10.0+22676+becd68d6
pygobject2-devel
Package
Name
pygobject2-devel
Purl
pkg:rpm/redhat/pygobject2-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.28.7-5.module+el8.10.0+22676+becd68d6
pygobject2-doc
Package
Name
pygobject2-doc
Purl
pkg:rpm/redhat/pygobject2-doc
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.28.7-5.module+el8.10.0+22676+becd68d6
pygtk2
Package
Name
pygtk2
Purl
pkg:rpm/redhat/pygtk2
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.24.0-25.module+el8.9.0+21228+8e80d31d
pygtk2-codegen
Package
Name
pygtk2-codegen
Purl
pkg:rpm/redhat/pygtk2-codegen
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.24.0-25.module+el8.9.0+21228+8e80d31d
pygtk2-debuginfo
Package
Name
pygtk2-debuginfo
Purl
pkg:rpm/redhat/pygtk2-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.24.0-25.module+el8.9.0+21228+8e80d31d
pygtk2-debugsource
Package
Name
pygtk2-debugsource
Purl
pkg:rpm/redhat/pygtk2-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.24.0-25.module+el8.9.0+21228+8e80d31d
pygtk2-devel
Package
Name
pygtk2-devel
Purl
pkg:rpm/redhat/pygtk2-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.24.0-25.module+el8.9.0+21228+8e80d31d
pygtk2-doc
Package
Name
pygtk2-doc
Purl
pkg:rpm/redhat/pygtk2-doc
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.24.0-25.module+el8.9.0+21228+8e80d31d
python2-cairo
Package
Name
python2-cairo
Purl
pkg:rpm/redhat/python2-cairo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.16.3-7.module+el8.10.0+22676+becd68d6
python2-cairo-debuginfo
Package
Name
python2-cairo-debuginfo
Purl
pkg:rpm/redhat/python2-cairo-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.16.3-7.module+el8.10.0+22676+becd68d6
python2-cairo-devel
Package
Name
python2-cairo-devel
Purl
pkg:rpm/redhat/python2-cairo-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.16.3-7.module+el8.10.0+22676+becd68d6
python2-pycairo
Package
Name
python2-pycairo
Purl
pkg:rpm/redhat/python2-pycairo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.16.3-7.module+el8.10.0+22676+becd68d6
python2-pycairo-debugsource
Package
Name
python2-pycairo-debugsource
Purl
pkg:rpm/redhat/python2-pycairo-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.16.3-7.module+el8.10.0+22676+becd68d6
RHSA-2025:22417 - OSV