<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-09T11:05:15.597037+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2022:0177</id>
    <title>ALSA-2022:0177 — Important: gegl04 security update</title>
    <updated>2026-10-09T11:05:15.640731+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: gegl04, AlmaLinux:8: gegl04-devel</p>
<p>GEGL (Generic Graphics Library) is a graph-based image processing framework.</p>
<p>Security Fix(es):</p>
<p>* gegl: shell expansion via a crafted pathname (CVE-2021-45463)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2022:0177"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-02388</id>
    <title>bdu:2022-02388</title>
    <updated>2026-10-09T11:05:15.640793+00:00</updated>
    <content>bdu:2022-02388</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-02388"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2024-ve53254</id>
    <title>CLEANSTART-2024-VE53254 — load_cache in GEGL before 0</title>
    <updated>2026-10-09T11:05:15.640810+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> CleanStart: gegl</p>
<p>Security vulnerability affects the gegl package. load_cache in GEGL before 0.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2024-ve53254"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-257442</id>
    <title>EUVD-2026-257442</title>
    <updated>2026-10-09T11:05:15.640829+00:00</updated>
    <content>EUVD-2026-257442</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-257442"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-45463</id>
    <title>fkie_cve-2021-45463</title>
    <updated>2026-10-09T11:05:15.640840+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>load_cache in GEGL before 0.4.34 allows shell expansion when a pathname in a constructed command line is not escaped or filtered. This is caused by use of the system library function for execution of the ImageMagick convert fallback in magick-load. NOTE: GEGL releases before 0.4.34 are used in GIMP releases before 2.10.30; however, this does not imply that GIMP builds enable the vulnerable feature.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-45463"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-g9gv-9646-jvp8</id>
    <title>GHSA-g9gv-9646-jvp8</title>
    <updated>2026-10-09T11:05:15.640861+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>GEGL before 0.4.34, as used (for example) in GIMP before 2.10.30, allows shell expansion when a pathname in a constructed command line is not escaped or filtered. This is caused by use of the system library function for execution of the ImageMagick convert fallback in magick-load.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-g9gv-9646-jvp8"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-45463</id>
    <title>gsd-2021-45463</title>
    <updated>2026-10-09T11:05:15.640884+00:00</updated>
    <content>gsd-2021-45463</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-45463"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2022-1488</id>
    <title>OESA-2022-1488 — gimp security update</title>
    <updated>2026-10-09T11:05:15.640895+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: gimp, openEuler:20.03-LTS-SP2: gimp, openEuler:20.03-LTS-SP3: gimp</p>
<p>GIMP is a cross-platform image editor available for GNU/Linux, OS X, Windows and more operating systems. It is free software, you can change its source code and distribute your changes. Whether you are a graphic designer, photographer, illustrator, or scientist, GIMP provides you with sophisticated tools to get your job done. You can further enhance your productivity with GIMP thanks to many customization options and 3rd party plugins.

Security Fix(es):

GEGL before 0.4.34, as used (for example) in GIMP before 2.10.30, allows shell expansion when a pathname in a constructed command line is not escaped or filtered. This is caused by use of the system library function for execution of the ImageMagick convert fallback in magick-load.(CVE-2021-45463)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2022-1488"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2021:4209-1</id>
    <title>openSUSE-SU-2021:4209-1 — Security update for gegl</title>
    <updated>2026-10-09T11:05:15.640957+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for gegl</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2021:4209-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2022:0178</id>
    <title>RHSA-2022:0178 — Red Hat Security Advisory: gegl04 security update</title>
    <updated>2026-10-09T11:05:15.640974+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>gegl: shell expansion via a crafted pathname</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2022:0178"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2021:4193-1</id>
    <title>SUSE-SU-2021:4193-1 — Security update for gegl</title>
    <updated>2026-10-09T11:05:15.640988+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for gegl</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2021:4193-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-45463</id>
    <title>UBUNTU-CVE-2021-45463</title>
    <updated>2026-10-09T11:05:15.641000+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: gegl, Ubuntu:Pro:16.04:LTS: gegl, Ubuntu:Pro:18.04:LTS: gegl, Ubuntu:Pro:20.04:LTS: gegl, Ubuntu:22.04:LTS: gegl</p>
<p>load_cache in GEGL before 0.4.34 allows shell expansion when a pathname in a constructed command line is not escaped or filtered. This is caused by use of the system library function for execution of the ImageMagick convert fallback in magick-load. NOTE: GEGL releases before 0.4.34 are used in GIMP releases before 2.10.30; however, this does not imply that GIMP builds enable the vulnerable feature.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-45463"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2384</id>
    <title>WID-SEC-W-2025-2384 — Red Hat Enterprise Linux: Schwachstelle ermöglicht Privilegieneskalation</title>
    <updated>2026-10-09T11:05:15.641023+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux ausnutzen, um seine Privilegien zu erhöhen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2384"/>
  </entry>
</feed>
