Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:10707 - Security Advisory
Issued:
2026-04-27
Updated:
2026-04-27

RHSA-2026:10707 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: gdk-pixbuf2 security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for gdk-pixbuf2 is now available for Red Hat Enterprise Linux 10.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The gdk-pixbuf2 packages provide an image loading library that can be extended by loadable modules for new image formats. It is used by toolkits such as GTK+ or clutter.

Security Fix(es):

  • gdk-pixbuf: gdk-pixbuf: Denial of Service via heap-based buffer overflow when processing a specially crafted JPEG image (CVE-2026-5201)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 10 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 10 s390x
  • Red Hat Enterprise Linux for Power, little endian 10 ppc64le
  • Red Hat Enterprise Linux for ARM 64 10 aarch64

Fixes

  • BZ - 2453291 - CVE-2026-5201 gdk-pixbuf: gdk-pixbuf: Denial of Service via heap-based buffer overflow when processing a specially crafted JPEG image

CVEs

  • CVE-2026-5201

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 10

SRPM
gdk-pixbuf2-2.42.12-4.el10_1.5.src.rpm SHA-256: edee3c23d6afc1c926130363c57a8384b7a5d485a567751bf576e40786330d91
x86_64
gdk-pixbuf2-2.42.12-4.el10_1.5.x86_64.rpm SHA-256: e7abbf9c6e8c6c42033cf58366765bdf2c37853b4da9185734147d6f20ff2c82
gdk-pixbuf2-debuginfo-2.42.12-4.el10_1.5.x86_64.rpm SHA-256: eeb88b1d2c74d3156e2851e3281f664c8dc7ba65c9f2c2039780cb90c153e456
gdk-pixbuf2-debugsource-2.42.12-4.el10_1.5.x86_64.rpm SHA-256: 513cdf01f5f4698f83be70c76906d80f210af290e7380e9f413925b3329aa592
gdk-pixbuf2-devel-2.42.12-4.el10_1.5.x86_64.rpm SHA-256: eb6458cd44c4074fa5c64fbaa764e43c22d2c94c791a9c2be38bfbf4dfbd3266
gdk-pixbuf2-devel-debuginfo-2.42.12-4.el10_1.5.x86_64.rpm SHA-256: 8ca72b9d678e400c0e076caafd02f46084655c6bafce9046019dfd29e30cb173
gdk-pixbuf2-modules-2.42.12-4.el10_1.5.x86_64.rpm SHA-256: cf2cb7edacc18ed97f017c8c24a67b030d9079daf0c58a4b1e2037aed2cbb49c
gdk-pixbuf2-modules-debuginfo-2.42.12-4.el10_1.5.x86_64.rpm SHA-256: 2f51796b3a9c98e3cdae9c378b9c498e220448fa1cff0be2c4978e1c6cabfe8d
gdk-pixbuf2-tests-debuginfo-2.42.12-4.el10_1.5.x86_64.rpm SHA-256: bf8a26d3b9d998b135aa200dbd1205a81e665ba6e6e83baa5525e4bcc233391a

Red Hat Enterprise Linux for IBM z Systems 10

SRPM
gdk-pixbuf2-2.42.12-4.el10_1.5.src.rpm SHA-256: edee3c23d6afc1c926130363c57a8384b7a5d485a567751bf576e40786330d91
s390x
gdk-pixbuf2-2.42.12-4.el10_1.5.s390x.rpm SHA-256: d8f7ce34b0e08e3f22618bcebe90ff0a79c83f78d1e3456890bae3074df95b20
gdk-pixbuf2-debuginfo-2.42.12-4.el10_1.5.s390x.rpm SHA-256: 4f747b6784d4e8b08a7b60119875ebe0a35dc4e51a2e8d707389b7b3a16d20cb
gdk-pixbuf2-debugsource-2.42.12-4.el10_1.5.s390x.rpm SHA-256: be7a4ad213b9562dc7637816138f10b01b8638a8c3e13c8e184970ccf80fbe5d
gdk-pixbuf2-devel-2.42.12-4.el10_1.5.s390x.rpm SHA-256: a62d0351b419300cce9089701565c7614701b710789e1d70f2bd4333a1c1ea5e
gdk-pixbuf2-devel-debuginfo-2.42.12-4.el10_1.5.s390x.rpm SHA-256: 684e0d139c97ae2b622f03706652da529a30ffa03cf2f5deb85ec3502a597dbc
gdk-pixbuf2-modules-2.42.12-4.el10_1.5.s390x.rpm SHA-256: 669c38c17411896ad0e509f8b67a974e7c79b4fe34ad9613db7c1bb09704e7fa
gdk-pixbuf2-modules-debuginfo-2.42.12-4.el10_1.5.s390x.rpm SHA-256: 3b5b18b05a5852b641ca5c5648bf7ad978756cbe551593e7dc9693f1260c72ab
gdk-pixbuf2-tests-debuginfo-2.42.12-4.el10_1.5.s390x.rpm SHA-256: 80c0d0f0b22585ae865219f6d1df8ebb003c1cd8ce17bc0c02af72cfbbb9de60

Red Hat Enterprise Linux for Power, little endian 10

SRPM
gdk-pixbuf2-2.42.12-4.el10_1.5.src.rpm SHA-256: edee3c23d6afc1c926130363c57a8384b7a5d485a567751bf576e40786330d91
ppc64le
gdk-pixbuf2-2.42.12-4.el10_1.5.ppc64le.rpm SHA-256: 9121c8809e86d97c7036785cc467b2c2422ab916791e48a4a5c63e65a3196d81
gdk-pixbuf2-debuginfo-2.42.12-4.el10_1.5.ppc64le.rpm SHA-256: 52390987df5f3de15b725259b53b25f58f87ebc52a56a114ef9fd04d92f321d6
gdk-pixbuf2-debugsource-2.42.12-4.el10_1.5.ppc64le.rpm SHA-256: f6ec73dad62557f6b42aa8b369b434d7b6a1edeef43407a0d6a46c689771fdfe
gdk-pixbuf2-devel-2.42.12-4.el10_1.5.ppc64le.rpm SHA-256: 24031081700cfd1a057e9fdd9079bad8d17311126f301ba65c049fc10954e504
gdk-pixbuf2-devel-debuginfo-2.42.12-4.el10_1.5.ppc64le.rpm SHA-256: d37a42af96220f18b6bbacfdc18198c491f137432f13560c4f6c2ed49490e807
gdk-pixbuf2-modules-2.42.12-4.el10_1.5.ppc64le.rpm SHA-256: b38e12fd157c6b284fe16751c56636595d929cc924276183c720deb333de5585
gdk-pixbuf2-modules-debuginfo-2.42.12-4.el10_1.5.ppc64le.rpm SHA-256: c9529f615ad5503d12301d3c94ebd16e632eb9374f543a5af7deee9f9b57990a
gdk-pixbuf2-tests-debuginfo-2.42.12-4.el10_1.5.ppc64le.rpm SHA-256: c0983c23275bc3afa3e345144ac65072da0875e1accc8a0fc59bf1c50685ad92

Red Hat Enterprise Linux for ARM 64 10

SRPM
gdk-pixbuf2-2.42.12-4.el10_1.5.src.rpm SHA-256: edee3c23d6afc1c926130363c57a8384b7a5d485a567751bf576e40786330d91
aarch64
gdk-pixbuf2-2.42.12-4.el10_1.5.aarch64.rpm SHA-256: 4d20d11cb0ffcb046ee3329f4f11717558ceca04cbdf53fcc93d27ade135eefc
gdk-pixbuf2-debuginfo-2.42.12-4.el10_1.5.aarch64.rpm SHA-256: 1d859e1e044e8cc983dafbdf48221ad3c942fc177a1a673cab0200be32d95bf9
gdk-pixbuf2-debugsource-2.42.12-4.el10_1.5.aarch64.rpm SHA-256: a5c81b07cc3830d54062d632e32f8b9efcd1ffd5f7e08513360eee241fff14ed
gdk-pixbuf2-devel-2.42.12-4.el10_1.5.aarch64.rpm SHA-256: 34b3836d6db380769abfc2ab96cd6d004d82a22ed6b0a2e37c001952da6f7655
gdk-pixbuf2-devel-debuginfo-2.42.12-4.el10_1.5.aarch64.rpm SHA-256: 210faf1f3c6255e6d4d733283f30597787dadff7fbb8bf88c8fbfc75fe4b0c25
gdk-pixbuf2-modules-2.42.12-4.el10_1.5.aarch64.rpm SHA-256: e5de53b3ea15faa017854928b6b003683baa14fc3b685c3a31af0238ad3625a7
gdk-pixbuf2-modules-debuginfo-2.42.12-4.el10_1.5.aarch64.rpm SHA-256: c47bd81a4c0f648386585ddc9d095d41418e43db594d27c83ca3e3f2e6540f87
gdk-pixbuf2-tests-debuginfo-2.42.12-4.el10_1.5.aarch64.rpm SHA-256: cf25e7d39fb37b02250455caf8396b9c924206359996165ab331dbf18b737337

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility