Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:2953 - Security Advisory
Issued:
2026-02-18
Updated:
2026-02-18

RHSA-2026:2953 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: gimp security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for gimp is now available for Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The GIMP (GNU Image Manipulation Program) is an image composition and editing program. GIMP provides a large image manipulation toolbox, including channel operations and layers, effects, sub-pixel imaging and anti-aliasing, and conversions, all with multi-level undo.

Security Fix(es):

  • gimp: heap-based buffer overflow via specially crafted PSP file (CVE-2025-15059)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server - AUS 9.2 x86_64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2 s390x
  • Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2 x86_64
  • Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.2 aarch64
  • Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.2 ppc64le
  • Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.2 s390x

Fixes

  • BZ - 2432296 - CVE-2025-15059 gimp: heap-based buffer overflow via specially crafted PSP file

CVEs

  • CVE-2025-15059

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server - AUS 9.2

SRPM
gimp-2.99.8-4.el9_2.4.src.rpm SHA-256: 348b300c618ddcde17e10d3c4aefea70c23728fee04cf480048cb158c538827e
x86_64
gimp-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: f12d473bc320d46086e050b1581b784b5db0836195021a77ed46369ea8d2517f
gimp-debuginfo-2.99.8-4.el9_2.4.i686.rpm SHA-256: e7e7d64f60ae399bb988828f87ed48932d3d1166606305e71a9912103d033f70
gimp-debuginfo-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: 746bc2e9ffeb6c004196e0cd7bbfb29a702f8a86b363697ab0f9177ef942ad3a
gimp-debugsource-2.99.8-4.el9_2.4.i686.rpm SHA-256: 422062cf05c3c9421b211253ed9c0c8cb5abd6e83f7bfb4a8be18002887353a3
gimp-debugsource-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: 592cf9211a4e557b7f625b225bb09fae20ed39a7134ecf5e528d98f6da6bbce8
gimp-devel-tools-debuginfo-2.99.8-4.el9_2.4.i686.rpm SHA-256: 5af766475a39e2ded0b0319a30424c1817dac206eabca07827eb0ff8083e3093
gimp-devel-tools-debuginfo-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: ce36e1201bae2039d40001b6b6ea499ef0b8a6295d6670b820db7441dd2e36f1
gimp-libs-2.99.8-4.el9_2.4.i686.rpm SHA-256: 3c8f2e10fa2f7beee5c52f82892db1d22e24eb60cbe0e5b493e17d0b5a98158f
gimp-libs-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: 397177b577023ca493c65c0858061ba44f9bf407a55a70951e22cc93c5ade962
gimp-libs-debuginfo-2.99.8-4.el9_2.4.i686.rpm SHA-256: 3dd9d5949d1c93bd0affb326abbba82b33d24a1a775bea075daf47d181806208
gimp-libs-debuginfo-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: c9b31ee40a4674c693ad76612011a541046b9d646865c80a7a1157341851f970

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2

SRPM
gimp-2.99.8-4.el9_2.4.src.rpm SHA-256: 348b300c618ddcde17e10d3c4aefea70c23728fee04cf480048cb158c538827e
ppc64le
gimp-2.99.8-4.el9_2.4.ppc64le.rpm SHA-256: 07568287b5dba9c1b268f24133a5ca5f774ee46eed42a53ab6f4b13a00d1a036
gimp-debuginfo-2.99.8-4.el9_2.4.ppc64le.rpm SHA-256: 8b107d59ebaeb8aac3f7e58422e7133835b369c08b025ac4e20f71f93fb1dc74
gimp-debugsource-2.99.8-4.el9_2.4.ppc64le.rpm SHA-256: 336bd2f599c6a13b20fb860264cc6b96605c57cc93477b17d0173053bfbe6c53
gimp-devel-tools-debuginfo-2.99.8-4.el9_2.4.ppc64le.rpm SHA-256: 6ff24a831031b6d673a10ee6073c2c0ad3f57f0c01d86877dba6cfc74c7f8dae
gimp-libs-2.99.8-4.el9_2.4.ppc64le.rpm SHA-256: f9923f9c3ba35050ff7a0e30408e92200faf40d7e989319b0b8bc2838679eb3d
gimp-libs-debuginfo-2.99.8-4.el9_2.4.ppc64le.rpm SHA-256: d6a285a965287d02eb65cbbe574d7955d1ee3cb985a33935d6f60c53306fef0b

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2

SRPM
gimp-2.99.8-4.el9_2.4.src.rpm SHA-256: 348b300c618ddcde17e10d3c4aefea70c23728fee04cf480048cb158c538827e
x86_64
gimp-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: f12d473bc320d46086e050b1581b784b5db0836195021a77ed46369ea8d2517f
gimp-debuginfo-2.99.8-4.el9_2.4.i686.rpm SHA-256: e7e7d64f60ae399bb988828f87ed48932d3d1166606305e71a9912103d033f70
gimp-debuginfo-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: 746bc2e9ffeb6c004196e0cd7bbfb29a702f8a86b363697ab0f9177ef942ad3a
gimp-debugsource-2.99.8-4.el9_2.4.i686.rpm SHA-256: 422062cf05c3c9421b211253ed9c0c8cb5abd6e83f7bfb4a8be18002887353a3
gimp-debugsource-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: 592cf9211a4e557b7f625b225bb09fae20ed39a7134ecf5e528d98f6da6bbce8
gimp-devel-tools-debuginfo-2.99.8-4.el9_2.4.i686.rpm SHA-256: 5af766475a39e2ded0b0319a30424c1817dac206eabca07827eb0ff8083e3093
gimp-devel-tools-debuginfo-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: ce36e1201bae2039d40001b6b6ea499ef0b8a6295d6670b820db7441dd2e36f1
gimp-libs-2.99.8-4.el9_2.4.i686.rpm SHA-256: 3c8f2e10fa2f7beee5c52f82892db1d22e24eb60cbe0e5b493e17d0b5a98158f
gimp-libs-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: 397177b577023ca493c65c0858061ba44f9bf407a55a70951e22cc93c5ade962
gimp-libs-debuginfo-2.99.8-4.el9_2.4.i686.rpm SHA-256: 3dd9d5949d1c93bd0affb326abbba82b33d24a1a775bea075daf47d181806208
gimp-libs-debuginfo-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: c9b31ee40a4674c693ad76612011a541046b9d646865c80a7a1157341851f970

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2

SRPM
gimp-2.99.8-4.el9_2.4.src.rpm SHA-256: 348b300c618ddcde17e10d3c4aefea70c23728fee04cf480048cb158c538827e
aarch64
gimp-2.99.8-4.el9_2.4.aarch64.rpm SHA-256: d719327728d7b06ce64f1fe6f2379f7df18dcb5790d0146317aef608e3d0768b
gimp-debuginfo-2.99.8-4.el9_2.4.aarch64.rpm SHA-256: ba28b44a1022a1f0b735fd38585e155242d9041e20bd1e815ad214e567115a86
gimp-debugsource-2.99.8-4.el9_2.4.aarch64.rpm SHA-256: 891ce075b41eb3f7847c2fbc3f8e8731ba2859d03ce855aadb111baab474e7a0
gimp-devel-tools-debuginfo-2.99.8-4.el9_2.4.aarch64.rpm SHA-256: 248991ee523cdab2665a0a03beca01a89e03e757e78c09e3f0201691cabf6306
gimp-libs-2.99.8-4.el9_2.4.aarch64.rpm SHA-256: 2209c99b3df7ee9bb9278d3f8622fb34af1948d5b4b01839ba4d47097ee62e56
gimp-libs-debuginfo-2.99.8-4.el9_2.4.aarch64.rpm SHA-256: c15cd6f4e68a4158a1d8de8a2cf54cceab761fe2eb3c349716d2a9f4678cd967

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2

SRPM
gimp-2.99.8-4.el9_2.4.src.rpm SHA-256: 348b300c618ddcde17e10d3c4aefea70c23728fee04cf480048cb158c538827e
s390x
gimp-2.99.8-4.el9_2.4.s390x.rpm SHA-256: fc7eddf037fcf6be2998c1b948fd6655d1f5e0e885d77c0ff9e207074b3155dc
gimp-debuginfo-2.99.8-4.el9_2.4.s390x.rpm SHA-256: 92c24705e04a2e3ceadf6a158fa7edc6230837f84cfd94a0dd5ea6fecd577fca
gimp-debugsource-2.99.8-4.el9_2.4.s390x.rpm SHA-256: 38f3a6be97ca121a2b37e17f43be36a86a3b0a0ab374bdf05159abce84fb83d2
gimp-devel-tools-debuginfo-2.99.8-4.el9_2.4.s390x.rpm SHA-256: b68336ec2aba9f0a3d6f2bef35c742120220859ca2990b3617b26e9364c5634b
gimp-libs-2.99.8-4.el9_2.4.s390x.rpm SHA-256: 833b4e1054e50526f95419416ae097739626c9f6fe6cf670fdda3bd58dc05dff
gimp-libs-debuginfo-2.99.8-4.el9_2.4.s390x.rpm SHA-256: f707e23a4087da564509057452b10b6481e2211286a4611df37e1a1be4146d15

Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2

SRPM
gimp-2.99.8-4.el9_2.4.src.rpm SHA-256: 348b300c618ddcde17e10d3c4aefea70c23728fee04cf480048cb158c538827e
x86_64
gimp-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: f12d473bc320d46086e050b1581b784b5db0836195021a77ed46369ea8d2517f
gimp-debuginfo-2.99.8-4.el9_2.4.i686.rpm SHA-256: e7e7d64f60ae399bb988828f87ed48932d3d1166606305e71a9912103d033f70
gimp-debuginfo-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: 746bc2e9ffeb6c004196e0cd7bbfb29a702f8a86b363697ab0f9177ef942ad3a
gimp-debugsource-2.99.8-4.el9_2.4.i686.rpm SHA-256: 422062cf05c3c9421b211253ed9c0c8cb5abd6e83f7bfb4a8be18002887353a3
gimp-debugsource-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: 592cf9211a4e557b7f625b225bb09fae20ed39a7134ecf5e528d98f6da6bbce8
gimp-devel-tools-debuginfo-2.99.8-4.el9_2.4.i686.rpm SHA-256: 5af766475a39e2ded0b0319a30424c1817dac206eabca07827eb0ff8083e3093
gimp-devel-tools-debuginfo-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: ce36e1201bae2039d40001b6b6ea499ef0b8a6295d6670b820db7441dd2e36f1
gimp-libs-2.99.8-4.el9_2.4.i686.rpm SHA-256: 3c8f2e10fa2f7beee5c52f82892db1d22e24eb60cbe0e5b493e17d0b5a98158f
gimp-libs-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: 397177b577023ca493c65c0858061ba44f9bf407a55a70951e22cc93c5ade962
gimp-libs-debuginfo-2.99.8-4.el9_2.4.i686.rpm SHA-256: 3dd9d5949d1c93bd0affb326abbba82b33d24a1a775bea075daf47d181806208
gimp-libs-debuginfo-2.99.8-4.el9_2.4.x86_64.rpm SHA-256: c9b31ee40a4674c693ad76612011a541046b9d646865c80a7a1157341851f970

Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.2

SRPM
gimp-2.99.8-4.el9_2.4.src.rpm SHA-256: 348b300c618ddcde17e10d3c4aefea70c23728fee04cf480048cb158c538827e
aarch64
gimp-2.99.8-4.el9_2.4.aarch64.rpm SHA-256: d719327728d7b06ce64f1fe6f2379f7df18dcb5790d0146317aef608e3d0768b
gimp-debuginfo-2.99.8-4.el9_2.4.aarch64.rpm SHA-256: ba28b44a1022a1f0b735fd38585e155242d9041e20bd1e815ad214e567115a86
gimp-debugsource-2.99.8-4.el9_2.4.aarch64.rpm SHA-256: 891ce075b41eb3f7847c2fbc3f8e8731ba2859d03ce855aadb111baab474e7a0
gimp-devel-tools-debuginfo-2.99.8-4.el9_2.4.aarch64.rpm SHA-256: 248991ee523cdab2665a0a03beca01a89e03e757e78c09e3f0201691cabf6306
gimp-libs-2.99.8-4.el9_2.4.aarch64.rpm SHA-256: 2209c99b3df7ee9bb9278d3f8622fb34af1948d5b4b01839ba4d47097ee62e56
gimp-libs-debuginfo-2.99.8-4.el9_2.4.aarch64.rpm SHA-256: c15cd6f4e68a4158a1d8de8a2cf54cceab761fe2eb3c349716d2a9f4678cd967

Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.2

SRPM
gimp-2.99.8-4.el9_2.4.src.rpm SHA-256: 348b300c618ddcde17e10d3c4aefea70c23728fee04cf480048cb158c538827e
ppc64le
gimp-2.99.8-4.el9_2.4.ppc64le.rpm SHA-256: 07568287b5dba9c1b268f24133a5ca5f774ee46eed42a53ab6f4b13a00d1a036
gimp-debuginfo-2.99.8-4.el9_2.4.ppc64le.rpm SHA-256: 8b107d59ebaeb8aac3f7e58422e7133835b369c08b025ac4e20f71f93fb1dc74
gimp-debugsource-2.99.8-4.el9_2.4.ppc64le.rpm SHA-256: 336bd2f599c6a13b20fb860264cc6b96605c57cc93477b17d0173053bfbe6c53
gimp-devel-tools-debuginfo-2.99.8-4.el9_2.4.ppc64le.rpm SHA-256: 6ff24a831031b6d673a10ee6073c2c0ad3f57f0c01d86877dba6cfc74c7f8dae
gimp-libs-2.99.8-4.el9_2.4.ppc64le.rpm SHA-256: f9923f9c3ba35050ff7a0e30408e92200faf40d7e989319b0b8bc2838679eb3d
gimp-libs-debuginfo-2.99.8-4.el9_2.4.ppc64le.rpm SHA-256: d6a285a965287d02eb65cbbe574d7955d1ee3cb985a33935d6f60c53306fef0b

Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.2

SRPM
gimp-2.99.8-4.el9_2.4.src.rpm SHA-256: 348b300c618ddcde17e10d3c4aefea70c23728fee04cf480048cb158c538827e
s390x
gimp-2.99.8-4.el9_2.4.s390x.rpm SHA-256: fc7eddf037fcf6be2998c1b948fd6655d1f5e0e885d77c0ff9e207074b3155dc
gimp-debuginfo-2.99.8-4.el9_2.4.s390x.rpm SHA-256: 92c24705e04a2e3ceadf6a158fa7edc6230837f84cfd94a0dd5ea6fecd577fca
gimp-debugsource-2.99.8-4.el9_2.4.s390x.rpm SHA-256: 38f3a6be97ca121a2b37e17f43be36a86a3b0a0ab374bdf05159abce84fb83d2
gimp-devel-tools-debuginfo-2.99.8-4.el9_2.4.s390x.rpm SHA-256: b68336ec2aba9f0a3d6f2bef35c742120220859ca2990b3617b26e9364c5634b
gimp-libs-2.99.8-4.el9_2.4.s390x.rpm SHA-256: 833b4e1054e50526f95419416ae097739626c9f6fe6cf670fdda3bd58dc05dff
gimp-libs-debuginfo-2.99.8-4.el9_2.4.s390x.rpm SHA-256: f707e23a4087da564509057452b10b6481e2211286a4611df37e1a1be4146d15

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility