- What: Security update for gegl in Red Hat Enterprise Linux
- Impact: Systems using GEGL may be vulnerable if not updated
Red Hat Product Errata RHSA-2026:64803 - Security Advisory Issued: 2026-09-08 Updated: 2026-09-08 RHSA-2026:64803 - Security Advisory Overview Updated Packages Synopsis Important: gegl security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for gegl is now available for Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support and Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description GEGL (Generic Graphics Library) is a graph-based image processing framework. Security Fix(es): gimp: GIMP: Arbitrary code execution via heap-based buffer overflow in HDR file parsing (CVE-2026-2050) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 - Extended Life Cycle Long Life 8.6 x86_64 Red Hat Enterprise Linux Server - AUS 8.6 x86_64 Fixes BZ - 2492593 - CVE-2026-2050 gimp: GIMP: Arbitrary code execution via heap-based buffer overflow in HDR file parsing CVEs CVE-2026-2050 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 - Extended Life Cycle Long Life 8.6 SRPM gegl-0.2.0-39.el8_6.1.src.rpm SHA-256: e4cba5e8c230078c37cec2352ab04448b67bd912694b802c05bf95f00b9e9386 x86_64 gegl-0.2.0-39.el8_6.1.i686.rpm SHA-256: 16a941ce39137d9bf59a50f94b2edb007802ab2d6a1412efb7e0332c90ec54fc gegl-0.2.0-39.el8_6.1.x86_64.rpm SHA-256: 01f54b1da2c1b58ecd37c4d8427a409b2fd2050bc13415265576539d8cc2b5cb gegl-debuginfo-0.2.0-39.el8_6.1.i686.rpm SHA-256: fa364f554f35b6b8140f50d2861060a189f7ac8779bc749f46f8fa4a002bc19e gegl-debuginfo-0.2.0-39.el8_6.1.x86_64.rpm SHA-256: ce6d33567c2f5a33882db4fdf1e248eae00943d22186141b4666f7063eea22b9 gegl-debugsource-0.2.0-39.el8_6.1.i686.rpm SHA-256: a4df2e3c77f04deefb5f8a2e183a1e2df3c45769adf29ea35abb2103adbad4be gegl-debugsource-0.2.0-39.el8_6.1.x86_64.rpm SHA-256: 21ee54ff185c02c6df8fa1dc7b0f2be683e6154f18ec8f8c681a1b57143cca84 Red Hat Enterprise Linux Server - AUS 8.6 SRPM gegl-0.2.0-39.el8_6.1.src.rpm SHA-256: e4cba5e8c230078c37cec2352ab04448b67bd912694b802c05bf95f00b9e9386 x86_64 gegl-0.2.0-39.el8_6.1.i686.rpm SHA-256: 16a941ce39137d9bf59a50f94b2edb007802ab2d6a1412efb7e0332c90ec54fc gegl-0.2.0-39.el8_6.1.x86_64.rpm SHA-256: 01f54b1da2c1b58ecd37c4d8427a409b2fd2050bc13415265576539d8cc2b5cb gegl-debuginfo-0.2.0-39.el8_6.1.i686.rpm SHA-256: fa364f554f35b6b8140f50d2861060a189f7ac8779bc749f46f8fa4a002bc19e gegl-debuginfo-0.2.0-39.el8_6.1.x86_64.rpm SHA-256: ce6d33567c2f5a33882db4fdf1e248eae00943d22186141b4666f7063eea22b9 gegl-debugsource-0.2.0-39.el8_6.1.i686.rpm SHA-256: a4df2e3c77f04deefb5f8a2e183a1e2df3c45769adf29ea35abb2103adbad4be gegl-debugsource-0.2.0-39.el8_6.1.x86_64.rpm SHA-256: 21ee54ff185c02c6df8fa1dc7b0f2be683e6154f18ec8f8c681a1b57143cca84 The Red Hat security contact is secalert@redhat.com . More contact details at https://access.redhat.com/security/team/contact/ .