CVE-2025-48797: Red Hat Enterprise Linux 6

High severity, CVSS 7.3. EPSS: 0.3% chance of exploitation in the next 30 days.

A flaw was found in GIMP when processing certain TGA image files. If a user opens one of these image files that has been specially crafted by an attacker, GIMP can be tricked into making serious memory errors, potentially leading to crashes and causing a heap buffer overflow.

Affected products

  • Red Hat Red Hat Enterprise Linux 6
  • Red Hat Red Hat Enterprise Linux 7 Extended Lifecycle Support: before 2:2.8.22-1.el7_9.2 (fixed in 2:2.8.22-1.el7_9.2)
  • Red Hat Red Hat Enterprise Linux 8: before 8100020250614205641.4c9c024f (fixed in 8100020250614205641.4c9c024f)
  • Red Hat Red Hat Enterprise Linux 8.2 Advanced Update Support: before 8020020250618101631.c3a0935b (fixed in 8020020250618101631.c3a0935b)
  • Red Hat Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support: before 8040020250618100956.70584597 (fixed in 8040020250618100956.70584597)
  • Red Hat Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support: before 8060020250618100419.6af1eaf0 (fixed in 8060020250618100419.6af1eaf0)
  • Red Hat Red Hat Enterprise Linux 8.6 Telecommunications Update Service: before 8060020250618100419.6af1eaf0 (fixed in 8060020250618100419.6af1eaf0)
  • Red Hat Red Hat Enterprise Linux 8.6 Update Services For SAP Solutions: before 8060020250618100419.6af1eaf0 (fixed in 8060020250618100419.6af1eaf0)
  • Red Hat Red Hat Enterprise Linux 8.8 Telecommunications Update Service: before 8080020250623120629.0621e4ee (fixed in 8080020250623120629.0621e4ee)
  • Red Hat Red Hat Enterprise Linux 8.8 Update Services For SAP Solutions: before 8080020250623120629.0621e4ee (fixed in 8080020250623120629.0621e4ee)
  • Red Hat Red Hat Enterprise Linux 9: before 2:2.99.8-4.el9_6.2 (fixed in 2:2.99.8-4.el9_6.2)
  • Red Hat Red Hat Enterprise Linux 9.0 Update Services For SAP Solutions: before 2:2.99.8-3.el9_0.1 (fixed in 2:2.99.8-3.el9_0.1)
  • Red Hat Red Hat Enterprise Linux 9.2 Update Services For SAP Solutions: before 2:2.99.8-4.el9_2.1 (fixed in 2:2.99.8-4.el9_2.1)
  • Red Hat Red Hat Enterprise Linux 9.4 Extended Update Support: before 2:2.99.8-4.el9_4.1 (fixed in 2:2.99.8-4.el9_4.1)

Published 2025-05-27. Last modified 2026-06-30.