7.8

CVE-2026-58380

Exploit

Gimp: gimp: stack buffer overflow in pnmscanner_gettoken()

A flaw was found in GIMP's PNM file format parser. When parsing a specially crafted PNM file, the pnmscanner_gettoken() function writes a null terminator one byte past the end of a stack-allocated buffer due to an off-by-one error in the loop boundary check. This could lead to memory corruption, potentially resulting in denial of service or arbitrary code execution.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Gimp ≫ Gimp Version 3.2.4
Redhat ≫ Enterprise Linux Version 7.0
Redhat ≫ Enterprise Linux Version 8.0
Redhat ≫ Enterprise Linux Version 9.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.26% 0.173
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
RedHat 7.3 1.3 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
CWE-193 Off-by-one Error

A product calculates or uses an incorrect maximum or minimum value that is 1 more, or 1 less, than the correct value.

https://bugzilla.redhat.com/show_bug.cgi?id=2496135
Third Party Advisory
Issue Tracking
https://access.redhat.com/security/cve/CVE-2026-58380
Third Party Advisory
https://gitlab.gnome.org/GNOME/gimp/-/commit/83699817
Broken Link
https://gitlab.gnome.org/GNOME/gimp/-/issues/16206
Vendor Advisory
Exploit
Issue Tracking
https://access.redhat.com/errata/RHSA-2026:40751
https://access.redhat.com/errata/RHSA-2026:62507
https://access.redhat.com/errata/RHSA-2026:73768