CVE-2025-8672
- EPSS 0.02%
- Published 11.08.2025 12:21:48
- Last modified 12.09.2025 14:53:49
MacOS version of GIMP bundles a Python interpreter that inherits the Transparency, Consent, and Control (TCC) permissions granted by the user to the main application bundle. An attacker with local user access can invoke this interpreter with arbitrar...
CVE-2025-6035
- EPSS 0.02%
- Published 13.06.2025 15:21:17
- Last modified 21.08.2025 20:15:48
A flaw was found in GIMP. An integer overflow vulnerability exists in the GIMP "Despeckle" plug-in. The issue occurs due to unchecked multiplication of image dimensions, such as width, height, and bytes-per-pixel (img_bpp), which can result in alloc...
CVE-2025-5473
- EPSS 0.28%
- Published 06.06.2025 18:44:38
- Last modified 18.08.2025 16:00:12
GIMP ICO File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the...
CVE-2025-2761
- EPSS 0.04%
- Published 23.04.2025 16:47:31
- Last modified 14.08.2025 15:46:32
GIMP FLI File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that ...
CVE-2025-2760
- EPSS 0.09%
- Published 23.04.2025 16:47:21
- Last modified 14.08.2025 15:46:44
GIMP XWD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the...
CVE-2023-44444
- EPSS 51.26%
- Published 03.05.2024 03:16:00
- Last modified 14.08.2025 16:12:34
GIMP PSP File Parsing Off-By-One Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the targe...
CVE-2023-44443
- EPSS 65.44%
- Published 03.05.2024 03:16:00
- Last modified 14.08.2025 16:18:33
GIMP PSP File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the...
CVE-2023-44442
- EPSS 59.84%
- Published 03.05.2024 03:15:59
- Last modified 14.08.2025 16:20:44
GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability i...
CVE-2023-44441
- EPSS 12.33%
- Published 03.05.2024 03:15:59
- Last modified 14.08.2025 16:34:40
GIMP DDS File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability i...
CVE-2022-32990
- EPSS 0.1%
- Published 24.06.2022 14:15:07
- Last modified 21.11.2024 07:07:22
An issue in gimp_layer_invalidate_boundary of GNOME GIMP 2.10.30 allows attackers to trigger an unhandled exception via a crafted XCF file, causing a Denial of Service (DoS).