CVE-2026-59088
- EPSS 0.26%
- Veröffentlicht 10.08.2026 10:53:03
- Zuletzt bearbeitet 21.08.2026 12:16:29
A flaw was found in GIMP. A signed integer overflow vulnerability exists in the `file-fli` plugin when processing FLI image files. This occurs due to an incorrect calculation during memory allocation for image buffers, where the multiplication of ima...
CVE-2026-59087
- EPSS 0.37%
- Veröffentlicht 10.08.2026 10:47:07
- Zuletzt bearbeitet 24.08.2026 18:17:00
A flaw was found in the GIMP image manipulation program, specifically within its Seattle Filmworks file loader. A remote attacker could exploit this vulnerability by tricking a user into opening a specially crafted Seattle Filmworks file. This could ...
CVE-2026-6695
- EPSS 0.24%
- Veröffentlicht 03.08.2026 04:05:30
- Zuletzt bearbeitet 19.08.2026 20:28:20
A flaw was found in GIMP. A remote attacker could exploit this by tricking a user into opening a specially crafted PAA (Paint Shop Pro Array) image file. This vulnerability, a heap-based out-of-bounds write in the decode_lzss() function of the PAA fi...
CVE-2026-66757
- EPSS 0.2%
- Veröffentlicht 27.07.2026 19:17:23
- Zuletzt bearbeitet 10.08.2026 13:45:01
A flaw was found in the file-sgi plugin in GIMP. When processing an RLE-compressed SGI image, the plugin allocates memory for a row table. The image header dimensions (ysize and zsize) are read as 16-bit unsigned integers. If a crafted file sets both...
CVE-2026-66758
- EPSS 0.25%
- Veröffentlicht 27.07.2026 19:17:23
- Zuletzt bearbeitet 30.09.2026 15:22:33
A flaw was found in the file-fits plugin in GIMP. When processing a FITS image file, the plugin calculates memory allocation sizes using signed 32-bit integers for width and height. If a crafted file sets both values to large values, their product ex...
CVE-2026-66759
- EPSS 0.21%
- Veröffentlicht 27.07.2026 19:17:23
- Zuletzt bearbeitet 24.08.2026 18:17:01
A flaw was found in the file-icns plugin in GIMP. When applying a decompressed mask during ICNS image processing, the plugin reads from the mask data buffer without verifying if the cursor exceeds the allocated resource size. If a crafted file contai...
CVE-2026-58384
- EPSS 0.26%
- Veröffentlicht 07.07.2026 07:44:28
- Zuletzt bearbeitet 30.09.2026 15:22:31
A flaw was found in GIMP's PSD parser. An integer overflow in read_RLE_channel() can cause an undersized heap allocation for the RLE row-length table, after which subsequent per-row writes corrupt heap memory. This could lead to memory corruption, po...
CVE-2026-59089
- EPSS 0.25%
- Veröffentlicht 06.07.2026 19:38:16
- Zuletzt bearbeitet 21.08.2026 12:16:29
A flaw was found in GIMP. The PlayStation TIM loader, responsible for handling PlayStation image files, incorrectly calculates the size of the Color Look-Up Table (CLUT) due to an integer overflow. This occurs when multiplying num_colors and num_clut...
CVE-2026-58380
- EPSS 0.26%
- Veröffentlicht 06.07.2026 13:58:43
- Zuletzt bearbeitet 30.09.2026 15:22:31
A flaw was found in GIMP's PNM file format parser. When parsing a specially crafted PNM file, the pnmscanner_gettoken() function writes a null terminator one byte past the end of a stack-allocated buffer due to an off-by-one error in the loop boundar...
CVE-2026-58381
- EPSS 0.12%
- Veröffentlicht 02.07.2026 19:45:33
- Zuletzt bearbeitet 22.09.2026 15:21:43
A flaw was found in GIMP's PSP file format parser. A double-free condition occurs in the read_layer_block() function when processing a specially crafted PSP file. This could allow an attacker to cause memory corruption, potentially leading to denial ...