PT-2026-55578 · Gimp · Gimp
CVSS v3.1
7.3
High
| Vector | AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
GIMP (affected versions not specified)
Description
A heap buffer overflow exists in the Paint Shop Pro (PSP) file format parser. The issue occurs when the software incorrectly calculates buffer sizes while processing low bit-depth images, which leads to the overwriting of adjacent memory. A remote attacker can exploit this by tricking a user into opening a specially crafted PSP image file, potentially resulting in arbitrary code execution or a denial of service (DoS).
Recommendations
Update GIMP to the patched build provided by your distribution.
Exploit
Fix
DoS
Heap Based Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Gimp