Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-59091

Опубликовано: 10 авг. 2026
Источник: debian
EPSS Низкий

Описание

A flaw was found in GIMP's file format plugins, including those for PSD and PAA files. A remote attacker could exploit these vulnerabilities by tricking a user into opening a specially crafted image file. This could lead to unexpected application behavior or other potential security impacts without requiring further user interaction.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gimpunfixedpackage
gimpnot-affectedtrixiepackage
gimpnot-affectedbookwormpackage
gimpnot-affectedbullseyepackage

Примечания

  • https://gitlab.gnome.org/GNOME/gimp/-/work_items/16510

  • Fixed by: https://gitlab.gnome.org/GNOME/gimp/-/commit/eb91d3b793fbe0766520a3510d9396fbbed916f7

  • Introduced by: https://gitlab.gnome.org/GNOME/gimp/-/commit/901d1cd9d9680927e76001ad13411fe0df922300 (GIMP_3_1_4)

EPSS

Процентиль: 28%
0.00351
Низкий

Связанные уязвимости

CVSS3: 7.3
ubuntu
17 дней назад

A flaw was found in GIMP's file format plugins, including those for PSD and PAA files. A remote attacker could exploit these vulnerabilities by tricking a user into opening a specially crafted image file. This could lead to unexpected application behavior or other potential security impacts without requiring further user interaction.

CVSS3: 7.3
redhat
2 месяца назад

A flaw was found in GIMP's file format plugins, including those for PSD and PAA files. A remote attacker could exploit these vulnerabilities by tricking a user into opening a specially crafted image file. This could lead to unexpected application behavior or other potential security impacts without requiring further user interaction.

CVSS3: 7.3
nvd
17 дней назад

A flaw was found in GIMP's file format plugins, including those for PSD and PAA files. A remote attacker could exploit these vulnerabilities by tricking a user into opening a specially crafted image file. This could lead to unexpected application behavior or other potential security impacts without requiring further user interaction.

CVSS3: 7.3
github
17 дней назад

A flaw was found in GIMP's file format plugins, including those for PSD and PAA files. A remote attacker could exploit these vulnerabilities by tricking a user into opening a specially crafted image file. This could lead to unexpected application behavior or other potential security impacts without requiring further user interaction.

EPSS

Процентиль: 28%
0.00351
Низкий