Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-6384

Опубликовано: 15 апр. 2026
Источник: debian
EPSS Низкий

Описание

A flaw was found in gimp. This buffer overflow vulnerability in the GIF image loading component's `ReadJeffsImage` function allows an attacker to write beyond an allocated buffer by processing a specially crafted GIF file. This can lead to a denial of service or potentially arbitrary code execution.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gimpfixed3.2.2-1package
gimpnot-affectedtrixiepackage
gimpnot-affectedbookwormpackage
gimpnot-affectedbullseyepackage

Примечания

  • https://gitlab.gnome.org/GNOME/gimp/-/issues/16076

  • Fixed by: https://gitlab.gnome.org/GNOME/gimp/-/commit/51f1de884407645df64e8ce8490e25f905fde323 (GIMP_3_2_2)

  • Introduced by: https://gitlab.gnome.org/GNOME/gimp/-/commit/6395c37425cc2bf81300ffffadc9e3e75f6c0ecd (GIMP_3_1_2)

EPSS

Процентиль: 18%
0.00261
Низкий

Связанные уязвимости

CVSS3: 7.3
ubuntu
4 месяца назад

A flaw was found in gimp. This buffer overflow vulnerability in the GIF image loading component's `ReadJeffsImage` function allows an attacker to write beyond an allocated buffer by processing a specially crafted GIF file. This can lead to a denial of service or potentially arbitrary code execution.

CVSS3: 7.3
redhat
4 месяца назад

A flaw was found in gimp. This buffer overflow vulnerability in the GIF image loading component's `ReadJeffsImage` function allows an attacker to write beyond an allocated buffer by processing a specially crafted GIF file. This can lead to a denial of service or potentially arbitrary code execution.

CVSS3: 7.3
nvd
4 месяца назад

A flaw was found in gimp. This buffer overflow vulnerability in the GIF image loading component's `ReadJeffsImage` function allows an attacker to write beyond an allocated buffer by processing a specially crafted GIF file. This can lead to a denial of service or potentially arbitrary code execution.

CVSS3: 7.3
github
4 месяца назад

A flaw was found in gimp. This buffer overflow vulnerability in the GIF image loading component's `ReadJeffsImage` function allows an attacker to write beyond an allocated buffer by processing a specially crafted GIF file. This can lead to a denial of service or potentially arbitrary code execution.

EPSS

Процентиль: 18%
0.00261
Низкий