Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7p2h-v67m-x5qx

Опубликовано: 27 мая 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.3

Описание

A flaw was found in GIMP when processing XCF image files. If a user opens one of these image files that has been specially crafted by an attacker, GIMP can be tricked into making serious memory errors, potentially leading to crashes and causing use-after-free issues.

A flaw was found in GIMP when processing XCF image files. If a user opens one of these image files that has been specially crafted by an attacker, GIMP can be tricked into making serious memory errors, potentially leading to crashes and causing use-after-free issues.

EPSS

Процентиль: 9%
0.00031
Низкий

7.3 High

CVSS3

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 7.3
ubuntu
10 месяцев назад

A flaw was found in GIMP when processing XCF image files. If a user opens one of these image files that has been specially crafted by an attacker, GIMP can be tricked into making serious memory errors, potentially leading to crashes and causing use-after-free issues.

CVSS3: 7.3
redhat
10 месяцев назад

A flaw was found in GIMP when processing XCF image files. If a user opens one of these image files that has been specially crafted by an attacker, GIMP can be tricked into making serious memory errors, potentially leading to crashes and causing use-after-free issues.

CVSS3: 7.3
nvd
10 месяцев назад

A flaw was found in GIMP when processing XCF image files. If a user opens one of these image files that has been specially crafted by an attacker, GIMP can be tricked into making serious memory errors, potentially leading to crashes and causing use-after-free issues.

CVSS3: 7.3
debian
10 месяцев назад

A flaw was found in GIMP when processing XCF image files. If a user op ...

CVSS3: 7.3
fstec
10 месяцев назад

Уязвимость графического редактора GIMP, связанная с использованием памяти после её освобождения, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 9%
0.00031
Низкий

7.3 High

CVSS3

Дефекты

CWE-416