Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-856r-6q67-9x29

Опубликовано: 15 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5

Описание

A flaw was found in GIMP. This vulnerability, a heap buffer over-read in the icns_slurp() function, occurs when processing specially crafted ICNS image files. An attacker could provide a malicious ICNS file, potentially leading to application crashes or information disclosure on systems that process such files.

A flaw was found in GIMP. This vulnerability, a heap buffer over-read in the icns_slurp() function, occurs when processing specially crafted ICNS image files. An attacker could provide a malicious ICNS file, potentially leading to application crashes or information disclosure on systems that process such files.

EPSS

Процентиль: 6%
0.00167
Низкий

5 Medium

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 5
ubuntu
4 месяца назад

A flaw was found in GIMP. This vulnerability, a heap buffer over-read in the `icns_slurp()` function, occurs when processing specially crafted ICNS image files. An attacker could provide a malicious ICNS file, potentially leading to application crashes or information disclosure on systems that process such files.

CVSS3: 5
redhat
4 месяца назад

A flaw was found in GIMP. This vulnerability, a heap buffer over-read in the `icns_slurp()` function, occurs when processing specially crafted ICNS image files. An attacker could provide a malicious ICNS file, potentially leading to application crashes or information disclosure on systems that process such files.

CVSS3: 5
nvd
4 месяца назад

A flaw was found in GIMP. This vulnerability, a heap buffer over-read in the `icns_slurp()` function, occurs when processing specially crafted ICNS image files. An attacker could provide a malicious ICNS file, potentially leading to application crashes or information disclosure on systems that process such files.

CVSS3: 5
debian
4 месяца назад

A flaw was found in GIMP. This vulnerability, a heap buffer over-read ...

suse-cvrf
около 1 месяца назад

Security update for gimp

EPSS

Процентиль: 6%
0.00167
Низкий

5 Medium

CVSS3

Дефекты

CWE-125