Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-79902

Опубликовано: 26 авг. 2026
Источник: nvd
CVSS3: 5.5
EPSS Низкий

Описание

A flaw was found in the Seattle FilmWorks plugin in GIMP. When processing a specially crafted SFW image file, the plugin allocates a Variable-Length Array (VLA) on the stack without integer overflow checks, causing an unbounded stack allocation. This issue leads to an application crash, resulting in a denial of service.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gimp:gimp:*:*:*:*:*:*:*:*
Версия до 3.3.1 (включая)

EPSS

Процентиль: 10%
0.00201
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 5.5
ubuntu
22 дня назад

A flaw was found in the Seattle FilmWorks plugin in GIMP. When processing a specially crafted SFW image file, the plugin allocates a Variable-Length Array (VLA) on the stack without integer overflow checks, causing an unbounded stack allocation. This issue leads to an application crash, resulting in a denial of service.

CVSS3: 5.5
redhat
около 2 месяцев назад

A flaw was found in the Seattle FilmWorks plugin in GIMP. When processing a specially crafted SFW image file, the plugin allocates a Variable-Length Array (VLA) on the stack without integer overflow checks, causing an unbounded stack allocation. This issue leads to an application crash, resulting in a denial of service.

CVSS3: 5.5
debian
22 дня назад

A flaw was found in the Seattle FilmWorks plugin in GIMP. When process ...

CVSS3: 5.5
github
22 дня назад

A flaw was found in the Seattle FilmWorks plugin in GIMP. When processing a specially crafted SFW image file, the plugin allocates a Variable-Length Array (VLA) on the stack without integer overflow checks, causing an unbounded stack allocation. This issue leads to an application crash, resulting in a denial of service.

EPSS

Процентиль: 10%
0.00201
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-190