Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-58380

Опубликовано: 11 апр. 2026
Источник: redhat
CVSS3: 7.3
EPSS Низкий

Описание

A flaw was found in GIMP's PNM file format parser. When parsing a specially crafted PNM file, the pnmscanner_gettoken() function writes a null terminator one byte past the end of a stack-allocated buffer due to an off-by-one error in the loop boundary check. This could lead to memory corruption, potentially resulting in denial of service or arbitrary code execution.

Отчет

This Moderate flaw in GIMP's PNM file parser could lead to memory corruption and potentially arbitrary code execution or denial of service. The vulnerability requires a user to open a specially crafted PNM image file with GIMP. As a desktop application, the impact is limited to the user's session and requires user interaction.

Меры по смягчению последствий

None — requires opening a crafted PNM file.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6gimpOut of support scope
Red Hat Enterprise Linux 7gimpAffected
Red Hat Enterprise Linux 8gimp:2.8/gimpAffected
Red Hat Enterprise Linux 9gimpAffected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-193
https://bugzilla.redhat.com/show_bug.cgi?id=2496135gimp: gimp: Stack buffer overflow in pnmscanner_gettoken()

EPSS

Процентиль: 17%
0.00257
Низкий

7.3 High

CVSS3

Связанные уязвимости

CVSS3: 7.3
ubuntu
25 дней назад

A flaw was found in GIMP's PNM file format parser. When parsing a specially crafted PNM file, the pnmscanner_gettoken() function writes a null terminator one byte past the end of a stack-allocated buffer due to an off-by-one error in the loop boundary check. This could lead to memory corruption, potentially resulting in denial of service or arbitrary code execution.

CVSS3: 7.3
nvd
25 дней назад

A flaw was found in GIMP's PNM file format parser. When parsing a specially crafted PNM file, the pnmscanner_gettoken() function writes a null terminator one byte past the end of a stack-allocated buffer due to an off-by-one error in the loop boundary check. This could lead to memory corruption, potentially resulting in denial of service or arbitrary code execution.

CVSS3: 7.3
debian
25 дней назад

A flaw was found in GIMP's PNM file format parser. When parsing a spec ...

CVSS3: 7.3
github
25 дней назад

A flaw was found in GIMP's PNM file format parser. When parsing a specially crafted PNM file, the pnmscanner_gettoken() function writes a null terminator one byte past the end of a stack-allocated buffer due to an off-by-one error in the loop boundary check. This could lead to memory corruption, potentially resulting in denial of service or arbitrary code execution.

EPSS

Процентиль: 17%
0.00257
Низкий

7.3 High

CVSS3