Количество 14
Количество 14
BDU:2026-05288
Уязвимость библиотеки для обработки изображений Gimp, связанная с целочисленным переполнением, позволяющая нарушителю выполнить произвольный код
CVE-2026-4150
GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28807.
CVE-2026-4150
GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28807.
CVE-2026-4150
GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28807.
CVE-2026-4150
GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerabi ...
GHSA-wgjm-63ch-mwj3
GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28807.
SUSE-SU-2026:1193-1
Security update for gimp
openSUSE-SU-2026:20428-1
Security update for gimp
RLSA-2026:17533
Important: gimp:2.8 security update
ELSA-2026-26168
ELSA-2026-26168: gimp security update (IMPORTANT)
ELSA-2026-17533
ELSA-2026-17533: gimp:2.8 security update (IMPORTANT)
RLSA-2026:16484
Important: gimp security update
ELSA-2026-19362
ELSA-2026-19362: gimp security update (IMPORTANT)
ELSA-2026-16484
ELSA-2026-16484: gimp security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2026-05288 Уязвимость библиотеки для обработки изображений Gimp, связанная с целочисленным переполнением, позволяющая нарушителю выполнить произвольный код | CVSS3: 7.8 | 1% Низкий | 5 месяцев назад | |
CVE-2026-4150 GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28807. | CVSS3: 7.8 | 1% Низкий | 4 месяца назад | |
CVE-2026-4150 GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28807. | CVSS3: 7.8 | 1% Низкий | 4 месяца назад | |
CVE-2026-4150 GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28807. | CVSS3: 7.8 | 1% Низкий | 4 месяца назад | |
CVE-2026-4150 GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerabi ... | CVSS3: 7.8 | 1% Низкий | 4 месяца назад | |
GHSA-wgjm-63ch-mwj3 GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28807. | CVSS3: 7.8 | 1% Низкий | 4 месяца назад | |
SUSE-SU-2026:1193-1 Security update for gimp | 4 месяца назад | |||
openSUSE-SU-2026:20428-1 Security update for gimp | 4 месяца назад | |||
RLSA-2026:17533 Important: gimp:2.8 security update | 3 месяца назад | |||
ELSA-2026-26168 ELSA-2026-26168: gimp security update (IMPORTANT) | 3 дня назад | |||
ELSA-2026-17533 ELSA-2026-17533: gimp:2.8 security update (IMPORTANT) | 3 месяца назад | |||
RLSA-2026:16484 Important: gimp security update | 3 месяца назад | |||
ELSA-2026-19362 ELSA-2026-19362: gimp security update (IMPORTANT) | около 1 месяца назад | |||
ELSA-2026-16484 ELSA-2026-16484: gimp security update (IMPORTANT) | 3 месяца назад |
Уязвимостей на страницу