Количество 14
Количество 14
BDU:2026-05289
Уязвимость библиотеки для обработки изображений Gimp, связанная с переполнением буфера в динамической памяти, позволяющая нарушителю выполнить произвольный код
CVE-2026-4153
GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSP files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28874.
CVE-2026-4153
GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSP files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28874.
CVE-2026-4153
GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSP files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28874.
CVE-2026-4153
GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution ...
GHSA-rr9p-8245-3f99
GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSP files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28874.
SUSE-SU-2026:1193-1
Security update for gimp
openSUSE-SU-2026:20428-1
Security update for gimp
RLSA-2026:17533
Important: gimp:2.8 security update
ELSA-2026-26168
ELSA-2026-26168: gimp security update (IMPORTANT)
ELSA-2026-17533
ELSA-2026-17533: gimp:2.8 security update (IMPORTANT)
RLSA-2026:16484
Important: gimp security update
ELSA-2026-19362
ELSA-2026-19362: gimp security update (IMPORTANT)
ELSA-2026-16484
ELSA-2026-16484: gimp security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2026-05289 Уязвимость библиотеки для обработки изображений Gimp, связанная с переполнением буфера в динамической памяти, позволяющая нарушителю выполнить произвольный код | CVSS3: 7.8 | 1% Низкий | 5 месяцев назад | |
CVE-2026-4153 GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSP files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28874. | CVSS3: 7.8 | 1% Низкий | 4 месяца назад | |
CVE-2026-4153 GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSP files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28874. | CVSS3: 7.8 | 1% Низкий | 4 месяца назад | |
CVE-2026-4153 GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSP files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28874. | CVSS3: 7.8 | 1% Низкий | 4 месяца назад | |
CVE-2026-4153 GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution ... | CVSS3: 7.8 | 1% Низкий | 4 месяца назад | |
GHSA-rr9p-8245-3f99 GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSP files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28874. | CVSS3: 7.8 | 1% Низкий | 4 месяца назад | |
SUSE-SU-2026:1193-1 Security update for gimp | 4 месяца назад | |||
openSUSE-SU-2026:20428-1 Security update for gimp | 4 месяца назад | |||
RLSA-2026:17533 Important: gimp:2.8 security update | 3 месяца назад | |||
ELSA-2026-26168 ELSA-2026-26168: gimp security update (IMPORTANT) | 3 дня назад | |||
ELSA-2026-17533 ELSA-2026-17533: gimp:2.8 security update (IMPORTANT) | 3 месяца назад | |||
RLSA-2026:16484 Important: gimp security update | 3 месяца назад | |||
ELSA-2026-19362 ELSA-2026-19362: gimp security update (IMPORTANT) | около 1 месяца назад | |||
ELSA-2026-16484 ELSA-2026-16484: gimp security update (IMPORTANT) | 3 месяца назад |
Уязвимостей на страницу