CVE-2026-40917
—CVSS 3.1
7.1 high
EPSS
<1%p6
Published
()
Modified
Description
A flaw was found in GIMP. This vulnerability, a heap buffer over-read in the `icns_slurp()` function, occurs when processing specially crafted ICNS image files. An attacker could provide a malicious ICNS file, potentially leading to application crashes or information disclosure on systems that process such files.
In the news0 stories
No ingested article mentions this CVE yet.