ZeroHour

CVE-2026-40918

CVSS 3.1
5.5 medium
EPSS
<1%p9
Published
()
Modified
Description

A flaw was found in GIMP. Processing a specially crafted PVR image file with large dimensions can lead to a denial of service (DoS). This occurs due to a stack-based buffer overflow and an out-of-bounds read in the PVR image loader, causing the application to crash. Systems that process untrusted PVR image files are affected.

Vendors
gimpredhat
Products
gimp, enterprise linux
Weakness
CWE-131
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.