CVE-2026-42169High· 7.3▾ TwilightA heap-buffer-overflow vulnerability exists in the APNG (Animated PNG) file loader of GIMP. This flaw occurs when the `fcTL` width exceeds the `IHDR` width, leading to pixel data being written past the end of a heap allocation. Additiona…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 40.2 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake. The CVSS score shown above comes from the assigning CNA record, not NVD.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via CVEORG
Last analysed / modified upstream
0.2%
A heap-buffer-overflow vulnerability exists in the APNG (Animated PNG) file loader of GIMP. This flaw occurs when the fcTL width exceeds the IHDR width, leading to pixel data being written past the end of a heap allocation. Additionally, a heap-based buffer overflow exists in the DDS plug-in due to a BPP mismatch in the load_layer() function. Both vulnerabilities can be triggered by opening a specially crafted image file, potentially leading to code execution.
gimp (all versions)gimp (all versions)gimpgimpgimp:2.8/gimpRefer to the linked advisories for vendor-supplied fixes and affected version ranges.
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-66758High· 7.8Gimp: integer overflow in file-fits plugin causes a heap-based buffer overflow on crafted fits images
CVE-2026-59090High· 8.4Gimp: gimp: arbitrary code execution in psd plugin due to unsigned underflow
CVE-2026-58384High· 7.3A flaw was found in GIMP's PSD parser
CVE-2026-58380High· 7.3A flaw was found in GIMP's PNM file format parser
CVE-2026-2050High· 7.8GIMP HDR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
CVE-2026-58379High· 7.3A flaw was found in GIMP's Paint Shop Pro (PSP) file format parser