---
id: CVE-2026-59090
title: A flaw was found in GIMP's PSD file format plugin
summary: >-
  A flaw was found in GIMP's PSD file format plugin. This vulnerability, an
  unsigned integer underflow in the `block_rem` variable, occurs when a user
  opens a specially crafted `.psd` image file. The underflow leads to parser
  confusion, en…
severity: high
cvss: 8.4
cvssVector: 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:L/I:H/A:H'
cwe:
  - CWE-191
vendor: gimp
product: gimp
affected:
  - gimp = 3.3.1
  - enterprise_linux = 7.0
  - enterprise_linux = 8.0
  - enterprise_linux = 9.0
published: '2026-08-10'
updated: '2026-09-30'
sourceUpdated: '2026-09-30T15:22:31.890'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-59090'
references:
  - url: 'https://access.redhat.com/errata/RHSA-2026:61587'
    label: secalert@redhat.com
  - url: 'https://access.redhat.com/errata/RHSA-2026:73768'
    label: secalert@redhat.com
  - url: 'https://access.redhat.com/security/cve/CVE-2026-59090'
    label: secalert@redhat.com
  - url: 'https://bugzilla.redhat.com/show_bug.cgi?id=2496584'
    label: secalert@redhat.com
  - url: 'https://gitlab.gnome.org/GNOME/gimp/-/work_items/16509'
    label: secalert@redhat.com
  - url: 'https://gitlab.gnome.org/GNOME/gimp/-/work_items/16509'
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
tags:
  - nvd
  - cve.org
  - exploit-available
epss: 0.00605
epssPercentile: 0.46958
exploitAvailable: true
ssvc:
  exploitation: poc
  automatable: 'no'
  technicalImpact: total
  timestamp: '2026-08-12T03:59:14.740288Z'
ingestedAt: '2026-09-30T15:07:05.380Z'
---

## Overview

A flaw was found in GIMP's PSD file format plugin. This vulnerability, an unsigned integer underflow in the `block_rem` variable, occurs when a user opens a specially crafted `.psd` image file. The underflow leads to parser confusion, enabling an attacker to inject arbitrary data as layer resource blocks. This can ultimately result in arbitrary code execution, allowing the attacker to run malicious code on the victim's system.

## Affected

- `gimp = 3.3.1`
- `enterprise_linux = 7.0`
- `enterprise_linux = 8.0`
- `enterprise_linux = 9.0`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
