PT-2026-33129 · Gimp · Gimp

Mzfr

·

Published

2026-04-15

·

Updated

2026-04-16

·

CVE-2026-40918

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions GIMP (affected versions not specified)
Description Processing a specially crafted PVR image file with large dimensions can lead to a denial of service (DoS). This issue is caused by a stack-based buffer overflow and an out-of-bounds read in the PVR image loader, which results in the application crashing. Systems that process untrusted PVR image files are affected.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Weakness Enumeration

Related Identifiers

BDU:2026-05647
CVE-2026-40918

Affected Products

Gimp