GIMP 的 file-psd 插件中存在一个缺陷。在处理一个精心构造的 PSD 图像文件时,该插件未对通道数量(channel-count)参数进行正确校验。这种不正确的校验会导致内存边界检查不当,从而引发堆内存越界读取和栈内存越界访问。该问题可能导致应用程序崩溃,进而造成服务拒绝(DoS),或导致内存内容被有限地泄露。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 6 | any |
unknown |
| Red Hat | Red Hat Enterprise Linux 7 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 8 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 9 | any |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 6 | - |
cpe:/o:redhat:enterprise_linux:6
|
|
| Red Hat | Red Hat Enterprise Linux 7 | - |
cpe:/o:redhat:enterprise_linux:7
|
|
| Red Hat | Red Hat Enterprise Linux 8 | - |
cpe:/o:redhat:enterprise_linux:8
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-82330 | 6.1 MEDIUM | Gimp: heap out-of-bounds read in pvr vq (compressed) decoder due to missing bounds check |
| CVE-2026-82328 | 6.1 MEDIUM | Gimp: heap out-of-bounds read in ico loader via unvalidated used_clrs palette count |
| CVE-2026-82324 | 6.1 MEDIUM | Gimp: heap out-of-bounds reads in iff/ilbm loader from ham row size mismatch and nplanes=0 |
| CVE-2026-82327 | 5.5 MEDIUM | Libsolv: libsolv: out-of-bounds write in repo_write() via unvalidated directory id from ve |
| CVE-2026-18393 | 5.4 MEDIUM | Ffmpeg: ffmpeg: heap buffer overflow in tdsc_load_cursor() via cur_fmt_mono cursor |
No comments yet