Skip to content
Red HatCVE-2026-58379

Red Hat GIMP: buffer overflow

High7.3CVE-2026-58379 · Published Jul 3, 2026 · updated Jul 13, 2026

A flaw was found in GIMP's Paint Shop Pro (PSP) file format parser. This heap buffer overflow vulnerability allows a remote attacker to cause arbitrary code execution or a denial of service (DoS) by tricking a user into opening a specially crafted PSP image file. The vulnerability occurs because the software incorrectly calculates buffer sizes when processing low bit-depth images, leading to an overwrite of adjacent memory.

Red Hat advisory

Affected versions

PackageAffectedFixed in
Red Hat Enterprise Linux 6
Product
all versionsNo fix yet
Red Hat Enterprise Linux 7
Product
all versionsNo fix yet
Red Hat Enterprise Linux 8
Product
all versionsNo fix yet
Details and references

More Red Hat advisories

All Red Hat
Advisory
Red Hat Keycloak: improper access control
Medium4.3Jul 3
Red Hat ClientResource: insecure direct object reference
Medium5.4Jul 3
A flaw was found in the Fine-Grained Admin Permissions
Medium4.3Jul 3
Red Hat Enterprise Linux: denial of service
Medium4.2Jul 3
Red Hat HPLIP: privilege escalation
Critical9.8Jul 3
Red Hat GIMP: memory corruption
Medium6.1Jul 2

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.