Skip to content
Red HatCVE-2026-58380

Red Hat GIMP: memory corruption

High7.3CVE-2026-58380 · Published Jul 6, 2026 · updated Sep 2, 2026

A flaw was found in GIMP's PNM file format parser. When parsing a specially crafted PNM file, the pnmscanner_gettoken() function writes a null terminator one byte past the end of a stack-allocated buffer due to an off-by-one error in the loop boundary check. This could lead to memory corruption, potentially resulting in denial of service or arbitrary code execution.

Red Hat advisory

Affected versions

PackageAffectedFixed in
Red Hat Enterprise Linux 6
Product
all versionsNo fix yet
Red Hat Enterprise Linux 7
Product
all versionsNo fix yet
Details and references

More Red Hat advisories

All Red Hat
Advisory
Red Hat SSSD: path traversal
High8.0Jul 7
Red Hat SSSD: insecure default
High8.8Jul 7
Red Hat GIMP: integer overflow
High7.3Jul 7
Red Hat GIMP. The PlayStation TIM loader: integer overflow
Medium5.5Jul 6
Red Hat Advanced Cluster Security 4: denial of service
High7.7Jul 6
A flaw exists in the org.keycloak.broker.oidc package where the OIDC broker...
Medium4.8Jul 5

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.