Red HatCVE-2026-6695
Red Hat GIMP. A remote attacker: out-of-bounds write
Medium5.5CVE-2026-6695 · Published Aug 3, 2026 · updated Aug 19, 2026
A flaw was found in GIMP. A remote attacker could exploit this by tricking a user into opening a specially crafted PAA (Paint Shop Pro Array) image file. This vulnerability, a heap-based out-of-bounds write in the decode_lzss() function of the PAA file format plugin, allows data to be written beyond the intended memory buffer. This could lead to heap metadata corruption and potentially enable the attacker to execute arbitrary code on the affected system.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| Red Hat Enterprise Linux 6 Product | all versions | No fix yet |
| Red Hat Enterprise Linux 7 Product | all versions | No fix yet |
| Red Hat Enterprise Linux 8 Product | all versions | No fix yet |
| Red Hat Enterprise Linux 9 Product | all versions | No fix yet |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-805
More Red Hat advisories
All Red Hat| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Aug 3 | Red Hat Enterprise Linux: race condition | Medium4.4 | No fix yet |
| Aug 3 | Red Hat 389 Directory Server: improper authentication | Medium5.4 | No fix yet |
| Aug 3 | Red Hat GNU tar.: link following | Medium4.4 | No fix yet |
| Aug 3 | Red Hat SSSD: out-of-bounds read | Medium5.5 | No fix yet |
| Aug 3 | Red Hat GIMP: stack buffer overflow | Medium5.5 | No fix yet |
| Aug 2 | Red Hat user creation: information disclosure | Medium6.6 | No fix yet |