CVE-2026-2271 Details
Description
A flaw was found in GIMP's PSP (Paint Shop Pro) file parser. A remote attacker could exploit an integer overflow vulnerability in the read_creator_block() function by providing a specially crafted PSP image file. This vulnerability occurs when a 32-bit length value from the file is used for memory allocation without proper validation, leading to a heap overflow and an out-of-bounds write. Successful exploitation could result in an application level denial of service.
An integer overflow vulnerability has been identified in GIMP's PSP (Paint Shop Pro) file parser, specifically in the read_creator_block() function. This flaw allows remote attackers to exploit the vulnerability by providing a specially crafted PSP image file. The issue arises when a 32-bit length value read from the file is used for memory allocation without proper validation, leading to a heap overflow and an out-of-bounds write. Successful exploitation of this vulnerability could cause the application to crash or become unstable.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Mar 27, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://access.redhat.com/security/cve/CVE-2026-2271 | [email protected] | Vendor Advisory |
| https://bugzilla.redhat.com/show_bug.cgi?id=2438429 | [email protected] | ExploitIssue TrackingVendor Advisory |
| https://gitlab.gnome.org/GNOME/gimp/-/issues/15732 | [email protected] | ExploitIssue Tracking |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-190 | Integer Overflow or Wraparound | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| gimp gimp | 3.2.0 rc2 |
CPE
Remediation
| |
Change History
5 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Apr 21, 2026 | Initial Analysis | [email protected] |
| Mar 26, 2026 | CVE Modified | [email protected] |
| Mar 26, 2026 | New CVE Received | [email protected] |