CVE-2026-58380 Details
Description
A flaw was found in GIMP's PNM file format parser. When parsing a specially crafted PNM file, the pnmscanner_gettoken() function writes a null terminator one byte past the end of a stack-allocated buffer due to an off-by-one error in the loop boundary check. This could lead to memory corruption, potentially resulting in denial of service or arbitrary code execution.
A stack buffer overflow vulnerability has been identified in GIMP's PNM file format parser. This flaw arises from an off-by-one error in the `pnmscanner_gettoken()` function, which writes a null terminator one byte past the end of a stack-allocated buffer. The vulnerability can be exploited by opening a specially crafted PNM file, leading to memory corruption that could allow for arbitrary code execution or cause a denial-of-service condition.
Users can update to GIMP version 3.2.4, where this vulnerability has been fixed.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Jul 6, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://access.redhat.com/errata/RHSA-2026:40751 | [email protected] | |
| https://access.redhat.com/errata/RHSA-2026:62507 | [email protected] | |
| https://access.redhat.com/security/cve/CVE-2026-58380 | [email protected] | Third Party Advisory |
| https://bugzilla.redhat.com/show_bug.cgi?id=2496135 | [email protected] | Issue TrackingThird Party Advisory |
| https://gitlab.gnome.org/GNOME/gimp/-/commit/83699817 | [email protected] | Broken Link |
| https://gitlab.gnome.org/GNOME/gimp/-/issues/16206 | [email protected] | ExploitIssue TrackingVendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-193 | Off-by-one Error | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| gimp gimp | 3.2.4 |
CPE
Remediation
| |
| redhat enterprise linux | 7.0 8.0 9.0 |
CPE
Remediation
| |
Change History
5 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Sep 2, 2026 | CVE Modified | [email protected] |
| Jul 16, 2026 | CVE Modified | [email protected] |
| Jul 10, 2026 | Initial Analysis | [email protected] |
| Jul 6, 2026 | CVE Modified | CISA-ADP |
| Jul 6, 2026 | New CVE Received | [email protected] |