Description
A flaw was found in the GIMP image manipulation program, specifically within its Seattle Filmworks file loader. A remote attacker could exploit this vulnerability by tricking a user into opening a specially crafted Seattle Filmworks file. This could lead to a heap overflow, allowing the attacker to write several kilobytes of controlled data beyond the intended memory buffer. Such an overflow can result in memory corruption, potentially leading to arbitrary code execution or a denial of service.
Published: 2026-08-10
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A flaw in GIMP’s Seattle Filmworks file loader writes a user‑controlled length into an undersized buffer during fread, causing a heap overflow. This memory corruption can lead to the execution of attacker‑controlled code or a denial of service if the buffer is overwritten with malicious data.

Affected Systems

The vulnerability affects the GIMP image manipulation program shipped with Red Hat Enterprise Linux 6, 7, 8 and 9. Exact patch levels are not specified, but any installation containing the vulnerable GIMP version is at risk.

Risk and Exploitability

The CVSS score of 7.8 indicates moderate‑to‑high severity. No EPSS score is available, and the vulnerability is not listed in CISA’s KEV catalog. Exploitation requires a user to open a specially crafted .sfw file, so the attack vector is local and interactive. Successful exploitation could allow an attacker to inject arbitrary code or crash the application.

Generated by OpenCVE AI on August 10, 2026 at 13:05 UTC.

Remediation

Vendor Workaround

To mitigate this vulnerability, users should avoid opening Seattle Filmworks (.sfw) files from untrusted sources within the GIMP application. As a general security practice, exercise caution when handling any unsolicited or suspicious files.


OpenCVE Recommended Actions

  • Avoid opening Seattle Filmworks (.sfw) files from untrusted sources when using GIMP.
  • Apply the latest vendor‑provided updates or patches for GIMP as soon as they become available, which rectify the out‑of‑bounds write vulnerability (CWE‑787).
  • If the Seattle Filmworks plugin is unnecessary, disable or uninstall it, or run GIMP inside a sandbox that limits its access to system resources.

Generated by OpenCVE AI on August 10, 2026 at 13:05 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 19 Aug 2026 20:30:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:gimp:gimp:3.2.4:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:*

Wed, 12 Aug 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 11 Aug 2026 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Gimp
Gimp gimp
Vendors & Products Gimp
Gimp gimp

Mon, 10 Aug 2026 11:00:00 +0000

Type Values Removed Values Added
Description A flaw was found in the GIMP image manipulation program, specifically within its Seattle Filmworks file loader. A remote attacker could exploit this vulnerability by tricking a user into opening a specially crafted Seattle Filmworks file. This could lead to a heap overflow, allowing the attacker to write several kilobytes of controlled data beyond the intended memory buffer. Such an overflow can result in memory corruption, potentially leading to arbitrary code execution or a denial of service.
Title Gimp: heap buffer overflow in `file-seattle-filmworks` load — `fread` writes attacker-controlled length into undersized allocation
First Time appeared Redhat
Redhat enterprise Linux
Weaknesses CWE-787
CPEs cpe:/o:redhat:enterprise_linux:6
cpe:/o:redhat:enterprise_linux:7
cpe:/o:redhat:enterprise_linux:8
cpe:/o:redhat:enterprise_linux:9
Vendors & Products Redhat
Redhat enterprise Linux
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}


Subscriptions

Gimp Gimp
Redhat Enterprise Linux
cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2026-08-24T17:11:09.844Z

Reserved: 2026-07-02T15:11:12.820Z

Link: CVE-2026-59087

cve-icon Vulnrichment

Updated: 2026-08-12T15:45:52.426Z

cve-icon NVD

Status : Analyzed

Published: 2026-08-10T11:17:26.910

Modified: 2026-08-24T18:17:00.663

Link: CVE-2026-59087

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-11T14:23:25Z

Weaknesses