Impact
The GIMP file-pix (ESM) plugin contains a flaw where a variable-length array is allocated on the stack without bounds checking, leading to an unbounded stack allocation and a 21‑byte stack over‑read. The over‑read can cause the stack to be corrupted or exhausted, resulting in a denial of service. Additionally, stack contents may be leaked into an intermediate file, exposing limited information about the system.
Affected Systems
Affected systems include installations of GIMP on Red Hat Enterprise Linux releases 6 through 9. The vulnerability resides in the file‑pix (ESM) plug‑in, so any GIMP installation relying on that plugin is potentially susceptible. Red Hat customers using these RHEL releases should be aware that GIMP on those platforms may be impacted.
Risk and Exploitability
The CVSS score of 6.1 indicates a moderate‑to‑ severity. EPSS is not available, and the vulnerability is not listed in CISA's KEV catalogue, suggesting no publicly known exploitation at this time. The likely attack vector is local: an attacker must supply a crafted PIX file that is opened with GIMP. The impact is limited to denial of service and potential disclosure of small amounts of stack data; remote exploitation is not implied by the available details.
OpenCVE Enrichment