Description
A flaw was found in GIMP. When processing a specially crafted lighting preset file, the Lighting Effects filter does not properly validate the number of light sources. This can lead to an out-of-bounds write, corrupting memory. An attacker could exploit this by convincing a user to open a malicious preset file, potentially causing a crash or enabling arbitrary code execution.
Published: 2026-09-14
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution
Action: Assess Impact
AI Analysis

Impact

A flaw in the GIMP Lighting Effects filter allows an out‑of‑bounds write to occur when processing a specially crafted preset file. The bug arises because the number of light sources in the preset is not properly validated, which can corrupt memory. If an attacker succeeds, a crash is likely and, in some circumstances, arbitrary code execution may be achieved. The exploit requires a user to open the malicious preset file within GIMP.

Affected Systems

The vulnerability affects Red Hat Enterprise Linux 6 through 9 where GIMP is installed. No specific GIMP version range is listed, so all current GIMP iterations distributed on these OSes are potentially vulnerable.

Risk and Exploitability

The CVSS score of 7.8 indicates a high severity. EPSS is not available, and the vulnerability is not listed in CISA KEV. The likely attack vector is local; an attacker would need to convince a user to open a malicious preset file in GIMP. While the exploit cannot be launched remotely, a compromised or socially engineered user can trigger the memory corruption, leading to program crashes or potential code execution under the user’s privileges.

Generated by OpenCVE AI on September 15, 2026 at 13:24 UTC.

Remediation

Vendor Workaround

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.


OpenCVE Recommended Actions

  • Contact Red Hat to determine whether an update or patch is available for GIMP on RHEL 6‑9.
  • If no patch exists, disable the Lighting Effects filter or block loading of preset files from untrusted sources until a fix is released.
  • Run GIMP inside a sandbox or enforce SELinux/AppArmor profiles to limit the impact of a memory corruption event.

Generated by OpenCVE AI on September 15, 2026 at 13:24 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-6509-1 gimp security update
History

Thu, 17 Sep 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 15 Sep 2026 12:15:00 +0000

Type Values Removed Values Added
References
Metrics threat_severity

None

threat_severity

Important


Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description A flaw was found in GIMP. When processing a specially crafted lighting preset file, the Lighting Effects filter does not properly validate the number of light sources. This can lead to an out-of-bounds write, corrupting memory. An attacker could exploit this by convincing a user to open a malicious preset file, potentially causing a crash or enabling arbitrary code execution.
Title Gimp: gimp: out-of-bounds write in lighting effects plugin via crafted preset file
First Time appeared Redhat
Redhat enterprise Linux
Weaknesses CWE-787
CPEs cpe:/o:redhat:enterprise_linux:6
cpe:/o:redhat:enterprise_linux:7
cpe:/o:redhat:enterprise_linux:8
cpe:/o:redhat:enterprise_linux:9
Vendors & Products Redhat
Redhat enterprise Linux
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}


Subscriptions

Redhat Enterprise Linux
cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2026-09-17T18:31:04.804Z

Reserved: 2026-09-14T11:41:23.277Z

Link: CVE-2026-90947

cve-icon Vulnrichment

Updated: 2026-09-17T18:30:59.895Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-14T16:17:41.860

Modified: 2026-09-17T19:17:06.580

Link: CVE-2026-90947

cve-icon Redhat

Severity : Important

Publid Date: 2026-09-14T11:52:00Z

Links: CVE-2026-90947 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-09-15T13:30:13Z

Weaknesses