Description
A flaw was found in GIMP. When processing a specially crafted GIMPressionist preset file, the plug-in does not properly validate vector indices before writing into fixed-size arrays. This can lead to an out-of-bounds write, corrupting memory. An attacker could exploit this by convincing a user to load a malicious preset file, potentially causing a crash or enabling arbitrary code execution.
Published: 2026-09-24
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution
Action: Apply Workaround
AI Analysis

Impact

A flaw in the GIMP GIMPressionist plugin allows a specially crafted preset file to bypass vector index validation and write beyond the bounds of fixed-size arrays. This out‑of‑bounds write corrupts memory and can lead to a program crash or the execution of arbitrary code. The vulnerability directly compromises memory integrity and, if exploited, grants attackers the ability to take control of the system in which the compromised GIMP instance runs.

Affected Systems

The vulnerability affects GIMP installations running on Red Hat Enterprise Linux releases 6 through 10. Any system that has GIMP installed and that loads GIMPressionist preset files from untrusted sources is potentially affected.

Risk and Exploitability

The CVSS score of 7.8 indicates a high severity impact. The EPSS score is unavailable, but the lack of listing in the CISA KEV catalog suggests no widespread exploitation has been observed to date. The likely attack vector involves an attacker convincing a user to load a malicious preset file, which can be delivered through social engineering, phishing, or malicious websites. While the exploit requires local file access or user interaction, the resulting memory corruption could lead to arbitrary code execution if the attack succeeds.

Generated by OpenCVE AI on September 24, 2026 at 09:21 UTC.

Remediation

Vendor Workaround

Do not load GIMPressionist preset files from untrusted sources.


OpenCVE Recommended Actions

  • Do not load GIMPressionist preset files from untrusted sources.
  • Update GIMP to a version that includes the out‑of‑bounds write fix or apply the latest GNOME or Red Hat patch affecting GIMP.
  • Run GIMP within a sandbox or implement strict file validation before loading preset files.

Generated by OpenCVE AI on September 24, 2026 at 09:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 24 Sep 2026 13:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 24 Sep 2026 12:15:00 +0000

Type Values Removed Values Added
References
Metrics threat_severity

None

threat_severity

Important


Thu, 24 Sep 2026 08:45:00 +0000

Type Values Removed Values Added
Description A flaw was found in GIMP. When processing a specially crafted GIMPressionist preset file, the plug-in does not properly validate vector indices before writing into fixed-size arrays. This can lead to an out-of-bounds write, corrupting memory. An attacker could exploit this by convincing a user to load a malicious preset file, potentially causing a crash or enabling arbitrary code execution.
Title Gimp: gimp: out-of-bounds write in gimpressionist plugin via crafted preset file
First Time appeared Redhat
Redhat enterprise Linux
Weaknesses CWE-787
CPEs cpe:/o:redhat:enterprise_linux:10
cpe:/o:redhat:enterprise_linux:6
cpe:/o:redhat:enterprise_linux:7
cpe:/o:redhat:enterprise_linux:8
cpe:/o:redhat:enterprise_linux:9
Vendors & Products Redhat
Redhat enterprise Linux
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}


Subscriptions

Redhat Enterprise Linux
cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2026-09-24T12:38:52.056Z

Reserved: 2026-09-24T08:09:01.599Z

Link: CVE-2026-97185

cve-icon Vulnrichment

Updated: 2026-09-24T12:38:49.085Z

cve-icon NVD

Status : Received

Published: 2026-09-24T09:17:08.937

Modified: 2026-09-24T13:17:19.730

Link: CVE-2026-97185

cve-icon Redhat

Severity : Important

Publid Date: 2026-09-24T00:00:00Z

Links: CVE-2026-97185 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-09-24T09:30:20Z

Weaknesses