
Cloud Vulnerability DB
コミュニティ主導の脆弱性データベース
CVE-2026-59091 is a high-severity out-of-bounds write vulnerability affecting GIMP's file format plugins, specifically the file-psd and file-paa plugins. A remote attacker can exploit this flaw by tricking a user into opening a specially crafted PSD or PAA image file, potentially leading to unexpected application behavior, information disclosure, or arbitrary code execution. The vulnerability was reported on July 2, 2026, and publicly disclosed on August 10, 2026. It carries a CVSS v3.1 base score of 7.3 (High), assigned by Red Hat as the CNA (Red Hat Advisory, Github Advisory).
The root cause is classified as CWE-787 (Out-of-bounds Write), where GIMP's file format parsing code writes data beyond the bounds of an allocated buffer when processing malformed PSD or PAA image files. According to the Red Hat Bugzilla report, a source-level audit identified two vulnerabilities in default-install plugins (file-psd, file-paa), both independently reproduced with standalone proof-of-concept code and confirmed via AddressSanitizer in a Fedora 41 Docker environment. Exploitation requires only that the victim perform a standard "File > Open" action — no additional user interaction beyond opening the file is needed. The attack vector is local (the file must be opened on the victim's system), requires low privileges, and low attack complexity (Red Hat Bugzilla, Red Hat Advisory).
Successful exploitation can result in high confidentiality, integrity, and availability impact on the affected system. An attacker who tricks a user into opening a malicious PSD or PAA file in GIMP could achieve arbitrary code execution with the privileges of the user running GIMP, access sensitive files readable by that user, or crash the application. Red Hat classifies this as an "Important" vulnerability capable of enabling information disclosure or potential arbitrary code execution (Red Hat Advisory).
As of the disclosure date (August 10, 2026), there is no evidence of public proof-of-concept exploit code being released or active in-the-wild exploitation. However, the Red Hat Bugzilla entry notes that standalone PoC files were developed internally and used to confirm the vulnerabilities during the audit. The EPSS score is 0.0, indicating a currently low probability of exploitation in the wild. The vulnerability is not listed in the CISA Known Exploited Vulnerabilities (KEV) catalog at this time (Red Hat Bugzilla, Github Advisory).
file-psd or file-paa plugin by embedding malformed data in the file structure..psd or .paa files in user download directories, temporary folders, or email attachment staging areas.gimp, gimp-2.x) crashing unexpectedly or spawning unusual child processes (e.g., shell interpreters, network utilities) after opening an image file.file-psd or file-paa plugin modules; AddressSanitizer-style memory error output if GIMP is compiled with sanitizers.A patch has been made available; users should update GIMP to the patched version as soon as it is distributed by their vendor or the GIMP project. Red Hat advises users to avoid opening untrusted image files, particularly those in PSD or PAA formats, with GIMP, and to exercise caution with files from unknown or suspicious sources. As an additional control, organizations can implement application allowlisting or file type restrictions to limit which image formats users can open in GIMP. The GNOME/GIMP project issue tracking the fix is available at the upstream work item (Red Hat Advisory, Github Advisory).
ソース: このレポートは AI を使用して生成されました
無料の脆弱性評価
9つのセキュリティドメインにわたるクラウドセキュリティプラクティスを評価して、リスクレベルをベンチマークし、防御のギャップを特定します。
パーソナライズされたデモを見る
"私が今まで見た中で最高のユーザーエクスペリエンスは、クラウドワークロードを完全に可視化します。"
"Wiz を使えば、クラウド環境で何が起こっているかを 1 つの画面で確認することができます"
"Wizが何かを重要視した場合、それは実際に重要であることを私たちは知っています。"