CVE-2026-82343: Gimp: heap out-of-bounds read and stack out-of-bounds access in psd loader from channel-count handling

Published Aug 28, 2026
·
Updated

A flaw was found in the file-psd plugin in GIMP, affecting all versions. When processing a specially crafted PSD image file, the plugin does not properly validate the channel-count parameter. This incorrect validation leads to improper memory bounds checking, resulting in both a heap out-of-bounds read and a stack out-of-bounds access. This issue can result in an application crash, leading to a denial of service or a limited information disclosure of memory contents.

Other sources

A flaw was found in the file-psd plugin in GIMP. When processing a specially crafted PSD image file, the plugin does not properly validate the channel-count parameter. This incorrect validation leads to improper memory bounds checking, resulting in both a heap out-of-bounds read and a stack out-of-bounds access. This issue can result in an application crash, leading to a denial of service or a limited information disclosure of memory contents.

MITRE

Affected Software

1 affected component
GIMP GIMP=undefined

Event History

Aug 28, 2026
Data Sourced
via Red Hat·04:12 PM
DescriptionSeverityAffected Software
CVE Published
via MITRE·04:26 PM
Data Sourced
via MITRE·04:26 PM
DescriptionSeverityWeakness

Frequently Asked Questions

1

Which installations are affected?

The issue affects all versions of GIMP in the file-psd plugin. Systems that use this plugin to process PSD image files are within scope.

2

What is required to trigger the issue?

An attacker needs to cause GIMP to process a specially crafted PSD image whose channel-count parameter is malformed. The vector is local and requires user interaction, such as opening or otherwise processing the file.

3

What is the likely impact of successful exploitation?

Processing the malicious PSD can crash the application, causing denial of service. It may also result in limited disclosure of memory contents; integrity impact is not indicated.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203