REDHAT-BUG-2547446: Medium severity GIMP GIMP vulnerability
Published Oct 7, 2026
·Updated
Finding 4. plug-ins/common/file-gif-export.c, exportimage() (~1053–1057). Same allocation vs GEGL extent mismatch. ASan WRITE. Vector: GIF export on oversized image. CVSS tentative: 6.3 (AC:H).
Affected Software
1 affected component
GIMP GIMP
Event History
Oct 7, 2026
Data Sourced
via Red Hat·02:02 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
Who is realistically exposed to this issue?
Users or systems that export oversized images in GIF format through GIMP are exposed. The affected code is in the GIF export plug-in.
2
What does an attacker need to trigger the issue?
The issue is triggered during GIF export of an oversized image. The tentative CVSS assessment lists attack complexity as high.