Description
A flaw was found in GIMP. Processing a specially crafted PVR image file with large dimensions can lead to a denial of service (DoS). This occurs due to a stack-based buffer overflow and an out-of-bounds read in the PVR image loader, causing the application to crash. Systems that process untrusted PVR image files are affected.
Problem types
Incorrect Calculation of Buffer Size
Product status
Timeline
| 2026-04-15: | Reported to Red Hat. |
| 2026-04-15: | Made public. |
Credits
Red Hat would like to thank mzfr for reporting this issue.
References
access.redhat.com/security/cve/CVE-2026-40918
bugzilla.redhat.com/show_bug.cgi?id=2458747 (RHBZ#2458747)