Vulnerability index

Browse CVEs

54 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Gimp HIGH 7.8
CVE-2023-44442EPSS 61%

GIMP PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…

Fix: 2.10.36+
Fix from $1,950 2024-05-03
Gimp MEDIUM 5.5
CVE-2022-32990

An issue in gimp_layer_invalidate_boundary of GNOME GIMP 2.10.30 allows attackers to trigger an unhandled exception via a crafted XCF file, causing a…

Patch available
Fix from $1,600 2022-06-24
Gimp MEDIUM 5.5
CVE-2022-30067

GIMP 2.10.30 and 2.99.10 are vulnerable to Buffer Overflow. Through a crafted XCF file, the program will allocate for a huge amount of memory, result…

No fix yet
Fix from $1,600 2022-05-17
Gimp CRITICAL 9.1
CVE-2018-12713

GIMP through 2.10.2 makes g_get_tmp_dir calls to establish temporary filenames, which may result in a filename that already exists, as demonstrated b…

Fix: after 2.10.2
Fix from $2,300 2018-06-24
Gimp HIGH 7.8
CVE-2016-4994

Use-after-free vulnerability in the xcf_load_image function in app/xcf/xcf-load.c in GIMP allows remote attackers to cause a denial of service (progr…

Fix: 2.8.18+
Fix from $1,950 2016-07-12
Gimp HIGH 7.5
CVE-2012-5576EPSS 7%

Multiple stack-based buffer overflows in file-xwd.c in the X Window Dump (XWD) plug-in in GIMP 2.8.2 allow remote attackers to cause a denial of serv…

Fix: 2.8.4+
Fix from $1,950 2012-12-18
Gimp MEDIUM 6.8
CVE-2012-4245

The scriptfu network server in GIMP 2.6 does not require authentication, which allows remote attackers to execute arbitrary commands via the python-f…

Fix: after 2.6.13
Fix from $1,600 2012-08-31
Gimp MEDIUM 6.8
CVE-2012-3481EPSS 5%

Integer overflow in the ReadImage function in plug-ins/common/file-gif-load.c in the GIF image format plug-in in GIMP 2.8.x and earlier allows remote…

Fix: after 2.8.0
Fix from $1,600 2012-08-25
Gimp MEDIUM 6.8
CVE-2012-3402

Integer overflow in plug-ins/common/psd.c in the Adobe Photoshop PSD plugin in GIMP 2.2.13 and earlier allows remote attackers to cause a denial of s…

Fix: after 2.2.13
Fix from $1,600 2012-08-25
Gimp MEDIUM 6.8
CVE-2012-3403

Heap-based buffer overflow in the KiSS CEL file format plug-in in GIMP 2.8.x and earlier allows remote attackers to cause a denial of service and pos…

Fix: after 2.8.0
Fix from $1,600 2012-08-25
Gimp HIGH 7.5
CVE-2012-2763EPSS 82%

Buffer overflow in the readstr_upto function in plug-ins/script-fu/tinyscheme/scheme.c in GIMP 2.6.12 and earlier, and possibly 2.6.13, allows remote…

Fix: after 2.6.13
Fix from $1,950 2012-07-12
Gimp HIGH 7.5
CVE-2011-1782

Heap-based buffer overflow in the read_channel_data function in file-psp.c in the Paint Shop Pro (PSP) plugin in GIMP 2.6.11 allows remote attackers …

Patch available
Fix from $1,950 2011-07-27
Gimp MEDIUM 6.8
CVE-2011-1178EPSS 5%

Multiple integer overflows in the load_image function in file-pcx.c in the Personal Computer Exchange (PCX) plugin in GIMP 2.6.x and earlier allow re…

Fix: after 2.7.0
Fix from $1,600 2011-06-06
Gimp HIGH 9.3
CVE-2010-4541EPSS 7%

Stack-based buffer overflow in the loadit function in plug-ins/common/sphere-designer.c in the SPHERE DESIGNER plugin in GIMP 2.6.11 allows user-assi…

Mitigation only
Fix from $1,950 2011-01-07
Gimp HIGH 7.5
CVE-2010-4543EPSS 16%

Heap-based buffer overflow in the read_channel_data function in file-psp.c in the Paint Shop Pro (PSP) plugin in GIMP 2.6.11 allows remote attackers …

No fix yet
Fix from $1,950 2011-01-07
Gimp MEDIUM 6.8
CVE-2010-4542EPSS 6%

Stack-based buffer overflow in the gfig_read_parameter_gimp_rgb function in plug-ins/gfig/gfig-style.c in the GFIG plugin in GIMP 2.6.11 allows user-…

No fix yet
Fix from $1,600 2011-01-07
Gimp MEDIUM 6.8
CVE-2010-4540EPSS 6%

Stack-based buffer overflow in the load_preset_response function in plug-ins/lighting/lighting-ui.c in the "LIGHTING EFFECTS > LIGHT" plugin in GIMP …

No fix yet
Fix from $1,600 2011-01-07
Gimp HIGH 9.3
CVE-2009-3909EPSS 9%

Integer overflow in the read_channel_data function in plug-ins/file-psd/psd-load.c in GIMP 2.6.7 might allow remote attackers to execute arbitrary co…

Patch available
Fix from $1,950 2009-11-19
Gimp HIGH 9.3
CVE-2009-1570EPSS 8%

Integer overflow in the ReadImage function in plug-ins/file-bmp/bmp-read.c in GIMP 2.6.7 might allow remote attackers to execute arbitrary code via a…

Patch available
Fix from $1,950 2009-11-13
Gimp MEDIUM 6.8
CVE-2006-4519EPSS 6%

Multiple integer overflows in the image loader plug-ins in GIMP before 2.2.16 allow user-assisted remote attackers to execute arbitrary code via craf…

Fix: 2.2.16+
Fix from $1,600 2007-07-10
Gimp MEDIUM 5.0
CVE-2007-3126

Gimp before 2.8.22 allows context-dependent attackers to cause a denial of service (crash) via an ICO file with an InfoHeader containing a Height of …

Fix: 2.8.22+
Fix from $1,600 2007-06-08
Gimp MEDIUM 6.8
CVE-2007-2356EPSS 16%

Stack-based buffer overflow in the set_color_table function in sunras.c in the SUNRAS plugin in Gimp 2.2.14 allows user-assisted remote attackers to …

Patch available
Fix from $1,600 2007-04-30
Gimp MEDIUM 5.1
CVE-2006-3404

Buffer overflow in the xcf_load_vector function in app/xcf/xcf-load.c for gimp before 2.2.12 allows user-assisted attackers to cause a denial of serv…

Fix: 2.2.12+
Fix from $1,600 2006-07-06
Gimp MEDIUM 5.0
CVE-2005-0654

gifload.exe in GIMP 2.0.5, 2.2.3, and possibly 2.2.4 allows remote attackers or local users to cause a denial of service (application crash) via the …

No fix yet
Fix from $1,600 2005-05-02