Integer Overflow Vulnerability in GIMP Affecting SGI File Parsing
CVE-2026-18306
7.8HIGH
What is CVE-2026-18306?
This vulnerability in GIMP arises from inadequate validation of user-supplied data during SGI file parsing, leading to potential integer overflow when writing to memory. An attacker must entice a user to open a manipulated SGI file or visit an infected page, allowing them to execute arbitrary code within the context of the GIMP application.
Affected Version(s)
GIMP 3.2.2
