Unrated severityNVD Advisory· Published Jun 8, 2007· Updated Apr 23, 2026
CVE-2007-3126
CVE-2007-3126
Description
Gimp before 2.8.22 allows context-dependent attackers to cause a denial of service (crash) via an ICO file with an InfoHeader containing a Height of zero, a similar issue to CVE-2007-2237.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- osv-coords4 versionspkg:rpm/opensuse/gimp&distro=openSUSE%20Tumbleweedpkg:rpm/suse/gimp&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2pkg:rpm/suse/gimp&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP2pkg:rpm/suse/gimp&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP2
< 2.10.24-3.1+ 3 more
- (no CPE)range: < 2.10.24-3.1
- (no CPE)range: < 2.8.18-8.1
- (no CPE)range: < 2.8.18-8.1
- (no CPE)range: < 2.8.18-8.1
Patches
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- git.gnome.org/browse/gimp/commit/nvdPatchVendor Advisory
- www.securityfocus.com/archive/1/470751/100/0/threadednvdBroken LinkThird Party AdvisoryVDB Entry
- bugzilla.gnome.org/show_bug.cginvdIssue TrackingThird Party Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/34789nvdThird Party AdvisoryVDB Entry
- www.gimp.org/news/2017/05/11/gimp-2-8-22-released/nvdVendor Advisory
- osvdb.org/43453nvdBroken Link
News mentions
0No linked articles in our index yet.