Medium severity6.3NVD Advisory· Published Oct 7, 2026
CVE-2026-106066
CVE-2026-106066
Description
A heap-based buffer overflow was found in GIMP’s raw data export plug-in. When exporting very large images, g_malloc() sizing based on overflowing width * height * bytes-per-pixel can allocate far less memory than GEGL reads or writes during export, following integer overflow
Affected products
1Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.