Medium severity6.1NVD Advisory· Published Jul 2, 2026· Updated Sep 22, 2026
CVE-2026-58381
CVE-2026-58381
Description
A flaw was found in GIMP's PSP file format parser. A double-free condition occurs in the read_layer_block() function when processing a specially crafted PSP file. This could allow an attacker to cause memory corruption, potentially leading to denial of service or arbitrary code execution.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4(expand)+ 1 more
- (no CPE)
- (no CPE)
Patches
Vulnerability mechanics
References
4- gitlab.gnome.org/GNOME/gimp/-/commit/b22e147bnvdPatch
- access.redhat.com/security/cve/CVE-2026-58381nvdVendor Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingVendor Advisory
- gitlab.gnome.org/GNOME/gimp/-/issues/16207nvdVendor AdvisoryIssue Tracking
News mentions
1- GNOME GLib & GIMP: Six Vulnerabilities Disclosed, Including Code Execution FlawsVypr Intelligence · Jul 3, 2026