Medium severity5.5NVD Advisory· Published Aug 26, 2026· Updated Aug 26, 2026
CVE-2026-79902
CVE-2026-79902
Description
A flaw was found in the Seattle FilmWorks plugin in GIMP. When processing a specially crafted SFW image file, the plugin allocates a Variable-Length Array (VLA) on the stack without integer overflow checks, causing an unbounded stack allocation. This issue leads to an application crash, resulting in a denial of service.
Affected products
1Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.