CVE-2026-58381EPSS p19.5%
CVE-2026-58381CVE-2026-58381
gimp / gimp
Description
A flaw was found in GIMP's PSP file format parser. A double-free condition occurs in the read_layer_block() function when processing a specially crafted PSP file. This could allow an attacker to cause memory corruption, potentially leading to denial of service or arbitrary code execution.
Scoring
| CVSS | 6.1 () |
| Vector | CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H |
| EPSS | 0.29% probability of exploitation · percentile 19.5% · 2026-10-05T12:00:23Z |
| Last modified | 2026-09-22 |