CVE-2025-2760

Public on 2025-04-11
Modified on 2025-04-11
Description
GIMP XWD File Parsing Integer Overflow Remote Code Execution Vulnerability

NOTE: http://www.zerodayinitiative.com/advisories/ZDI-25-203/
NOTE: http://gitlab.gnome.org/GNOME/gimp/-/issues/12790
Severity
Medium severity
Medium
CVSS v3 Base Score
6.1
See breakdown

Affected Packages

Platform Package Release Date Advisory Status
HAQM Linux 2 - Gimp Extra gimp Not Affected

CVSS Scores

Score Type Score Vector
HAQM Linux CVSSv3 6.1 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H
NVD CVSSv3 7.8 CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H