Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4110 articles · 197511 vulns · 37/41 feeds (7d)
← Back to list
7.8
CVE-2026-42170EXPLOITED
red hat · red hat enterprise linux

Gimp: gimp dds plug-in heap-based buffer overflow via bpp mismatch in load_layer() (ddsread.c)

Description

A heap-based buffer overflow vulnerability exists in the GIMP DDS (DirectDraw Surface) file parser. When a crafted DDS file declares a D3D9 pixel format but sets a lower bits-per-pixel (bpp) value in the header, the loader allocates an undersized heap buffer. Subsequent pixel data consumption at the real format's stride causes a write past the heap buffer boundary, leading to heap metadata corruption and potential code execution.

Affected Products

VendorProductVersions
red hatred hat enterprise linux—

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
open sourceopen source gimpcert_advisory90%

References

  • https://access.redhat.com/security/cve/CVE-2026-42170(vdb-entry, x_refsource_REDHAT)
  • https://bugzilla.redhat.com/show_bug.cgi?id=2461726(issue-tracking, x_refsource_REDHAT)

Related News (2 articles)

Tier B
BSI Advisories15d ago
[NEU] [UNGEPATCHT] [hoch] GIMP: Schwachstelle ermöglicht Codeausführung
→ No new info (linked only)
Tier C
VulDB22d ago
CVE-2026-42170 | GIMP DDS ddsread.c load_layer buffer overflow
→ No new info (linked only)
CVSS 3.17.8 NONE
CISA KEV❌ No
Actively exploited✅ Yes
CWECWE-131
PublishedAug 8, 2026
Last enriched17d ago
Tags
remote code executionfile manipulationdenial of servicemultiple vulnerabilities
Trending Score6
Source articles2
Independent2
Info Completeness0/14
Missing: cve_id, title, description, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

NONECVE-2026-78367EXP
Rpm: rpmbuild gettarspec() crafted tar member name → macro injection
Trending: 59
NONECVE-2026-78465EXP
Gimp: integer overflow in pcx loader (planes=4) leads to heap overflow on 32-bit
Trending: 59
HIGHCVE-2026-79655EXP
Sos: sos: path traversal in sos clean tar extraction via unvalidated symlink/hardlink targets leads to arbitrary file write
Trending: 56
NONECVE-2026-18963
Keycloak-services: keycloak-services: unauthenticated account takeover via reset-credentials flow bypass
Trending: 54
CRITICALCVE-2026-19685EXP
Networkmanager: networkmanager: 802-1x ca-path and phase2-ca-path bypass private_user restriction, allowing wpa-enterprise server validation bypass (incomplete fix for cve-2025-9615)
Trending: 54

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Aug 8, 2026
Discovered by ZDM
Aug 8, 2026
Actively Exploited
Aug 11, 2026
Exploit Available
Aug 11, 2026