SEPTEMBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-79902

MEDIUM · CVSS 5.5 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-08-26 · Last synced 2026-09-07

CyberRota Analysis

AI-Generated

The Seattle FilmWorks plugin in GIMP is vulnerable due to improper handling of specially crafted SFW image files, which can lead to unbounded stack allocation and application crashes. This flaw results in a denial of service, impacting the availability of the application. Organizations using GIMP with the Seattle FilmWorks plugin should prioritize remediation to mitigate potential disruptions.

CVE
CVE-2026-79902
Severity
MEDIUM
CVSS
5.5
EPSS
0.20%

Original NVD Description

A flaw was found in the Seattle FilmWorks plugin in GIMP. When processing a specially crafted SFW image file, the plugin allocates a Variable-Length Array (VLA) on the stack without integer overflow checks, causing an unbounded stack allocation. This issue leads to an application crash, resulting in a denial of service.

Related CVEs

Other vulnerabilities affecting the same vendor(s)