CVE-2025-48797
Severity CVSS v4.0:
Pending analysis
Type:
CWE-122
Heap-based Buffer Overflow
Publication date:
27/05/2025
Last modified:
25/06/2025
Description
A flaw was found in GIMP when processing certain TGA image files. If a user opens one of these image files that has been specially crafted by an attacker, GIMP can be tricked into making serious memory errors, potentially leading to crashes and causing a heap buffer overflow.
Impact
Base Score 3.x
7.30
Severity 3.x
HIGH
References to Advisories, Solutions, and Tools
- https://access.redhat.com/errata/RHSA-2025:9162
- https://access.redhat.com/errata/RHSA-2025:9165
- https://access.redhat.com/errata/RHSA-2025:9308
- https://access.redhat.com/errata/RHSA-2025:9309
- https://access.redhat.com/errata/RHSA-2025:9310
- https://access.redhat.com/errata/RHSA-2025:9314
- https://access.redhat.com/errata/RHSA-2025:9315
- https://access.redhat.com/errata/RHSA-2025:9316
- https://access.redhat.com/errata/RHSA-2025:9501
- https://access.redhat.com/errata/RHSA-2025:9569
- https://access.redhat.com/security/cve/CVE-2025-48797
- https://bugzilla.redhat.com/show_bug.cgi?id=2368558