MEDIUMVulnerability

CVE-2026-59088

A flaw was found in GIMP. A signed integer overflow vulnerability exists in the `file-fli` plugin when processing FLI image files. This occurs due to an incorrect calculation during memory allocation for image buffers, where the multiplication of image width and height can exceed the maximum integer value. A remote attacker could exploit this by tricking a user into opening a specially crafted FLI file, leading to the application crashing and resulting in a denial of service.

Properties

severity
MEDIUM
score
5.5
cve_id
CVE-2026-59088
vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
published_at
2026-08-10T12:17:19.563
last_modified
2026-08-19T20:14:50.103

Related Entities (5)

DESCRIBED_BY (1)

[Source]NVD

AFFECTS_PRODUCT (3)

[Product]
[Product]
[Product]

HAS_WEAKNESS (1)

[Weakness]Integer Overflow or Wraparound

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-59088 — Ninja Signal Threat Intelligence | Ninja Signal