Skip to content
Fedora 42 GIMP Essential PSD Loader Denial of Service Vulnerability Fix

Fedora 42 GIMP Essential PSD Loader Denial of Service Vulnerability Fix

Linuxsecurity •LinuxSecurity Advisories • March 7, 2026

GIMP (GNU Image Manipulation Program) is a powerful image composition and editing program, which can be extremely useful for creating logos and other graphics for web pages. GIMP has many of the tools and filters you would expect to find in similar commercial offerings, and some interesting extras as well. GIMP provides a large image manipulation toolbox, including channel operations and layers, effects, sub-pixel imaging and anti-aliasing, and conversions, all with multi-level undo. Update Information : This is a security update fixing the loader for PSD files.

GIMP (GNU Image Manipulation Program) is a powerful image composition and

editing program, which can be extremely useful for creating logos and other

graphics for web pages. GIMP has many of the tools and filters you would expect

to find in similar commercial offerings, and some interesting extras as well.

GIMP provides a large image manipulation toolbox, including channel operations

and layers, effects, sub-pixel imaging and anti-aliasing, and conversions, all

with multi-level undo.

This is a security update fixing the loader for PSD files.

* Thu Feb 26 2026 Nils Philippsen - 2:3.0.8-5 - Fix overflows and crashes in the PSD loader

* Thu Feb 26 2026 Nils Philippsen - 2:3.0.8-5 - Fix overflows and crashes in the PSD loader

[ 1 ] Bug #2437676 - CVE-2026-2239 gimp: GIMP: Denial of Service via crafted PSD file due to heap-buffer-overflow [fedora-42]

[ 1 ] Bug #2437676 - CVE-2026-2239 gimp: GIMP: Denial of Service via crafted PSD file due to heap-buffer-overflow [fedora-42]

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-aecd3809f1' at the command line. For more information, refer to the dnf documentation available at

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-aecd3809f1' at the command line. For more information, refer to the dnf documentation available at

Extracted Entities

Attack Types (1)

Companies (1)

CVEs (1)

Platforms (1)