Back to Security Advisories
High 2026-07-17

Gimp Security Update — AlmaLinux 9 (ALSA-2026:40751)

AlmaLinux 9

The GIMP (GNU Image Manipulation Program) is an image composition and editing program. GIMP provides a large image manipulation toolbox, including channel operations and layers, effects, sub-pixel imaging and anti-aliasing, and conversions, all with multi-level undo. Security Fix(es): * gimp: gimp: Stack buf…

The GIMP (GNU Image Manipulation Program) is an image composition and editing program. GIMP provides a large image manipulation toolbox, including channel operations and layers, effects, sub-pixel imaging and anti-aliasing, and conversions, all with multi-level undo.

Security Fix(es):

* gimp: gimp: Stack buf…

Type:
security

Severity:
important

Release date:
2026-07-17

Description:
The GIMP (GNU Image Manipulation Program) is an image composition and editing program. GIMP provides a large image manipulation toolbox, including channel operations and layers, effects, sub-pixel imaging and anti-aliasing, and conversions, all with multi-level undo.

Security Fix(es):

* gimp: gimp: Stack buffer overflow in pnmscanner_gettoken() (CVE-2026-58380)
* gimp: gimp: Integer overflow in read_RLE_channel() (CVE-2026-58384)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Updated packages listed below:

Architecture Package Checksum
aarch64 gimp-3.0.4-4.el9_8.7.aarch64.rpm d74149a207e4660ed76760d8140a49cadd63f01608631fd2e4d445e8d95b4fca
aarch64 gimp-libs-3.0.4-4.el9_8.7.aarch64.rpm f8db7e0644f598927ff150ad7c3076505b4e688f912d540a697b5b16364c984f
i686 gimp-libs-3.0.4-4.el9_8.7.i686.rpm 106c2c1a52844f5593f4b50e0d2fc26096887ca104905c3a7510ba59b79a743b
ppc64le gimp-libs-3.0.4-4.el9_8.7.ppc64le.rpm 9fb37c4fad28053211a70b47ebc5fffdde849a430dc6b1cda69e2ac1b667391e
ppc64le gimp-3.0.4-4.el9_8.7.ppc64le.rpm de2e845daa2ec538fec6f8f8efcb4b76f39ca03105ba93cb668aab8e2920adcd
x86_64 gimp-3.0.4-4.el9_8.7.x86_64.rpm 1ae5ebc836bb822047006a09f54cd61c6a8cca07fd133ef67fd8f2eaeed37d26
x86_64 gimp-libs-3.0.4-4.el9_8.7.x86_64.rpm 4a4e00ac43520cdc7828336f14522bea82c044e39f4ea3359c6fa4f026ff4d2d

Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.

How to Apply the Fix

Update the affected packages on your server to the patched release, then restart the relevant services.

sudo dnf update
More Information

Check your system for vulnerabilities

Select your product and operating system to see the exact fix commands that apply to you.

Check Your System