Sploitus

CVE-2023-44444

No indexed exploits for CVE-2023-44444 yet

GIMP PSP File Parsing Off-By-One Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PSP files. Crafted data in a PSP file can trigger an off-by-one error when calculating a location to write within a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. . Was ZDI-CAN-22097.

Gimp
< 2.10.36
Fix
Available
CVSS 3.0
7.8 HIGH
EPSS
56.4% (99th percentile)
Weakness
CWE-193
NVD status
Modified
Published
2024-05-03
CVE-2023-44444 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2023-44444 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2023-44444 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.