This issue is a heap buffer over-read in GIMP’s PCX file loader due to an off‑by‑one error in the bytesperline validation logic. A specially crafted PCX image can cause GIMP to read beyond the bounds of a heap buffer when opened, leading to out‑of‑bounds memory disclosure and possible crash. Exploitation requires user interaction (opening a malicious PCX file)
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:16484 https://access.redhat.com/errata/RHSA-2026:16484
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:17533 https://access.redhat.com/errata/RHSA-2026:17533
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:19362 https://access.redhat.com/errata/RHSA-2026:19362
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions Red Hat Enterprise Linux 8.6 Telecommunications Update Service Via RHSA-2026:20553 https://access.redhat.com/errata/RHSA-2026:20553
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2026:20552 https://access.redhat.com/errata/RHSA-2026:20552
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2026:20554 https://access.redhat.com/errata/RHSA-2026:20554
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2026:20691 https://access.redhat.com/errata/RHSA-2026:20691