A vulnerability marked as critical has been reported in GIMP. This affects an unknown part of the file file-png.c of the component Loader. The manipulation leads to heap-based buffer overflow.

This vulnerability is traded as CVE-2026-42169. It is possible to initiate the attack remotely. There is no exploit available.