CVE-2025-60018: Glib-networking: out of bound reads on glib-networking through tls/openssl/gtlscertificate-openssl.c via "g_tls_certificate_openssl_get_property()"
Glib-networking: out of bound reads on glib-networking through tls/openssl/gtlscertificate-openssl.c via "gtlscertificateopensslgetproperty()"
Other sources
glib-networking's OpenSSL backend fails to properly check the return value of a call to BIOwrite(), resulting in an out of bounds read.
— NVD
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-60018?
The severity of CVE-2025-60018 is considered to be high due to the potential for out of bounds reads.
How do I fix CVE-2025-60018?
To fix CVE-2025-60018, update your glib-networking package to the latest version provided by your distribution.
Which software is affected by CVE-2025-60018?
CVE-2025-60018 affects the GNOME glib-networking package that uses the OpenSSL backend.
What type of vulnerability is CVE-2025-60018?
CVE-2025-60018 is an out of bounds read vulnerability resulting from improper error checking.
Is CVE-2025-60018 remotely exploitable?
Yes, CVE-2025-60018 can potentially be exploited remotely, allowing attackers to read arbitrary memory.