First published: Fri Jun 02 2023(Updated: )
GLib's GVariant deserialization prior to GLib 2.74.4 is vulnerable to an exponential blowup issue where a crafted GVariant can cause excessive processing, leading to denial of service. References: <a href="https://gitlab.gnome.org/GNOME/glib/-/issues/2121">https://gitlab.gnome.org/GNOME/glib/-/issues/2121</a>
Affected Software | Affected Version | How to fix |
---|---|---|
GLib | <2.74.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
REDHAT-BUG-2211827 has a high severity due to its potential to cause denial of service through excessive processing.
To fix REDHAT-BUG-2211827, upgrade GLib to version 2.74.4 or later.
The impact of REDHAT-BUG-2211827 includes the risk of denial of service, making applications unresponsive.
GLib versions prior to 2.74.4 are affected by REDHAT-BUG-2211827.
Currently, there are no known workarounds for REDHAT-BUG-2211827 other than upgrading the software.