REDHAT-BUG-2364265: Medium severity Gnome GLib vulnerability
GLib prior to 2.84.2 is vulnerable to an integer overflow in the gstringinsertunichar() function. When the position at which to insert the character is large, the position will overflow, leading to buffer under-write.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2364265?
The severity of REDHAT-BUG-2364265 is considered high due to the potential for buffer under-write caused by integer overflow.
How do I fix REDHAT-BUG-2364265?
To fix REDHAT-BUG-2364265, upgrade GLib to version 2.84.2 or later.
What versions of GLib are affected by REDHAT-BUG-2364265?
GLib versions prior to 2.84.2 are affected by REDHAT-BUG-2364265.
What is the cause of the vulnerability REDHAT-BUG-2364265?
The vulnerability REDHAT-BUG-2364265 is caused by an integer overflow in the g_string_insert_unichar() function when inserting at a large position.
What potential impact does REDHAT-BUG-2364265 have?
The potential impact of REDHAT-BUG-2364265 includes a buffer under-write, which can lead to memory corruption and security risks.