REDHAT-BUG-2492243: Medium severity Gnome GLib vulnerability
Published Jun 24, 2026
·Updated
gvstupleisnormal() in glib/gvariant-serialiser.c:1253 has an off-by-one error in its alignment padding check. When checking whether padding bytes are zero, the bounds check uses > instead of >=, allowing a 1-byte out-of-bounds read when offset == value.size.
Affected Software
1 affected component
Gnome GLib=
Event History
Jun 24, 2026
Data Sourced
via Red Hat·04:27 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2492243?
The severity of REDHAT-BUG-2492243 is medium with a risk level of 4.
2
How do I fix REDHAT-BUG-2492243?
To fix REDHAT-BUG-2492243, you should update the Gnome GLib package to the latest version that resolves the off-by-one error.
3
What is the impact of REDHAT-BUG-2492243?
The impact of REDHAT-BUG-2492243 includes the potential for an out-of-bounds read, which can lead to undefined behavior in the application.
4
Which software is affected by REDHAT-BUG-2492243?
The software affected by REDHAT-BUG-2492243 is Gnome GLib (GNOME).
5
When was REDHAT-BUG-2492243 published?
REDHAT-BUG-2492243 was published on June 24, 2026.