First published: Tue Jun 01 2021(Updated: )
GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures.<br>Security Fix(es):<br><li> glib: integer overflow in g_bytes_new function on 64-bit platforms due to an implicit cast from 64 bits to 32 bits (CVE-2021-27219)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/glib2 | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
redhat/glib2 | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
redhat/glib2-debuginfo | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
redhat/glib2-debuginfo | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
redhat/glib2-devel | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
redhat/glib2-devel | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
redhat/glib2-doc | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
redhat/glib2-fam | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
redhat/glib2-static | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
redhat/glib2-static | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
redhat/glib2-tests | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
redhat/glib2 | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
redhat/glib2-debuginfo | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
redhat/glib2-devel | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
redhat/glib2-fam | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
redhat/glib2-static | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
redhat/glib2-tests | <2.50.3-4.el7_4 | 2.50.3-4.el7_4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2021:2174 is classified as important.
To fix RHSA-2021:2174, update the GLib package to version 2.50.3-4.el7_4 or later.
The affected packages includes glib2, glib2-devel, glib2-debuginfo, and several others associated with GLib.
Not addressing RHSA-2021:2174 could lead to security vulnerabilities that may be exploited by attackers.
RHSA-2021:2174 is relevant for various architectures including x86_64 and ppc64le.