RHSA-2026:19524: Moderate: glib2 security update
GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures.Security Fix(es): glib: GLib: Buffer underflow in GVariant parser leads to heap corruption (CVE-2025-14087) glib: Integer Overflow in GLib GIO Attribute Escaping Causes Heap Buffer Overflow (CVE-2025-14512) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:19524?
The severity of RHSA-2026:19524 is medium, rated at 4.
What does RHSA-2026:19524 address?
RHSA-2026:19524 addresses a security vulnerability related to buffer underflow in the GLib library.
How do I fix RHSA-2026:19524?
To fix RHSA-2026:19524, update to the fixed version of GLib provided in the security update.
Which software packages are affected by RHSA-2026:19524?
The affected software packages include redhat/glib2 and its associated debug and development packages.
What types of vulnerabilities are associated with RHSA-2026:19524?
RHSA-2026:19524 is associated with vulnerabilities classified as Buffer Overflow and Integer Overflow.