First published: Mon Jul 08 2019(Updated: )
It was discovered that GLib created directories and files without properly restricting permissions. An attacker could possibly use this issue to access sensitive information.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libglib2.0-0 | <2.58.1-2ubuntu0.2 | 2.58.1-2ubuntu0.2 |
Ubuntu Ubuntu | =18.10 | |
All of | ||
ubuntu/libglib2.0-bin | <2.58.1-2ubuntu0.2 | 2.58.1-2ubuntu0.2 |
Ubuntu Ubuntu | =18.10 | |
All of | ||
ubuntu/libglib2.0-0 | <2.56.4-0ubuntu0.18.04.4 | 2.56.4-0ubuntu0.18.04.4 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libglib2.0-bin | <2.56.4-0ubuntu0.18.04.4 | 2.56.4-0ubuntu0.18.04.4 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libglib2.0-0 | <2.48.2-0ubuntu4.3 | 2.48.2-0ubuntu4.3 |
Ubuntu Ubuntu | =16.04 | |
All of | ||
ubuntu/libglib2.0-bin | <2.48.2-0ubuntu4.3 | 2.48.2-0ubuntu4.3 |
Ubuntu Ubuntu | =16.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this GLib vulnerability is USN-4049-1.
This vulnerability could allow an attacker to access sensitive information.
GLib versions 2.58.1-2ubuntu0.2, 2.56.4-0ubuntu0.18.04.4, and 2.48.2-0ubuntu4.3 are affected by this vulnerability.
To fix the GLib vulnerability, update to GLib version 2.58.1-2ubuntu0.2 or later.
You can find more information about this GLib vulnerability at the following references: [CVE-2019-13012](https://ubuntu.com/security/CVE-2019-13012), [USN-4049-2](https://ubuntu.com/security/notices/USN-4049-2), [GLib2.0 on Launchpad](https://launchpad.net/ubuntu/+source/glib2.0/2.58.1-2ubuntu0.2).