USN-6165-1: GLib vulnerabilities
Published Jun 14, 2023
·Updated
It was discovered that GLib incorrectly handled non-normal GVariants. An attacker could use this issue to cause GLib to crash, resulting in a denial of service, or perform other unknown attacks.
Affected Software
12 affected componentsFixes available
All of the following
ubuntu/libglib2.0-0<2.74.3-0ubuntu1.2
2.74.3-0ubuntu1.2
Ubuntu Ubuntu=22.10
All of the following
ubuntu/libglib2.0-bin<2.74.3-0ubuntu1.2
2.74.3-0ubuntu1.2
Ubuntu Ubuntu=22.10
All of the following
ubuntu/libglib2.0-0<2.72.4-0ubuntu2.2
2.72.4-0ubuntu2.2
Ubuntu Ubuntu=22.04
All of the following
ubuntu/libglib2.0-bin<2.72.4-0ubuntu2.2
2.72.4-0ubuntu2.2
Ubuntu Ubuntu=22.04
All of the following
ubuntu/libglib2.0-0<2.64.6-1~ubuntu20.04.6
2.64.6-1~ubuntu20.04.6
Ubuntu Ubuntu=20.04
All of the following
ubuntu/libglib2.0-bin<2.64.6-1~ubuntu20.04.6
2.64.6-1~ubuntu20.04.6
Ubuntu Ubuntu=20.04
Event History
Jun 14, 2023
Advisory Published
via Ubuntu·12:00 AM
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
1
What is the vulnerability ID of this advisory?
CVE-2023-32636, CVE-2023-32665, CVE-2023-24593
2
What is the title of this advisory?
USN-6165-1: GLib vulnerabilities
3
What is the severity of CVE-2023-32636?
Unknown
4
What is the severity of CVE-2023-32665?
Unknown
5
What is the severity of CVE-2023-24593?
Unknown
6
How does the GLib vulnerability affect me?
The GLib vulnerability could allow an attacker to cause a denial of service or perform other unknown attacks.
7
Which versions of Ubuntu are affected by the GLib vulnerability?
Ubuntu 22.10, Ubuntu 22.04, Ubuntu 20.04
8
How do I fix the GLib vulnerability?
Upgrade libglib2.0-0 and libglib2.0-bin to version 2.74.3-0ubuntu1.2 on Ubuntu 22.10, version 2.72.4-0ubuntu2.2 on Ubuntu 22.04, and version 2.64.6-1~ubuntu20.04.6 on Ubuntu 20.04.