[CLSA-2023:1697135256] glib2: Fix of 5 CVEs
Type:
security
Severity:
Important
Release date:
2023-10-12
Description:
- CVE-2023-29499: Fix GVariant offset table entry size which is not checked in is_normal() - CVE-2023-32611: Fix an issue where g_variant_byteswap() can take a long time with some non-normal inputs - CVE-2023-32665: Fix GVariant deserialisation which does not match spec for non-normal data - CVE-2023-32636: Fix a wrong timeout in fuzz_variant_text() - CVE-2023-32643: Fix a heap-buffer-overflow in g_variant_serialised_get_child() - Fix g_test_bug assertion in gvariant test
Updated packages:
  • glib2-2.56.1-9.el7_9.tuxcare.els2.i686.rpm
    sha:9643a317420b78befa8e76fcffc0b123b0f04490
  • glib2-2.56.1-9.el7_9.tuxcare.els2.x86_64.rpm
    sha:8ecd35ea0bded1178ee5cfd2eda7a83430f29372
  • glib2-devel-2.56.1-9.el7_9.tuxcare.els2.i686.rpm
    sha:99a3e920ff0d5b45a4166d3c49efc27739b4ab8b
  • glib2-devel-2.56.1-9.el7_9.tuxcare.els2.x86_64.rpm
    sha:313ae814c1ce6e4893f21b5e58c7f09c7e8ecca4
  • glib2-doc-2.56.1-9.el7_9.tuxcare.els2.noarch.rpm
    sha:90fdce49ab767693d93a0b995a62ea4a24329da8
  • glib2-fam-2.56.1-9.el7_9.tuxcare.els2.x86_64.rpm
    sha:3a3e8616260fd26c252d21e524ac3ed209a20e6d
  • glib2-static-2.56.1-9.el7_9.tuxcare.els2.i686.rpm
    sha:4a3ea3934f6f46f6ef15226db7a6fed7f8f33d68
  • glib2-static-2.56.1-9.el7_9.tuxcare.els2.x86_64.rpm
    sha:e512fa76e33935b14171e0880bfb3de7e4e07a7a
  • glib2-tests-2.56.1-9.el7_9.tuxcare.els2.x86_64.rpm
    sha:3efb02cdd3b1dd15ece27989efa933fddc3a2bc9
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.