[CLSA-2023:1697740212] glib2: Fix of 5 CVEs
Type:
security
Severity:
Important
Release date:
2023-10-19
Description:
- Enable internal tests - Skip several failed tests from the check - CVE-2023-29499: Fix GVariant offset table entry size which is not checked in is_normal() - CVE-2023-32611: Fix an issue where g_variant_byteswap() can take a long time with some non-normal inputs - CVE-2023-32665: Fix GVariant deserialisation which does not match spec for non-normal data - CVE-2023-32636: Fix a wrong timeout in fuzz_variant_text() - CVE-2023-32643: Fix a heap-buffer-overflow in g_variant_serialised_get_child() - Fix g_test_bug assertion in gvariant test
Updated packages:
  • glib2-2.56.4-156.el8.tuxcare.els1.i686.rpm
    sha:6f826be585e401879b8074c62804b709e646bc90
  • glib2-2.56.4-156.el8.tuxcare.els1.x86_64.rpm
    sha:6354fc644e9597a3ab2e5523e75b853e22a00434
  • glib2-devel-2.56.4-156.el8.tuxcare.els1.i686.rpm
    sha:78a91a7f53b2b420fa567d2a7b42f43cf2935ae5
  • glib2-devel-2.56.4-156.el8.tuxcare.els1.x86_64.rpm
    sha:51d26ae47b97e047596163081b37d92f9616d57f
  • glib2-doc-2.56.4-156.el8.tuxcare.els1.noarch.rpm
    sha:bc25c4ea3bd40b183fdc69d79450ee2d3bede1df
  • glib2-fam-2.56.4-156.el8.tuxcare.els1.x86_64.rpm
    sha:f71adce7918eb7f005bb5d75a799704719d57a94
  • glib2-static-2.56.4-156.el8.tuxcare.els1.i686.rpm
    sha:873d172e00dc4b515675989b4e438449afcc79d4
  • glib2-static-2.56.4-156.el8.tuxcare.els1.x86_64.rpm
    sha:f080ddc54346c97c4e54e0332f92d070b8d8fc75
  • glib2-tests-2.56.4-156.el8.tuxcare.els1.x86_64.rpm
    sha:2245ff3c3d5d773d3cd08b651d2d86bac2f9ea97
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.