[CLSA-2026:1787062977] Fix of 6 CVEs
Type:
security
Severity:
Important
Release date:
2026-08-19 18:24:40 UTC
Description:
* SECURITY UPDATE: Single-byte buffer overflow in SOCKSv4a connect messages (SOCKS4_CONN_MSG_LEN did not account for the trailing NUL in gio/gsocks4aproxy.c) - debian/patches/CVE-2024-52533.patch: Single-byte buffer overflow in SOCKSv4a connect messages (SOCKS4_CONN_MSG_LEN did not account for the trailing NUL in gio/gsocks4aproxy.c) - CVE-2024-52533 * SECURITY UPDATE: Heap buffer overflow via integer overflow in the escaped-length calculation in g_escape_uri_string() in glib/gconvert.c - debian/patches/CVE-2025-13601.patch: Heap buffer overflow via integer overflow in the escaped-length calculation in g_escape_uri_string() in glib/gconvert.c - CVE-2025-13601
Updated packages:
  • libglib2.0-0_2.58.3-2+deb10u6+tuxcare.els6_amd64.deb
    sha:4c28648f384ee804f90e7cb2c8a806faa3bd7bd3
  • libglib2.0-bin_2.58.3-2+deb10u6+tuxcare.els6_amd64.deb
    sha:715f34d494e103db1d8b4ca25de797437f617748
  • libglib2.0-data_2.58.3-2+deb10u6+tuxcare.els6_all.deb
    sha:bc4f67cdde6aebf850b289446f0ced07d3df28ae
  • libglib2.0-dev_2.58.3-2+deb10u6+tuxcare.els6_amd64.deb
    sha:e7c2da5ef24ff20ee752e6a6acad733b2e4eab82
  • libglib2.0-dev-bin_2.58.3-2+deb10u6+tuxcare.els6_amd64.deb
    sha:05ff46997f5fc8615a27901dbc119818bf99cfee
  • libglib2.0-doc_2.58.3-2+deb10u6+tuxcare.els6_all.deb
    sha:1f0d94c18c203c6a6cf811de0a26b8e7ecdc58dc
  • libglib2.0-tests_2.58.3-2+deb10u6+tuxcare.els6_amd64.deb
    sha:134cb7a3e4c5571f5da7a102cc83bb213ef33464
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.