Release date:
2026-02-23 14:35:00 UTC
Description:
* SECURITY UPDATE: Buffer underflow in GVariant parser leads to heap
corruption
- debian/patches/CVE-2025-14087.patch: Fix integer overflows in GVariant
text format parser when processing input longer than INT_MAX, and fix
integer overflow in escape_byte_string() for byte strings with many
invalid characters
- CVE-2025-14087
Updated packages:
-
libglib2.0-0_2.64.6-1~ubuntu20.04.9+tuxcare.els2_amd64.deb
sha:20b6438aaef8502ffe2f5c141f21872b1671fe3a
-
libglib2.0-bin_2.64.6-1~ubuntu20.04.9+tuxcare.els2_amd64.deb
sha:f5d066ec441df8c1d795da14a578180289b129fb
-
libglib2.0-data_2.64.6-1~ubuntu20.04.9+tuxcare.els2_all.deb
sha:cdd4e7eb9b42bca144c32e34e0ed9be8f2841e5c
-
libglib2.0-dev_2.64.6-1~ubuntu20.04.9+tuxcare.els2_amd64.deb
sha:b67fdb953ac35f1c82138cd7a3715e26e1200ebc
-
libglib2.0-dev-bin_2.64.6-1~ubuntu20.04.9+tuxcare.els2_amd64.deb
sha:2f3376d315557115a62f0048aa0308cf818d8d8c
-
libglib2.0-doc_2.64.6-1~ubuntu20.04.9+tuxcare.els2_all.deb
sha:01b1c766451cf1ab774146382fee032d715413a2
-
libglib2.0-tests_2.64.6-1~ubuntu20.04.9+tuxcare.els2_amd64.deb
sha:e62cdbab130de9596636bd3b5b3151c3c35a5d21
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.