[CLSA-2026:1771857296] Fix CVE(s): CVE-2025-14087
Type:
security
Severity:
Critical
Release date:
2026-02-23 14:35:00 UTC
Description:
* SECURITY UPDATE: Buffer underflow in GVariant parser leads to heap corruption - debian/patches/CVE-2025-14087.patch: Fix integer overflows in GVariant text format parser when processing input longer than INT_MAX, and fix integer overflow in escape_byte_string() for byte strings with many invalid characters - CVE-2025-14087
Updated packages:
  • libglib2.0-0_2.64.6-1~ubuntu20.04.9+tuxcare.els2_amd64.deb
    sha:20b6438aaef8502ffe2f5c141f21872b1671fe3a
  • libglib2.0-bin_2.64.6-1~ubuntu20.04.9+tuxcare.els2_amd64.deb
    sha:f5d066ec441df8c1d795da14a578180289b129fb
  • libglib2.0-data_2.64.6-1~ubuntu20.04.9+tuxcare.els2_all.deb
    sha:cdd4e7eb9b42bca144c32e34e0ed9be8f2841e5c
  • libglib2.0-dev_2.64.6-1~ubuntu20.04.9+tuxcare.els2_amd64.deb
    sha:b67fdb953ac35f1c82138cd7a3715e26e1200ebc
  • libglib2.0-dev-bin_2.64.6-1~ubuntu20.04.9+tuxcare.els2_amd64.deb
    sha:2f3376d315557115a62f0048aa0308cf818d8d8c
  • libglib2.0-doc_2.64.6-1~ubuntu20.04.9+tuxcare.els2_all.deb
    sha:01b1c766451cf1ab774146382fee032d715413a2
  • libglib2.0-tests_2.64.6-1~ubuntu20.04.9+tuxcare.els2_amd64.deb
    sha:e62cdbab130de9596636bd3b5b3151c3c35a5d21
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.