CVE-2021-27218
Summary
| CVE | CVE-2021-27218 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-02-15 17:15:00 UTC |
| Updated | 2023-11-07 03:31:00 UTC |
| Description | An issue was discovered in GNOME GLib before 2.66.7 and 2.67.x before 2.67.4. If g_byte_array_new_take() was called with a buffer of 4GB or more on a 64-bit platform, the length would be truncated modulo 2**32, causing unintended length truncation. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [SECURITY] Fedora 34 Update: mingw-glib2-2.66.7-1.fc34 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8 |
|
lists.apache.org |
|
| Pony Mail! |
MLIST |
lists.apache.org |
Mailing List, Third Party Advisory |
| Pony Mail! |
MLIST |
lists.apache.org |
|
| [SECURITY] Fedora 34 Update: mingw-glib2-2.66.7-1.fc34 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| February 2021 GNOME GLib Vulnerabilities in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| GLib: Multiple vulnerabilities (GLSA 202107-13) — Gentoo security |
GENTOO |
security.gentoo.org |
|
| [SECURITY] [DLA 3044-1] glib2.0 security update |
MLIST |
lists.debian.org |
|
| [SECURITY] Fedora 33 Update: mingw-glib2-2.66.7-1.fc33 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| CVE-2021-27218: gbytearray: Do not accept too large byte arrays (!1942) · Merge Requests · GNOME / GLib · GitLab |
MISC |
gitlab.gnome.org |
Patch, Vendor Advisory |
| Pony Mail! |
MLIST |
lists.apache.org |
|
| [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8 |
|
lists.apache.org |
|
| Backport !1942 “CVE-2021-27218: gbytearray: Do not accept too large byte arrays” to glib-2-66 (!1944) · Merge Requests · GNOME / GLib · GitLab |
MISC |
gitlab.gnome.org |
Patch, Vendor Advisory |
| [mina-dev] 20210225 [jira] [Created] (FTPSERVER-500) Security vulnerability in common/lib/log4j-1.2.17.jar |
|
lists.apache.org |
|
| [SECURITY] Fedora 33 Update: mingw-glib2-2.66.7-1.fc33 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 159330 Oracle Enterprise Linux Security Update for glib2 (ELSA-2021-3058)
- 174791 SUSE Enterprise Linux Security update for glib2 (SUSE-SU-2021:0778-1)
- 174826 SUSE Enterprise Linux Security update for glib2 (SUSE-SU-2021:0890-1)
- 179358 Debian Security Update for glib2.0 (DLA 3044-1)
- 179683 Debian Security Update for glib2.0 (CVE-2021-27218)
- 239540 Red Hat Update for glib2 (RHSA-2021:3058)
- 281538 Fedora Security Update for mingw (FEDORA-2021-7b5e2e6844)
- 281539 Fedora Security Update for mingw (FEDORA-2021-7c71cda8da)
- 352856 Amazon Linux Security Advisory for glib2: ALAS2-2021-1711
- 377338 Alibaba Cloud Linux Security Update for glib2 (ALINUX3-SA-2021:0055)
- 501414 Alpine Linux Security Update for glib
- 670287 EulerOS Security Update for glib2 (EulerOS-SA-2021-1789)
- 670326 EulerOS Security Update for glib2 (EulerOS-SA-2021-1898)
- 670353 EulerOS Security Update for glib2 (EulerOS-SA-2021-1871)
- 670380 EulerOS Security Update for glib2 (EulerOS-SA-2021-1945)
- 670401 EulerOS Security Update for glib2 (EulerOS-SA-2021-1924)
- 670615 EulerOS Security Update for glib2 (EulerOS-SA-2021-2373)
- 710063 Gentoo Linux GLib Multiple vulnerabilities (GLSA 202107-13)
- 750321 OpenSUSE Security Update for glib2 (openSUSE-SU-2021:0406-1)
- 900161 CBL-Mariner Linux Security Update for glib 2.58.0
- 901414 Common Base Linux Mariner (CBL-Mariner) Security Update for glib (6437-1)
- 902931 Common Base Linux Mariner (CBL-Mariner) Security Update for glib (3893)
- 940021 AlmaLinux Security Update for glib2 (ALSA-2021:3058)
- 940356 AlmaLinux Security Update for mingw-glib2 (ALSA-2021:4526)
- 960031 Rocky Linux Security Update for glib2 (RLSA-2021:3058)