CVE-2023-29499
Summary
| CVE | CVE-2023-29499 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-09-14 20:15:00 UTC |
| Updated | 2023-11-27 14:15:00 UTC |
| Description | A flaw was found in GLib. GVariant deserialization fails to validate that the input conforms to the expected format, leading to denial of service. |
Risk And Classification
Problem Types: CWE-400
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| 2211828 – (CVE-2023-29499) CVE-2023-29499 glib: GVariant offset table entry size is not checked in is_normal() | MISC | bugzilla.redhat.com | |
| (CVE-2023-29499) GVariant offset table entry size is not checked in is_normal() (#2794) · Issues · GNOME / GLib · GitLab | MISC | gitlab.gnome.org | |
| cve-details | MISC | access.redhat.com | |
| CVE-2023-29499 Gnome Glib Vulnerability in NetApp Products | NetApp Product Security | MISC | security.netapp.com | |
| GLib: Multiple Vulnerabilities (GLSA 202311-18) — Gentoo security | security.gentoo.org | ||
| [SECURITY] [DLA 3583-1] glib2.0 security update | MISC | lists.debian.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 161110 Oracle Enterprise Linux Security Update for glib2 (ELSA-2023-6631)
- 182751 Debian Security Update for glib2.0 (CVE-2023-29499)
- 199417 Ubuntu Security Notification for GLib Vulnerabilities (USN-6165-1)
- 199839 Ubuntu Security Notification for GLib Vulnerabilities (USN-6165-2)
- 242293 Red Hat Update for glib2 (RHSA-2023:6631)
- 284032 Fedora Security Update for mingw (FEDORA-2023-1a7e2b3dda)
- 284071 Fedora Security Update for mingw (FEDORA-2023-9e5a29a25d)
- 355458 Amazon Linux Security Advisory for glib2 : ALAS2023-2023-225
- 6000090 Debian Security Update for glib2.0 (DLA 3583-1)
- 673279 EulerOS Security Update for glib2 (EulerOS-SA-2023-2612)
- 673293 EulerOS Security Update for glib2 (EulerOS-SA-2023-2582)
- 710801 Gentoo Linux GLib Multiple Vulnerabilities (GLSA 202311-18)
- 941370 AlmaLinux Security Update for glib2 (ALSA-2023:6631)