Known Vulnerabilities for Glib by Gnome
Listed below are 10 of the newest known vulnerabilities associated with "Glib" by "Gnome".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-28153 | An issue was discovered in GNOME GLib before 2.66.8. When g_file_replace() is used with G_FILE_CREATE_REPLACE_DESTINATION to ... | 5.3 - MEDIUM | 2021-03-11 | 2023-11-07 |
| CVE-2021-27219 | An issue was discovered in GNOME GLib before 2.66.6 and 2.67.x before 2.67.3. The function g_bytes_new has an integer overflo... | 7.5 - HIGH | 2021-02-15 | 2023-11-07 |
| CVE-2021-27218 | An issue was discovered in GNOME GLib before 2.66.7 and 2.67.x before 2.67.4. If g_byte_array_new_take() was called with a bu... | 7.5 - HIGH | 2021-02-15 | 2023-11-07 |
| CVE-2021-3800 | A flaw was found in glib before version 2.63.6. Due to random charset alias, pkexec can leak content from files owned by priv... | 5.5 - MEDIUM | 2022-08-23 | 2023-04-25 |
| CVE-2020-35457 | ** DISPUTED ** GNOME GLib before 2.65.3 has an integer overflow, that might lead to an out-of-bounds write, in g_option_group... | 7.8 - HIGH | 2020-12-14 | 2023-11-07 |
| CVE-2020-6750 | GSocketClient in GNOME GLib through 2.62.4 may occasionally connect directly to a target address instead of connecting via a ... | 5.9 - MEDIUM | 2020-01-09 | 2023-11-07 |
| CVE-2019-13012 | The keyfile settings backend in GNOME GLib (aka glib2.0) before 2.60.0 creates directories using g_file_make_directory_with_p... | 7.5 - HIGH | 2019-06-28 | 2023-11-07 |
| CVE-2019-12450 | file_copy_fallback in gio/gfile.c in GNOME GLib 2.15.0 through 2.61.1 does not properly restrict file permissions while a cop... | 9.8 - CRITICAL | 2019-05-29 | 2023-11-07 |
| CVE-2019-9633 | gio/gsocketclient.c in GNOME GLib 2.59.2 does not ensure that a parent GTask remains alive during the execution of a connecti... | 6.5 - MEDIUM | 2019-03-08 | 2021-07-21 |
| CVE-2018-16428 | In GNOME GLib 2.56.1, g_markup_parse_context_end_parse() in gmarkup.c has a NULL pointer dereference. | 9.8 - CRITICAL | 2018-09-04 | 2019-07-31 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Gnome | Glib | 2.9.6 | All | All | All |
| Application | Gnome | Glib | 2.9.5 | All | All | All |
| Application | Gnome | Glib | 2.9.4 | All | All | All |
| Application | Gnome | Glib | 2.9.3 | All | All | All |
| Application | Gnome | Glib | 2.9.2 | All | All | All |
| Application | Gnome | Glib | 2.9.1 | All | All | All |
| Application | Gnome | Glib | 2.9.0 | All | All | All |
| Application | Gnome | Glib | 2.8.6 | All | All | All |
| Application | Gnome | Glib | 2.8.5 | All | All | All |
| Application | Gnome | Glib | 2.8.4 | All | All | All |
| Application | Gnome | Glib | 2.8.3 | All | All | All |
| Application | Gnome | Glib | 2.8.2 | All | All | All |
| Application | Gnome | Glib | 2.8.1 | All | All | All |
| Application | Gnome | Glib | 2.8.0 | All | All | All |
| Application | Gnome | Glib | 2.7.7 | All | All | All |
| Application | Gnome | Glib | 2.7.6 | All | All | All |
| Application | Gnome | Glib | 2.7.5 | All | All | All |
| Application | Gnome | Glib | 2.7.4 | All | All | All |
| Application | Gnome | Glib | 2.7.3 | All | All | All |
| Application | Gnome | Glib | 2.7.2 | All | All | All |