Updated: 2023-11-07 19:02:32.400098
Description:
An issue was discovered in GNOME GLib before 2.66.7 and 2.67.x before 2.67.4. If g_byte_array_new_take() was called with a buffer of 4GB or more on a 64-bit platform, the length would be truncated modulo 2**32, causing unintended length truncation.
Links | NIST | CIRCL | RHEL | Ubuntu |
Severity | Score | |
---|---|---|
CVSS Version 2.x | MEDIUM | 5 |
CVSS Version 3.x | HIGH | 7.5 |
OS name | Project name | Version | Score | Severity | Status | Errata | Last updated |
---|---|---|---|---|---|---|---|
CentOS 6 ELS | glib2 | 2.28.8 | 7.5 | HIGH | Not Vulnerable | 2021-12-09 07:57:03 | |
CentOS 7 ELS | glib2 | 2.56.1 | 7.5 | HIGH | Released | CLSA-2023:1696352100 | 2023-10-03 14:08:42 |
CentOS 8.4 ELS | glib2 | 2.56.4-10 | 7.5 | HIGH | Already Fixed | 2023-10-27 11:23:34 | |
CentOS 8.5 ELS | glib2 | 2.56.4-156 | 7.5 | HIGH | Already Fixed | 2023-10-27 11:23:34 | |
CloudLinux 6 ELS | glib2 | 2.28.8 | 7.5 | HIGH | Not Vulnerable | 2021-12-09 07:57:04 | |
Oracle Linux 6 ELS | glib2 | 2.28.8 | 7.5 | HIGH | Not Vulnerable | 2021-12-09 07:57:04 | |
Ubuntu 16.04 ELS | glib2.0 | 2.48.2-0 | 7.5 | HIGH | Not Vulnerable | 2021-12-09 07:57:04 | |
Ubuntu 18.04 ELS | glib2.0 | 2.56.4-0 | 7.5 | HIGH | Already Fixed | 2023-06-02 09:09:55 |