Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-3360

Опубликовано: 07 апр. 2025
Источник: redhat
CVSS3: 3.7
EPSS Низкий

Описание

A flaw was found in GLib. An integer overflow and buffer under-read occur when parsing a long invalid ISO 8601 timestamp with the g_date_time_new_from_iso8601() function.

Меры по смягчению последствий

Currently, no mitigation is available for this vulnerability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10bootcFix deferred
Red Hat Enterprise Linux 10glib2Fix deferred
Red Hat Enterprise Linux 10glycin-loadersFix deferred
Red Hat Enterprise Linux 10loupeFix deferred
Red Hat Enterprise Linux 10mingw-glib2Fix deferred
Red Hat Enterprise Linux 6glib2Out of support scope
Red Hat Enterprise Linux 7glib2Out of support scope
Red Hat Enterprise Linux 8glib2Fix deferred
Red Hat Enterprise Linux 8librsvg2Fix deferred
Red Hat Enterprise Linux 8mingw-glib2Fix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-190
https://bugzilla.redhat.com/show_bug.cgi?id=2357754glibc: GLib prior to 2.82.5 is vulnerable to integer overflow and buffer under-read when parsing a very long invalid ISO 8601 timestamp with g_date_time_new_from_iso8601().

EPSS

Процентиль: 29%
0.00102
Низкий

3.7 Low

CVSS3

Связанные уязвимости

CVSS3: 3.7
ubuntu
5 месяцев назад

A flaw was found in GLib. An integer overflow and buffer under-read occur when parsing a long invalid ISO 8601 timestamp with the g_date_time_new_from_iso8601() function.

CVSS3: 3.7
nvd
5 месяцев назад

A flaw was found in GLib. An integer overflow and buffer under-read occur when parsing a long invalid ISO 8601 timestamp with the g_date_time_new_from_iso8601() function.

CVSS3: 3.7
msrc
около 1 месяца назад

Описание отсутствует

CVSS3: 3.7
debian
5 месяцев назад

A flaw was found in GLib. An integer overflow and buffer under-read oc ...

suse-cvrf
4 месяца назад

Security update for glib2

EPSS

Процентиль: 29%
0.00102
Низкий

3.7 Low

CVSS3