Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-4373

Опубликовано: 06 мая 2025
Источник: redhat
CVSS3: 4.8
EPSS Низкий

Описание

A flaw was found in GLib, which is vulnerable to an integer overflow in the g_string_insert_unichar() function. When the position at which to insert the character is large, the position will overflow, leading to a buffer underwrite.

Меры по смягчению последствий

Currently, no mitigation is available for this vulnerability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10bootcFix deferred
Red Hat Enterprise Linux 10glycin-loadersFix deferred
Red Hat Enterprise Linux 10loupeFix deferred
Red Hat Enterprise Linux 10mingw-glib2Fix deferred
Red Hat Enterprise Linux 6glib2Fix deferred
Red Hat Enterprise Linux 7glib2Fix deferred
Red Hat Enterprise Linux 8librsvg2Fix deferred
Red Hat Enterprise Linux 8mingw-glib2Fix deferred
Red Hat Enterprise Linux 9bootcFix deferred
Red Hat Enterprise Linux 9librsvg2Fix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-124
https://bugzilla.redhat.com/show_bug.cgi?id=2364265glib: Buffer Underflow on GLib through glib/gstring.c via function g_string_insert_unichar

EPSS

Процентиль: 40%
0.00493
Низкий

4.8 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.8
ubuntu
около 1 года назад

A flaw was found in GLib, which is vulnerable to an integer overflow in the g_string_insert_unichar() function. When the position at which to insert the character is large, the position will overflow, leading to a buffer underwrite.

CVSS3: 4.8
nvd
около 1 года назад

A flaw was found in GLib, which is vulnerable to an integer overflow in the g_string_insert_unichar() function. When the position at which to insert the character is large, the position will overflow, leading to a buffer underwrite.

CVSS3: 6.5
msrc
11 месяцев назад

Glib: buffer underflow on glib through glib/gstring.c via function g_string_insert_unichar

CVSS3: 4.8
debian
около 1 года назад

A flaw was found in GLib, which is vulnerable to an integer overflow i ...

suse-cvrf
около 1 года назад

Security update for glib2

EPSS

Процентиль: 40%
0.00493
Низкий

4.8 Medium

CVSS3