Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2023-32636

Опубликовано: 14 сент. 2023
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 4.7

Описание

A flaw was found in glib, where the gvariant deserialization code is vulnerable to a denial of service introduced by additional input validation added to resolve CVE-2023-29499. The offset table validation may be very slow. This bug does not affect any released version of glib but does affect glib distributors who followed the guidance of glib developers to backport the initial fix for CVE-2023-29499.

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

not-affected

2.76.1-1
esm-infra-legacy/trusty

not-affected

2.40.2-0ubuntu1.1+esm6
esm-infra/bionic

released

2.56.4-0ubuntu0.18.04.9+esm3
esm-infra/focal

not-affected

2.64.6-1~ubuntu20.04.6
esm-infra/xenial

released

2.48.2-0ubuntu4.8+esm3
focal

released

2.64.6-1~ubuntu20.04.6
jammy

released

2.72.4-0ubuntu2.2
kinetic

released

2.74.3-0ubuntu1.2
lunar

not-affected

2.76.1-1

Показывать по

EPSS

Процентиль: 40%
0.00179
Низкий

4.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.2
redhat
больше 2 лет назад

A flaw was found in glib, where the gvariant deserialization code is vulnerable to a denial of service introduced by additional input validation added to resolve CVE-2023-29499. The offset table validation may be very slow. This bug does not affect any released version of glib but does affect glib distributors who followed the guidance of glib developers to backport the initial fix for CVE-2023-29499.

CVSS3: 4.7
nvd
почти 2 года назад

A flaw was found in glib, where the gvariant deserialization code is vulnerable to a denial of service introduced by additional input validation added to resolve CVE-2023-29499. The offset table validation may be very slow. This bug does not affect any released version of glib but does affect glib distributors who followed the guidance of glib developers to backport the initial fix for CVE-2023-29499.

CVSS3: 7.5
msrc
4 месяца назад

Описание отсутствует

CVSS3: 4.7
debian
почти 2 года назад

A flaw was found in glib, where the gvariant deserialization code is v ...

CVSS3: 4.7
github
почти 2 года назад

A flaw was found in glib, where the gvariant deserialization code is vulnerable to a denial of service introduced by additional input validation added to resolve CVE-2023-29499. The offset table validation may be very slow. This bug does not affect any released version of glib but does affect glib distributors who followed the guidance of glib developers to backport the initial fix for CVE-2023-29499.

EPSS

Процентиль: 40%
0.00179
Низкий

4.7 Medium

CVSS3