Количество 13
Количество 13
CVE-2026-15588
A denial-of-service and resource exhaustion vulnerability exists within the `GDBus` component of GLib. The `gdbusauth` authentication mechanism fails to enforce proper length limitations on data lines read from a client. An unauthenticated local or remote attacker can exploit this lack of input validation by sending excessively long streams of data, causing the application to consume massive amounts of system memory and CPU, potentially leading to a crash or system hang.
CVE-2026-15588
A denial-of-service and resource exhaustion vulnerability exists within the `GDBus` component of GLib. The `gdbusauth` authentication mechanism fails to enforce proper length limitations on data lines read from a client. An unauthenticated local or remote attacker can exploit this lack of input validation by sending excessively long streams of data, causing the application to consume massive amounts of system memory and CPU, potentially leading to a crash or system hang.
CVE-2026-15588
A denial-of-service and resource exhaustion vulnerability exists within the `GDBus` component of GLib. The `gdbusauth` authentication mechanism fails to enforce proper length limitations on data lines read from a client. An unauthenticated local or remote attacker can exploit this lack of input validation by sending excessively long streams of data, causing the application to consume massive amounts of system memory and CPU, potentially leading to a crash or system hang.
CVE-2026-15588
Gdbusserver: glib2: gdbusserver pre-authentication dos via unbounded sasl line buffering
CVE-2026-15588
A denial-of-service and resource exhaustion vulnerability exists withi ...
GHSA-hrq7-vgh7-p534
A denial-of-service and resource exhaustion vulnerability exists within the `GDBus` component of GLib. The `gdbusauth` authentication mechanism fails to enforce proper length limitations on data lines read from a client. An unauthenticated local or remote attacker can exploit this lack of input validation by sending excessively long streams of data, causing the application to consume massive amounts of system memory and CPU, potentially leading to a crash or system hang.
BDU:2026-10233
Уязвимость функции _my_g_input_stream_read_line_safe() файла gio/gdbusauth.c библиотеки Glib, позволяющая нарушителю вызвать отказ в обслуживании
RLSA-2026:61766
Moderate: glib2 security update
RLSA-2026:57015
Moderate: glib2 security update
RLSA-2026:55440
Moderate: glib2 security update
ELSA-2026-61766-0
ELSA-2026-61766-0: glib2 security update (MODERATE)
ELSA-2026-57015
ELSA-2026-57015: glib2 security update (MODERATE)
ELSA-2026-55440
ELSA-2026-55440: glib2 security update (MODERATE)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-15588 A denial-of-service and resource exhaustion vulnerability exists within the `GDBus` component of GLib. The `gdbusauth` authentication mechanism fails to enforce proper length limitations on data lines read from a client. An unauthenticated local or remote attacker can exploit this lack of input validation by sending excessively long streams of data, causing the application to consume massive amounts of system memory and CPU, potentially leading to a crash or system hang. | CVSS3: 5.3 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-15588 A denial-of-service and resource exhaustion vulnerability exists within the `GDBus` component of GLib. The `gdbusauth` authentication mechanism fails to enforce proper length limitations on data lines read from a client. An unauthenticated local or remote attacker can exploit this lack of input validation by sending excessively long streams of data, causing the application to consume massive amounts of system memory and CPU, potentially leading to a crash or system hang. | CVSS3: 5.3 | 0% Низкий | 2 месяца назад | |
CVE-2026-15588 A denial-of-service and resource exhaustion vulnerability exists within the `GDBus` component of GLib. The `gdbusauth` authentication mechanism fails to enforce proper length limitations on data lines read from a client. An unauthenticated local or remote attacker can exploit this lack of input validation by sending excessively long streams of data, causing the application to consume massive amounts of system memory and CPU, potentially leading to a crash or system hang. | CVSS3: 5.3 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-15588 Gdbusserver: glib2: gdbusserver pre-authentication dos via unbounded sasl line buffering | CVSS3: 5.3 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-15588 A denial-of-service and resource exhaustion vulnerability exists withi ... | CVSS3: 5.3 | 0% Низкий | около 2 месяцев назад | |
GHSA-hrq7-vgh7-p534 A denial-of-service and resource exhaustion vulnerability exists within the `GDBus` component of GLib. The `gdbusauth` authentication mechanism fails to enforce proper length limitations on data lines read from a client. An unauthenticated local or remote attacker can exploit this lack of input validation by sending excessively long streams of data, causing the application to consume massive amounts of system memory and CPU, potentially leading to a crash or system hang. | CVSS3: 5.3 | 0% Низкий | около 2 месяцев назад | |
BDU:2026-10233 Уязвимость функции _my_g_input_stream_read_line_safe() файла gio/gdbusauth.c библиотеки Glib, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
RLSA-2026:61766 Moderate: glib2 security update | 16 дней назад | |||
RLSA-2026:57015 Moderate: glib2 security update | 27 дней назад | |||
RLSA-2026:55440 Moderate: glib2 security update | около 1 месяца назад | |||
ELSA-2026-61766-0 ELSA-2026-61766-0: glib2 security update (MODERATE) | 16 дней назад | |||
ELSA-2026-57015 ELSA-2026-57015: glib2 security update (MODERATE) | 29 дней назад | |||
ELSA-2026-55440 ELSA-2026-55440: glib2 security update (MODERATE) | около 1 месяца назад |
Уязвимостей на страницу