PT-2025-15227 · Glib+6 · Glib+6
CVE-2025-3360
·
Published
2025-04-07
·
Updated
2026-06-30
CVSS v3.1
3.7
Low
| Vector | AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L |
Name of the Vulnerable Software and Affected Versions
GLib (affected versions not specified)
openSUSE Leap 15.4
SUSE Micro versions 5.1 through 5.5
Red Hat Enterprise Linux 6
Description
An integer overflow and buffer under-read occur when parsing a long invalid ISO 8601 timestamp. This issue is located in the
g date time new from iso8601() function. Exploitation of this flaw may allow a remote attacker to execute arbitrary code.Recommendations
For openSUSE Leap 15.4 and SUSE Micro versions 5.1 through 5.5, apply the available security patches using the system package manager.
For Red Hat Enterprise Linux 6, apply the provided security updates.
As a temporary mitigation, restrict the processing of untrusted or malformed ISO 8601 timestamps by the
g date time new from iso8601() function.Exploit
Fix
DoS
Integer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Debian
Glib
Linuxmint
Red Os
Suse
Ubuntu