PT-2025-15227 · Glib+6 · Glib+6

CVE-2025-3360

·

Published

2025-04-07

·

Updated

2026-06-30

CVSS v3.1

3.7

Low

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions GLib (affected versions not specified) openSUSE Leap 15.4 SUSE Micro versions 5.1 through 5.5 Red Hat Enterprise Linux 6
Description An integer overflow and buffer under-read occur when parsing a long invalid ISO 8601 timestamp. This issue is located in the g date time new from iso8601() function. Exploitation of this flaw may allow a remote attacker to execute arbitrary code.
Recommendations For openSUSE Leap 15.4 and SUSE Micro versions 5.1 through 5.5, apply the available security patches using the system package manager. For Red Hat Enterprise Linux 6, apply the provided security updates. As a temporary mitigation, restrict the processing of untrusted or malformed ISO 8601 timestamps by the g date time new from iso8601() function.

Exploit

Fix

DoS

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-59585
AZL-59591
BDU:2025-10907
CVE-2025-3360
DLA-4128-1
MGASA-2026-0023
OESA-2025-1525
OPENSUSE-SU-2025:15007-1
OPENSUSE-SU-2025_01599-1
OPENSUSE-SU-2025_1367-1
SUSE-SU-2025:01599-1
SUSE-SU-2025:1367-1
SUSE-SU-2025:1457-1
SUSE-SU-2025:20318-1
SUSE-SU-2025:20471-1
SUSE-SU-2025_1367-1
USN-7942-1
USN-7942-2

Affected Products

Astra Linux
Debian
Glib
Linuxmint
Red Os
Suse
Ubuntu