PT-2025-50583 · Gnome+3 · Glib+4

Published

2025-12-03

·

Updated

2026-05-27

·

CVE-2025-14512

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions glib (affected versions not specified)
Description A flaw exists in glib that can lead to a denial-of-service (DoS) condition. The issue is a heap buffer overflow caused by an integer overflow within the escape byte string() function, part of GLib's GIO (GLib Input/Output) component. This occurs when processing maliciously crafted file or remote filesystem attribute values.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Integer Overflow

Weakness Enumeration

Related Identifiers

ALSA-2026:15953
ALSA-2026:15969
ALSA-2026:15971
ALSA-2026:19148
ALSA-2026:19361
AZL-72286
AZL-72299
BDU:2026-02750
CVE-2025-14512
DLA-4412-1
ECHO-25EA-0DDE-E966
JLSEC-2026-489
MGASA-2026-0023
OESA-2025-2902
OPENSUSE-SU-2026:20018-1
RHSA-2026:19148
RHSA-2026:19361
RHSA-2026:19452
RHSA-2026:19457
RHSA-2026:19459
RHSA-2026:19460
RHSA-2026:19523
RHSA-2026:19524
RHSA-2026:19565
RHSA-2026:19567
RHSA-2026:7461
SUSE-SU-2025:4441-1
SUSE-SU-2025:4442-1
SUSE-SU-2025:4504-1
SUSE-SU-2026:0018-1
SUSE-SU-2026:20032-1
SUSE-SU-2026:20045-1
SUSE-SU-2026:20074-1
SUSE-SU-2026:20493-1

Affected Products

Debian
Gio
Red Os
Rocky Linux
Glib