PT-2026-4915 · Gnome+2 · Glib+2
Treeplus
·
Published
2025-12-16
·
Updated
2026-02-23
·
CVE-2026-1484
CVSS v3.1
4.2
Medium
| Vector | AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
GLib (affected versions not specified)
Description
A flaw exists in the GLib Base64 encoding routine when handling very large input data. The issue stems from the incorrect use of integer types during length calculation, potentially leading to miscalculation of buffer boundaries. This can result in memory writes outside the allocated buffer. Applications utilizing GLib to process untrusted or extremely large Base64 input may experience crashes or unpredictable behavior.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
LPE
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Glib
Linuxmint
Ubuntu