CVE-2025-14087

EUVD-2025-202405
A flaw was found in GLib (Gnome Lib). This vulnerability allows a remote attacker to cause heap corruption, leading to a denial of service or potential code execution via a buffer-underflow in the GVariant parser when processing maliciously crafted input strings.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.6 MEDIUM
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L
Base Score
CVSS 3.x
EPSS Score
Percentile: 19%
Affected Products (NVD)
VendorProductVersion
gnomeglib
𝑥
< 2.86.3
redhatenterprise_linux
7.0
redhatenterprise_linux
8.0
redhatenterprise_linux
9.0
redhatenterprise_linux
10.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
glib2.0
bookworm
2.74.6-2+deb12u9
fixed
bookworm (security)
vulnerable
bullseye
vulnerable
bullseye (security)
2.66.8-1+deb11u8
fixed
forky
2.88.1-2
fixed
sid
2.88.1-2
fixed
trixie
2.84.4-3~deb13u3
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
glib2.0
bionic
Fixed 2.56.4-0ubuntu0.18.04.9+esm5
released
focal
Fixed 2.64.6-1~ubuntu20.04.9+esm1
released
jammy
Fixed 2.72.4-0ubuntu2.7
released
noble
Fixed 2.80.0-6ubuntu3.6
released
plucky
Fixed 2.84.1-1ubuntu0.2
released
questing
Fixed 2.86.0-2ubuntu0.1
released
trusty
Fixed 2.40.2-0ubuntu1.1+esm7
released
xenial
Fixed 2.48.2-0ubuntu4.8+esm5
released
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
glib2-devel
suse enterprise desktop 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise server 12 SP5
2.48.2-12.52.1
fixed
suse enterprise server 15 SP2
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP3
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP6
2.78.6-150600.4.25.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.25.1
fixed
glib2-devel-static
suse enterprise server 12 SP5
2.48.2-12.52.1
fixed
glib2-lang
suse enterprise desktop 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise server 12 SP3
2.48.2-12.52.1
fixed
suse enterprise server 12 SP5
2.48.2-12.52.1
fixed
suse enterprise server 15 SP2
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP3
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP6
2.78.6-150600.4.25.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.25.1
fixed
glib2-tools
suse enterprise desktop 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise server 12 SP3
2.48.2-12.52.1
fixed
suse enterprise server 12 SP5
2.48.2-12.52.1
fixed
suse enterprise server 15 SP2
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP3
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP6
2.78.6-150600.4.25.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.25.1
fixed
libgio-2_0-0
suse enterprise desktop 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise server 12 SP3
2.48.2-12.52.1
fixed
suse enterprise server 12 SP5
2.48.2-12.52.1
fixed
suse enterprise server 15 SP2
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP3
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP6
2.78.6-150600.4.25.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.25.1
fixed
libgio-2_0-0-32bit
suse enterprise desktop 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise server 12 SP3
2.48.2-12.52.1
fixed
suse enterprise server 12 SP5
2.48.2-12.52.1
fixed
suse enterprise server 15 SP2
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP3
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP6
2.78.6-150600.4.25.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.25.1
fixed
libglib-2_0-0
suse enterprise desktop 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise server 12 SP3
2.48.2-12.52.1
fixed
suse enterprise server 12 SP5
2.48.2-12.52.1
fixed
suse enterprise server 15 SP2
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP3
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP6
2.78.6-150600.4.25.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.25.1
fixed
libglib-2_0-0-32bit
suse enterprise desktop 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise server 12 SP3
2.48.2-12.52.1
fixed
suse enterprise server 12 SP5
2.48.2-12.52.1
fixed
suse enterprise server 15 SP2
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP3
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP6
2.78.6-150600.4.25.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.25.1
fixed
libgmodule-2_0-0
suse enterprise desktop 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise server 12 SP3
2.48.2-12.52.1
fixed
suse enterprise server 12 SP5
2.48.2-12.52.1
fixed
suse enterprise server 15 SP2
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP3
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP6
2.78.6-150600.4.25.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.25.1
fixed
libgmodule-2_0-0-32bit
suse enterprise desktop 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise server 12 SP3
2.48.2-12.52.1
fixed
suse enterprise server 12 SP5
2.48.2-12.52.1
fixed
suse enterprise server 15 SP2
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP3
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP6
2.78.6-150600.4.25.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.25.1
fixed
libgobject-2_0-0
suse enterprise desktop 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise server 12 SP3
2.48.2-12.52.1
fixed
suse enterprise server 12 SP5
2.48.2-12.52.1
fixed
suse enterprise server 15 SP2
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP3
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP6
2.78.6-150600.4.25.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.25.1
fixed
libgobject-2_0-0-32bit
suse enterprise desktop 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise server 12 SP3
2.48.2-12.52.1
fixed
suse enterprise server 12 SP5
2.48.2-12.52.1
fixed
suse enterprise server 15 SP2
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP3
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP6
2.78.6-150600.4.25.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.25.1
fixed
libgthread-2_0-0
suse enterprise desktop 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.25.1
fixed
suse enterprise server 12 SP3
2.48.2-12.52.1
fixed
suse enterprise server 12 SP5
2.48.2-12.52.1
fixed
suse enterprise server 15 SP2
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP3
2.62.6-150200.3.36.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.29.1
fixed
suse enterprise server 15 SP6
2.78.6-150600.4.25.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.25.1
fixed
libgthread-2_0-0-32bit
suse enterprise server 12 SP3
2.48.2-12.52.1
fixed
suse enterprise server 12 SP5
2.48.2-12.52.1
fixed
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
glib2
RHEL 8
0:2.56.4-169.el8_10
fixed
RHEL 8.4 AUS
0:2.56.4-10.el8_4.5
fixed
RHEL 8.6 AUS
0:2.56.4-158.el8_6.5
fixed
RHEL 8.6 E4S
0:2.56.4-158.el8_6.5
fixed
RHEL 8.6 TUS
0:2.56.4-158.el8_6.5
fixed
RHEL 8.8 E4S
0:2.56.4-165.el8_8
fixed
RHEL 8.8 TUS
0:2.56.4-165.el8_8
fixed
RHEL 9
0:2.68.4-19.el9_8.1
fixed
glib2-devel
RHEL 8
0:2.56.4-169.el8_10
fixed
RHEL 8.4 AUS
0:2.56.4-10.el8_4.5
fixed
RHEL 8.6 AUS
0:2.56.4-158.el8_6.5
fixed
RHEL 8.6 E4S
0:2.56.4-158.el8_6.5
fixed
RHEL 8.6 TUS
0:2.56.4-158.el8_6.5
fixed
RHEL 8.8 E4S
0:2.56.4-165.el8_8
fixed
RHEL 8.8 TUS
0:2.56.4-165.el8_8
fixed
RHEL 9
0:2.68.4-19.el9_8.1
fixed
glib2-doc
RHEL 8
0:2.56.4-169.el8_10
fixed
RHEL 9
0:2.68.4-19.el9_8.1
fixed
glib2-fam
RHEL 8
0:2.56.4-169.el8_10
fixed
RHEL 8.4 AUS
0:2.56.4-10.el8_4.5
fixed
RHEL 8.6 AUS
0:2.56.4-158.el8_6.5
fixed
RHEL 8.6 E4S
0:2.56.4-158.el8_6.5
fixed
RHEL 8.6 TUS
0:2.56.4-158.el8_6.5
fixed
RHEL 8.8 E4S
0:2.56.4-165.el8_8
fixed
RHEL 8.8 TUS
0:2.56.4-165.el8_8
fixed
glib2-static
RHEL 8
0:2.56.4-169.el8_10
fixed
RHEL 9
0:2.68.4-19.el9_8.1
fixed
glib2-tests
RHEL 8
0:2.56.4-169.el8_10
fixed
RHEL 8.4 AUS
0:2.56.4-10.el8_4.5
fixed
RHEL 8.6 AUS
0:2.56.4-158.el8_6.5
fixed
RHEL 8.6 E4S
0:2.56.4-158.el8_6.5
fixed
RHEL 8.6 TUS
0:2.56.4-158.el8_6.5
fixed
RHEL 8.8 E4S
0:2.56.4-165.el8_8
fixed
RHEL 8.8 TUS
0:2.56.4-165.el8_8
fixed
RHEL 9
0:2.68.4-19.el9_8.1
fixed