CVE-2026-0988

EUVD-2026-3684
A flaw was found in glib. Missing validation of offset and count parameters in the g_buffered_input_stream_peek() function can lead to an integer overflow during length calculation. When specially crafted values are provided, this overflow results in an incorrect size being passed to memcpy(), triggering a buffer overflow. This can cause application crashes, leading to a Denial of Service (DoS).
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
3.7 LOW
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: 5%
Debian logo
Debian Releases
Debian Product
Codename
glib2.0
bookworm
2.74.6-2+deb12u9
fixed
bookworm (security)
vulnerable
bullseye
vulnerable
bullseye (security)
2.66.8-1+deb11u8
fixed
forky
2.88.1-2
fixed
sid
2.88.1-2
fixed
trixie
2.84.4-3~deb13u3
fixed
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
glib2-devel
suse enterprise desktop 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.28.1
fixed
glib2-lang
suse enterprise desktop 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise server 12 SP3
2.48.2-12.55.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.28.1
fixed
glib2-tools
suse enterprise desktop 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise server 12 SP3
2.48.2-12.55.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.28.1
fixed
libgio-2_0-0
suse enterprise desktop 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise server 12 SP3
2.48.2-12.55.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.28.1
fixed
libgio-2_0-0-32bit
suse enterprise desktop 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise server 12 SP3
2.48.2-12.55.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.28.1
fixed
libglib-2_0-0
suse enterprise desktop 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise server 12 SP3
2.48.2-12.55.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.28.1
fixed
libglib-2_0-0-32bit
suse enterprise desktop 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise server 12 SP3
2.48.2-12.55.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.28.1
fixed
libgmodule-2_0-0
suse enterprise desktop 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise server 12 SP3
2.48.2-12.55.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.28.1
fixed
libgmodule-2_0-0-32bit
suse enterprise desktop 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise server 12 SP3
2.48.2-12.55.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.28.1
fixed
libgobject-2_0-0
suse enterprise desktop 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise server 12 SP3
2.48.2-12.55.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.28.1
fixed
libgobject-2_0-0-32bit
suse enterprise desktop 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise server 12 SP3
2.48.2-12.55.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.28.1
fixed
libgthread-2_0-0
suse enterprise desktop 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise sap 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise sap 15 SP7
2.78.6-150600.4.28.1
fixed
suse enterprise server 12 SP3
2.48.2-12.55.1
fixed
suse enterprise server 15 SP4
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP5
2.70.5-150400.3.34.1
fixed
suse enterprise server 15 SP7
2.78.6-150600.4.28.1
fixed
libgthread-2_0-0-32bit
suse enterprise server 12 SP3
2.48.2-12.55.1
fixed