Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Fedora 39 glib2: 2024-fd2569c4e9 moderate: signal spoofing issue

fedora
Calendar Grey May 14, 2024
Dist Fedora Esm H88
The glib2 upgrade in Fedora resolves CVE-2024-34397, which mitigates issues related to signal impersonation during enhancements to gnome-shell performance.
Resolve CVE-2024-34397 (GDBus signal subscriptions for well-known names are vulnerable to unicast spoofing), and also update gnome-shell to ensure this fix does not break the scree...

Summary

GLib is the low-level core library that forms the basis for projects

such as GTK+ and GNOME. It provides data structure handling for C,

portability wrappers, and interfaces for such runtime functionality

as an event loop, threads, dynamic loading, and an object system.

Update Information:

Resolve CVE-2024-34397 (GDBus signal subscriptions for well-known names are vulnerable to unicast spoofing), and also update gnome-shell to ensure this fix does not break the screencast feature.

Change Log

* Thu May 9 2024 Michael Catanzaro - 2.78.6-1 - Update to 2.78.6 * Tue May 7 2024 Michael Catanzaro - 2.78.5-1 - Update to 2.78.5 * Wed Feb 21 2024 Nieves Montero - 2.78.4-1 - Update to 2.78.4

References


[ 1 ] Bug #2279640 - CVE-2024-34397 glib2: Signal subscription vulnerabilities [fedora-39] https://bugzilla.redhat.com/show_bug.cgi?id=2279640

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-fd2569c4e9' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Name: glib2
Product: Fedora 39
Version: 2.78.6
Release: 1.fc39
Summary: A library of handy utility functions

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here