Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

SUSE: CU-2021:78-1 Important: Toolbox Security Update for glib2

suse
Calendar Grey March 18, 2021
Dist Suse Esm H88
SUSE Container Update Notification: suse/sle-micro/5.1/toolbox Security Notification ID: SUSE-CU-2022:45-2 resolving significant vulnerabilities
The container suse/sle-micro/5.0/toolbox was updated

Summary

Advisory ID: SUSE-SU-2021:778-1 Released: Fri Mar 12 17:42:25 2021 Summary: Security update for glib2 Type: security Severity: important

References

References : 1182328 1182362 CVE-2021-27218 CVE-2021-27219

1182328,1182362,CVE-2021-27218,CVE-2021-27219

This update for glib2 fixes the following issues:

- CVE-2021-27218: g_byte_array_new_take takes a gsize as length but stores in a guint, this patch will refuse if

the length is larger than guint. (bsc#1182328)

- CVE-2021-27219: g_memdup takes a guint as parameter and sometimes leads into an integer overflow, so add a g_memdup2 function which uses gsize to replace it. (bsc#1182362)

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2021:78-1
Container Tags : suse/sle-micro/5.0/toolbox:10.1 , suse/sle-micro/5.0/toolbox:10.1-4.12 , suse/sle-micro/5.0/toolbox:latest
Container Release : 4.12
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here