* bsc#1244596 Cross-References: * CVE-2025-6052 . # Security update for glib2 Announcement ID: SUSE-SU-2025:20673-1 Release Date: 2025-09-05T12:22:34Z Rating: important References: * bsc#1244596 Cross-References: * CVE-2025-6052 CVSS scores: * CVE-2025-6052 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-6052 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2025-6052 ( NVD ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2025-6052 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * SUSE Linux Micro 6.1 An update that solves one vulnerability can now be installed. ## Description: This update for glib2 fixes the following issues: * CVE-2025-6052: Fix overflow check when expanding a GString (bsc#1244596). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.1 zypper in -t patch SUSE-SLE-Micro-6.1-247=1 ## Package List: * SUSE Linux Micro 6.1 (aarch64 ppc64le s390x x86_64) * libgio-2_0-0-2.78.6-slfo.1.1_4.1 * libgmodule-2_0-0-debuginfo-2.78.6-slfo.1.1_4.1 * glib2-tools-debuginfo-2.78.6-slfo.1.1_4.1 * libglib-2_0-0-2.78.6-slfo.1.1_4.1 * glib2-debugsource-2.78.6-slfo.1.1_4.1 * libglib-2_0-0-debuginfo-2.78.6-slfo.1.1_4.1 * libgobject-2_0-0-debuginfo-2.78.6-slfo.1.1_4.1 * glib2-tools-2.78.6-slfo.1.1_4.1 * libgio-2_0-0-debuginfo-2.78.6-slfo.1.1_4.1 * libgobject-2_0-0-2.78.6-slfo.1.1_4.1 * libgmodule-2_0-0-2.78.6-slfo.1.1_4.1 ## References: * https://www.suse.com/security/cve/CVE-2025-6052.html * https://bugzilla.suse.com/show_bug.cgi?id=1244596 . The latest security patch for glib2 addresses key vulnerabilities found in CVE-2025-6053. Users are urged to carry out the updates on their systems.. SUSE Linux, glib2, important update,software patch. . Severity: Important. LinuxSecurity.com Team
A problem with PDF handling was discovered by Chris Evans, and has been fixed. The Common Vulnerabilities and Exposures project (https://www.mitre.org) has assigned the name CAN-2004-0888 to this issue.. --------------------------------------------------------------------- Fedora Update Notification FEDORA-2004-337 2004-10-26 --------------------------------------------------------------------- Product : Fedora Core 2 Name : cups Version : 1.1.20 Release : 11.6 Summary : Common Unix Printing System Description : The Common UNIX Printing System provides a portable printing layer for UNIX� operating systems. It has been developed by Easy Software Products to promote a standard printing solution for all UNIX vendors and users. CUPS provides the System V and Berkeley command-line interfaces. --------------------------------------------------------------------- Update Information: A problem with PDF handling was discovered by Chris Evans, and has been fixed. The Common Vulnerabilities and Exposures project (https://www.mitre.org) has assigned the name CAN-2004-0888 to this issue. --------------------------------------------------------------------- * Tue Oct 19 2004 Tim Waugh 1:1.1.20-11.6 - One more overflow check, from Marcus Meissner (bug #135378). * Tue Oct 12 2004 Tim Waugh 1:1.1.20-11.5 - Apply patch to fix CAN-2004-0888 (bug #135378). --------------------------------------------------------------------- This update can be downloaded from: 362cd8cd8ce58e29139541352f7a30b1 SRPMS/cups-1.1.20-11.6.src.rpm 0922b45be7a61d968f0213013633aeaa x86_64/cups-1.1.20-11.6.x86_64.rpm f49aa4b825da5c1305edbcd37367c101 x86_64/cups-devel-1.1.20-11.6.x86_64.rpm 38fd39c7d10077badd2378fcbb4d45cb x86_64/cups-libs-1.1.20-11.6.x86_64.rpm 4ca29994dbb654e3714125e6db4e0194 x86_64/debug/cups-debuginfo-1.1.20-11.6.x86_64.rpm 019ce3783f4d466cbb4a85b102e11e08 x86_64/cups-libs-1.1.20-11.6.i386.rpm 8ddcc764c07ed351b7b6b7c90af7f0c7 i386/cups-1.1.20-11.6.i386.rpm f61f51721dd2c997c60d798f2b6d2677 i386/cups-devel-1.1.20-11.6.i386.rpm 019ce3783f4d466cbb4a85b102e11e08 i386/cups-libs-1.1.20-11.6.i386.rpm 6b9a1a4e34d13b3a31c809b28d8356da i386/debug/cups-debuginfo-1.1.20-11.6.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. --------------------------------------------------------------------- [ Part 1.2, Application/PGP-SIGNATURE 196bytes. ] [ Cannot display this part. Press "V" then "S" to save in a file. ] [ Part 2: "Attached Text" ] -- fedora-announce-list mailing list
Get the latest Linux and open source security news straight to your inbox.