CNNVD-202601-4559 Information

CNNVD ID

CNNVD-202601-4559

CVE-2026-1485

  • CNNVD Published: 2026-01-27

Description (Chinese)

glib是GNOME项目的一个通用的、可移植的实用程序库。提供了许多有用的数据类型、宏、类型转换、字符串实用程序、文件实用程序、主循环抽象等。 glib存在缓冲区错误漏洞,该漏洞源于内容类型解析逻辑中存在缓冲区下溢,可能导致整数环绕和指针下溢,造成本地拒绝服务或应用程序不稳定。

Description (English)

glib is a common, portable and practical repository for the GNOME project. Many useful data types, macros, type conversions, string applications, file applications, main cycle abstractions, etc. are provided. Grib has an error loophole in the buffer zone, which stems from the fact that there is a spillover of the buffer zone in the resolution logic of the content type, which could lead to an integer rounding and a downward flow of the pointer, leading to local denials of services or instability of applications.

Hazard Level

Critical

Vulnerability Type

缓冲区错误

Affected Vendor

GNOME

Published

2026-01-27

Last Modified

2026-02-24

References

https://access.redhat.com/security/cve/CVE-2026-1485 https://bugzilla.redhat.com/show_bug.cgi?id=2433325

Patch

https://gitlab.gnome.org/GNOME/glib

Share on: