<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T14:38:24.883991+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2026:15953</id>
    <title>ALSA-2026:15953 — Moderate: glib2 security update</title>
    <updated>2026-10-02T14:38:25.886893+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: glib2, AlmaLinux:8: glib2-devel, AlmaLinux:8: glib2-doc, AlmaLinux:8: glib2-fam, AlmaLinux:8: glib2-static, AlmaLinux:8: glib2-tests</p>
<p>GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures.</p>
<p>Security Fix(es):</p>
<p>* glib: GLib: Buffer underflow in GVariant parser leads to heap corruption (CVE-2025-14087)
  * glib: Integer Overflow in GLib GIO Attribute Escaping Causes Heap Buffer Overflow (CVE-2025-14512)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2026:15953"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-05069</id>
    <title>bdu:2026-05069</title>
    <updated>2026-10-02T14:38:25.886989+00:00</updated>
    <content>bdu:2026-05069</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-05069"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2025-14087</id>
    <title>BELL-CVE-2025-14087</title>
    <updated>2026-10-02T14:38:25.887006+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: glib, Alpaquita:25: glib, Alpaquita:stream: glib</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2025-14087"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0112</id>
    <title>certfr-2026-avi-0112 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Elles permettent à un attaquant de provoquer…</title>
    <updated>2026-10-02T14:38:25.887028+00:00</updated>
    <content>certfr-2026-avi-0112</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0112"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-382040</id>
    <title>EUVD-2026-382040</title>
    <updated>2026-10-02T14:38:25.887045+00:00</updated>
    <content>EUVD-2026-382040</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-382040"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-14087</id>
    <title>fkie_cve-2025-14087</title>
    <updated>2026-10-02T14:38:25.887057+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in GLib (Gnome Lib). This vulnerability allows a remote attacker to cause heap corruption, leading to a denial of service or potential code execution via a buffer-underflow in the GVariant parser when processing maliciously crafted input strings.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-14087"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-frh9-7wfp-w73p</id>
    <title>GHSA-frh9-7wfp-w73p</title>
    <updated>2026-10-02T14:38:25.887078+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in GLib (Gnome Lib). This vulnerability allows a remote attacker to cause heap corruption, leading to a denial of service or potential code execution via a buffer-underflow in the GVariant parser when processing maliciously crafted input strings.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-frh9-7wfp-w73p"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2025-14087</id>
    <title>msrc_CVE-2025-14087 — Glib: glib: buffer underflow in gvariant parser leads to heap corruption</title>
    <updated>2026-10-02T14:38:25.887092+00:00</updated>
    <content>msrc_CVE-2025-14087</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2025-14087"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2025-2900</id>
    <title>OESA-2025-2900 — glib2 security update</title>
    <updated>2026-10-02T14:38:25.887108+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:22.03-LTS-SP3: glib2</p>
<p>GLib is a bundle of three (formerly five) low-level system libraries written in C and developed mainly by GNOME. GLib&amp;amp;apos;s code was separated from GTK, so it can be used by software other than GNOME and has been developed in parallel ever since.

Security Fix(es):</p>
<p>A vulnerability was found in GNOME GLib (the affected version unknown). It has been declared as critical. The CWE definition for the vulnerability is CWE-120. The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow. As an impact it is known to affect confidentiality, integrity, and availability. There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.(CVE-2025-14087)</p>
<p>A flaw was found in glib. This vulnerability allows a heap buffer overflow and denial-of-service (DoS) via an integer overflow in GLib&amp;apos;s GIO (GLib Input/Output) escape_byte_string() function when processing malicious file or remote filesystem attribute values.(CVE-2025-14512)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2025-2900"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2026:20018-1</id>
    <title>openSUSE-SU-2026:20018-1 — Security update for glib2</title>
    <updated>2026-10-02T14:38:25.887136+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for glib2</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2026:20018-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:19452</id>
    <title>RHSA-2026:19452 — Red Hat Security Advisory: glib2 security update</title>
    <updated>2026-10-02T14:38:25.887155+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>glib: GLib: Buffer underflow in GVariant parser leads to heap corruption glib: Integer Overflow in GLib GIO Attribute Escaping Causes Heap Buffer Overflow</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:19452"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rlsa-2026:19148</id>
    <title>RLSA-2026:19148 — Moderate: glib2 security update</title>
    <updated>2026-10-02T14:38:25.887172+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Rocky Linux:10: glib2</p>
<p>GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures.</p>
<p>Security Fix(es):</p>
<p>* glib: GLib: Buffer underflow in GVariant parser leads to heap corruption (CVE-2025-14087)</p>
<p>* glib: Integer Overflow in GLib GIO Attribute Escaping Causes Heap Buffer Overflow (CVE-2025-14512)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rlsa-2026:19148"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2025:4441-1</id>
    <title>SUSE-SU-2025:4441-1 — Security update for glib2</title>
    <updated>2026-10-02T14:38:25.887195+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for glib2</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2025:4441-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-14087</id>
    <title>UBUNTU-CVE-2025-14087</title>
    <updated>2026-10-02T14:38:25.887210+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: glib2.0, Ubuntu:Pro:16.04:LTS: glib2.0, Ubuntu:Pro:18.04:LTS: glib2.0, Ubuntu:Pro:20.04:LTS: glib2.0, Ubuntu:22.04:LTS: glib2.0, Ubuntu:24.04:LTS: glib2.0, Ubuntu:25.10: glib2.0</p>
<p>A flaw was found in GLib (Gnome Lib). This vulnerability allows a remote attacker to cause heap corruption, leading to a denial of service or potential code execution via a buffer-underflow in the GVariant parser when processing maliciously crafted input strings.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-14087"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0349</id>
    <title>WID-SEC-W-2026-0349 — Dell Avamar und NetWorker: Mehrere Schwachstellen</title>
    <updated>2026-10-02T14:38:25.887321+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in Dell Avamar und Dell NetWorker ausnutzen, um Angriffe zu starten, die die Integrität, Vertraulichkeit und Verfügbarkeit von Systemen beeinträchtigen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0349"/>
  </entry>
</feed>
