<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 19:11:52 +0000</lastBuildDate>
    <item>
      <title>ALSA-2026:15953 — Moderate: glib2 security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2026:15953</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: glib2, AlmaLinux:8: glib2-devel, AlmaLinux:8: glib2-doc, AlmaLinux:8: glib2-fam, AlmaLinux:8: glib2-static, AlmaLinux:8: glib2-tests&lt;/p&gt;
&lt;p&gt;GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* glib: GLib: Buffer underflow in GVariant parser leads to heap corruption (CVE-2025-14087)
  * glib: Integer Overflow in GLib GIO Attribute Escaping Causes Heap Buffer Overflow (CVE-2025-14512)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: glib2, AlmaLinux:8: glib2-devel, AlmaLinux:8: glib2-doc, AlmaLinux:8: glib2-fam, AlmaLinux:8: glib2-static, AlmaLinux:8: glib2-tests&lt;/p&gt;
&lt;p&gt;GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* glib: GLib: Buffer underflow in GVariant parser leads to heap corruption (CVE-2025-14087)
  * glib: Integer Overflow in GLib GIO Attribute Escaping Causes Heap Buffer Overflow (CVE-2025-14512)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2026:15953</guid>
    </item>
    <item>
      <title>bdu:2026-05069</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-05069</link>
      <description>bdu:2026-05069</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-05069</guid>
    </item>
    <item>
      <title>BELL-CVE-2025-14087</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2025-14087</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: glib, Alpaquita:25: glib, Alpaquita:stream: glib&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: glib, Alpaquita:25: glib, Alpaquita:stream: glib&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2025-14087</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0112 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Elles permettent à un attaquant de provoquer…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0112</link>
      <description>certfr-2026-avi-0112</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0112</guid>
    </item>
    <item>
      <title>EUVD-2026-382040</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-382040</link>
      <description>EUVD-2026-382040</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-382040</guid>
    </item>
    <item>
      <title>fkie_cve-2025-14087</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-14087</link>
      <description>&lt;p&gt;A flaw was found in GLib (Gnome Lib). This vulnerability allows a remote attacker to cause heap corruption, leading to a denial of service or potential code execution via a buffer-underflow in the GVariant parser when processing maliciously crafted input strings.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in GLib (Gnome Lib). This vulnerability allows a remote attacker to cause heap corruption, leading to a denial of service or potential code execution via a buffer-underflow in the GVariant parser when processing maliciously crafted input strings.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-14087</guid>
    </item>
    <item>
      <title>GHSA-frh9-7wfp-w73p</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-frh9-7wfp-w73p</link>
      <description>&lt;p&gt;A flaw was found in GLib (Gnome Lib). This vulnerability allows a remote attacker to cause heap corruption, leading to a denial of service or potential code execution via a buffer-underflow in the GVariant parser when processing maliciously crafted input strings.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in GLib (Gnome Lib). This vulnerability allows a remote attacker to cause heap corruption, leading to a denial of service or potential code execution via a buffer-underflow in the GVariant parser when processing maliciously crafted input strings.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-frh9-7wfp-w73p</guid>
    </item>
    <item>
      <title>msrc_CVE-2025-14087 — Glib: glib: buffer underflow in gvariant parser leads to heap corruption</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2025-14087</link>
      <description>msrc_CVE-2025-14087</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2025-14087</guid>
    </item>
    <item>
      <title>OESA-2025-2900 — glib2 security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2025-2900</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: glib2&lt;/p&gt;
&lt;p&gt;GLib is a bundle of three (formerly five) low-level system libraries written in C and developed mainly by GNOME. GLib&amp;amp;amp;apos;s code was separated from GTK, so it can be used by software other than GNOME and has been developed in parallel ever since.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;A vulnerability was found in GNOME GLib (the affected version unknown). It has been declared as critical. The CWE definition for the vulnerability is CWE-120. The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow. As an impact it is known to affect confidentiality, integrity, and availability. There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.(CVE-2025-14087)&lt;/p&gt;
&lt;p&gt;A flaw was found in glib. This vulnerability allows a heap buffer overflow and denial-of-service (DoS) via an integer overflow in GLib&amp;amp;apos;s GIO (GLib Input/Output) escape_byte_string() function when processing malicious file or remote filesystem attribute values.(CVE-2025-14512)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: glib2&lt;/p&gt;
&lt;p&gt;GLib is a bundle of three (formerly five) low-level system libraries written in C and developed mainly by GNOME. GLib&amp;amp;amp;apos;s code was separated from GTK, so it can be used by software other than GNOME and has been developed in parallel ever since.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;A vulnerability was found in GNOME GLib (the affected version unknown). It has been declared as critical. The CWE definition for the vulnerability is CWE-120. The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow. As an impact it is known to affect confidentiality, integrity, and availability. There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.(CVE-2025-14087)&lt;/p&gt;
&lt;p&gt;A flaw was found in glib. This vulnerability allows a heap buffer overflow and denial-of-service (DoS) via an integer overflow in GLib&amp;amp;apos;s GIO (GLib Input/Output) escape_byte_string() function when processing malicious file or remote filesystem attribute values.(CVE-2025-14512)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2025-2900</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:20018-1 — Security update for glib2</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:20018-1</link>
      <description>&lt;p&gt;Security update for glib2&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for glib2&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:20018-1</guid>
    </item>
    <item>
      <title>RHSA-2026:19452 — Red Hat Security Advisory: glib2 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:19452</link>
      <description>&lt;p&gt;glib: GLib: Buffer underflow in GVariant parser leads to heap corruption glib: Integer Overflow in GLib GIO Attribute Escaping Causes Heap Buffer Overflow&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;glib: GLib: Buffer underflow in GVariant parser leads to heap corruption glib: Integer Overflow in GLib GIO Attribute Escaping Causes Heap Buffer Overflow&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:19452</guid>
    </item>
    <item>
      <title>RLSA-2026:19148 — Moderate: glib2 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rlsa-2026:19148</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:10: glib2&lt;/p&gt;
&lt;p&gt;GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* glib: GLib: Buffer underflow in GVariant parser leads to heap corruption (CVE-2025-14087)&lt;/p&gt;
&lt;p&gt;* glib: Integer Overflow in GLib GIO Attribute Escaping Causes Heap Buffer Overflow (CVE-2025-14512)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:10: glib2&lt;/p&gt;
&lt;p&gt;GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* glib: GLib: Buffer underflow in GVariant parser leads to heap corruption (CVE-2025-14087)&lt;/p&gt;
&lt;p&gt;* glib: Integer Overflow in GLib GIO Attribute Escaping Causes Heap Buffer Overflow (CVE-2025-14512)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rlsa-2026:19148</guid>
    </item>
    <item>
      <title>SUSE-SU-2025:4441-1 — Security update for glib2</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2025:4441-1</link>
      <description>&lt;p&gt;Security update for glib2&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for glib2&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2025:4441-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-14087</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-14087</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: glib2.0, Ubuntu:Pro:16.04:LTS: glib2.0, Ubuntu:Pro:18.04:LTS: glib2.0, Ubuntu:Pro:20.04:LTS: glib2.0, Ubuntu:22.04:LTS: glib2.0, Ubuntu:24.04:LTS: glib2.0, Ubuntu:25.10: glib2.0&lt;/p&gt;
&lt;p&gt;A flaw was found in GLib (Gnome Lib). This vulnerability allows a remote attacker to cause heap corruption, leading to a denial of service or potential code execution via a buffer-underflow in the GVariant parser when processing maliciously crafted input strings.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: glib2.0, Ubuntu:Pro:16.04:LTS: glib2.0, Ubuntu:Pro:18.04:LTS: glib2.0, Ubuntu:Pro:20.04:LTS: glib2.0, Ubuntu:22.04:LTS: glib2.0, Ubuntu:24.04:LTS: glib2.0, Ubuntu:25.10: glib2.0&lt;/p&gt;
&lt;p&gt;A flaw was found in GLib (Gnome Lib). This vulnerability allows a remote attacker to cause heap corruption, leading to a denial of service or potential code execution via a buffer-underflow in the GVariant parser when processing maliciously crafted input strings.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-14087</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0349 — Dell Avamar und NetWorker: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0349</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Dell Avamar und Dell NetWorker ausnutzen, um Angriffe zu starten, die die Integrität, Vertraulichkeit und Verfügbarkeit von Systemen beeinträchtigen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Dell Avamar und Dell NetWorker ausnutzen, um Angriffe zu starten, die die Integrität, Vertraulichkeit und Verfügbarkeit von Systemen beeinträchtigen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0349</guid>
    </item>
  </channel>
</rss>
