Wind River Support Network

HomeDefectsLIN1021-12291
Fixed

LIN1021-12291 : Security Advisory - glib-2.0 - CVE-2024-52533

Created: Nov 11, 2024    Updated: Jan 6, 2025
Resolved Date: Jan 5, 2025
Found In Version: 10.21.20.1
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

gio/gsocks4aproxy.c in GNOME GLib before 2.82.1 has an off-by-one error and resultant buffer overflow because SOCKS4_CONN_MSG_LEN is not sufficient for a trailing '\0' character.

CREATE(Triage):(User=admin) CVE-2024-52533 (https://nvd.nist.gov/vuln/detail/CVE-2024-52533)

CVEs


Live chat
Online