Out-of-Bounds Read Vulnerability in GNOME GLib 2.56.1
CVE-2018-16429
7.5HIGH
Summary
GNOME GLib 2.56.1 contains an out-of-bounds read vulnerability in the g_markup_parse_context_parse() function located in gmarkup.c, which is related to the utf8_str() handling. This weakness could lead to potential information disclosure and unexpected behavior when processing malformed input. Users are urged to update to the latest version to mitigate this risk.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved