A flaw was found in GLib. GVariant deserialization fails to validate that the input conforms to the expected format, leading to denial of service.
The product does not properly control the allocation and maintenance of a limited resource.
Link | Tags |
---|---|
https://access.redhat.com/security/cve/CVE-2023-29499 | third party advisory vdb entry |
https://bugzilla.redhat.com/show_bug.cgi?id=2211828 | third party advisory issue tracking |
https://gitlab.gnome.org/GNOME/glib/-/issues/2794 | vendor advisory issue tracking |
https://lists.debian.org/debian-lts-announce/2023/09/msg00030.html | |
https://security.netapp.com/advisory/ntap-20231103-0001/ | |
https://security.gentoo.org/glsa/202311-18 |