Known vulnerabilities in glib2 (Red Hat package)
Vendor:
Red Hat Inc.
Software:
glib2 (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:glib2_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
34
Public exploits:
2
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
2.68.4-19.el9_8.2
2.56.4-170.el8_10
2.80.4-12.el10_2.14
2.68.4-19.el9_8.1
2.56.1-12.el7_9
2.56.4-158.el8_6.5
2.56.4-165.el8_8
2.68.4-5.el9_0.5
2.68.4-14.el9_4.6
2.80.4-12.el10_2.13
2.80.4-10.el10_1.13
2.68.4-18.el9_7.2
2.56.4-169.el8_10
2.56.4-8.el8_2.4
2.56.4-10.el8_4.4
2.56.4-164.el8_8
2.56.4-158.el8_6.4
2.56.1-11.el7_9
2.68.4-16.el9_6.4
2.80.4-4.el10_0.8
2.68.4-14.el9_4.5
2.68.4-7.el9_2.4
2.68.4-5.el9_0.4
2.56.4-168.el8_10
2.80.4-10.el10_1.12
2.68.4-18.el9_7.1
2.68.4-18.el9_7
2.68.4-16.el9_6.3
2.56.4-10.el8_4.2
2.68.4-5.el9_0.2
2.68.4-14.el9_4.3
2.68.4-7.el9_2.2
2.56.4-166.el8_10
2.68.4-16.el9_6.2
2.68.4-7.el9_2
2.68.4-14.el9_4.1
2.12.3-4.el5_3.1
2.68.4-11.el9
2.56.4-156.el8
2.56.4-10.el8_4.1
2.56.4-159.el8
2.28.8-11.el6_10
2.56.4-8.el8_2.1
2.42.2-6.el7_2
2.56.1-5.el7_6
2.56.4-8.el8_1
2.56.1-6.el7_7
2.50.3-4.el7_4
2.46.2-5.el7_3
2.56.4-10.el8_4
2.56.1-9.el7_9
2.56.4-9.el8
2.56.1-7.el7
2.50.3-3.el7
2.56.4-8.el8
2.56.1-5.el7
2.56.4-7.el8
2.42.2-5.el7
2.28.8-10.el6
2.28.8-9.el6
2.28.8-5.el6
2.28.8-4.el6
2.26.1-7.el6_5
2.26.1-3.el6
2.22.5-7.el6
2.22.5-6.el6
2.22.5-5.el6
Vulnerabilities (34)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU120193 - Integer overflow CVE-2025-13601 |
CWE-190 | Medium | 2.56.1-11.el7_9, 2.56.4-8.el8_2.4, 2.56.4-10.el8_4.4, 2.56.4-158.el8_6.4, 2.56.4-164.el8_8, 2.56.4-168.el8_10, 2.68.4-5.el9_0.4, 2.68.4-7.el9_2.4, 2.68.4-14.el9_4.5, 2.68.4-16.el9_6.4, 2.68.4-18.el9_7.1, 2.80.4-4.el10_0.8, 2.80.4-10.el10_1.12 | 18.12.2025 |
SB2025121853 SB2025121874 SB2025121875 and 44 more |
||
| #VU119958 - Memory corruption CVE-2025-14087 |
CWE-119 | High | 2.56.1-12.el7_9, 2.56.4-158.el8_6.5, 2.56.4-165.el8_8, 2.56.4-169.el8_10, 2.68.4-5.el9_0.5, 2.68.4-14.el9_4.6, 2.68.4-18.el9_7.2, 2.80.4-10.el10_1.13, 2.80.4-12.el10_2.13 | 15.12.2025 |
SB2025121514 SB2025121874 SB2025121875 and 25 more |
||
| #VU119957 - Integer overflow CVE-2025-14512 |
CWE-190 | Medium | 2.56.4-158.el8_6.5, 2.56.4-165.el8_8, 2.56.4-169.el8_10, 2.68.4-5.el9_0.5, 2.68.4-14.el9_4.6, 2.68.4-18.el9_7.2, 2.80.4-10.el10_1.13, 2.80.4-12.el10_2.13 | 15.12.2025 |
SB2025121514 SB2025121874 SB2025121875 and 22 more |
||
| #VU109848 - Integer overflow CVE-2025-4373 |
CWE-190 | High | 2.56.4-10.el8_4.2, 2.56.4-166.el8_10, 2.68.4-5.el9_0.2, 2.68.4-7.el9_2.2, 2.68.4-14.el9_4.3, 2.68.4-16.el9_6.2 | 27.05.2025 |
SB2025052742 SB2025052946 SB2025060610 and 42 more |
||
| #VU100566 - Off-by-one Error CVE-2024-52533 |
CWE-193 | High | 2.56.4-10.el8_4.2, 2.56.4-166.el8_10, 2.68.4-5.el9_0.2, 2.68.4-7.el9_2.2, 2.68.4-14.el9_4.3, 2.68.4-16.el9_6.2 | 15.11.2024 |
SB20241115147 SB20241115148 SB20241115149 and 71 more |
||
| #VU89351 - Insufficient Verification of Data Authenticity CVE-2024-34397 |
CWE-345 | Low | 2.56.4-10.el8_4.2, 2.56.4-166.el8_10, 2.68.4-7.el9_2, 2.68.4-14.el9_4.1 | 10.05.2024 |
SB2024051042 SB2024051043 SB2024051044 and 88 more |
||
| #VU77351 - Improper input validation CVE-2023-29499 |
CWE-20 | Medium | 2.68.4-11.el9 | 15.06.2023 |
SB2023041955 SB2023061510 SB2023080276 and 35 more |
||
| #VU77350 - Resource exhaustion CVE-2023-32611 |
CWE-400 | Medium | 2.68.4-11.el9 | 15.06.2023 |
SB2023041955 SB2023061510 SB2023080276 and 31 more |
||
| #VU77349 - Resource exhaustion CVE-2023-32665 |
CWE-400 | Medium | 2.68.4-11.el9 | 15.06.2023 |
SB2023041955 SB2023061510 SB2023080276 and 31 more |
||
| #VU63822 - Heap-based Buffer Overflow CVE-2022-30293 |
CWE-122 | High | 2.56.4-159.el8 | 30.05.2022 |
SB2022053014 SB2022053015 SB2022060119 and 30 more |
||
| #VU63280 - Use After Free CVE-2022-26709 |
CWE-416 | High | 2.56.4-159.el8 | 16.05.2022 |
SB2022051701 SB2022051704 SB2022051705 and 36 more |
||
| #VU63281 - Use After Free CVE-2022-26710 |
CWE-416 | High | 2.56.4-159.el8 | 16.05.2022 |
SB2022051701 SB2022051705 SB2022051706 and 34 more |
||
| #VU63282 - Use After Free CVE-2022-26717 |
CWE-416 | High | 2.56.4-159.el8 | 16.05.2022 |
SB2022051701 SB2022051704 SB2022051705 and 37 more |
||
| #VU63279 - Memory corruption CVE-2022-26700 |
CWE-119 | High | 2.56.4-159.el8 | 16.05.2022 |
SB2022051701 SB2022051704 SB2022051705 and 36 more |
||
| #VU63283 - Memory corruption CVE-2022-26716 |
CWE-119 | High | 2.56.4-159.el8 | 16.05.2022 |
SB2022051701 SB2022051704 SB2022051705 and 36 more |
||
| #VU63284 - Memory corruption CVE-2022-26719 |
CWE-119 | High | 2.56.4-159.el8 | 16.05.2022 |
SB2022051701 SB2022051704 SB2022051705 and 34 more |
||
| #VU61337 - Heap-based Buffer Overflow CVE-2022-22629 |
CWE-122 | High | 2.56.4-159.el8 | 14.03.2022 |
SB2022031433 SB2022031436 SB2022031437 and 33 more |
||
| #VU61336 - Use After Free CVE-2022-22628 |
CWE-416 | High | 2.56.4-159.el8 | 14.03.2022 |
SB2022031433 SB2022031436 SB2022031437 and 32 more |
||
| #VU61335 - Use After Free CVE-2022-22624 |
CWE-416 | High | 2.56.4-159.el8 | 14.03.2022 |
SB2022031433 SB2022031436 SB2022031437 and 32 more |
||
| #VU61333 - Exposure of sensitive information to an unauthorized actor CVE-2022-22662 |
CWE-200 | Medium | 2.56.4-159.el8 | 14.03.2022 |
SB2022031433 SB2022031434 SB2022031435 and 35 more |
Showing elements 1 - 20 out of 34