#VU51455 Incorrect Conversion between Numeric Types in Gnome GLib - CVE-2021-27218
Published: March 15, 2021
Gnome GLib
Gnome Development Team
Description
The vulnerability allows a local user to bypass implemented security restrictions.
The vulnerability exists due to incorrect conversion between numeric types in Gnome Glib. If g_byte_array_new_take() was called with a buffer of 4GB or more on a 64-bit platform, the length would be truncated modulo 2**32, causing unintended length truncation.