Description
Multiple integer overflows in glib/gbase64.c in GLib before 2.20 allow context-dependent attackers to execute arbitrary code via a long string that is converted either (1) from or (2) to a base64 representation.
CVSS vector
AV:L/AC:L/C:P/I:P/A:PExploitability: 3.9 | Impact: 6.4 Affected Packages1 packages
🔴Vulnerability Details
3GHSAGHSA-96v6-2hh2-wxrr: Multiple integer overflows in glib/gbase64↗2022-05-02 ▶ OSVCVE-2008-4316: Multiple integer overflows in glib/gbase64↗2009-03-14 ▶ CVEListCVE-2008-4316: Multiple integer overflows in glib/gbase64↗2009-03-14 ▶ 📋Vendor Advisories
3UbuntuGLib vulnerability↗2009-03-16 ▶ Red Hatglib2: integer overflows in the base64 handling functions (oCERT-2008-015)↗2009-03-12 ▶ DebianCVE-2008-4316: glib2.0 - Multiple integer overflows in glib/gbase64.c in GLib before 2.20 allow context-d...↗2008 ▶ 💬Community
2BugzillaCVE-2009-0587 evolution-data-server: integer overflow in base64 encoding functions↗2009-03-03 ▶ BugzillaCVE-2008-4316 glib2: integer overflows in the base64 handling functions (oCERT-2008-015)↗2008-12-05 ▶