cbcvebase.
CVE-2008-4316
published 2009-03-14

CVE-2008-4316: Multiple integer overflows in glib/gbase64.c in GLib before 2.20 allow context-dependent attackers to execute arbitrary code via a long string that is…

PriorityP421medium4.6CVSS 2.0
AVLACLAuNCPIPAP
EPSS
0.49%
39.2th percentile
Multiple integer overflows in glib/gbase64.c in GLib before 2.20 allow context-dependent attackers to execute arbitrary code via a long string that is converted either (1) from or (2) to a base64 representation.

Affected

6 ranges
VendorProductVersion rangeFixed in
debianglib2.0< glib2.0 2.20.0-1 (bookworm)glib2.0 2.20.0-1 (bookworm)
gnomeglib<= 2.16.4
gnomeglib
gnomeglib
gnomeglib
gnomeglib

CVSS provenance

nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv4.6MEDIUM
vendor_debian4.6MEDIUM
vendor_redhat4.6MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.