glib-networking contains the implementations of certain GLib networking features that cannot be implemented directly in GLib itself because of their dependencies.
Security Fix(es):
glib-networking's OpenSSL backend fails to properly check the return value of a call to BIO_write(), resulting in an out of bounds read.(CVE-2025-60018)
glib-networking's OpenSSL backend fails to properly check the return value of memory allocation routines. An out of memory condition could potentially result in writing to an invalid memory location.(CVE-2025-60019)
{
"severity": "Medium"
}{
"x86_64": [
"glib-networking-2.78.0-2.oe2403sp2.x86_64.rpm",
"glib-networking-debuginfo-2.78.0-2.oe2403sp2.x86_64.rpm",
"glib-networking-debugsource-2.78.0-2.oe2403sp2.x86_64.rpm",
"glib-networking-tests-2.78.0-2.oe2403sp2.x86_64.rpm"
],
"src": [
"glib-networking-2.78.0-2.oe2403sp2.src.rpm"
],
"aarch64": [
"glib-networking-2.78.0-2.oe2403sp2.aarch64.rpm",
"glib-networking-debuginfo-2.78.0-2.oe2403sp2.aarch64.rpm",
"glib-networking-debugsource-2.78.0-2.oe2403sp2.aarch64.rpm",
"glib-networking-tests-2.78.0-2.oe2403sp2.aarch64.rpm"
]
}