GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures.
Security Fix(es):
glib: GLib: Buffer underflow in GVariant parser leads to heap corruption (CVE-2025-14087)
glib: buffer over-read in glib/gvariant-serialiser.c via gvstupleis_normal() (CVE-2026-58010)
glib: out-of-bounds read in glib/gdatetime.c:gdatetimegetymd via invalid GDateTime (CVE-2026-58011)
glib: buffer over-read in gregexreplace() via glib/gregex.c:stringappend() and gutf8nextchar() (CVE-2026-58012)
glib: buffer over-read in glib/giochannel.c via "giochannelreadline_backend" (CVE-2026-58013)
glib: off-by-one error in glib/gkeyfile.c via "gkeyfilegetlocalestringlist" (CVE-2026-58014)
glib: path traversal in glib/gio/gdbusauthmechanismsha1.c via keyringlookupentry and mechanismclientdata_receive (CVE-2026-58015)
glib: integer underflow in gio/gdbusintrospection.c via "gdbusnodeinfonewforxml" (CVE-2026-58016)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.