A flaw was found in glib, where the gvariant deserialization code is vulnerable to a denial of service introduced by additional input validation added to resolve CVE-2023-29499. The offset table validation may be very slow. This bug does not affect any released version of glib but does affect glib distributors who followed the guidance of glib developers to backport the initial fix for CVE-2023-29499.
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "2.40.2-0ubuntu1.1+esm6", "binary_name": "libglib2.0-0" }, { "binary_version": "2.40.2-0ubuntu1.1+esm6", "binary_name": "libglib2.0-0-dbg" }, { "binary_version": "2.40.2-0ubuntu1.1+esm6", "binary_name": "libglib2.0-0-dbgsym" }, { "binary_version": "2.40.2-0ubuntu1.1+esm6", "binary_name": "libglib2.0-0-refdbg" }, { "binary_version": "2.40.2-0ubuntu1.1+esm6", "binary_name": "libglib2.0-0-refdbg-dbgsym" }, { "binary_version": "2.40.2-0ubuntu1.1+esm6", "binary_name": "libglib2.0-bin" }, { "binary_version": "2.40.2-0ubuntu1.1+esm6", "binary_name": "libglib2.0-bin-dbgsym" }, { "binary_version": "2.40.2-0ubuntu1.1+esm6", "binary_name": "libglib2.0-data" }, { "binary_version": "2.40.2-0ubuntu1.1+esm6", "binary_name": "libglib2.0-dev" }, { "binary_version": "2.40.2-0ubuntu1.1+esm6", "binary_name": "libglib2.0-dev-dbgsym" }, { "binary_version": "2.40.2-0ubuntu1.1+esm6", "binary_name": "libglib2.0-doc" }, { "binary_version": "2.40.2-0ubuntu1.1+esm6", "binary_name": "libglib2.0-tests" }, { "binary_version": "2.40.2-0ubuntu1.1+esm6", "binary_name": "libglib2.0-tests-dbgsym" }, { "binary_version": "2.40.2-0ubuntu1.1+esm6", "binary_name": "libglib2.0-udeb" }, { "binary_version": "2.40.2-0ubuntu1.1+esm6", "binary_name": "libglib2.0-udeb-dbgsym" } ] }
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "2.48.2-0ubuntu4.8+esm3", "binary_name": "libglib2.0-0" }, { "binary_version": "2.48.2-0ubuntu4.8+esm3", "binary_name": "libglib2.0-0-dbg" }, { "binary_version": "2.48.2-0ubuntu4.8+esm3", "binary_name": "libglib2.0-0-dbgsym" }, { "binary_version": "2.48.2-0ubuntu4.8+esm3", "binary_name": "libglib2.0-0-refdbg" }, { "binary_version": "2.48.2-0ubuntu4.8+esm3", "binary_name": "libglib2.0-0-refdbg-dbgsym" }, { "binary_version": "2.48.2-0ubuntu4.8+esm3", "binary_name": "libglib2.0-bin" }, { "binary_version": "2.48.2-0ubuntu4.8+esm3", "binary_name": "libglib2.0-bin-dbgsym" }, { "binary_version": "2.48.2-0ubuntu4.8+esm3", "binary_name": "libglib2.0-data" }, { "binary_version": "2.48.2-0ubuntu4.8+esm3", "binary_name": "libglib2.0-dev" }, { "binary_version": "2.48.2-0ubuntu4.8+esm3", "binary_name": "libglib2.0-dev-dbgsym" }, { "binary_version": "2.48.2-0ubuntu4.8+esm3", "binary_name": "libglib2.0-doc" }, { "binary_version": "2.48.2-0ubuntu4.8+esm3", "binary_name": "libglib2.0-tests" }, { "binary_version": "2.48.2-0ubuntu4.8+esm3", "binary_name": "libglib2.0-tests-dbgsym" }, { "binary_version": "2.48.2-0ubuntu4.8+esm3", "binary_name": "libglib2.0-udeb" }, { "binary_version": "2.48.2-0ubuntu4.8+esm3", "binary_name": "libglib2.0-udeb-dbgsym" } ] }
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "2.56.4-0ubuntu0.18.04.9+esm3", "binary_name": "libglib2.0-0" }, { "binary_version": "2.56.4-0ubuntu0.18.04.9+esm3", "binary_name": "libglib2.0-0-dbgsym" }, { "binary_version": "2.56.4-0ubuntu0.18.04.9+esm3", "binary_name": "libglib2.0-bin" }, { "binary_version": "2.56.4-0ubuntu0.18.04.9+esm3", "binary_name": "libglib2.0-bin-dbgsym" }, { "binary_version": "2.56.4-0ubuntu0.18.04.9+esm3", "binary_name": "libglib2.0-data" }, { "binary_version": "2.56.4-0ubuntu0.18.04.9+esm3", "binary_name": "libglib2.0-dev" }, { "binary_version": "2.56.4-0ubuntu0.18.04.9+esm3", "binary_name": "libglib2.0-dev-bin" }, { "binary_version": "2.56.4-0ubuntu0.18.04.9+esm3", "binary_name": "libglib2.0-dev-bin-dbgsym" }, { "binary_version": "2.56.4-0ubuntu0.18.04.9+esm3", "binary_name": "libglib2.0-doc" }, { "binary_version": "2.56.4-0ubuntu0.18.04.9+esm3", "binary_name": "libglib2.0-tests" }, { "binary_version": "2.56.4-0ubuntu0.18.04.9+esm3", "binary_name": "libglib2.0-tests-dbgsym" }, { "binary_version": "2.56.4-0ubuntu0.18.04.9+esm3", "binary_name": "libglib2.0-udeb" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "2.64.6-1~ubuntu20.04.6", "binary_name": "libglib2.0-0" }, { "binary_version": "2.64.6-1~ubuntu20.04.6", "binary_name": "libglib2.0-0-dbgsym" }, { "binary_version": "2.64.6-1~ubuntu20.04.6", "binary_name": "libglib2.0-bin" }, { "binary_version": "2.64.6-1~ubuntu20.04.6", "binary_name": "libglib2.0-bin-dbgsym" }, { "binary_version": "2.64.6-1~ubuntu20.04.6", "binary_name": "libglib2.0-data" }, { "binary_version": "2.64.6-1~ubuntu20.04.6", "binary_name": "libglib2.0-dev" }, { "binary_version": "2.64.6-1~ubuntu20.04.6", "binary_name": "libglib2.0-dev-bin" }, { "binary_version": "2.64.6-1~ubuntu20.04.6", "binary_name": "libglib2.0-dev-bin-dbgsym" }, { "binary_version": "2.64.6-1~ubuntu20.04.6", "binary_name": "libglib2.0-doc" }, { "binary_version": "2.64.6-1~ubuntu20.04.6", "binary_name": "libglib2.0-tests" }, { "binary_version": "2.64.6-1~ubuntu20.04.6", "binary_name": "libglib2.0-tests-dbgsym" }, { "binary_version": "2.64.6-1~ubuntu20.04.6", "binary_name": "libglib2.0-udeb" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "2.72.4-0ubuntu2.2", "binary_name": "libglib2.0-0" }, { "binary_version": "2.72.4-0ubuntu2.2", "binary_name": "libglib2.0-0-dbgsym" }, { "binary_version": "2.72.4-0ubuntu2.2", "binary_name": "libglib2.0-bin" }, { "binary_version": "2.72.4-0ubuntu2.2", "binary_name": "libglib2.0-bin-dbgsym" }, { "binary_version": "2.72.4-0ubuntu2.2", "binary_name": "libglib2.0-data" }, { "binary_version": "2.72.4-0ubuntu2.2", "binary_name": "libglib2.0-dev" }, { "binary_version": "2.72.4-0ubuntu2.2", "binary_name": "libglib2.0-dev-bin" }, { "binary_version": "2.72.4-0ubuntu2.2", "binary_name": "libglib2.0-dev-bin-dbgsym" }, { "binary_version": "2.72.4-0ubuntu2.2", "binary_name": "libglib2.0-doc" }, { "binary_version": "2.72.4-0ubuntu2.2", "binary_name": "libglib2.0-tests" }, { "binary_version": "2.72.4-0ubuntu2.2", "binary_name": "libglib2.0-tests-dbgsym" } ] }