CVE-2026-58013
ADVISORY - debianSummary
A flaw was found in GLib. A buffer over-read can occur in g_io_channel_read_line_backend() in the giochannel.c file when a custom line terminator with a length greater than one is set, causing memcmp to read past the GString buffer. This vulnerability can cause a minor information disclosure of 7 bytes or a denial of service when the buffer over-read crosses a page boundary.
- glib2.0 2.88.1-2 [trixie] - glib2.0 (Minor issue) [bookworm] - glib2.0 (Minor issue; GIOChannel custom-terminator over-read, reachability-gated) [bullseye] - glib2.0 (Minor issue; GIOChannel custom-terminator over-read, reachability-gated) https://gitlab.gnome.org/GNOME/glib/-/work_items/3925 https://gitlab.gnome.org/GNOME/glib/-/merge_requests/5170 (2.89.0) https://gitlab.gnome.org/GNOME/glib/-/merge_requests/5174 (2.88.1)
EPSS Score: 0.00329 (0.253)
Common Weakness Enumeration (CWE)
Sign in to Docker Scout
See which of your images are affected by this CVE and how to fix them by signing into Docker Scout.
Sign in