CVE-2025-14087

Name
CVE-2025-14087
Description
A flaw was found in GLib (Gnome Lib). This vulnerability allows a remote attacker to cause heap corruption, leading to a denial of service or potential code execution via a buffer-underflow in the GVariant parser when processing maliciously crafted input strings.
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
vdb-entry https://access.redhat.com/security/cve/CVE-2025-14087
issue-tracking https://bugzilla.redhat.com/show_bug.cgi?id=2419093

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:gnome:glib:*:*:*:*:*:*:*:* glib >= None < 2.86.3

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
glib edge-main 2.86.2-r1 team/gnome <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.86.2-r0 team/gnome <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.86.1-r0 team/gnome <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.86.0-r1 team/gnome <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.86.0-r0 team/gnome <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.84.4-r2 team/gnome <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.84.4-r1 team/gnome <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.84.4-r0 team/gnome <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.84.3-r0 team/gnome <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.84.2-r1 team/gnome <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.84.2-r0 team/gnome <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.84.1-r0 team/gnome <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.84.0-r0 team/gnome <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.82.5-r1 team/gnome <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.82.5-r0 Pablo Correa Gómez <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.82.4-r0 Pablo Correa Gómez <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.82.3-r0 Pablo Correa Gómez <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.82.2-r1 Pablo Correa Gómez <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.82.2-r0 Pablo Correa Gómez <pabloyoyoista@postmarketos.org> possibly vulnerable
glib edge-main 2.80.1-r0 Pablo Correa Gómez <ablocorrea@hotmail.com> possibly vulnerable
glib edge-main 2.66.6-r0 None possibly vulnerable
glib edge-main 2.62.5-r0 None possibly vulnerable
glib edge-main 2.60.4-r0 None possibly vulnerable
glib 3.22-main 2.84.4-r0 team/gnome <pabloyoyoista@postmarketos.org> possibly vulnerable
glib 3.22-main 2.84.3-r0 team/gnome <pabloyoyoista@postmarketos.org> possibly vulnerable
glib 3.22-main 2.80.1-r0 None possibly vulnerable
glib 3.22-main 2.66.6-r0 None possibly vulnerable
glib 3.22-main 2.62.5-r0 None possibly vulnerable
glib 3.22-main 2.60.4-r0 None possibly vulnerable
glib 3.21-main 2.82.5-r0 Pablo Correa Gómez <pabloyoyoista@postmarketos.org> possibly vulnerable
glib 3.21-main 2.82.4-r0 Pablo Correa Gómez <pabloyoyoista@postmarketos.org> possibly vulnerable
glib 3.21-main 2.82.3-r0 Pablo Correa Gómez <pabloyoyoista@postmarketos.org> possibly vulnerable
glib 3.21-main 2.82.2-r0 Pablo Correa Gómez <pabloyoyoista@postmarketos.org> possibly vulnerable
glib 3.21-main 2.80.1-r0 None possibly vulnerable
glib 3.21-main 2.66.6-r0 None possibly vulnerable
glib 3.21-main 2.62.5-r0 None possibly vulnerable
glib 3.21-main 2.60.4-r0 None possibly vulnerable
glib 3.20-main 2.80.5-r0 Pablo Correa Gómez <ablocorrea@hotmail.com> possibly vulnerable
glib 3.20-main 2.80.1-r0 None possibly vulnerable
glib 3.20-main 2.66.6-r0 None possibly vulnerable
glib 3.20-main 2.62.5-r0 None possibly vulnerable
glib 3.20-main 2.60.4-r0 None possibly vulnerable
glib 3.19-main 2.78.6-r0 Pablo Correa Gómez <ablocorrea@hotmail.com> possibly vulnerable
glib 3.19-main 2.78.5-r0 Pablo Correa Gómez <ablocorrea@hotmail.com> possibly vulnerable
glib 3.19-main 2.66.6-r0 None possibly vulnerable
glib 3.19-main 2.62.5-r0 None possibly vulnerable
glib 3.19-main 2.60.4-r0 None possibly vulnerable