CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:L/AC:L/Au:N/C:P/I:P/A:P
AI Score
Confidence
High
EPSS
Percentile
35.7%
Diego Petteno discovered that the Base64 encoding functions in GLib did not
properly handle large strings. If a user or automated system were tricked
into processing a crafted Base64 string, an attacker could possibly execute
arbitrary code with the privileges of the user invoking the program.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
Ubuntu | 8.10 | noarch | libglib2.0-0 | <Β 2.18.2-0ubuntu2.1 | UNKNOWN |
Ubuntu | 8.10 | noarch | libgio-fam | <Β 2.18.2-0ubuntu2.1 | UNKNOWN |
Ubuntu | 8.10 | noarch | libglib2.0-0 | <Β dbg-2.18.2-0ubuntu2.1 | UNKNOWN |
Ubuntu | 8.10 | noarch | libglib2.0-dev | <Β 2.18.2-0ubuntu2.1 | UNKNOWN |
Ubuntu | 8.10 | noarch | libglib2.0-udeb | <Β 2.18.2-0ubuntu2.1 | UNKNOWN |
Ubuntu | 8.04 | noarch | libglib2.0-0 | <Β 2.16.6-0ubuntu1.1 | UNKNOWN |
Ubuntu | 8.04 | noarch | libgio-fam | <Β 2.16.6-0ubuntu1.1 | UNKNOWN |
Ubuntu | 8.04 | noarch | libglib2.0-0-dbg | <Β 2.16.6-0ubuntu1.1 | UNKNOWN |
Ubuntu | 8.04 | noarch | libglib2.0-dev | <Β 2.16.6-0ubuntu1.1 | UNKNOWN |
Ubuntu | 8.04 | noarch | libglib2.0-udeb | <Β 2.16.6-0ubuntu1.1 | UNKNOWN |