Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:26063
HistoryAug 06, 2020 - 9:27 p.m.

Information Disclosure

2020-08-0621:27:39
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12
glib
vulnerability
gsocketclient
gnome glib
proxy server
network delays

EPSS

0.002

Percentile

60.0%

glib is vulnerable to information disclosure. The vulnerability exists as GSocketClient in GNOME GLib through 2.62.4 may occasionally connect directly to a target address instead of connecting via a proxy server when configured to do so, because the proxy_addr field is mishandled. This bug is timing-dependent and may occur only sporadically depending on network delays.