Novell Home

CVE-2008-4316

Common Vulnerabilities and Exposures

[Previous] [Index] [Next]

Upstream information

CVE-2008-4316 at MITRE

Description

Multiple integer overflows in glib/gbase64.c in GLib before 2.20 allow context-dependent attackers to execute arbitrary code via a long string that is converted either (1) from or (2) to a base64 representation.

NVD CVSS v2 Base Score: 4.6 (AV:L/AC:L/Au:N/C:P/I:P/A:P)

Novell/SUSE information

Novell Bugzilla entries: 382708, 449927, 475541

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
openSUSE 10.3
  • glib2 >= 2.14.1-4.4
  • glib2-32bit >= 2.14.1-4.4
  • glib2-64bit >= 2.14.1-4.4
  • glib2-devel >= 2.14.1-4.4
  • glib2-devel-64bit >= 2.14.1-4.4
  • glib2-doc >= 2.14.1-4.4
  • glib2-lang >= 2.14.1-4.4

List of products where fixes are in QA

© 2012 Novell