A heap-based buffer overflow problem was found in glib through an incorrect calculation of buffer size in the gescapeuri_string() function. If the string to escape contains a very large number of unacceptable characters (which would need escaping), the calculation of the length of the escaped string could overflow, leading to a potential write off the end of the newly allocated string.
{
"binaries": [
{
"binary_name": "libglib2.0-0",
"binary_version": "2.72.4-0ubuntu2.7"
},
{
"binary_name": "libglib2.0-bin",
"binary_version": "2.72.4-0ubuntu2.7"
},
{
"binary_name": "libglib2.0-data",
"binary_version": "2.72.4-0ubuntu2.7"
},
{
"binary_name": "libglib2.0-dev",
"binary_version": "2.72.4-0ubuntu2.7"
},
{
"binary_name": "libglib2.0-dev-bin",
"binary_version": "2.72.4-0ubuntu2.7"
},
{
"binary_name": "libglib2.0-tests",
"binary_version": "2.72.4-0ubuntu2.7"
}
],
"availability": "No subscription required"
}{
"binaries": [
{
"binary_name": "gir1.2-girepository-3.0",
"binary_version": "2.80.0-6ubuntu3.6"
},
{
"binary_name": "gir1.2-girepository-3.0-dev",
"binary_version": "2.80.0-6ubuntu3.6"
},
{
"binary_name": "gir1.2-glib-2.0",
"binary_version": "2.80.0-6ubuntu3.6"
},
{
"binary_name": "gir1.2-glib-2.0-dev",
"binary_version": "2.80.0-6ubuntu3.6"
},
{
"binary_name": "libgirepository-2.0-0",
"binary_version": "2.80.0-6ubuntu3.6"
},
{
"binary_name": "libgirepository-2.0-dev",
"binary_version": "2.80.0-6ubuntu3.6"
},
{
"binary_name": "libglib2.0-0t64",
"binary_version": "2.80.0-6ubuntu3.6"
},
{
"binary_name": "libglib2.0-bin",
"binary_version": "2.80.0-6ubuntu3.6"
},
{
"binary_name": "libglib2.0-data",
"binary_version": "2.80.0-6ubuntu3.6"
},
{
"binary_name": "libglib2.0-dev",
"binary_version": "2.80.0-6ubuntu3.6"
},
{
"binary_name": "libglib2.0-dev-bin",
"binary_version": "2.80.0-6ubuntu3.6"
},
{
"binary_name": "libglib2.0-tests",
"binary_version": "2.80.0-6ubuntu3.6"
}
],
"availability": "No subscription required"
}{
"binaries": [
{
"binary_name": "gir1.2-girepository-3.0",
"binary_version": "2.86.0-2ubuntu0.1"
},
{
"binary_name": "gir1.2-girepository-3.0-dev",
"binary_version": "2.86.0-2ubuntu0.1"
},
{
"binary_name": "gir1.2-glib-2.0",
"binary_version": "2.86.0-2ubuntu0.1"
},
{
"binary_name": "gir1.2-glib-2.0-dev",
"binary_version": "2.86.0-2ubuntu0.1"
},
{
"binary_name": "girepository-tools",
"binary_version": "2.86.0-2ubuntu0.1"
},
{
"binary_name": "libgio-2.0-dev",
"binary_version": "2.86.0-2ubuntu0.1"
},
{
"binary_name": "libgio-2.0-dev-bin",
"binary_version": "2.86.0-2ubuntu0.1"
},
{
"binary_name": "libgirepository-2.0-0",
"binary_version": "2.86.0-2ubuntu0.1"
},
{
"binary_name": "libgirepository-2.0-dev",
"binary_version": "2.86.0-2ubuntu0.1"
},
{
"binary_name": "libglib2.0-0t64",
"binary_version": "2.86.0-2ubuntu0.1"
},
{
"binary_name": "libglib2.0-bin",
"binary_version": "2.86.0-2ubuntu0.1"
},
{
"binary_name": "libglib2.0-data",
"binary_version": "2.86.0-2ubuntu0.1"
},
{
"binary_name": "libglib2.0-dev",
"binary_version": "2.86.0-2ubuntu0.1"
},
{
"binary_name": "libglib2.0-dev-bin",
"binary_version": "2.86.0-2ubuntu0.1"
},
{
"binary_name": "libglib2.0-tests",
"binary_version": "2.86.0-2ubuntu0.1"
}
],
"availability": "No subscription required"
}{
"binaries": [
{
"binary_name": "libglib2.0-0",
"binary_version": "2.40.2-0ubuntu1.1+esm7"
},
{
"binary_name": "libglib2.0-0-refdbg",
"binary_version": "2.40.2-0ubuntu1.1+esm7"
},
{
"binary_name": "libglib2.0-bin",
"binary_version": "2.40.2-0ubuntu1.1+esm7"
},
{
"binary_name": "libglib2.0-data",
"binary_version": "2.40.2-0ubuntu1.1+esm7"
},
{
"binary_name": "libglib2.0-dev",
"binary_version": "2.40.2-0ubuntu1.1+esm7"
},
{
"binary_name": "libglib2.0-tests",
"binary_version": "2.40.2-0ubuntu1.1+esm7"
}
],
"availability": "Available with Ubuntu Pro with Legacy support add-on: https://ubuntu.com/pro"
}{
"binaries": [
{
"binary_name": "libglib2.0-0",
"binary_version": "2.48.2-0ubuntu4.8+esm5"
},
{
"binary_name": "libglib2.0-0-refdbg",
"binary_version": "2.48.2-0ubuntu4.8+esm5"
},
{
"binary_name": "libglib2.0-bin",
"binary_version": "2.48.2-0ubuntu4.8+esm5"
},
{
"binary_name": "libglib2.0-data",
"binary_version": "2.48.2-0ubuntu4.8+esm5"
},
{
"binary_name": "libglib2.0-dev",
"binary_version": "2.48.2-0ubuntu4.8+esm5"
},
{
"binary_name": "libglib2.0-tests",
"binary_version": "2.48.2-0ubuntu4.8+esm5"
}
],
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}{
"binaries": [
{
"binary_name": "libglib2.0-0",
"binary_version": "2.56.4-0ubuntu0.18.04.9+esm5"
},
{
"binary_name": "libglib2.0-bin",
"binary_version": "2.56.4-0ubuntu0.18.04.9+esm5"
},
{
"binary_name": "libglib2.0-data",
"binary_version": "2.56.4-0ubuntu0.18.04.9+esm5"
},
{
"binary_name": "libglib2.0-dev",
"binary_version": "2.56.4-0ubuntu0.18.04.9+esm5"
},
{
"binary_name": "libglib2.0-dev-bin",
"binary_version": "2.56.4-0ubuntu0.18.04.9+esm5"
},
{
"binary_name": "libglib2.0-tests",
"binary_version": "2.56.4-0ubuntu0.18.04.9+esm5"
}
],
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}{
"binaries": [
{
"binary_name": "libglib2.0-0",
"binary_version": "2.64.6-1~ubuntu20.04.9+esm1"
},
{
"binary_name": "libglib2.0-bin",
"binary_version": "2.64.6-1~ubuntu20.04.9+esm1"
},
{
"binary_name": "libglib2.0-data",
"binary_version": "2.64.6-1~ubuntu20.04.9+esm1"
},
{
"binary_name": "libglib2.0-dev",
"binary_version": "2.64.6-1~ubuntu20.04.9+esm1"
},
{
"binary_name": "libglib2.0-dev-bin",
"binary_version": "2.64.6-1~ubuntu20.04.9+esm1"
},
{
"binary_name": "libglib2.0-tests",
"binary_version": "2.64.6-1~ubuntu20.04.9+esm1"
}
],
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}