ELA-1240-1 glib2.0 security update

buffer overflow

2024-11-23
Packageglib2.0
Version2.42.1-1+deb8u8 (jessie), 2.50.3-2+deb9u7 (stretch), 2.58.3-2+deb10u7 (buster)
Related CVEs CVE-2024-52533


A buffer overflow with long SOCKS4a proxy hostname and username has been fixed in the GNOME Input/Output library (GIO).



For Debian 10 buster, these problems have been fixed in version 2.58.3-2+deb10u7.

For Debian 8 jessie, these problems have been fixed in version 2.42.1-1+deb8u8.

For Debian 9 stretch, these problems have been fixed in version 2.50.3-2+deb9u7.

We recommend that you upgrade your glib2.0 packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.