ALAS-2023-1749

Related Vulnerabilities: CVE-2018-16429  

GNOME GLib 2.56.1 has an out-of-bounds read vulnerability in g_markup_parse_context_parse() in gmarkup.c, related to utf8_str(). (CVE-2018-16429)

ALAS-2023-1749


Amazon Linux AMI Security Advisory: ALAS-2023-1749
Advisory Release Date: 2023-05-11 18:00 Pacific
Advisory Updated Date: 2023-05-23 20:54 Pacific
Severity: Important

Issue Overview:

GNOME GLib 2.56.1 has an out-of-bounds read vulnerability in g_markup_parse_context_parse() in gmarkup.c, related to utf8_str(). (CVE-2018-16429)


Affected Packages:

glib2


Issue Correction:
Run yum update glib2 to update your system.

New Packages:
i686:
    glib2-devel-2.36.3-5.24.amzn1.i686
    glib2-2.36.3-5.24.amzn1.i686
    glib2-fam-2.36.3-5.24.amzn1.i686
    glib2-debuginfo-2.36.3-5.24.amzn1.i686

noarch:
    glib2-doc-2.36.3-5.24.amzn1.noarch

src:
    glib2-2.36.3-5.24.amzn1.src

x86_64:
    glib2-devel-2.36.3-5.24.amzn1.x86_64
    glib2-fam-2.36.3-5.24.amzn1.x86_64
    glib2-2.36.3-5.24.amzn1.x86_64
    glib2-debuginfo-2.36.3-5.24.amzn1.x86_64