GNOME GLib
cpe:2.3:a:gnome:glib:*:*:*:*:*:*:*
An integer overflow vulnerability has been identified in glib, specifically during the creation of temporary files. This flaw allows for out-of-bounds memory access, which could be exploited by a local attacker to perform path traversal or access private content of temporary files by creating symbolic links that the affected application would follow. The vulnerability arises from inadequate validation of file path lengths in temporary file operations.
Exploitation of this vulnerability could lead to unauthorized access of data through path traversal or by reading private temporary file contents. Additionally, the integer overflow could cause a buffer under-read, potentially allowing for further memory corruption.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.