openwrt ▾
›
openwrt-25.12 ▾
›
vulnerability
›
CVE-2024-52533
Component Overview
Vulnerability Overview
Name
CVE-2024-52533
Source
NVD (
link
)
Debian (
link
)
Description
gio/gsocks4aproxy.c in GNOME GLib before 2.82.1 has an off-by-one error and resultant buffer overflow because SOCKS4_CONN_MSG_LEN is not sufficient for a trailing '\0' character.
CWEs
CWE-120
Published Date
Nov 11, 2024
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://gitlab.gnome.org/GNOME/glib/-/issues/3461
Exploit
https://gitlab.gnome.org/GNOME/glib/-/releases/2.82.1
Release Notes
https://gitlab.gnome.org/Teams/Releng/security/-/wikis/home
Vendor Advisory
http://www.openwall.com/lists/oss-security/2024/11/12/11
Mailing List
https://lists.debian.org/debian-lts-announce/2024/11/msg00020.html
Mailing List
https://security.netapp.com/advisory/ntap-20241206-0009/
Third Party Advisory
Analysis
#
Affected Component
Analysis
glib2
Exploitable
Vulnerability Ratings
#
9.8
CVSSv31
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
libglib2
buildroot
2025.02.x
2.82.5
Not Affected
libglib2-bootstrap
buildroot
2025.02.x
2.82.5
Not Affected
libglib2
buildroot
master
2.86.5
Not Affected
libglib2-bootstrap
buildroot
master
2.86.5
Not Affected
glib2
openwrt
master
2.88.1-r1
Not Affected