Logo
vulnerabilityCVE-2026-58010
Name
CVE-2026-58010
Source
NVD ( link)Debian ( link)
Description
A flaw was found in GLib. An off-by-one error can occur in the gvs_tuple_is_normal function in the glib/gvariant-serialiser.c file when doing an alignment padding check because the bounds check uses > instead of >=, causing an out-of-bounds read of only 1 byte. This issue can cause a minor information disclosure of 1 byte and a denial of service when the out-of-bounds read crosses a page boundary.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
glib2
Exploitable

Vulnerability Ratings#


6.5
CVSSv31
8.2
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
2.82.5
Exploitable
buildroot
2025.02.x
2.82.5
Exploitable
buildroot
master
2.88.3
Not Affected
buildroot
master
2.88.3
Not Affected
openwrt
master
2.88.1-r1
Not Affected