CVE-2025-14087

A flaw was found in GLib (Gnome Lib). This vulnerability allows a remote attacker to cause heap corruption, leading to a denial of service or potential code execution via a buffer-underflow in the GVariant parser when processing maliciously crafted input strings.

medium 5.6 CVSS 3.1
Published: Dec 10, 2025
Modified: May 27, 2026
Vendor: Gnome
Product: Glib
Versions: 7.0,8.0,9.0,10.0

Description

A flaw was found in GLib (Gnome Lib). This vulnerability allows a remote attacker to cause heap corruption, leading to a denial of service or potential code execution via a buffer-underflow in the GVariant parser when processing maliciously crafted input strings.

References

Related CVEs