CVE-2025-14512

A flaw was found in glib. This vulnerability allows a heap buffer overflow and denial-of-service (DoS) via an integer overflow in GLib's GIO (GLib Input/Output) escape_byte_string() function when processing malicious file or remote filesystem attribute values.

medium 6.5 CVSS 3.1
Published: Dec 11, 2025
Modified: May 27, 2026
Vendor: Gnome
Product: Glib
Versions: 4.0,7.0,8.0,9.0,10.0

Description

A flaw was found in glib. This vulnerability allows a heap buffer overflow and denial-of-service (DoS) via an integer overflow in GLib's GIO (GLib Input/Output) escape_byte_string() function when processing malicious file or remote filesystem attribute values.

References

Related CVEs