CVE-2026-58016 on CTRL-OS 26.05
Aliases: CVE-2026-58016
Packages: glib
Status: Plausible
Advisory Information
A flaw was found in GLib. A state confusion issue exists in g_dbus_node_info_new_for_xml() in the gio/gdbusintrospection.c file when processing malformed D-Bus introspection XML, specifically with a
nodeelement nested within other elements likemethod,signal,propertyorarg. This issue can cause an unsigned integer overflow and lead to an out-of-bounds read, resulting in a denial of service.
Updates
2026-07-31 19:32 CEST
Metadata changes:
- Status for package
glib: “Plausible”
2026-07-31 00:57 CEST
Metadata changes:
- Status for package
glib: “New”