[ALSA-2021:4385] Moderate: glib2 security and bug fix update
Type:
security
Severity:
moderate
Release date:
2021-11-12
Description:
GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures. Security Fix(es): * glib2: Possible privilege escalation thourgh pkexec and aliases (CVE-2021-3800) * glib: g_file_replace() with G_FILE_CREATE_REPLACE_DESTINATION creates empty target for dangling symlink (CVE-2021-28153) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
Updated packages listed below:
Architecture Package Checksum
i686 glib2-static-2.56.4-156.el8.i686.rpm 523564a759339fa36b99580b94f7259473d46629207d2f9172d5b2c890243b61
noarch glib2-doc-2.56.4-156.el8.noarch.rpm 9c1768046011f22363084ee89f74f1073bcbdbff0562e07a6b44000b73da21c7
x86_64 glib2-static-2.56.4-156.el8.x86_64.rpm ecaf979cc056761dfc48e9cb842312411e2118fcb69ffd8428c254281c509092
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.