- What: Red Hat releases a security update for glib2
- Impact: Addresses vulnerabilities in the glib2 library
Red Hat Product Errata RHSA-2026:19565 - Security Advisory Issued: 2026-05-20 Updated: 2026-05-20 RHSA-2026:19565 - Security Advisory Overview Updated Packages Synopsis Moderate: glib2 security update Type/Severity Security Advisory: Moderate Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for glib2 is now available for Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support and Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures. Security Fix(es): glib: GLib: Buffer underflow in GVariant parser leads to heap corruption (CVE-2025-14087) glib: Integer Overflow in GLib GIO Attribute Escaping Causes Heap Buffer Overflow (CVE-2025-14512) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.4 x86_64 Red Hat Enterprise Linux Server - AUS 8.4 x86_64 Fixes BZ - 2419093 - CVE-2025-14087 glib: GLib: Buffer underflow in GVariant parser leads to heap corruption BZ - 2421339 - CVE-2025-14512 glib: Integer Overflow in GLib GIO Attribute Escaping Causes Heap Buffer Overflow CVEs CVE-2025-14087 CVE-2025-14512 References https://access.redhat.com/security/updates/classification/#moderate Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.4 SRPM glib2-2.56.4-10.el8_4.5.src.rpm SHA-256: d9abf3291b7dd6142c7b22cb88e24a12f4efb1971df887517626ecf40958e785 x86_64 glib2-2.56.4-10.el8_4.5.i686.rpm SHA-256: 6abede3baab8f82cb82ecf4e3c58609d1dbe898ddc7ca3ef42fd635960d65b7b glib2-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: 301559da3af601f3be5db7825499ba91e89eb7ac65ea7db34da46f7061a88fa8 glib2-debuginfo-2.56.4-10.el8_4.5.i686.rpm SHA-256: b3e6c4c5debe36447d21e2163cb26b0b50390947cb11cff04ed7e3e5641cc647 glib2-debuginfo-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: fbb852bbe840e1bbbc3bba10cb44f784eb11ff2fd70c6136466d2d5ad5463bdb glib2-debugsource-2.56.4-10.el8_4.5.i686.rpm SHA-256: 8b356edee23b271cdbd94a31b9e9432cc0587a2a4558a06038f3458601ba3bf6 glib2-debugsource-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: e2716c7b8dec5ae4a7e03498b59bd25c797ff8dce417c2b0ad0f30923f232b0a glib2-devel-2.56.4-10.el8_4.5.i686.rpm SHA-256: 47c519a914f62122a5be7755c36abfa05ea72c2fe68b719b2e157ef1ac67a230 glib2-devel-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: 326fa575470edd43fc931556c6d4c82ff30e0da2850f22203b95e23c0907fa8b glib2-devel-debuginfo-2.56.4-10.el8_4.5.i686.rpm SHA-256: 52337eba470fea4cabda2e090436dca6d9a4bd0d0e2b5d88df1912d5b877b7c3 glib2-devel-debuginfo-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: cf992d2e4e3985a1a43fac837977d01cc6e69fcc6ee0e553e6c4e60c1d0d3c36 glib2-fam-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: 9b54ae0d870c39ea895262fa496a945d5549f06e2c7aad41c2332170dede4d1f glib2-fam-debuginfo-2.56.4-10.el8_4.5.i686.rpm SHA-256: 380021686648247ca4b63ba2fd7936103dbc5a93e7742a22632c79c8a163abec glib2-fam-debuginfo-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: d8a7e3098f698f1c485e224318e50a4edfe5eade0498bbdafa0a56b81c98913d glib2-tests-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: e4d908c6629d55e4e37af8509b5d2ae5d555a09acd19d1c82413a2992ef450cb glib2-tests-debuginfo-2.56.4-10.el8_4.5.i686.rpm SHA-256: af8e8fdd254a14b1a767f49334f4a453be698ccdd2e9a1ed6bf5ac771c7ee0c1 glib2-tests-debuginfo-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: 84c9f1603eceaaa75ebeb58801178b5a09fc3dabe72cc7738a9f9d66d1d15bff Red Hat Enterprise Linux Server - AUS 8.4 SRPM glib2-2.56.4-10.el8_4.5.src.rpm SHA-256: d9abf3291b7dd6142c7b22cb88e24a12f4efb1971df887517626ecf40958e785 x86_64 glib2-2.56.4-10.el8_4.5.i686.rpm SHA-256: 6abede3baab8f82cb82ecf4e3c58609d1dbe898ddc7ca3ef42fd635960d65b7b glib2-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: 301559da3af601f3be5db7825499ba91e89eb7ac65ea7db34da46f7061a88fa8 glib2-debuginfo-2.56.4-10.el8_4.5.i686.rpm SHA-256: b3e6c4c5debe36447d21e2163cb26b0b50390947cb11cff04ed7e3e5641cc647 glib2-debuginfo-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: fbb852bbe840e1bbbc3bba10cb44f784eb11ff2fd70c6136466d2d5ad5463bdb glib2-debugsource-2.56.4-10.el8_4.5.i686.rpm SHA-256: 8b356edee23b271cdbd94a31b9e9432cc0587a2a4558a06038f3458601ba3bf6 glib2-debugsource-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: e2716c7b8dec5ae4a7e03498b59bd25c797ff8dce417c2b0ad0f30923f232b0a glib2-devel-2.56.4-10.el8_4.5.i686.rpm SHA-256: 47c519a914f62122a5be7755c36abfa05ea72c2fe68b719b2e157ef1ac67a230 glib2-devel-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: 326fa575470edd43fc931556c6d4c82ff30e0da2850f22203b95e23c0907fa8b glib2-devel-debuginfo-2.56.4-10.el8_4.5.i686.rpm SHA-256: 52337eba470fea4cabda2e090436dca6d9a4bd0d0e2b5d88df1912d5b877b7c3 glib2-devel-debuginfo-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: cf992d2e4e3985a1a43fac837977d01cc6e69fcc6ee0e553e6c4e60c1d0d3c36 glib2-fam-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: 9b54ae0d870c39ea895262fa496a945d5549f06e2c7aad41c2332170dede4d1f glib2-fam-debuginfo-2.56.4-10.el8_4.5.i686.rpm SHA-256: 380021686648247ca4b63ba2fd7936103dbc5a93e7742a22632c79c8a163abec glib2-fam-debuginfo-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: d8a7e3098f698f1c485e224318e50a4edfe5eade0498bbdafa0a56b81c98913d glib2-tests-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: e4d908c6629d55e4e37af8509b5d2ae5d555a09acd19d1c82413a2992ef450cb glib2-tests-debuginfo-2.56.4-10.el8_4.5.i686.rpm SHA-256: af8e8fdd254a14b1a767f49334f4a453be698ccdd2e9a1ed6bf5ac771c7ee0c1 glib2-tests-debuginfo-2.56.4-10.el8_4.5.x86_64.rpm SHA-256: 84c9f1603eceaaa75ebeb58801178b5a09fc3dabe72cc7738a9f9d66d1d15bff The Red Hat security contact is secalert@redhat.com . More contact details at https://access.redhat.com/security/team/contact/ .