heap-based buffer overflow problem was found in glib through an incorrect calculation of buffer size in the g_escape_uri_string() function. If the string to escape contains a very large number of unacceptable characters (which would need escaping), the calculation of the length of the escaped string could overflow, leading to a potential write off the end of the newly allocated string.
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
|
Configuration 7 (hide)
|
Configuration 8 (hide)
|
Configuration 9 (hide)
|
Configuration 10 (hide)
|
Configuration 11 (hide)
|
Configuration 12 (hide)
|
Configuration 13 (hide)
|
Configuration 14 (hide)
|
05 Mar 2026, 12:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
26 Feb 2026, 16:23
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
24 Feb 2026, 21:44
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://access.redhat.com/errata/RHSA-2026:2064 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:2072 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:2485 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:2563 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:2633 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:2659 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:2671 - Vendor Advisory | |
| First Time |
Redhat openshift Container Platform
Redhat openshift Container Platform For Arm64 Redhat openshift Container Platform For Linuxone Redhat openshift Container Platform For Power Redhat openshift Container Platform For Ibm Z |
|
| CPE | cpe:2.3:a:redhat:openshift_container_platform_for_power:4.16:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_linuxone:4.16:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_linuxone:4.18:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_linuxone:4.12:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_ibm_z:4.12:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_linuxone:4.19:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_ibm_z:4.16:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_ibm_z:4.19:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_power:4.17:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_arm64:4.18:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_power:4.19:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_ibm_z:4.17:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_power:4.18:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform:4.17:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_ibm_z:4.18:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_linuxone:4.17:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_power:4.12:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_arm64:4.17:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform:4.18:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_arm64:4.16:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform:4.12:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform:4.19:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_arm64:4.12:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform:4.16:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform_for_arm64:4.19:*:*:*:*:*:*:* |
19 Feb 2026, 07:17
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
18 Feb 2026, 20:18
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
13 Feb 2026, 17:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
11 Feb 2026, 15:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
11 Feb 2026, 05:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
10 Feb 2026, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
06 Feb 2026, 19:19
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Gnome glib
Gnome |
|
| CPE | cpe:2.3:a:gnome:glib:*:*:*:*:*:*:*:* |
06 Feb 2026, 19:10
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://access.redhat.com/errata/RHSA-2026:0936 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:0975 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:0991 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:1323 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:1324 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:1326 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:1327 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:1465 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:1608 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:1624 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:1625 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:1626 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:1627 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:1652 - Vendor Advisory | |
| References | () https://access.redhat.com/errata/RHSA-2026:1736 - Vendor Advisory | |
| References | () https://access.redhat.com/security/cve/CVE-2025-13601 - Vendor Advisory | |
| References | () https://bugzilla.redhat.com/show_bug.cgi?id=2416741 - Issue Tracking, Vendor Advisory | |
| References | () https://gitlab.gnome.org/GNOME/glib/-/issues/3827 - Exploit, Issue Tracking | |
| References | () https://gitlab.gnome.org/GNOME/glib/-/merge_requests/4914 - Third Party Advisory | |
| CPE | cpe:2.3:o:redhat:enterprise_linux_for_x86_64_eus:8.4:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian:8.0_ppc64le:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_x86_64:10.0:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_arm64:9.6:*:*:*:*:*:aarch64:* cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:9.6_s390x:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:8.0_s390x:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_arm_64_eus:10.0:*:*:*:*:*:aarch64:* cpe:2.3:a:redhat:discovery:2.0:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:10.0_ppc64le:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian:10.0_ppc64le:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian_eus:9.4_ppc64le:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_x86_64:9.6:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_server_tus:8.8:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_server_aus:9.2:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian:8.8_ppc64le:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_ibm_z_systems:8.0_s390x:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_x86_64:8.0:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder:9.0:*:*:*:*:*:aarch64:* cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:8.0_ppc64le:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian:9.6_ppc64le:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_x86_64_eus:9.6:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_x86_64:8.6:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_arm_64:8.0:*:*:*:*:*:aarch64:* cpe:2.3:o:redhat:enterprise_linux_server_aus:8.4:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:9.4_ppc64le:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_arm64_eus:10.0:*:*:*:*:*:aarch64:* cpe:2.3:o:redhat:enterprise_linux_for_x86_64_eus:8.8:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_server_aus:9.4:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_x86_64:9.0:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_x86_64:9.0:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_ibm_z_systems_eus:10.0_s390x:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian:9.4_ppc64le:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_arm_64:9.4:*:*:*:*:*:aarch64:* cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:10.0_s390x:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:9.0_ppc64le:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:10.0_s390x:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:9.2_s390x:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_server_aus:8.2:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_x86_64:9.2:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian:8.6_ppc64le:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_arm_64:10.0:*:*:*:*:*:aarch64:* cpe:2.3:o:redhat:enterprise_linux_for_x86_64:8.8:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:9.6_ppc64le:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_arm64_eus:9.4:*:*:*:*:*:aarch64:* cpe:2.3:a:redhat:codeready_linux_builder_for_arm64:10.0:*:*:*:*:*:aarch64:* cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:9.4_s390x:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian:10.0_ppc64le:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:10.0_ppc64le:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_ibm_z_systems:9.0_s390x:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_x86_64_eus:10.0:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:9.0_s390x:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_x86_64:9.4:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_server_aus:9.6:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian:9.4_ppc64le:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_x86_64:8.0:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_x86_64:9.4:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian_eus:10.0_ppc64le:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_arm_64:9.0:*:*:*:*:*:aarch64:* cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian:9.0_ppc64le:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:9.2_ppc64le:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:9.6_ppc64le:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_server_tus:8.6:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_ibm_z_systems:9.6_s390x:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_server_aus:8.6:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_x86_64:9.6:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_arm64:8.0:*:*:*:*:*:aarch64:* cpe:2.3:o:redhat:enterprise_linux_for_x86_64:10.0:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_x86_64_eus:10.0:*:*:*:*:*:*:* cpe:2.3:a:redhat:codeready_linux_builder_for_ibm_z_systems:9.4_s390x:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_x86_64_eus:9.4:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian:9.6_ppc64le:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_arm_64:9.6:*:*:*:*:*:aarch64:* cpe:2.3:a:redhat:codeready_linux_builder_for_ibm_z_systems:10.0_s390x:*:*:*:*:*:*:* cpe:2.3:a:redhat:ceph_storage:8.0:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_x86_64_eus:8.6:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_arm_64:9.2:*:*:*:*:*:aarch64:* |
|
| First Time |
Redhat codeready Linux Builder For Power Little Endian Eus
Redhat codeready Linux Builder For X86 64 Eus Redhat codeready Linux Builder For Arm64 Redhat enterprise Linux For Arm 64 Eus Redhat Redhat codeready Linux Builder For Arm64 Eus Redhat enterprise Linux For Power Little Endian Redhat codeready Linux Builder For Power Little Endian Redhat codeready Linux Builder For Ibm Z Systems Redhat ceph Storage Redhat enterprise Linux For Power Little Endian Eus Redhat enterprise Linux Server Aus Redhat enterprise Linux For Arm 64 Redhat discovery Redhat enterprise Linux Server For Power Little Endian Eus Redhat enterprise Linux For Ibm Z Systems Redhat codeready Linux Builder For X86 64 Redhat codeready Linux Builder For Ibm Z Systems Eus Redhat codeready Linux Builder Redhat enterprise Linux For X86 64 Redhat enterprise Linux For X86 64 Eus Redhat enterprise Linux For Ibm Z Systems Eus Redhat enterprise Linux Server Tus Redhat enterprise Linux Server For Power Little Endian |
02 Feb 2026, 23:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
02 Feb 2026, 10:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
02 Feb 2026, 04:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
02 Feb 2026, 02:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
28 Jan 2026, 07:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
27 Jan 2026, 10:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
27 Jan 2026, 08:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
22 Jan 2026, 17:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
22 Jan 2026, 10:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
21 Jan 2026, 23:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
26 Nov 2025, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Published : 2025-11-26 15:15
Updated : 2026-03-05 12:16
NVD link : CVE-2025-13601
Mitre link : CVE-2025-13601
CVE.ORG link : CVE-2025-13601
JSON object : View
- enterprise_linux_for_ibm_z_systems
- enterprise_linux_for_arm_64
- enterprise_linux_for_power_little_endian_eus
- discovery
- ceph_storage
- codeready_linux_builder_for_arm64
- enterprise_linux_server_for_power_little_endian_eus
- codeready_linux_builder_for_ibm_z_systems_eus
- openshift_container_platform_for_linuxone
- codeready_linux_builder_for_power_little_endian_eus
- codeready_linux_builder_for_x86_64_eus
- openshift_container_platform_for_power
- codeready_linux_builder_for_ibm_z_systems
- codeready_linux_builder
- enterprise_linux_for_power_little_endian
- enterprise_linux_for_x86_64
- enterprise_linux_for_x86_64_eus
- openshift_container_platform_for_arm64
- enterprise_linux_server_for_power_little_endian
- codeready_linux_builder_for_power_little_endian
- enterprise_linux_server_aus
- enterprise_linux_server_tus
- enterprise_linux_for_ibm_z_systems_eus
- codeready_linux_builder_for_arm64_eus
- openshift_container_platform_for_ibm_z
- codeready_linux_builder_for_x86_64
- enterprise_linux_for_arm_64_eus
- openshift_container_platform
Integer Overflow or Wraparound