[El-errata] ELSA-2026-61766-0 Moderate: Oracle Linux 8 glib2 security update
Errata Announcements for Oracle Linux
el-errata at oss.oracle.com
Wed Sep 2 05:23:23 UTC 2026
Oracle Linux Security Advisory ELSA-2026-61766-0
http://linux.oracle.com/errata/ELSA-2026-61766-0.html
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
x86_64:
glib2-2.56.4-177.el8_10.i686.rpm
glib2-2.56.4-177.el8_10.x86_64.rpm
glib2-devel-2.56.4-177.el8_10.i686.rpm
glib2-devel-2.56.4-177.el8_10.x86_64.rpm
glib2-doc-2.56.4-177.el8_10.noarch.rpm
glib2-fam-2.56.4-177.el8_10.x86_64.rpm
glib2-static-2.56.4-177.el8_10.i686.rpm
glib2-static-2.56.4-177.el8_10.x86_64.rpm
glib2-tests-2.56.4-177.el8_10.x86_64.rpm
aarch64:
glib2-2.56.4-177.el8_10.aarch64.rpm
glib2-devel-2.56.4-177.el8_10.aarch64.rpm
glib2-doc-2.56.4-177.el8_10.noarch.rpm
glib2-fam-2.56.4-177.el8_10.aarch64.rpm
glib2-static-2.56.4-177.el8_10.aarch64.rpm
glib2-tests-2.56.4-177.el8_10.aarch64.rpm
SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/glib2-2.56.4-177.el8_10.src.rpm
Related CVEs:
CVE-2026-15588
CVE-2026-58010
CVE-2026-58011
CVE-2026-58012
CVE-2026-58013
CVE-2026-58014
CVE-2026-58015
Description of changes:
[2.56.4-177]
- Fix CVE-2026-15588: limit D-Bus auth line read length
[2.56.4-176]
- Fix CVE-2026-58010: off-by-one in GVariant tuple offset checking
[2.56.4-175]
- Fix CVE-2026-58011: range validation in g_date_time_add_full()
- Resolves: RHEL-212187
[2.56.4-174]
- Fix CVE-2026-58012: buffer overflow in gregex case changing substitutions
- Resolves: RHEL-212204
[2.56.4-173]
- Fix CVE-2026-58013: buffer over-read in GIOChannel with long terminators
- Resolves: RHEL-212229
[2.56.4-172]
- Fix CVE-2026-58015: validate D-Bus DBUS_COOKIE_SHA1 cookie context
- Resolves: RHEL-212254
[2.56.4-171]
- Fix one-byte heap under-read in g_key_file_get_locale_string_list()
- Resolves: RHEL-190587
More information about the El-errata
mailing list