NIXPKGS-2025-0008
published on 1 Nov 2025
by @LeSuisse Activity log
- Created automatic suggestion
- @LeSuisse accepted
-
@LeSuisse
removed
12 packages
- bootc
- loupe
- rpm-ostree
- podman-bootc
- mlxbf-bootctl
- glycin-loaders
- systemd-bootchart
- rubyPackages.glib2
- rubyPackages_3_1.glib2
- rubyPackages_3_2.glib2
- rubyPackages_3_3.glib2
- rubyPackages_3_4.glib2
- @LeSuisse published on GitHub
Glib: buffer under-read on glib through glib/gfileutils.c via get_tmp_file()
A flaw was found in glib. An integer overflow during temporary file creation leads to an out-of-bounds memory access, allowing an attacker to potentially perform path traversal or access private temporary file content by creating symbolic links. This vulnerability allows a local attacker to manipulate file paths and access unauthorized data. The core issue stems from insufficient validation of file path lengths during temporary file operations.
Affected products
bootc
glib2
loupe
librsvg2
rpm-ostree
mingw-glib2
glycin-loaders
Package maintainers
-
@Thesola10 Karim Vergnes <me@thesola.io>
-
@dasj19 Daniel Șerbănescu <daniel@serbanescu.dk>
-
@hedning Tor Hedin Brønner <torhedinbronner@gmail.com>
-
@jtojnar Jan Tojnar <jtojnar@gmail.com>
-
@bobby285271 Bobby Rong <rjl931189261@126.com>
-
@06kellyjac Jack <hello+nixpkgs@j-k.io>
-
@nikstur nikstur <nikstur@outlook.com>
-
@thillux Markus Theil <theil.markus@gmail.com>
-
@evan-goode Evan Goode <mail@evangoo.de>
-
@brianmcgillion Brian McGillion <bmg.avoin@gmail.com>