elsa-2026-57015
oracle_linux[2.80.4-21] - Fix CVE-2026-15588: limit D-Bus auth line read length [2.80.4-20] - Fix CVE-2026-58011: range validation in g_date_time_add_full() [2.80.4-19] - Fix CVE-2026-58012: buffer overflow in gregex.c with G_REGEX_RAW [2.80.4-18] - Fix CVE-2026-58010: off-by-one in GVariant tuple offset checking [2.80.4-17] - Fix CVE-2026-58015: validate D-Bus DBUS_COOKIE_SHA1 cookie context [2.80.4-16] - Fix CVE-2026-58014: heap under-read in g_key_file_get_locale_string_list [2.80.4-15] - Fix CVE-2026-58013: GIOChannel memcmp buffer over-read [2.80.4-14] - Fix CVE-2026-58016: D-Bus introspection XML node nesting validation [2.80.4-13] - Fix CVE-2025-14087 and CVE-2025-14512
- Published
- unknown
- Last Modified
- unknown
CVSS details not available.
No product information available.
No references available.
No linked vulnerabilities found.
{
"cves": [
"CVE-2026-15588",
"CVE-2026-58010",
"CVE-2026-58011",
"CVE-2026-58012",
"CVE-2026-58013",
"CVE-2026-58014",
"CVE-2026-58015"
],
"cvss": 0.0,
"database_specific": {
"severity": "MODERATE"
},
"description": "[2.80.4-21]\n- Fix CVE-2026-15588: limit D-Bus auth line read length\n\n[2.80.4-20]\n- Fix CVE-2026-58011: range validation in g_date_time_add_full()\n\n[2.80.4-19]\n- Fix CVE-2026-58012: buffer overflow in gregex.c with G_REGEX_RAW\n\n[2.80.4-18]\n- Fix CVE-2026-58010: off-by-one in GVariant tuple offset checking\n\n[2.80.4-17]\n- Fix CVE-2026-58015: validate D-Bus DBUS_COOKIE_SHA1 cookie context\n\n[2.80.4-16]\n- Fix CVE-2026-58014: heap under-read in g_key_file_get_locale_string_list\n\n[2.80.4-15]\n- Fix CVE-2026-58013: GIOChannel memcmp buffer over-read\n\n[2.80.4-14]\n- Fix CVE-2026-58016: D-Bus introspection XML node nesting validation\n\n[2.80.4-13]\n- Fix CVE-2025-14087 and CVE-2025-14512",
"id": "ELSA-2026-57015",
"ovalId": "oval:com.oracle.elsa:def:202657015",
"source": "oracle_linux",
"title": "ELSA-2026-57015: glib2 security update (MODERATE)",
"url": "https://linux.oracle.com/errata/ELSA-2026-57015.html"
}