glib: backport fixes for CVE-2025-13601 and CVE-2025-14087 #2
No reviewers
Labels
No labels
auto-analysis
cve
match-cpe-range
needs-triage
security
severity-critical
source-niceos-scan
source-nvd
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
rpms/glib!2
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "cve-glib-CVE-2025-13601-CVE-2025-14087"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Backport security fixes for two GLib memory-corruption issues in the 2.84.4-1 build.
g_escape_uri_string().The package ships shared libraries used by many consumers, so the fix should be applied as a security backport without changing ABI/SONAME.
Validation:
View command line instructions
Checkout
From your project repository, check out a new branch and test the changes.Merge
Merge the changes and update on Forgejo.Warning: The "Autodetect manual merge" setting is not enabled for this repository, you will have to mark this pull request as manually merged afterwards.