Vulnerability Details CVE-2025-6052
A flaw was found in how GLib’s GString manages memory when adding data to strings. If a string is already very large, combining it with more input can cause a hidden overflow in the size calculation. This makes the system think it has enough memory when it doesn’t. As a result, data may be written past the end of the allocated memory, leading to crashes or memory corruption.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.3%
CVSS Severity
CVSS v3 Score 3.7
Products affected by CVE-2025-6052
-
cpe:2.3:a:gnome:glib:2.75.3
-
cpe:2.3:a:gnome:glib:2.75.4
-
cpe:2.3:a:gnome:glib:2.76.0
-
cpe:2.3:a:gnome:glib:2.76.1
-
cpe:2.3:a:gnome:glib:2.76.2
-
cpe:2.3:a:gnome:glib:2.76.3
-
cpe:2.3:a:gnome:glib:2.76.4
-
cpe:2.3:a:gnome:glib:2.76.5
-
cpe:2.3:a:gnome:glib:2.76.6
-
cpe:2.3:a:gnome:glib:2.77.0
-
cpe:2.3:a:gnome:glib:2.77.1
-
cpe:2.3:a:gnome:glib:2.77.2
-
cpe:2.3:a:gnome:glib:2.77.3
-
cpe:2.3:a:gnome:glib:2.78.0
-
cpe:2.3:a:gnome:glib:2.78.1
-
cpe:2.3:a:gnome:glib:2.78.2
-
cpe:2.3:a:gnome:glib:2.78.3
-
cpe:2.3:a:gnome:glib:2.78.4
-
cpe:2.3:a:gnome:glib:2.78.5
-
cpe:2.3:a:gnome:glib:2.78.6
-
cpe:2.3:a:gnome:glib:2.79.0
-
cpe:2.3:a:gnome:glib:2.79.1
-
cpe:2.3:a:gnome:glib:2.79.2
-
cpe:2.3:a:gnome:glib:2.79.3
-
cpe:2.3:a:gnome:glib:2.80.0
-
cpe:2.3:a:gnome:glib:2.80.1
-
cpe:2.3:a:gnome:glib:2.80.2
-
cpe:2.3:a:gnome:glib:2.80.3
-
cpe:2.3:a:gnome:glib:2.80.4
-
cpe:2.3:a:gnome:glib:2.80.5
-
cpe:2.3:a:gnome:glib:2.81.0
-
cpe:2.3:a:gnome:glib:2.81.1
-
cpe:2.3:a:gnome:glib:2.81.2
-
cpe:2.3:a:gnome:glib:2.82.0
-
cpe:2.3:a:gnome:glib:2.82.1
-
cpe:2.3:a:gnome:glib:2.82.2
-
cpe:2.3:a:gnome:glib:2.82.3
-
cpe:2.3:a:gnome:glib:2.82.4
-
cpe:2.3:a:gnome:glib:2.82.5
-
cpe:2.3:a:gnome:glib:2.83.0
-
cpe:2.3:a:gnome:glib:2.83.1
-
cpe:2.3:a:gnome:glib:2.83.2
-
cpe:2.3:a:gnome:glib:2.83.3
-
cpe:2.3:a:gnome:glib:2.83.4
-
cpe:2.3:a:gnome:glib:2.83.5
-
cpe:2.3:a:gnome:glib:2.84.0
-
cpe:2.3:a:gnome:glib:2.84.1
-
cpe:2.3:a:gnome:glib:2.84.2