Glade: Denial of Service — GLSA 202402-27

A vulnerability has been discovered in Glade which can lead to a denial of service.

Affected packages

dev-util/glade on all architectures
Affected versions < 3.38.2
Unaffected versions >= 3.38.2

Background

Glade is a RAD tool to enable quick & easy development of user interfaces for the GTK+ toolkit (Version 3 only) and the GNOME desktop environment.

Description

A vulnerability has been found in Glade which can lead to a denial of service when working with specific glade files.

Impact

A crafted file may lead to crashes in Glade.

Workaround

There is no known workaround at this time.

Resolution

All Glade users should upgrade to the latest version:

 # emerge --sync
 # emerge --ask --oneshot --verbose ">=dev-util/glade-3.38.2"
 

References

Release date
February 19, 2024

Latest revision
February 19, 2024: 1

Severity
normal

Exploitable
local and remote

Bugzilla entries