Bug 2264839 (CVE-2020-36774) - CVE-2020-36774 glade: segmentation fault in glade_gtk_box_post_create()
Summary: CVE-2020-36774 glade: segmentation fault in glade_gtk_box_post_create()
Keywords:
Status: NEW
Alias: CVE-2020-36774
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
low
low
Target Milestone: ---
Assignee: Product Security
QA Contact:
URL:
Whiteboard:
Depends On:
Blocks: 2264840
TreeView+ depends on / blocked
 
Reported: 2024-02-19 08:47 UTC by Mauro Matteo Cascella
Modified: 2024-02-27 08:47 UTC (History)
0 users

Fixed In Version: glade 3.40.0
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description Mauro Matteo Cascella 2024-02-19 08:47:16 UTC
plugins/gtk+/glade-gtk-box.c in GNOME Glade before 3.38.1 and 3.39.x before 3.40.0 mishandles widget rebuilding for GladeGtkBox, leading to a denial of service (application crash).

Upstream issue & commit:
https://gitlab.gnome.org/GNOME/glade/-/issues/479
https://gitlab.gnome.org/GNOME/glade/-/commit/7acdd3c6f6934f47b8974ebc2190a59ea5d2ed17


Note You need to log in before you can comment on or make changes to this bug.