Description
A flaw was found in GLib. A state confusion issue exists in g_dbus_node_info_new_for_xml() in the gio/gdbusintrospection.c file when processing malformed D-Bus introspection XML, specifically with a `node` element nested within other elements like `method`, `signal`, `property` or `arg`. This issue can cause an unsigned integer overflow and lead to an out-of-bounds read, resulting in a denial of service.
Published: 2026-06-30
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

Vendor Workaround

To mitigate this vulnerability, implement input validation to sanitize untrusted D-Bus introspection XML, specifically rejecting malformed structures such as <node> elements improperly nested within <method>, <signal>, <property> or <arg> elements before calling g_dbus_node_info_new_for_xml(). Alternatively, restricting the application to only process XML input from trusted, authenticated sources will completely neutralize this issue.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Ubuntu USN Ubuntu USN USN-8794-1 GLib vulnerabilities
References
Link Providers
https://access.redhat.com/errata/RHSA-2026:42063 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:42089 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:42090 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:44481 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:46836 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:49512 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:51175 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:51176 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:51177 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:51181 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:51182 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:51183 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:51184 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:51185 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:53371 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:58981 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:72394 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:72395 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:72399 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:72470 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:72475 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:72476 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:72502 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:73909 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:73959 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:73960 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:73961 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2026:73962 cve-icon cve-icon
https://access.redhat.com/security/cve/CVE-2026-58016 cve-icon cve-icon
https://bugzilla.redhat.com/show_bug.cgi?id=2492257 cve-icon cve-icon
https://gitlab.gnome.org/GNOME/glib/-/issues/3932 cve-icon cve-icon
History

Wed, 30 Sep 2026 16:15:00 +0000

Type Values Removed Values Added
First Time appeared Redhat openshift Ai
CPEs cpe:/a:redhat:openshift_ai:3.0::el9
Vendors & Products Redhat openshift Ai
References

Tue, 29 Sep 2026 01:00:00 +0000

Type Values Removed Values Added
References

Mon, 28 Sep 2026 14:30:00 +0000


Mon, 28 Sep 2026 10:30:00 +0000

Type Values Removed Values Added
References

Mon, 28 Sep 2026 08:15:00 +0000

Type Values Removed Values Added
First Time appeared Redhat cert Manager
CPEs cpe:/a:redhat:cert_manager:1.20::el9
Vendors & Products Redhat cert Manager
References

Tue, 25 Aug 2026 09:30:00 +0000

Type Values Removed Values Added
References

Tue, 11 Aug 2026 09:30:00 +0000

Type Values Removed Values Added
First Time appeared Redhat insights Proxy
CPEs cpe:/a:redhat:insights_proxy:1.5::el9
Vendors & Products Redhat insights Proxy
References

Fri, 07 Aug 2026 02:30:00 +0000

Type Values Removed Values Added
First Time appeared Redhat enterprise Linux Eus
Redhat rhel Els
Redhat rhel Eus
CPEs cpe:/o:redhat:enterprise_linux:7 cpe:/a:redhat:rhel_eus:9.6::appstream
cpe:/a:redhat:rhel_eus:9.6::crb
cpe:/o:redhat:enterprise_linux_eus:10.0
cpe:/o:redhat:rhel_els:7
cpe:/o:redhat:rhel_eus:9.6::baseos
Vendors & Products Redhat enterprise Linux Eus
Redhat rhel Els
Redhat rhel Eus
References

Thu, 06 Aug 2026 22:15:00 +0000

Type Values Removed Values Added
First Time appeared Redhat rhel Aus
Redhat rhel E4s
Redhat rhel Eus Long Life
Redhat rhel Tus
CPEs cpe:/a:redhat:rhel_e4s:9.2::appstream
cpe:/a:redhat:rhel_e4s:9.4::appstream
cpe:/o:redhat:rhel_aus:8.4::baseos
cpe:/o:redhat:rhel_aus:8.6::baseos
cpe:/o:redhat:rhel_e4s:8.8::baseos
cpe:/o:redhat:rhel_e4s:9.2::baseos
cpe:/o:redhat:rhel_e4s:9.4::baseos
cpe:/o:redhat:rhel_eus_long_life:8.4::baseos
cpe:/o:redhat:rhel_eus_long_life:8.6::baseos
cpe:/o:redhat:rhel_tus:8.8::baseos
Vendors & Products Redhat rhel Aus
Redhat rhel E4s
Redhat rhel Eus Long Life
Redhat rhel Tus
References

Mon, 03 Aug 2026 04:00:00 +0000

Type Values Removed Values Added
CPEs cpe:/o:redhat:enterprise_linux:8
References

Tue, 28 Jul 2026 17:30:00 +0000

Type Values Removed Values Added
Description A flaw was found in GLib. A state confusion issue exists in g_dbus_node_info_new_for_xml() in the gio/gdbusintrospection.c file when processing malformed D-Bus introspection XML, specifically with a <node> element nested within other elements like <method>, <signal>, <property> or <arg>. This issue can cause an unsigned integer overflow and lead to an out-of-bounds read, resulting in a denial of service. A flaw was found in GLib. A state confusion issue exists in g_dbus_node_info_new_for_xml() in the gio/gdbusintrospection.c file when processing malformed D-Bus introspection XML, specifically with a `node` element nested within other elements like `method`, `signal`, `property` or `arg`. This issue can cause an unsigned integer overflow and lead to an out-of-bounds read, resulting in a denial of service.

Mon, 27 Jul 2026 17:00:00 +0000

Type Values Removed Values Added
First Time appeared Redhat discovery
CPEs cpe:/a:redhat:discovery:2::el9
Vendors & Products Redhat discovery
References

Thu, 23 Jul 2026 14:15:00 +0000

Type Values Removed Values Added
First Time appeared Redhat rhui
CPEs cpe:/a:redhat:rhui:5::el9
Vendors & Products Redhat rhui
References

Tue, 21 Jul 2026 03:30:00 +0000

Type Values Removed Values Added
CPEs cpe:/a:redhat:enterprise_linux:9::appstream
cpe:/a:redhat:enterprise_linux:9::crb
cpe:/o:redhat:enterprise_linux:9::baseos
References

Mon, 20 Jul 2026 22:00:00 +0000

Type Values Removed Values Added
CPEs cpe:/o:redhat:enterprise_linux:10.2
References

Mon, 20 Jul 2026 18:45:00 +0000

Type Values Removed Values Added
CPEs cpe:/a:redhat:enterprise_linux:8::crb
cpe:/o:redhat:enterprise_linux:8::baseos
References

Wed, 01 Jul 2026 10:30:00 +0000

Type Values Removed Values Added
First Time appeared Gnome
Gnome glib
Redhat hardened Images
Vendors & Products Gnome
Gnome glib
Redhat hardened Images

Tue, 30 Jun 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 30 Jun 2026 13:15:00 +0000

Type Values Removed Values Added
Description A flaw was found in GLib. A state confusion issue exists in g_dbus_node_info_new_for_xml() in the gio/gdbusintrospection.c file when processing malformed D-Bus introspection XML, specifically with a <node> element nested within other elements like <method>, <signal>, <property> or <arg>. This issue can cause an unsigned integer overflow and lead to an out-of-bounds read, resulting in a denial of service.
Title Glib: integer underflow in gio/gdbusintrospection.c via "g_dbus_node_info_new_for_xml"
First Time appeared Redhat
Redhat enterprise Linux
Redhat hummingbird
Weaknesses CWE-191
CPEs cpe:/a:redhat:hummingbird:1
cpe:/o:redhat:enterprise_linux:10
cpe:/o:redhat:enterprise_linux:6
cpe:/o:redhat:enterprise_linux:7
cpe:/o:redhat:enterprise_linux:8
cpe:/o:redhat:enterprise_linux:9
Vendors & Products Redhat
Redhat enterprise Linux
Redhat hummingbird
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}


Subscriptions

Gnome Glib
Redhat Cert Manager Discovery Enterprise Linux Enterprise Linux Eus Hardened Images Hummingbird Insights Proxy Openshift Ai Rhel Aus Rhel E4s Rhel Els Rhel Eus Rhel Eus Long Life Rhel Tus Rhui
cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2026-09-30T16:02:22.758Z

Reserved: 2026-06-26T20:59:47.856Z

Link: CVE-2026-58016

cve-icon Vulnrichment

Updated: 2026-06-30T13:58:11.595Z

cve-icon NVD

Status : Modified

Published: 2026-06-30T13:19:17.840

Modified: 2026-09-30T16:17:32.150

Link: CVE-2026-58016

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-04T08:15:06Z

Weaknesses