Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:65771 - Security Advisory
Issued:
2026-09-09
Updated:
2026-09-09

RHSA-2026:65771 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: glib2 security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for glib2 is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions and Red Hat Enterprise Linux 8.8 Telecommunications Update Service.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures.

Security Fix(es):

  • glib: buffer over-read in glib/gvariant-serialiser.c via gvs_tuple_is_normal() (CVE-2026-58010)
  • glib: out-of-bounds read in glib/gdatetime.c:g_date_time_get_ymd via invalid GDateTime (CVE-2026-58011)
  • glib: buffer over-read in g_regex_replace() via glib/gregex.c:string_append() and g_utf8_next_char() (CVE-2026-58012)
  • glib: buffer over-read in glib/giochannel.c via "g_io_channel_read_line_backend" (CVE-2026-58013)
  • glib: off-by-one error in glib/gkeyfile.c via "g_key_file_get_locale_string_list" (CVE-2026-58014)
  • glib: path traversal in glib/gio/gdbusauthmechanismsha1.c via keyring_lookup_entry and mechanism_client_data_receive (CVE-2026-58015)
  • GDBusServer: glib2: GDBusServer pre-authentication DoS via unbounded SASL line buffering (CVE-2026-15588)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 - Extended Life Cycle Long Life 8.8 x86_64
  • Red Hat Enterprise Linux Server - TUS 8.8 x86_64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 x86_64

Fixes

  • BZ - 2492243 - CVE-2026-58010 glib: buffer over-read in glib/gvariant-serialiser.c via gvs_tuple_is_normal()
  • BZ - 2492245 - CVE-2026-58011 glib: out-of-bounds read in glib/gdatetime.c:g_date_time_get_ymd via invalid GDateTime
  • BZ - 2492247 - CVE-2026-58012 glib: buffer over-read in g_regex_replace() via glib/gregex.c:string_append() and g_utf8_next_char()
  • BZ - 2492248 - CVE-2026-58013 glib: buffer over-read in glib/giochannel.c via "g_io_channel_read_line_backend"
  • BZ - 2492255 - CVE-2026-58014 glib: off-by-one error in glib/gkeyfile.c via "g_key_file_get_locale_string_list"
  • BZ - 2492256 - CVE-2026-58015 glib: path traversal in glib/gio/gdbusauthmechanismsha1.c via keyring_lookup_entry and mechanism_client_data_receive
  • BZ - 2499675 - CVE-2026-15588 GDBusServer: glib2: GDBusServer pre-authentication DoS via unbounded SASL line buffering

CVEs

  • CVE-2026-15588
  • CVE-2026-58010
  • CVE-2026-58011
  • CVE-2026-58012
  • CVE-2026-58013
  • CVE-2026-58014
  • CVE-2026-58015

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 - Extended Life Cycle Long Life 8.8

SRPM
glib2-2.56.4-165.el8_8.2.src.rpm SHA-256: 99d97b140f12af60ba249a5daa281d6ed4ca009da7e48472bf5e8df54cfedb6b
x86_64
glib2-2.56.4-165.el8_8.2.i686.rpm SHA-256: 1f526f796da55b0f7818b064be72f269a9288da4cd869072a69f15c0863a806c
glib2-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: c2d715b6543c3abc6a02369447509d75aa44a400df7205718510c31dd0f26de1
glib2-debuginfo-2.56.4-165.el8_8.2.i686.rpm SHA-256: 42b92b1fab26524f55f0f792959b3b0c2ce5000d4e7fedb86092cc764397c951
glib2-debuginfo-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 03dd7531cc5b3f558f9b0e386e6b8e2d204dd9357c73909a1cbfffe70dca4ff1
glib2-debugsource-2.56.4-165.el8_8.2.i686.rpm SHA-256: 673591e445ac0f665c452813b8ffc8176944b1e047d95a44deb8c152383ba14f
glib2-debugsource-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 561dbb8948eee676c8c9ea73b23d90fc0ecd5356f062fd1a924036b4e3f00df6
glib2-devel-2.56.4-165.el8_8.2.i686.rpm SHA-256: e191aa77d5470af8867fbc3cd10202e7c6f09f9f12286578e785ae7decc2afe3
glib2-devel-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 5344b12ed4445aacb5edfb8acee2fdd08aaf25816ff01b484aa41f7ac9da3a88
glib2-devel-debuginfo-2.56.4-165.el8_8.2.i686.rpm SHA-256: c8313244b939301f6d68de77de7901388f16a168be65c8a96c1ad1402f00534b
glib2-devel-debuginfo-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: ffaed7364d558bae69852b72ba8e3d0c8c2c8580b7682f62814774fc655a9a53
glib2-fam-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 4b89fd681dcacb3ac123d9faa658a278dd817e91040063ecb0f8310fdaa3aa9d
glib2-fam-debuginfo-2.56.4-165.el8_8.2.i686.rpm SHA-256: 88b99c83a02aa8ea7493d576f8536ef19528fa95696e6e98cfd7ef914d6f1a0a
glib2-fam-debuginfo-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 998cc6f84772a024a4701ba5a26d7ef34b9a188c988d6560b872dcd9c0182ae7
glib2-tests-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 9d062d0c8caddb40e60c11222d342de3a63127458e09c4a5f5eb53085b1eb21b
glib2-tests-debuginfo-2.56.4-165.el8_8.2.i686.rpm SHA-256: d169dcad5b95fa103672f5636a1c42608c18826e062be3ba4358076414356dba
glib2-tests-debuginfo-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 2ce8ba3bcc9e09217456fa616e2bdbf1bc41114ed467340943f16f7cc31192a8

Red Hat Enterprise Linux Server - TUS 8.8

SRPM
glib2-2.56.4-165.el8_8.2.src.rpm SHA-256: 99d97b140f12af60ba249a5daa281d6ed4ca009da7e48472bf5e8df54cfedb6b
x86_64
glib2-2.56.4-165.el8_8.2.i686.rpm SHA-256: 1f526f796da55b0f7818b064be72f269a9288da4cd869072a69f15c0863a806c
glib2-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: c2d715b6543c3abc6a02369447509d75aa44a400df7205718510c31dd0f26de1
glib2-debuginfo-2.56.4-165.el8_8.2.i686.rpm SHA-256: 42b92b1fab26524f55f0f792959b3b0c2ce5000d4e7fedb86092cc764397c951
glib2-debuginfo-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 03dd7531cc5b3f558f9b0e386e6b8e2d204dd9357c73909a1cbfffe70dca4ff1
glib2-debugsource-2.56.4-165.el8_8.2.i686.rpm SHA-256: 673591e445ac0f665c452813b8ffc8176944b1e047d95a44deb8c152383ba14f
glib2-debugsource-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 561dbb8948eee676c8c9ea73b23d90fc0ecd5356f062fd1a924036b4e3f00df6
glib2-devel-2.56.4-165.el8_8.2.i686.rpm SHA-256: e191aa77d5470af8867fbc3cd10202e7c6f09f9f12286578e785ae7decc2afe3
glib2-devel-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 5344b12ed4445aacb5edfb8acee2fdd08aaf25816ff01b484aa41f7ac9da3a88
glib2-devel-debuginfo-2.56.4-165.el8_8.2.i686.rpm SHA-256: c8313244b939301f6d68de77de7901388f16a168be65c8a96c1ad1402f00534b
glib2-devel-debuginfo-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: ffaed7364d558bae69852b72ba8e3d0c8c2c8580b7682f62814774fc655a9a53
glib2-fam-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 4b89fd681dcacb3ac123d9faa658a278dd817e91040063ecb0f8310fdaa3aa9d
glib2-fam-debuginfo-2.56.4-165.el8_8.2.i686.rpm SHA-256: 88b99c83a02aa8ea7493d576f8536ef19528fa95696e6e98cfd7ef914d6f1a0a
glib2-fam-debuginfo-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 998cc6f84772a024a4701ba5a26d7ef34b9a188c988d6560b872dcd9c0182ae7
glib2-tests-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 9d062d0c8caddb40e60c11222d342de3a63127458e09c4a5f5eb53085b1eb21b
glib2-tests-debuginfo-2.56.4-165.el8_8.2.i686.rpm SHA-256: d169dcad5b95fa103672f5636a1c42608c18826e062be3ba4358076414356dba
glib2-tests-debuginfo-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 2ce8ba3bcc9e09217456fa616e2bdbf1bc41114ed467340943f16f7cc31192a8

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8

SRPM
glib2-2.56.4-165.el8_8.2.src.rpm SHA-256: 99d97b140f12af60ba249a5daa281d6ed4ca009da7e48472bf5e8df54cfedb6b
ppc64le
glib2-2.56.4-165.el8_8.2.ppc64le.rpm SHA-256: d416607523a6a11a15d124922a3fe14bb0cb6367f06ae4acdec6cff2c6ca1ad1
glib2-debuginfo-2.56.4-165.el8_8.2.ppc64le.rpm SHA-256: fc0c0b80abdf89b14ea0433ab8e790384773582bdd641525897068942e27282b
glib2-debugsource-2.56.4-165.el8_8.2.ppc64le.rpm SHA-256: 018cd7392504506876c4a584314e8e961b3f0a45e5866b121ffe34b0bb865907
glib2-devel-2.56.4-165.el8_8.2.ppc64le.rpm SHA-256: bf95904a5722b0ad95b08432c8e8945c992ce3f0f277452b619258c54b8cd3b3
glib2-devel-debuginfo-2.56.4-165.el8_8.2.ppc64le.rpm SHA-256: 947b8cb79436d23f8ee8bbf765eedbb5f61202d7c62723198f2f288089e7f1bf
glib2-fam-2.56.4-165.el8_8.2.ppc64le.rpm SHA-256: e2943b411d966125762960ab511215a3eef89d0388df9f705ea76dc0b1579adc
glib2-fam-debuginfo-2.56.4-165.el8_8.2.ppc64le.rpm SHA-256: 32e5a792f2b808d504617e64c9e55d448c84915f48943e3013e2bd57562eac03
glib2-tests-2.56.4-165.el8_8.2.ppc64le.rpm SHA-256: 9b62cd4b6b982edbd0f4fbc53795aabd5dd568b2dd89f6fa8b947b821df51dc5
glib2-tests-debuginfo-2.56.4-165.el8_8.2.ppc64le.rpm SHA-256: 3c88c7ba1ecb980789ea2a5af6f8bd4768224a41046028d8321cdf129fcf3773

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8

SRPM
glib2-2.56.4-165.el8_8.2.src.rpm SHA-256: 99d97b140f12af60ba249a5daa281d6ed4ca009da7e48472bf5e8df54cfedb6b
x86_64
glib2-2.56.4-165.el8_8.2.i686.rpm SHA-256: 1f526f796da55b0f7818b064be72f269a9288da4cd869072a69f15c0863a806c
glib2-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: c2d715b6543c3abc6a02369447509d75aa44a400df7205718510c31dd0f26de1
glib2-debuginfo-2.56.4-165.el8_8.2.i686.rpm SHA-256: 42b92b1fab26524f55f0f792959b3b0c2ce5000d4e7fedb86092cc764397c951
glib2-debuginfo-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 03dd7531cc5b3f558f9b0e386e6b8e2d204dd9357c73909a1cbfffe70dca4ff1
glib2-debugsource-2.56.4-165.el8_8.2.i686.rpm SHA-256: 673591e445ac0f665c452813b8ffc8176944b1e047d95a44deb8c152383ba14f
glib2-debugsource-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 561dbb8948eee676c8c9ea73b23d90fc0ecd5356f062fd1a924036b4e3f00df6
glib2-devel-2.56.4-165.el8_8.2.i686.rpm SHA-256: e191aa77d5470af8867fbc3cd10202e7c6f09f9f12286578e785ae7decc2afe3
glib2-devel-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 5344b12ed4445aacb5edfb8acee2fdd08aaf25816ff01b484aa41f7ac9da3a88
glib2-devel-debuginfo-2.56.4-165.el8_8.2.i686.rpm SHA-256: c8313244b939301f6d68de77de7901388f16a168be65c8a96c1ad1402f00534b
glib2-devel-debuginfo-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: ffaed7364d558bae69852b72ba8e3d0c8c2c8580b7682f62814774fc655a9a53
glib2-fam-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 4b89fd681dcacb3ac123d9faa658a278dd817e91040063ecb0f8310fdaa3aa9d
glib2-fam-debuginfo-2.56.4-165.el8_8.2.i686.rpm SHA-256: 88b99c83a02aa8ea7493d576f8536ef19528fa95696e6e98cfd7ef914d6f1a0a
glib2-fam-debuginfo-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 998cc6f84772a024a4701ba5a26d7ef34b9a188c988d6560b872dcd9c0182ae7
glib2-tests-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 9d062d0c8caddb40e60c11222d342de3a63127458e09c4a5f5eb53085b1eb21b
glib2-tests-debuginfo-2.56.4-165.el8_8.2.i686.rpm SHA-256: d169dcad5b95fa103672f5636a1c42608c18826e062be3ba4358076414356dba
glib2-tests-debuginfo-2.56.4-165.el8_8.2.x86_64.rpm SHA-256: 2ce8ba3bcc9e09217456fa616e2bdbf1bc41114ed467340943f16f7cc31192a8

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility