USN-6768-1: GLib vulnerability
Alicia Boya García discovered that GLib incorrectly handled signal subscriptions. A local attacker could use this issue to spoof D-Bus signals resulting in a variety of impacts including possible privilege escalation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-6768-1?
The severity of USN-6768-1 is classified as a potential privilege escalation vulnerability due to incorrect handling of signal subscriptions in GLib.
How do I fix USN-6768-1?
To fix USN-6768-1, update the affected packages to their remedied versions, which include libglib2.0-0t64, libglib2.0-bin, or other related packages from the appropriate Ubuntu versions.
What versions of Ubuntu are affected by USN-6768-1?
USN-6768-1 affects Ubuntu 20.04, 22.04, 23.10, and 24.04 with specific versions of the libglib2.0 packages.
What impact can USN-6768-1 have on my system?
A local attacker can exploit USN-6768-1 to spoof D-Bus signals, which may lead to unauthorized actions or privilege escalation.
Who discovered the vulnerability in USN-6768-1?
The vulnerability in USN-6768-1 was discovered by Alicia Boya García.