CVE-2019-9633: Gnome Glib
Medium severity, CVSS 6.5. EPSS: 2.3% chance of exploitation in the next 30 days.
gio/gsocketclient.c in GNOME GLib 2.59.2 does not ensure that a parent GTask remains alive during the execution of a connection-attempting enumeration, which allows remote attackers to cause a denial of service (g_socket_client_connected_callback mishandling and application crash) via a crafted web site, as demonstrated by GNOME Web (aka Epiphany).
Affected products
- Gnome Glib: version 2.59.2 only
Published 2019-03-08. Last modified 2026-06-17.