CVE-2025-6052: Gnome Glib

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

A flaw was found in how GLib’s GString manages memory when adding data to strings. If a string is already very large, combining it with more input can cause a hidden overflow in the size calculation. This makes the system think it has enough memory when it doesn’t. As a result, data may be written past the end of the allocated memory, leading to crashes or memory corruption.

Affected products

  • Gnome Glib: from 2.75.3, up to and including 2.84.3

Published 2025-06-13. Last modified 2026-06-17.