DevSecOps Toolkit

CVE record

CVE-2025-14087

CRITICALCVSS 9.8

A flaw was found in GLib (Gnome Lib). This vulnerability allows a remote attacker to cause heap corruption, leading to a denial of service or potential code execution via a buffer-underflow in the GVariant parser when processing maliciously crafted input strings.

Vulnerability metadata

Published
2025-12-10T03:45:47.053Z
Modified
2026-05-20T05:46:25.250Z
EPSS
Not available
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

References