Skip to content
Fedora 44 minGW-GLib2 Critical Buffer Overflow Fix CVE-2026

Fedora 44 minGW-GLib2 Critical Buffer Overflow Fix CVE-2026

Linuxsecurity LinuxSecurity Advisories July 17, 2026

* Wed Jul 8 2026 Sandro Mani - 2.88.2-2 - Backport fix for CVE-2026-58016 * Thu Jul 2 2026 Sandro Mani - 2.88.2-1 - Update to 2.88.2

* Wed Jul 8 2026 Sandro Mani - 2.88.2-2 - Backport fix for CVE-2026-58016 * Thu Jul 2 2026 Sandro Mani - 2.88.2-1 - Update to 2.88.2

[ 1 ] Bug #2494867 - CVE-2026-58010 mingw-glib2: buffer over-read in glib/gvariant-serialiser.c via gvs_tuple_is_normal() [fedora-all] [ 2 ] Bug #2494871 - CVE-2026-58011 mingw-glib2: out-of-bounds read in glib/gdatetime.c:g_date_time_get_ymd via invalid GDateTime [fedora-all] [ 3 ] Bug #2494874 - CVE-2026-58012 mingw-glib2: buffer over-read in g_regex_replace() via glib/gregex.c:string_append() and g_utf8_next_char() [fedora-all] [ 4 ] Bug #2494877 - CVE-2026-58013 mingw-glib2: buffer over-read in glib/giochannel.c via "g_io_channel_read_line_backend" [fedora-all] [ 5 ] Bug #2494881 - CVE-2026-58014 mingw-glib2: off-by-one error in glib/gkeyfile.c via "g_key_file_get_locale_string_list" [fedora-all]

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-7bf2937528' at the command line. For more information, refer to the dnf documentation available at

Get the latest Linux and open source security news straight to your inbox.