Errata overview
Errata ID 256
Date 2019-09-11
Source package glib2.0
Fixed in version 2.50.3-2+deb9u1
Description
This update addresses the following issues:
* Out-of-bounds read in g_markup_parse_context_parse() in gmarkup.c
  (CVE-2018-16429)
* file_copy_fallback in gio/gfile.c in GNOME GLib does not properly restrict
  file permissions while a copy operation is in progress (CVE-2019-12450)
* Insecure permissions for files and directories (CVE-2019-13012)
Additional notes
CVE ID CVE-2018-16429
CVE-2019-12450
CVE-2019-13012
UCS Bug number #50147