<?xml version="1.0" encoding="utf-8"?>
  <?xml-stylesheet type="text/xsl" href="sa-render.xsl"?>
  <update from="huaweicloud.com" type="security" status="stable" version="1">
    <id>HCE1-SA-2023-0078</id>
    <title>An update for glib2 is now available for HCE 1.1</title>
    <severity>Important</severity>
    <release>HCE 1.1</release>
    <issued date="2023-04-13 03:08:49"/>
    <updated date="2023-04-13 03:08:49"/>
    <references>
      <reference href="https://nvd.nist.gov/vuln/detail/CVE-2021-3800" id="CVE-2021-3800" title="CVE-2021-3800 Base Score: 7.5 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" type="cve"/>
    </references>
    <description>Security Fix(es):

A flaw was found in glib before version 2.63.6. Due to random charset alias, pkexec can leak content from files owned by privileged users to unprivileged ones under the right condition. (CVE-2021-3800)
</description>
    <pkglist>
      <collection short="HCE 1.1" package="glib2">
        <name>HCE 1.1</name>
        <package arch="x86_64" name="glib2" version="2.56.1" release="13.hce1c">
          <filename>glib2-2.56.1-13.hce1c.x86_64.rpm</filename>
        </package>
        <package arch="x86_64" name="glib2-devel" version="2.56.1" release="13.hce1c">
          <filename>glib2-devel-2.56.1-13.hce1c.x86_64.rpm</filename>
        </package>
      </collection>
    </pkglist>
  </update>
