Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-52531

Опубликовано: 11 нояб. 2024
Источник: nvd
CVSS3: 6.5
CVSS3: 8.4
EPSS Низкий

Описание

GNOME libsoup before 3.6.1 allows a buffer overflow in applications that perform conversion to UTF-8 in soup_header_parse_param_list_strict. There is a plausible way to reach this remotely via soup_message_headers_get_content_type (e.g., an application may want to retrieve the content type of a request or response).

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gnome:libsoup:*:*:*:*:*:*:*:*
Версия до 3.6.1 (исключая)

EPSS

Процентиль: 42%
0.00201
Низкий

6.5 Medium

CVSS3

8.4 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 6.5
ubuntu
11 месяцев назад

GNOME libsoup before 3.6.1 allows a buffer overflow in applications that perform conversion to UTF-8 in soup_header_parse_param_list_strict. There is a plausible way to reach this remotely via soup_message_headers_get_content_type (e.g., an application may want to retrieve the content type of a request or response).

CVSS3: 9
redhat
11 месяцев назад

GNOME libsoup before 3.6.1 allows a buffer overflow in applications that perform conversion to UTF-8 in soup_header_parse_param_list_strict. There is a plausible way to reach this remotely via soup_message_headers_get_content_type (e.g., an application may want to retrieve the content type of a request or response).

CVSS3: 8.4
msrc
10 месяцев назад

Описание отсутствует

CVSS3: 6.5
debian
11 месяцев назад

GNOME libsoup before 3.6.1 allows a buffer overflow in applications th ...

rocky
7 месяцев назад

Important: libsoup security update

EPSS

Процентиль: 42%
0.00201
Низкий

6.5 Medium

CVSS3

8.4 High

CVSS3

Дефекты

CWE-787