Описание
ELSA-2025-8126: libsoup security update (IMPORTANT)
[2.72.0-10.2]
- Backport patches for various CVEs Resolves: RHEL-85888 Resolves: RHEL-87081 Resolves: RHEL-88332 Resolves: RHEL-92285
Обновленные пакеты
Oracle Linux 9
Oracle Linux aarch64
libsoup
2.72.0-10.el9_6.2
libsoup-devel
2.72.0-10.el9_6.2
Oracle Linux x86_64
libsoup
2.72.0-10.el9_6.2
libsoup-devel
2.72.0-10.el9_6.2
Связанные уязвимости
CVSS3: 7
ubuntu
4 месяца назад
A flaw was found in libsoup. The package is vulnerable to a heap buffer over-read when sniffing content via the skip_insight_whitespace() function. Libsoup clients may read one byte out-of-bounds in response to a crafted HTTP response by an HTTP server.
CVSS3: 7
redhat
5 месяцев назад
A flaw was found in libsoup. The package is vulnerable to a heap buffer over-read when sniffing content via the skip_insight_whitespace() function. Libsoup clients may read one byte out-of-bounds in response to a crafted HTTP response by an HTTP server.