Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-77014

Опубликовано: 13 июл. 2026
Источник: redhat
CVSS3: 5.3

Описание

A flaw was found in libsoup's SoupServer HTTP Range header processing. The sort_ranges() comparator in soup-message-headers.c truncates a 64-bit subtraction result to 32-bit int, flipping the sign for range offsets differing by more than INT_MAX. This causes silent omission of requested byte ranges from HTTP 206 Partial Content responses on resources larger than approximately 2 GB.

Отчет

An integer truncation flaw was found in libsoup's HTTP Range header processing. A remote attacker can exploit this to cause the server to silently omit requested byte ranges from responses. Exploitation requires the server to be serving resources larger than approximately 2 GB, which limits real-world impact.

Меры по смягчению последствий

No mitigation is available for this vulnerability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10libsoup3Fix deferred
Red Hat Enterprise Linux 6libsoupFix deferred
Red Hat Enterprise Linux 7gnome-clocksFix deferred
Red Hat Enterprise Linux 7libsoupFix deferred
Red Hat Enterprise Linux 8container-tools:rhel8/podmanFix deferred
Red Hat Enterprise Linux 8libsoupFix deferred
Red Hat Enterprise Linux 9libsoupFix deferred
Red Hat Enterprise Linux 9podmanFix deferred
Red Hat OpenShift Container Platform 4podmanFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-197
https://bugzilla.redhat.com/show_bug.cgi?id=2520143libsoup: libsoup: Integer truncation in sort_ranges() comparator causes silent omission of HTTP Range responses

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
ubuntu
7 дней назад

A flaw was found in libsoup's SoupServer HTTP Range header processing. The sort_ranges() comparator in soup-message-headers.c truncates a 64-bit subtraction result to 32-bit int, flipping the sign for range offsets differing by more than INT_MAX. This causes silent omission of requested byte ranges from HTTP 206 Partial Content responses on resources larger than approximately 2 GB.

CVSS3: 5.3
nvd
7 дней назад

A flaw was found in libsoup's SoupServer HTTP Range header processing. The sort_ranges() comparator in soup-message-headers.c truncates a 64-bit subtraction result to 32-bit int, flipping the sign for range offsets differing by more than INT_MAX. This causes silent omission of requested byte ranges from HTTP 206 Partial Content responses on resources larger than approximately 2 GB.

msrc
3 дня назад

Libsoup: libsoup: integer truncation in sort_ranges() comparator causes silent omission of http range responses

CVSS3: 5.3
debian
7 дней назад

A flaw was found in libsoup's SoupServer HTTP Range header processing. ...

CVSS3: 5.3
github
7 дней назад

A flaw was found in libsoup's SoupServer HTTP Range header processing. The sort_ranges() comparator in soup-message-headers.c truncates a 64-bit subtraction result to 32-bit int, flipping the sign for range offsets differing by more than INT_MAX. This causes silent omission of requested byte ranges from HTTP 206 Partial Content responses on resources larger than approximately 2 GB.

5.3 Medium

CVSS3

Уязвимость CVE-2026-77014