Логотип exploitDog
bind:CVE-2026-2436
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-2436

Количество 4

Количество 4

ubuntu логотип

CVE-2026-2436

17 дней назад

[Unknown description]

EPSS: Низкий
redhat логотип

CVE-2026-2436

около 2 месяцев назад

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2026-2436

EPSS: Низкий
github логотип

GHSA-wpfw-5xvc-wq9w

2 дня назад

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-2436

[Unknown description]

17 дней назад
redhat логотип
CVE-2026-2436

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
около 2 месяцев назад
debian логотип
-
github логотип
GHSA-wpfw-5xvc-wq9w

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
2 дня назад

Уязвимостей на страницу