Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 7

Количество 7

fstec логотип

BDU:2026-12066

10 месяцев назад

Уязвимость компонента soup-server-connection.c библиотеки доступа к HTTP серверам LibSoup, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 8.2
EPSS: Низкий
ubuntu логотип

CVE-2026-2436

6 месяцев назад

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2026-2436

7 месяцев назад

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2026-2436

6 месяцев назад

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2026-2436

6 месяцев назад

Libsoup: libsoup: denial of service via use-after-free in soupserver during tls handshake

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2026-2436

6 месяцев назад

A flaw was found in libsoup's SoupServer. A remote attacker could expl ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-wpfw-5xvc-wq9w

6 месяцев назад

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2026-12066

Уязвимость компонента soup-server-connection.c библиотеки доступа к HTTP серверам LibSoup, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 8.2
0%
Низкий
10 месяцев назад
ubuntu логотип
CVE-2026-2436

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
0%
Низкий
6 месяцев назад
redhat логотип
CVE-2026-2436

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
0%
Низкий
7 месяцев назад
nvd логотип
CVE-2026-2436

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
0%
Низкий
6 месяцев назад
msrc логотип
CVE-2026-2436

Libsoup: libsoup: denial of service via use-after-free in soupserver during tls handshake

CVSS3: 6.5
0%
Низкий
6 месяцев назад
debian логотип
CVE-2026-2436

A flaw was found in libsoup's SoupServer. A remote attacker could expl ...

CVSS3: 6.5
0%
Низкий
6 месяцев назад
github логотип
GHSA-wpfw-5xvc-wq9w

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
0%
Низкий
6 месяцев назад

Уязвимостей на страницу