Количество 24
Количество 24
RLSA-2026:15968
Moderate: libsoup3 security update
ELSA-2026-19143
ELSA-2026-19143: libsoup3 security update (MODERATE)
ELSA-2026-15968
ELSA-2026-15968: libsoup3 security update (MODERATE)
CVE-2026-4271
A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting to access memory that has already been freed, potentially causing application instability or crashes, resulting in a Denial of Service (DoS).
CVE-2026-4271
A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting to access memory that has already been freed, potentially causing application instability or crashes, resulting in a Denial of Service (DoS).
CVE-2026-4271
A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting to access memory that has already been freed, potentially causing application instability or crashes, resulting in a Denial of Service (DoS).
CVE-2026-4271
A flaw was found in libsoup, a library for handling HTTP requests. Thi ...
CVE-2026-5119
A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation.
CVE-2026-5119
A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation.
CVE-2026-5119
A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation.
CVE-2026-5119
Libsoup: libsoup: information disclosure via cleartext transmission of cookies during https tunnel establishment
CVE-2026-5119
A flaw was found in libsoup. When establishing HTTPS tunnels through a ...
openSUSE-SU-2026:20845-1
Security update for libsoup
GHSA-xxmc-fm3p-q3x8
A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting to access memory that has already been freed, potentially causing application instability or crashes, resulting in a Denial of Service (DoS).
BDU:2026-04362
Уязвимость библиотеки доступа к HTTP серверам LibSoup, связанная с возможностью использования памяти после освобождения, позволяющая нарушителю вызвать отказ в обслуживании
RLSA-2026:19356
Moderate: libsoup security update
RLSA-2026:14087
Moderate: libsoup security update
RLSA-2026:13978
Moderate: libsoup security update
GHSA-j666-j6hj-fpc7
A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation.
ELSA-2026-24722
ELSA-2026-24722: libsoup security update (MODERATE)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
RLSA-2026:15968 Moderate: libsoup3 security update | 3 месяца назад | |||
ELSA-2026-19143 ELSA-2026-19143: libsoup3 security update (MODERATE) | 16 дней назад | |||
ELSA-2026-15968 ELSA-2026-15968: libsoup3 security update (MODERATE) | 3 месяца назад | |||
CVE-2026-4271 A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting to access memory that has already been freed, potentially causing application instability or crashes, resulting in a Denial of Service (DoS). | CVSS3: 5.3 | 1% Низкий | 5 месяцев назад | |
CVE-2026-4271 A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting to access memory that has already been freed, potentially causing application instability or crashes, resulting in a Denial of Service (DoS). | CVSS3: 5.3 | 1% Низкий | 5 месяцев назад | |
CVE-2026-4271 A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting to access memory that has already been freed, potentially causing application instability or crashes, resulting in a Denial of Service (DoS). | CVSS3: 5.3 | 1% Низкий | 5 месяцев назад | |
CVE-2026-4271 A flaw was found in libsoup, a library for handling HTTP requests. Thi ... | CVSS3: 5.3 | 1% Низкий | 5 месяцев назад | |
CVE-2026-5119 A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation. | CVSS3: 5.9 | 0% Низкий | 4 месяца назад | |
CVE-2026-5119 A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation. | CVSS3: 5.9 | 0% Низкий | 4 месяца назад | |
CVE-2026-5119 A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation. | CVSS3: 5.9 | 0% Низкий | 4 месяца назад | |
CVE-2026-5119 Libsoup: libsoup: information disclosure via cleartext transmission of cookies during https tunnel establishment | 0% Низкий | 4 месяца назад | ||
CVE-2026-5119 A flaw was found in libsoup. When establishing HTTPS tunnels through a ... | CVSS3: 5.9 | 0% Низкий | 4 месяца назад | |
openSUSE-SU-2026:20845-1 Security update for libsoup | 1% Низкий | 2 месяца назад | ||
GHSA-xxmc-fm3p-q3x8 A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting to access memory that has already been freed, potentially causing application instability or crashes, resulting in a Denial of Service (DoS). | CVSS3: 5.3 | 1% Низкий | 5 месяцев назад | |
BDU:2026-04362 Уязвимость библиотеки доступа к HTTP серверам LibSoup, связанная с возможностью использования памяти после освобождения, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 1% Низкий | 6 месяцев назад | |
RLSA-2026:19356 Moderate: libsoup security update | 0% Низкий | 2 месяца назад | ||
RLSA-2026:14087 Moderate: libsoup security update | 0% Низкий | 3 месяца назад | ||
RLSA-2026:13978 Moderate: libsoup security update | 0% Низкий | 3 месяца назад | ||
GHSA-j666-j6hj-fpc7 A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation. | CVSS3: 5.9 | 0% Низкий | 4 месяца назад | |
ELSA-2026-24722 ELSA-2026-24722: libsoup security update (MODERATE) | около 1 месяца назад |
Уязвимостей на страницу