Количество 13
Количество 13
CVE-2026-1467
A flaw was found in libsoup, an HTTP client library. This vulnerability, known as CRLF (Carriage Return Line Feed) Injection, occurs when an HTTP proxy is configured and the library improperly handles URL-decoded input used to create the Host header. A remote attacker can exploit this by providing a specially crafted URL containing CRLF sequences, allowing them to inject additional HTTP headers or complete HTTP request bodies. This can lead to unintended or unauthorized HTTP requests being forwarded by the proxy, potentially impacting downstream services.
CVE-2026-1467
A flaw was found in libsoup, an HTTP client library. This vulnerability, known as CRLF (Carriage Return Line Feed) Injection, occurs when an HTTP proxy is configured and the library improperly handles URL-decoded input used to create the Host header. A remote attacker can exploit this by providing a specially crafted URL containing CRLF sequences, allowing them to inject additional HTTP headers or complete HTTP request bodies. This can lead to unintended or unauthorized HTTP requests being forwarded by the proxy, potentially impacting downstream services.
CVE-2026-1467
A flaw was found in libsoup, an HTTP client library. This vulnerability, known as CRLF (Carriage Return Line Feed) Injection, occurs when an HTTP proxy is configured and the library improperly handles URL-decoded input used to create the Host header. A remote attacker can exploit this by providing a specially crafted URL containing CRLF sequences, allowing them to inject additional HTTP headers or complete HTTP request bodies. This can lead to unintended or unauthorized HTTP requests being forwarded by the proxy, potentially impacting downstream services.
CVE-2026-1467
A flaw was found in libsoup, an HTTP client library. This vulnerabilit ...
GHSA-8pm5-xr39-vfv3
A flaw was found in libsoup, an HTTP client library. This vulnerability, known as CRLF (Carriage Return Line Feed) Injection, occurs when an HTTP proxy is configured and the library improperly handles URL-decoded input used to create the Host header. A remote attacker can exploit this by providing a specially crafted URL containing CRLF sequences, allowing them to inject additional HTTP headers or complete HTTP request bodies. This can lead to unintended or unauthorized HTTP requests being forwarded by the proxy, potentially impacting downstream services.
BDU:2026-04951
Уязвимость библиотеки доступа к HTTP серверам LibSoup, связанная с непринятием мер по нейтрализации последовательностей CRLF, позволяющая нарушителю вызвать отказ в обслуживании
SUSE-SU-2026:0833-1
Security update for libsoup
SUSE-SU-2026:0811-1
Security update for libsoup2
SUSE-SU-2026:0796-1
Security update for libsoup
SUSE-SU-2026:0788-1
Security update for libsoup
SUSE-SU-2026:0834-1
Security update for libsoup2
openSUSE-SU-2026:20384-1
Security update for libsoup
openSUSE-SU-2026:20354-1
Security update for libsoup2
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-1467 A flaw was found in libsoup, an HTTP client library. This vulnerability, known as CRLF (Carriage Return Line Feed) Injection, occurs when an HTTP proxy is configured and the library improperly handles URL-decoded input used to create the Host header. A remote attacker can exploit this by providing a specially crafted URL containing CRLF sequences, allowing them to inject additional HTTP headers or complete HTTP request bodies. This can lead to unintended or unauthorized HTTP requests being forwarded by the proxy, potentially impacting downstream services. | CVSS3: 5.8 | 0% Низкий | 7 месяцев назад | |
CVE-2026-1467 A flaw was found in libsoup, an HTTP client library. This vulnerability, known as CRLF (Carriage Return Line Feed) Injection, occurs when an HTTP proxy is configured and the library improperly handles URL-decoded input used to create the Host header. A remote attacker can exploit this by providing a specially crafted URL containing CRLF sequences, allowing them to inject additional HTTP headers or complete HTTP request bodies. This can lead to unintended or unauthorized HTTP requests being forwarded by the proxy, potentially impacting downstream services. | CVSS3: 5.8 | 0% Низкий | 7 месяцев назад | |
CVE-2026-1467 A flaw was found in libsoup, an HTTP client library. This vulnerability, known as CRLF (Carriage Return Line Feed) Injection, occurs when an HTTP proxy is configured and the library improperly handles URL-decoded input used to create the Host header. A remote attacker can exploit this by providing a specially crafted URL containing CRLF sequences, allowing them to inject additional HTTP headers or complete HTTP request bodies. This can lead to unintended or unauthorized HTTP requests being forwarded by the proxy, potentially impacting downstream services. | CVSS3: 5.8 | 0% Низкий | 7 месяцев назад | |
CVE-2026-1467 A flaw was found in libsoup, an HTTP client library. This vulnerabilit ... | CVSS3: 5.8 | 0% Низкий | 7 месяцев назад | |
GHSA-8pm5-xr39-vfv3 A flaw was found in libsoup, an HTTP client library. This vulnerability, known as CRLF (Carriage Return Line Feed) Injection, occurs when an HTTP proxy is configured and the library improperly handles URL-decoded input used to create the Host header. A remote attacker can exploit this by providing a specially crafted URL containing CRLF sequences, allowing them to inject additional HTTP headers or complete HTTP request bodies. This can lead to unintended or unauthorized HTTP requests being forwarded by the proxy, potentially impacting downstream services. | CVSS3: 6.1 | 0% Низкий | 7 месяцев назад | |
BDU:2026-04951 Уязвимость библиотеки доступа к HTTP серверам LibSoup, связанная с непринятием мер по нейтрализации последовательностей CRLF, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 5.8 | 0% Низкий | 8 месяцев назад | |
SUSE-SU-2026:0833-1 Security update for libsoup | 5 месяцев назад | |||
SUSE-SU-2026:0811-1 Security update for libsoup2 | 5 месяцев назад | |||
SUSE-SU-2026:0796-1 Security update for libsoup | 5 месяцев назад | |||
SUSE-SU-2026:0788-1 Security update for libsoup | 5 месяцев назад | |||
SUSE-SU-2026:0834-1 Security update for libsoup2 | 5 месяцев назад | |||
openSUSE-SU-2026:20384-1 Security update for libsoup | 5 месяцев назад | |||
openSUSE-SU-2026:20354-1 Security update for libsoup2 | 5 месяцев назад |
Уязвимостей на страницу