Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2026-2436

5 месяцев назад

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2026-2436

6 месяцев назад

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2026-2436

5 месяцев назад

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2026-2436

4 месяца назад

Libsoup: libsoup: denial of service via use-after-free in soupserver during tls handshake

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2026-2436

5 месяцев назад

A flaw was found in libsoup's SoupServer. A remote attacker could expl ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-wpfw-5xvc-wq9w

5 месяцев назад

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-2436

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
0%
Низкий
5 месяцев назад
redhat логотип
CVE-2026-2436

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2026-2436

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
0%
Низкий
5 месяцев назад
msrc логотип
CVE-2026-2436

Libsoup: libsoup: denial of service via use-after-free in soupserver during tls handshake

CVSS3: 6.5
0%
Низкий
4 месяца назад
debian логотип
CVE-2026-2436

A flaw was found in libsoup's SoupServer. A remote attacker could expl ...

CVSS3: 6.5
0%
Низкий
5 месяцев назад
github логотип
GHSA-wpfw-5xvc-wq9w

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

CVSS3: 6.5
0%
Низкий
5 месяцев назад

Уязвимостей на страницу