REDHAT-BUG-2359341: High severity libsoup vulnerability
Published Apr 14, 2025
·Updated
libsoup prior to 3.6.5 is vulnerable to out of bounds reads in soupheadersparserequest(). A maliciously-crafted HTTP request may crash the HTTP server.
Affected Software
1 affected component
libsoup libsoup<3.6.5
Event History
Apr 14, 2025
Data Sourced
via Red Hat·01:36 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2359341?
REDHAT-BUG-2359341 has a high severity due to its potential to crash the HTTP server.
2
How do I fix REDHAT-BUG-2359341?
To fix REDHAT-BUG-2359341, update libsoup to version 3.6.5 or later.
3
What software is affected by REDHAT-BUG-2359341?
The affected software for REDHAT-BUG-2359341 is libsoup prior to version 3.6.5.
4
What kind of vulnerability is REDHAT-BUG-2359341?
REDHAT-BUG-2359341 is an out of bounds read vulnerability in the soup_headers_parse_request() function.
5
Can REDHAT-BUG-2359341 be exploited remotely?
Yes, a maliciously-crafted HTTP request can exploit REDHAT-BUG-2359341 remotely, leading to server crashes.