CVE-2024-52532

HIGH

GNOME libsoup < 3.6.1 - Denial of Service via WebSocket Data Parsing

Title source: llm
STIX 2.1

Description

GNOME libsoup before 3.6.1 has an infinite loop, and memory consumption. during the reading of certain patterns of WebSocket data from clients.

Scores

CVSS v3 7.5
EPSS 0.0094
EPSS Percentile 56.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-835
Status published
Products (1)
gnome/libsoup < 3.6.1
Published Nov 11, 2024
Tracked Since Feb 18, 2026