Description
A flaw was found in libsoup. A vulnerability in sniff_feed_or_html() and skip_insignificant_space() functions may lead to a heap buffer over-read.
References (9)
Scores
CVSS v3
6.5
EPSS
0.0112
EPSS Percentile
78.3%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
yes
Technical Impact
partial
Details
CWE
CWE-126
Status
published
Products (10)
Red Hat/Red Hat Enterprise Linux 10
Red Hat/Red Hat Enterprise Linux 6
Red Hat/Red Hat Enterprise Linux 7
Red Hat/Red Hat Enterprise Linux 8
0:2.62.3-8.el8_10
Red Hat/Red Hat Enterprise Linux 8
0:2.8-3.el8_10.1
Red Hat/Red Hat Enterprise Linux 8
0:8.10-1
Red Hat/Red Hat Enterprise Linux 8.8 Extended Update Support
0:2.62.3-3.el8_8.4
Red Hat/Red Hat Enterprise Linux 9
0:2.72.0-10.el9_6.1
Red Hat/Red Hat Enterprise Linux 9.2 Extended Update Support
0:2.72.0-8.el9_2.4
Red Hat/Red Hat Enterprise Linux 9.4 Extended Update Support
0:2.72.0-8.el9_4.4
Published
Apr 03, 2025
Tracked Since
Feb 18, 2026