GHSA-7wfq-7p2f-6344HighCVSS 7.5

A flaw was found in libsoup. The implementation of HTTP range requests is vulnerable to a...

Published
April 14, 2025
Last Modified
June 26, 2026

🔗 CVE IDs covered (1)

📋 Description

A flaw was found in libsoup. The implementation of HTTP range requests is vulnerable to a resource consumption attack. This flaw allows a malicious client to request the same range many times in a single HTTP request, causing the server to use large amounts of memory.

🔗 References (11)