CVE-2026-12548

EUVD-2026-46363
A heap out-of-bounds read flaw was found in libsoup. When parsing multipart HTTP messages, an integer type mismatch between the caller and soup_headers_parse() can cause the length parameter to be incorrectly truncated, leading to a heap buffer over-read. A remote attacker could use this flaw to crash an application using libsoup or potentially disclose heap memory contents.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.2 MEDIUM
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:L
Base Score
CVSS 3.x
EPSS Score
Percentile: 32.13%
Affected Products (NVD)
VendorProductVersion
gnomelibsoup
-
redhatenterprise_linux
10.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
libsoup2.4
bookworm
vulnerable
trixie
no-dsa
libsoup3
bookworm
vulnerable
forky
vulnerable
sid
vulnerable
trixie
no-dsa
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
libsoup2.4
bionic
needs-triage
focal
needs-triage
jammy
needs-triage
noble
needs-triage
resolute
needs-triage
xenial
needs-triage
libsoup3
jammy
needs-triage
noble
needs-triage
resolute
needs-triage
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
libsoup-2_4-1
suse enterprise sap 15 SP4
2.74.3-150400.3.40.1
fixed
suse enterprise sap 15 SP5
2.74.3-150400.3.40.1
fixed
suse enterprise server 15 SP4
2.74.3-150400.3.40.1
fixed
suse enterprise server 15 SP5
2.74.3-150400.3.40.1
fixed
libsoup2-devel
suse enterprise sap 15 SP4
2.74.3-150400.3.40.1
fixed
suse enterprise sap 15 SP5
2.74.3-150400.3.40.1
fixed
suse enterprise server 15 SP4
2.74.3-150400.3.40.1
fixed
suse enterprise server 15 SP5
2.74.3-150400.3.40.1
fixed
libsoup2-lang
suse enterprise sap 15 SP4
2.74.3-150400.3.40.1
fixed
suse enterprise sap 15 SP5
2.74.3-150400.3.40.1
fixed
suse enterprise server 15 SP4
2.74.3-150400.3.40.1
fixed
suse enterprise server 15 SP5
2.74.3-150400.3.40.1
fixed
typelib-1_0-Soup-2_4
suse enterprise sap 15 SP4
2.74.3-150400.3.40.1
fixed
suse enterprise sap 15 SP5
2.74.3-150400.3.40.1
fixed
suse enterprise server 15 SP4
2.74.3-150400.3.40.1
fixed
suse enterprise server 15 SP5
2.74.3-150400.3.40.1
fixed