PT-2026-21477 · Gnome+3 · Libsoup+3

·

CVE-2026-2369

·

Published

2026-01-01

·

Updated

2026-08-31

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions libsoup versions prior to 3.6.5 libsoup versions prior to 2.74.3
Description An integer underflow vulnerability exists when processing content with a zero-length resource, resulting in a buffer overread. This could allow an attacker to potentially access sensitive information or cause an application-level denial of service.
Recommendations Update libsoup to version 3.6.5 or later. Update libsoup to version 2.74.3 or later.

Fix

DoS

Integer Underflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-80412
BDU:2026-06706
CVE-2026-2369
ECHO-6BBB-610C-309A
OESA-2026-1449
OESA-2026-2583
OESA-2026-2584
OPENSUSE-SU-2026:10208-1
OPENSUSE-SU-2026:10209-1
OPENSUSE-SU-2026:20354-1
OPENSUSE-SU-2026:20384-1
SUSE-SU-2026:0657-1
SUSE-SU-2026:0658-1
SUSE-SU-2026:0689-1
SUSE-SU-2026:0690-1
SUSE-SU-2026:0703-1
SUSE-SU-2026:0834-1
SUSE-SU-2026:20529-1
SUSE-SU-2026:20649-1
SUSE-SU-2026:20752-1
SUSE-SU-2026:20902-1
USN-8523-1

Affected Products

Linuxmint
Red Os
Ubuntu
Libsoup