GHSA-xxgh-qh6h-jxc2HighCVSS 8.6

A flaw was found in libsoup. When max-incoming-payload-size is unlimited (0),...

Published
September 29, 2026
Last Modified
September 29, 2026

🔗 CVE IDs covered (1)

📋 Description

A flaw was found in libsoup. When max-incoming-payload-size is unlimited (0), SoupWebsocketConnection could grow its incoming GByteArray based on an attacker-controlled frame length until the length wrapped, causing a heap buffer overflow while reading frame data.

🔗 References (4)