Known Vulnerabilities for Libsoup by GNOME
Listed below are 10 of the newest known vulnerabilities associated with "Libsoup" by "GNOME".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-85534 json | A flaw was found in libsoup. When a client sends an HTTP/2 request body from a non-pollable input stream, the library can buf... | Not Provided | 2026-09-04 | 2026-09-04 |
| CVE-2026-85197 json | A flaw was found in libsoup. A malicious HTTP/2 server or a Man-in-the-Middle (MITM) attacker can exploit a heap use-after-fr... | Not Provided | 2026-09-04 | 2026-09-04 |
| CVE-2026-77680 json | An algorithmic complexity flaw exists in libsoup's HTTP Range header processing that persists after the CVE-2025-32907 fix. ... | Not Provided | 2026-08-25 | 2026-08-26 |
| CVE-2026-77014 json | A flaw was found in libsoup's SoupServer HTTP Range header processing. The sort_ranges() comparator in soup-message-headers.c... | Not Provided | 2026-08-20 | 2026-08-25 |
| CVE-2026-66339 json | A flaw was found in libsoup. After a CONNECT tunnel is established through an HTTP proxy, libsoup incorrectly attaches the Pr... | Not Provided | 2026-07-24 | 2026-07-28 |
| CVE-2026-66338 json | A flaw was found in libsoup. The chunked transfer encoding parser uses a permissive parsing function for chunk sizes that sil... | Not Provided | 2026-07-24 | 2026-07-27 |
| CVE-2026-66337 json | A flaw was found in libsoup. An unsigned integer underflow in the soup_filter_input_stream_read_until() function causes a hea... | Not Provided | 2026-07-24 | 2026-07-27 |
| CVE-2026-15714 json | An out-of-bounds read vulnerability was found in libsoup's multipart processing subsystem. The flaw exists in the soup_multip... | Not Provided | 2026-07-14 | 2026-07-15 |
| CVE-2026-15713 json | A vulnerability was found in libsoup's HTTP/2 protocol implementation. The library fails to correctly release memory context ... | Not Provided | 2026-07-14 | 2026-07-15 |
| CVE-2026-15712 json | A heap buffer over-read vulnerability was discovered in libsoup's (versions: libsoup 3.0 to 3.7.0) HTTP/2 connection tracking... | Not Provided | 2026-07-14 | 2026-07-14 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Gnome | Libsoup | 2.68.2 | |||
| Application | Gnome | Libsoup | 2.68.1 | |||
| Application | Gnome | Libsoup | 2.68.0 | |||
| Application | Gnome | Libsoup | 2.67.93 | |||
| Application | Gnome | Libsoup | 2.67.92 | |||
| Application | Gnome | Libsoup | 2.67.91 | |||
| Application | Gnome | Libsoup | 2.67.90 | |||
| Application | Gnome | Libsoup | 2.67.3 | |||
| Application | Gnome | Libsoup | 2.67.2 | |||
| Application | Gnome | Libsoup | 2.67.1 | |||
| Application | Gnome | Libsoup | 2.66.4 | |||
| Application | Gnome | Libsoup | 2.66.3 | |||
| Application | Gnome | Libsoup | 2.66.2 | |||
| Application | Gnome | Libsoup | 2.66.1 | |||
| Application | Gnome | Libsoup | 2.66.0 | |||
| Application | Gnome | Libsoup | 2.66 | |||
| Application | Gnome | Libsoup | 2.65.92 | |||
| Application | Gnome | Libsoup | 2.65.91 | |||
| Application | Gnome | Libsoup | 2.65.90 | |||
| Application | Gnome | Libsoup | 2.65.2 |