Known Vulnerabilities for Libsoup by Gnome
Listed below are 8 of the newest known vulnerabilities associated with "Libsoup" by "Gnome".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-5119 json | A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are t... | Not Provided | 2026-03-30 | 2026-04-01 |
| CVE-2026-2436 json | A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_serv... | Not Provided | 2026-03-26 | 2026-03-27 |
| CVE-2025-32914 json | A flaw was found in libsoup, where the soup_multipart_new_from_message() function is vulnerable to an out-of-bounds read. Thi... | Not Provided | 2025-04-14 | 2026-04-22 |
| CVE-2025-32052 json | A flaw was found in libsoup. A vulnerability in the sniff_unknown() function may lead to heap buffer over-read. | Not Provided | 2025-04-03 | 2026-04-22 |
| CVE-2019-17266 json | libsoup from versions 2.65.1 until 2.68.1 have a heap-based buffer over-read because soup_ntlm_parse_challenge() in soup-auth... | 9.8 - CRITICAL | 2019-10-06 | 2023-11-07 |
| CVE-2018-12910 json | The get_cookies function in soup-cookie-jar.c in libsoup 2.63.2 allows attackers to have unspecified impact via an empty host... | 9.8 - CRITICAL | 2018-07-05 | 2023-11-07 |
| CVE-2018-11713 json | WebCore/platform/network/soup/SocketStreamHandleImplSoup.cpp in the libsoup network backend of WebKit, as used in WebKitGTK+ ... | 6.5 - MEDIUM | 2018-06-04 | 2019-10-03 |
| CVE-2017-2885 json | An exploitable stack based buffer overflow vulnerability exists in the GNOME libsoup 2.58. A specially crafted HTTP request c... | 9.8 - CRITICAL | 2018-04-24 | 2022-06-07 |
| CVE-2012-2132 json | libsoup 2.32.2 and earlier does not validate certificates or clear the trust flag when the ssl-ca-file does not exist, which ... | 5 - MEDIUM | 2012-08-20 | 2017-08-29 |
| CVE-2011-2524 json | Directory traversal vulnerability in soup-uri.c in SoupServer in libsoup before 2.35.4 allows remote attackers to read arbitr... | 5 - MEDIUM | 2011-08-31 | 2012-02-02 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Gnome | Libsoup | 2.68.2 | |||
| Application | Gnome | Libsoup | 2.68.1 | |||
| Application | Gnome | Libsoup | 2.68.0 | |||
| Application | Gnome | Libsoup | 2.67.93 | |||
| Application | Gnome | Libsoup | 2.67.92 | |||
| Application | Gnome | Libsoup | 2.67.91 | |||
| Application | Gnome | Libsoup | 2.67.90 | |||
| Application | Gnome | Libsoup | 2.67.3 | |||
| Application | Gnome | Libsoup | 2.67.2 | |||
| Application | Gnome | Libsoup | 2.67.1 | |||
| Application | Gnome | Libsoup | 2.66.4 | |||
| Application | Gnome | Libsoup | 2.66.3 | |||
| Application | Gnome | Libsoup | 2.66.2 | |||
| Application | Gnome | Libsoup | 2.66.1 | |||
| Application | Gnome | Libsoup | 2.66.0 | |||
| Application | Gnome | Libsoup | 2.66 | |||
| Application | Gnome | Libsoup | 2.65.92 | |||
| Application | Gnome | Libsoup | 2.65.91 | |||
| Application | Gnome | Libsoup | 2.65.90 | |||
| Application | Gnome | Libsoup | 2.65.2 |