Package        : libsoup2.4
Version        : 2.48.0-1+deb8u2
CVE ID         : CVE-2018-12910

It was discovered that the Soup HTTP library performed insuffient
validation of cookie requests which could result in an out-of-bounds
memory read.

For Debian 8 "Jessie", these problems have been fixed in version
2.48.0-1+deb8u2.

We recommend that you upgrade your libsoup2.4 packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS

Debian LTS: DLA-1416-1: libsoup2.4 security update

July 6, 2018
It was discovered that the Soup HTTP library performed insuffient validation of cookie requests which could result in an out-of-bounds memory read

Summary

We recommend that you upgrade your libsoup2.4 packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS


Severity
Package : libsoup2.4
Version : 2.48.0-1+deb8u2
CVE ID : CVE-2018-12910

Related News