[CLSA-2026:1771518763] libsoup: Fix of 2 CVEs
Type:
security
Severity:
Important
Release date:
2026-02-19 16:32:47 UTC
Description:
- CVE-2026-1761: fix stack-based buffer overflow in multipart HTTP response parsing caused by incorrect length calculation in soup_filter_input_stream_read_until() - CVE-2026-0719: fix stack-based buffer overflow in NTLM authentication caused by integer overflow in md4sum() with excessively long passwords
Updated packages:
  • libsoup-2.62.2-2.0.5.el7.tuxcare.els4.i686.rpm
    sha:cfcdd8603a498192bb586a3fe158bed09de10886f8b486214bd99fc831677818
  • libsoup-2.62.2-2.0.5.el7.tuxcare.els4.x86_64.rpm
    sha:12883e1da91fc34e46fc3a88bf38573f1dba37406b8640ef860578d9faf30537
  • libsoup-devel-2.62.2-2.0.5.el7.tuxcare.els4.i686.rpm
    sha:77ab7b02ec4aa3cd896180de63e7dd8843717df0007c4fae7ab7e2e30b1d6c19
  • libsoup-devel-2.62.2-2.0.5.el7.tuxcare.els4.x86_64.rpm
    sha:52107a844580b126cd3c6dc058b598d9d795c2dd5ae7c53c0795a0d8636a5866
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.