A flaw was found in libsoup. The implementation of HTTP...
High severity
Unreviewed
Published
Apr 14, 2025
to the GitHub Advisory Database
•
Updated Jun 26, 2026
Description
Published by the National Vulnerability Database
Apr 14, 2025
Published to the GitHub Advisory Database
Apr 14, 2025
Last updated
Jun 26, 2026
A flaw was found in libsoup. The implementation of HTTP range requests is vulnerable to a resource consumption attack. This flaw allows a malicious client to request the same range many times in a single HTTP request, causing the server to use large amounts of memory.
References