Vulnerability CVE-2019-17266: Information

Description

libsoup from versions 2.65.1 until 2.68.1 have a heap-based buffer over-read because soup_ntlm_parse_challenge() in soup-auth-ntlm.c does not properly check an NTLM message's length before proceeding with a memcpy.

Severity: CRITICAL (9.8) Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Published: Oct. 7, 2019
Modified: Nov. 7, 2023
Error type identifier: CWE-125

Fixed packages

Package name
Branch
Fixed in version
Version from repository
Errata ID
Task #
State
libsoupsisyphus2.68.2-alt12.74.3-alt1.1ALT-PU-2019-2849-1238952Fixed
libsoupp102.68.2-alt12.74.1-alt1ALT-PU-2019-2849-1238952Fixed
libsoupc10f12.68.2-alt12.74.1-alt1ALT-PU-2019-2849-1238952Fixed
libsoupc9f22.66.2-alt1.c9f2.12.66.2-alt1.c9f2.1ALT-PU-2022-3170-1309774Fixed

References to Advisories, Solutions, and Tools

    1. Configuration 1

      cpe:2.3:a:gnome:libsoup:*:*:*:*:*:*:*:*
      Start including
      2.67.1
      End including
      2.68.1

      cpe:2.3:a:gnome:libsoup:*:*:*:*:*:*:*:*
      Start including
      2.65.1
      End excliding
      2.66.4

      Configuration 2

      cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*

      cpe:2.3:o:canonical:ubuntu_linux:19.04:*:*:*:*:*:*:*