[ALSA-2024:9559] Important: libsoup security update
Type:
security
Severity:
important
Release date:
2024-11-18
Description:
The libsoup packages provide an HTTP client and server library for GNOME. Security Fix(es): * libsoup: infinite loop while reading websocket data (CVE-2024-52532) * libsoup: HTTP request smuggling via stripping null bytes from the ends of header names (CVE-2024-52530) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 libsoup-2.72.0-8.el9_5.2.aarch64.rpm 7ad865dea46b0266d1d5e58e88bcec0dac17015bae5606a06485d2a842055806
aarch64 libsoup-devel-2.72.0-8.el9_5.2.aarch64.rpm df4b41a4e34a124a05712df43095d636784cc8ba3249e7ea3953a293869a26fe
i686 libsoup-devel-2.72.0-8.el9_5.2.i686.rpm 58d7a6f95e783e5fe6237ec3ea63c35d69c23b8c5c5bf016911294abe1fdde4a
i686 libsoup-2.72.0-8.el9_5.2.i686.rpm d14bccb99694adb8bc67a8f3b6b0dc70b977fe3bb9ac4846ce4e44a45e4d90a7
ppc64le libsoup-devel-2.72.0-8.el9_5.2.ppc64le.rpm 62ade935ae41c42d8295fcdf5bb92aef61d434ebc40db650b46a1a97d8fab7d3
ppc64le libsoup-2.72.0-8.el9_5.2.ppc64le.rpm 72beffadb8aa774aad2761e44e97e99a548b2fb3681e17d31aa1713059a2c3b2
s390x libsoup-devel-2.72.0-8.el9_5.2.s390x.rpm 8c3394380ebed9bab04b429191e3285754de9b964844858de2b705bdf7d388c0
s390x libsoup-2.72.0-8.el9_5.2.s390x.rpm c75d4286538ce6f1251e88c655f1b70399e4d088716aab29beefae8bee70e02a
x86_64 libsoup-2.72.0-8.el9_5.2.x86_64.rpm 58d1e93507cad73bb15742e2993f3a6b3ea75cab9958db72f83fa596859cdb53
x86_64 libsoup-devel-2.72.0-8.el9_5.2.x86_64.rpm aa56abae6e95d8991a9fdc379061a71022507ee24720835828aa4e1e08a8b46a
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.