Red Hat Enterprise Linux 10 vulnerability

A flaw was found in libsoup’s WebSocket frame processing when handling incoming messages. If a non-default configuration is used where the maximum incoming payload size is unset, the library may read memory outside the intended bounds. This can cause unintended memory exposure or a crash. Applications using libsoup’s WebSocket support with this configuration may be impacted.

Published 13 Jan 2026Updated 16 Sep 20263 sources
CVSS 4.8

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.