VDB
ALSA-2026%3A2215
ALSA-2026%3A2215
PUBLISHED
The libsoup packages provide an HTTP client and server library for GNOME. Security Fix(es): * libsoup: Signed to Unsigned Conversion Error Leading to Stack-Based Buffer Overflow in libsoup NTLM Authentication (CVE-2026-0719) * libsoup: Stack-Based Buffer Overflow in libsoup Multipart Response Parsingmultipart HTTP response (CVE-2026-1761) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| AlmaLinux:8 | libsoup | 0, 0 |
| AlmaLinux:8 | libsoup-devel | 0, 0 |
Timeline
- Feb 9, 2026 CVE Published
- Feb 9, 2026 CVE Updated
- Mar 6, 2026 Distribution Patch
- Mar 6, 2026 Distribution Patch
- Mar 6, 2026 Security Advisory
References
- https://access.redhat.com/errata/RHSA-2026:2215 vendor-advisory
- https://access.redhat.com/security/cve/CVE-2026-0719 third-party-advisory
- https://access.redhat.com/security/cve/CVE-2026-1761 third-party-advisory
- https://bugzilla.redhat.com/2427906 third-party-advisory
- https://bugzilla.redhat.com/2435961 third-party-advisory
- https://errata.almalinux.org/8/ALSA-2026-2215.html vendor-advisory