Vulnerability Bulletins

DSA-3929 libsoup2.4 - security update

   
Affected software Debian
 
Aleksandar Nikolic of Cisco Talos discovered a stack-based bufferoverflow vulnerability in libsoup2.4, a HTTP library implementation inC. A remote attacker can take advantage of this flaw by sending aspecially crafted HTTP request to cause an application using thelibsoup2.4 library to crash (denial of service), or potentially executearbitrary code.

More info:

https://www.debian.org/security/2017/dsa-3929