A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.

Project Subscriptions

Vendors Products
Libsoup Subscribe
Libsoup Subscribe
Enterprise Linux Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Sat, 28 Mar 2026 04:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 26 Mar 2026 20:30:00 +0000

Type Values Removed Values Added
References

Thu, 26 Mar 2026 19:45:00 +0000

Type Values Removed Values Added
Description No description is available for this CVE. A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending. If the handshake completes after the connection object has been freed, a dangling pointer is accessed, leading to a server crash and a Denial of Service.
Title libsoup: libsoup: Denial of Service via use-after-free in SoupServer during TLS handshake Libsoup: libsoup: denial of service via use-after-free in soupserver during tls handshake
First Time appeared Redhat
Redhat enterprise Linux
CPEs cpe:/o:redhat:enterprise_linux:10
cpe:/o:redhat:enterprise_linux:6
cpe:/o:redhat:enterprise_linux:7
cpe:/o:redhat:enterprise_linux:8
cpe:/o:redhat:enterprise_linux:9
Vendors & Products Redhat
Redhat enterprise Linux
References

Thu, 12 Mar 2026 10:15:00 +0000

Type Values Removed Values Added
First Time appeared Libsoup
Libsoup libsoup
Vendors & Products Libsoup
Libsoup libsoup

Wed, 11 Mar 2026 12:15:00 +0000

Type Values Removed Values Added
Description No description is available for this CVE.
Title libsoup: libsoup: Denial of Service via use-after-free in SoupServer during TLS handshake
Weaknesses CWE-825
References
Metrics threat_severity

None

cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:H'}

threat_severity

Moderate


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2026-03-27T19:47:47.292Z

Reserved: 2026-02-12T23:01:17.156Z

Link: CVE-2026-2436

cve-icon Vulnrichment

Updated: 2026-03-27T19:47:43.552Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-03-26T20:16:11.720

Modified: 2026-03-30T13:26:50.827

Link: CVE-2026-2436

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-02-11T00:00:00Z

Links: CVE-2026-2436 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-03-12T10:06:47Z

Weaknesses