Security Advisory

CVE-2019-17266

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-10-06 21:48:18
Last updated 2024-08-05 01:33:17
Assigner mitre
State PUBLISHED

Description

libsoup from versions 2.65.1 until 2.68.1 have a heap-based buffer over-read because soup_ntlm_parse_challenge() in soup-auth-ntlm.c does not properly check an NTLM messages length before proceeding with a memcpy.