Integer overflow in the soup_base64_encode function in soup-misc.c in libsoup 2.x.x before 2.2.x, and 2.x before 2.24, allows context-dependent attackers to execute arbitrary code via a long string that is converted to a base64 representation.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libsoup | Joe_shaw | 2.1 (including) | 2.1 (including) |
Libsoup | Joe_shaw | 2.23.1 (including) | 2.23.1 (including) |
Libsoup | Joe_shaw | 2.23.6 (including) | 2.23.6 (including) |
Libsoup | Joe_shaw | 2.23.91 (including) | 2.23.91 (including) |
Libsoup | Joe_shaw | 2.23.92 (including) | 2.23.92 (including) |
Red Hat Enterprise Linux 4 | RedHat | evolution28-libsoup-0:2.2.98-5.el4.1 | * |
Red Hat Enterprise Linux 4 | RedHat | libsoup-0:2.2.1-4.el4.1 | * |
Red Hat Enterprise Linux 5 | RedHat | libsoup-0:2.2.98-2.el5_3.1 | * |
Libsoup | Ubuntu | dapper | * |
Libsoup | Ubuntu | gutsy | * |