A flaw was found in libsoup. The HTTP/2 server in libsoup may not fully validate the values of pseudo-headers :scheme, :authority, and :path, which may allow a user to cause a denial of service (DoS).
{ "availability": "No subscription required", "binaries": [ { "binary_name": "gir1.2-soup-3.0", "binary_version": "3.4.4-5ubuntu0.4" }, { "binary_name": "libsoup-3.0-0", "binary_version": "3.4.4-5ubuntu0.4" }, { "binary_name": "libsoup-3.0-0-dbgsym", "binary_version": "3.4.4-5ubuntu0.4" }, { "binary_name": "libsoup-3.0-common", "binary_version": "3.4.4-5ubuntu0.4" }, { "binary_name": "libsoup-3.0-dev", "binary_version": "3.4.4-5ubuntu0.4" }, { "binary_name": "libsoup-3.0-doc", "binary_version": "3.4.4-5ubuntu0.4" }, { "binary_name": "libsoup-3.0-tests", "binary_version": "3.4.4-5ubuntu0.4" }, { "binary_name": "libsoup-3.0-tests-dbgsym", "binary_version": "3.4.4-5ubuntu0.4" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_name": "gir1.2-soup-3.0", "binary_version": "3.6.5-1ubuntu0.1" }, { "binary_name": "libsoup-3.0-0", "binary_version": "3.6.5-1ubuntu0.1" }, { "binary_name": "libsoup-3.0-0-dbgsym", "binary_version": "3.6.5-1ubuntu0.1" }, { "binary_name": "libsoup-3.0-common", "binary_version": "3.6.5-1ubuntu0.1" }, { "binary_name": "libsoup-3.0-dev", "binary_version": "3.6.5-1ubuntu0.1" }, { "binary_name": "libsoup-3.0-doc", "binary_version": "3.6.5-1ubuntu0.1" }, { "binary_name": "libsoup-3.0-tests", "binary_version": "3.6.5-1ubuntu0.1" }, { "binary_name": "libsoup-3.0-tests-dbgsym", "binary_version": "3.6.5-1ubuntu0.1" } ] }