CyberRota Analysis
AI-GeneratedA vulnerability in libsoup allows remote attackers to exploit improperly handled fragmented WebSocket messages, potentially leading to heap corruption or application crashes due to size truncation. This issue affects unspecified products utilizing libsoup, and organizations relying on this library should prioritize patching to mitigate the risk of remote exploitation.
Original NVD Description
A flaw was found in libsoup. When reassembling fragmented WebSocket messages into a GByteArray, libsoup did not adequately cap total message size against the limits of the underlying buffer type. A remote peer could send fragments that caused size truncation while the implementation still used the full length, leading to heap corruption or a crash.