Site icon API Security Blog

Oracle Linux 9 : libsoup (ELSA-2024-9559)

image
The remote Oracle Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2024-9559 advisory. – Backport upstream patch for CVE-2024-52532 – infinite loop while reading websocket data – Backport upstream patch for CVE-2024-52530 – HTTP request smuggling via stripping null bytes from the ends of header names Tenable has extracted the preceding description block directly from the Oracle Linux security advisory. Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version…Read More

Exit mobile version