First published: Tue Jan 16 2007(Updated: )
The soup_headers_parse function in soup-headers.c for libsoup HTTP library before 2.2.99 allows remote attackers to cause a denial of service (crash) via malformed HTTP headers, probably involving missing fields or values.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
libsoup | =2.2.98 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-5876 is categorized as a denial of service vulnerability, which can cause the application to crash.
To fix CVE-2006-5876, you should upgrade libsoup to version 2.2.99 or later, which addresses the vulnerability.
CVE-2006-5876 specifically affects libsoup version 2.2.98 and earlier implementations.
Remote attackers can exploit CVE-2006-5876 by sending malformed HTTP headers to cause a denial of service.
While CVE-2006-5876 primarily affects older versions of libsoup, any applications still using those versions remain at risk.