RHSA-2026:22716: Moderate: libsoup security update
Moderate: libsoup security update
Other sources
The libsoup packages provide an HTTP client and server library for GNOME.Security Fix(es): libsoup: libsoup: Information disclosure via cleartext transmission of cookies during HTTPS tunnel establishment (CVE-2026-5119) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:22716?
The severity of RHSA-2026:22716 is rated as medium with a score of 4.
What vulnerability does RHSA-2026:22716 address?
RHSA-2026:22716 addresses an information disclosure vulnerability related to cleartext transmission of cookies during HTTPS tunnel establishment (CVE-2026-5119).
How do I fix RHSA-2026:22716?
To fix RHSA-2026:22716, you need to apply the security update for libsoup as recommended in the advisory.
Which packages are affected by RHSA-2026:22716?
The affected packages in RHSA-2026:22716 include redhat/libsoup, redhat/libsoup-debuginfo, redhat/libsoup-debugsource, and redhat/libsoup-devel.
When was RHSA-2026:22716 published?
RHSA-2026:22716 was published on June 3, 2026.