Rapid7

vulnerability

Amazon Linux 2023: CVE-2024-52531: Important priority package update for libsoup

Severity
9
CVSS
(AV:N/AC:M/Au:N/C:C/I:C/A:C)
Published
Nov 11, 2024
Added
Feb 17, 2025
Modified
Dec 4, 2025

Description

GNOME libsoup before 3.6.1 allows a buffer overflow in applications that perform conversion to UTF-8 in soup_header_parse_param_list_strict. Input received over the network cannot trigger this.

Solutions

amazon-linux-2023-upgrade-libsoupamazon-linux-2023-upgrade-libsoup-debuginfoamazon-linux-2023-upgrade-libsoup-debugsourceamazon-linux-2023-upgrade-libsoup-develamazon-linux-2023-upgrade-libsoup-doc
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.