RHSA-2011:1102-01 -- Redhat libsoupID: oval:org.secpod.oval:def:500007 | Date: (C)2012-01-31 (M)2021-09-12 |
Class: PATCH | Family: unix |
libsoup is an HTTP client/library implementation for GNOME. A directory traversal flaw was found in libsoup"s SoupServer. If an application used SoupServer to implement an HTTP service, a remote attacker who is able to connect to that service could use this flaw to access any local files accessible to that application via a specially-crafted request. All users of libsoup should upgrade to these updated packages, which contain a backported patch to resolve this issue. All running applications using libsoup"s SoupServer must be restarted for the update to take effect.
Platform: |
Red Hat Enterprise Linux 6 |