Name
CVE-2024-52532
Description
GNOME libsoup before 3.6.1 has an infinite loop, and memory consumption. during the reading of certain patterns of WebSocket data from clients.
CWEs
Published Date
Updated Date
Workaround
-
Advisories
https://gitlab.gnome.org/GNOME/libsoup/-/issues/391Issue Tracking
https://gitlab.gnome.org/Teams/Releng/security/-/wikis/homeVendor Advisory
Analysis#
Vulnerability Ratings#
7.5
CVSSv31
NaN
other
Others affected components#
Resolved with patches#
libsoup (buildroot:2025.02.x)
#
Title
Author
Resolve
1
websocket: process the frame as soon as we read data
Ignacio Casal Quinteiro <qignacio@amazon.com>
CVE-2024-52532
libsoup (buildroot:master)
#
Title
Author
Resolve
1
websocket: process the frame as soon as we read data
Ignacio Casal Quinteiro <qignacio@amazon.com>
CVE-2024-52532
libsoup (yocto:kirkstone)
#
Title
Author
Resolve
1
websocket-test: disconnect error copy after the test ends
Ignacio Casal Quinteiro <qignacio@amazon.com>
CVE-2024-52532
2
websocket-test: Disconnect error signal in another place
Simon McVittie <smcv@debian.org>
CVE-2024-52532
3
websocket: process the frame as soon as we read data
Ignacio Casal Quinteiro <qignacio@amazon.com>
CVE-2024-52532
libsoup-2.4 (yocto:kirkstone)
#
Title
Author
Resolve
1
websocket-test: disconnect error copy after the test ends
Ignacio Casal Quinteiro <qignacio@amazon.com>
CVE-2024-52532
2
websocket-test: Disconnect error signal in another place
Simon McVittie <smcv@debian.org>
CVE-2024-52532
3
websocket: process the frame as soon as we read data
Ignacio Casal Quinteiro <qignacio@amazon.com>
CVE-2024-52532
libsoup-2.4 (yocto:scarthgap)
#
Title
Author
Resolve
1
websocket-test: disconnect error copy after the test ends
Ignacio Casal Quinteiro <qignacio@amazon.com>
CVE-2024-52532
2
websocket-test: Disconnect error signal in another place
Simon McVittie <smcv@debian.org>
CVE-2024-52532
3
websocket: process the frame as soon as we read data
Ignacio Casal Quinteiro <qignacio@amazon.com>
CVE-2024-52532