CVE 7.8 HIGH

Libsoup: libsoup: arbitrary code execution via stack-based buffer overflow in ntlm authentication_CVE-2026-0719

7.8 / 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

A flaw was found in libsoup's NTLM (NT LAN Manager) authentication module. When NTLM authentication is enabled, a local attacker can exploit a stack-based buffer overflow vulnerability in the md4sum() function. This allows the attacker to overwrite adjacent memory, which may result in arbitrary code execution with the privileges of the affected application.

Basic Information

ID CVE-2026-0719
Source redhat
Published Jan 8, 2026 at 12:38

Affected Product

Vendor Red Hat
Product Red Hat Enterprise Linux 10

CWE Classification

References

πŸ’­ Join the Security Discussion

πŸ”’ Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.