Request Smuggling Vulnerability in SoupServer by Red Hat
CVE-2026-103399

5.3MEDIUM

What is CVE-2026-103399?

A flaw in SoupServer (libsoup) allows a remote, unauthenticated attacker to exploit a vulnerability when an HTTP/1.x client sends a request with Expect: 100-continue. If SoupServer responds prematurely and the request body is not fully read, the server fails to drain or close the connection, potentially leading to the server incorrectly processing a smuggled HTTP request. This can result in unintended behavior, including the mishandling of requests, which poses significant security concerns.

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Red Hat would like to thank Jianqiang (Stark) Li for reporting this issue.
.