Back

MEDIUM

Libsoup: libsoup: integer truncation in sort_ranges() comparator causes silent omission of http range responses

Published Aug 20, 2026

Description

A flaw was found in libsoup's SoupServer HTTP Range header processing. The sort_ranges() comparator in soup-message-headers.c truncates a 64-bit subtraction result to 32-bit int, flipping the sign for range offsets differing by more than INT_MAX. This causes silent omission of requested byte ranges from HTTP 206 Partial Content responses on resources larger than approximately 2 GB.

Affected products

Remediation

Vendor solution

No mitigation is available for this vulnerability.

Red Hat statement

An integer truncation flaw was found in libsoup's HTTP Range header processing. A remote attacker can exploit this to cause the server to silently omit requested byte ranges from responses. Exploitation requires the server to be serving resources larger than approximately 2 GB, which limits real-world impact.

Red Hat mitigation

No mitigation is available for this vulnerability.

Weaknesses (1)

References (5)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Aug 20, 2026
Updated Aug 25, 2026
Reserved Aug 20, 2026
CISA Vulnrichment
Updated Aug 25, 2026
NVD
Status Awaiting Analysis
Modified Aug 25, 2026
Red Hat
Severity Moderate
Public date Jul 13, 2026