Unrated severityNVD Advisory· Published Mar 14, 2009· Updated Apr 23, 2026
CVE-2009-0585
CVE-2009-0585
Description
Integer overflow in the soup_base64_encode function in soup-misc.c in libsoup 2.x.x before 2.2.x, and 2.x before 2.24, allows context-dependent attackers to execute arbitrary code via a long string that is converted to a base64 representation.
Affected products
5cpe:2.3:a:joe_shaw:libsoup:2.1:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:joe_shaw:libsoup:2.1:*:*:*:*:*:*:*
- cpe:2.3:a:joe_shaw:libsoup:2.23.1:*:*:*:*:*:*:*
- cpe:2.3:a:joe_shaw:libsoup:2.23.6:*:*:*:*:*:*:*
- cpe:2.3:a:joe_shaw:libsoup:2.23.91:*:*:*:*:*:*:*
- cpe:2.3:a:joe_shaw:libsoup:2.23.92:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
17- ocert.org/patches/2008-015/libsoup-CVE-2009-0585.diffnvdPatch
- openwall.com/lists/oss-security/2009/03/12/2nvdPatch
- www.securityfocus.com/bid/34100nvdPatch
- lists.opensuse.org/opensuse-security-announce/2009-05/msg00000.htmlnvd
- secunia.com/advisories/34310nvd
- secunia.com/advisories/34337nvd
- secunia.com/advisories/34401nvd
- secunia.com/advisories/35065nvd
- support.avaya.com/elmodocs2/security/ASA-2009-088.htmnvd
- www.debian.org/security/2009/dsa-1748nvd
- www.mandriva.com/security/advisoriesnvd
- www.ocert.org/advisories/ocert-2008-015.htmlnvd
- www.redhat.com/support/errata/RHSA-2009-0344.htmlnvd
- www.securityfocus.com/archive/1/501712/100/0/threadednvd
- www.ubuntu.com/usn/USN-737-1nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/49273nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9599nvd
News mentions
0No linked articles in our index yet.