Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:24722 - Security Advisory
Issued:
2026-06-09
Updated:
2026-06-09

RHSA-2026:24722 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: libsoup security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for libsoup is now available for Red Hat Enterprise Linux 7 Extended Lifecycle Support.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The libsoup packages provide an HTTP client and server library for GNOME.

Security Fix(es):

  • libsoup: libsoup: Information disclosure via cleartext transmission of cookies during HTTPS tunnel establishment (CVE-2026-5119)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server - Extended Life Cycle Support 7 x86_64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7 s390x
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7 ppc64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7 ppc64le

Fixes

  • BZ - 2452932 - CVE-2026-5119 libsoup: libsoup: Information disclosure via cleartext transmission of cookies during HTTPS tunnel establishment

CVEs

  • CVE-2026-5119

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server - Extended Life Cycle Support 7

SRPM
libsoup-2.62.2-12.el7_9.src.rpm SHA-256: fa13acb8078d7724734968cd7c8262540a644ee81c1daad5bf323d17434c4b6e
x86_64
libsoup-2.62.2-12.el7_9.i686.rpm SHA-256: 21f6dfff3a1a2363b0d18af4f5fca0dec3bd914f46426dd053fe17304d4d786d
libsoup-2.62.2-12.el7_9.x86_64.rpm SHA-256: e2fc535791fe6ed228ef63ba322e48dd8c2d87cd13ab4da5806cd4696d02afc9
libsoup-debuginfo-2.62.2-12.el7_9.i686.rpm SHA-256: 82e2b6a6af9f447da3a4207efa4674b5a5d8eea800ce44d3be1aa11fe8cf03aa
libsoup-debuginfo-2.62.2-12.el7_9.x86_64.rpm SHA-256: c93b5f49eaf9765ff733081517582d5ef074268702e1a9c7a8d8beafdc99e2ad
libsoup-devel-2.62.2-12.el7_9.i686.rpm SHA-256: 931441de92b77ffcbad92c6cb1e1fdab098ba44ca2f8fa35a1173e52f8eeec14
libsoup-devel-2.62.2-12.el7_9.x86_64.rpm SHA-256: 2b8f031f15d48f8c4706df27643d468c238bf4c6a062b2c9e23384d021965ddf

Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7

SRPM
libsoup-2.62.2-12.el7_9.src.rpm SHA-256: fa13acb8078d7724734968cd7c8262540a644ee81c1daad5bf323d17434c4b6e
s390x
libsoup-2.62.2-12.el7_9.s390.rpm SHA-256: c4341cc75c88db8d690ef6ec8fa14582f84e5276a995137b06254082d0339f0b
libsoup-2.62.2-12.el7_9.s390x.rpm SHA-256: d07a8bfbf3c1a7defb919a5e35341cbe39c62e94e0b12b6bf3cddca133c5e793
libsoup-debuginfo-2.62.2-12.el7_9.s390.rpm SHA-256: 3539941d9c6c834fd4c7193ed54a07ba2770f4586f66bc0272d5c95edde40b4f
libsoup-debuginfo-2.62.2-12.el7_9.s390x.rpm SHA-256: 589b8a4532318a1012cf02a2b2ccd8e8736bc3a4d141a0649cc42b5013372e04
libsoup-devel-2.62.2-12.el7_9.s390.rpm SHA-256: 014d147dead2f6f09ddac2f2aff48ed04b32bdd3bf83150bc112e81595aa090d
libsoup-devel-2.62.2-12.el7_9.s390x.rpm SHA-256: fcccda42cbc1342aaa1f3b95af6ef73fb0fbaf85d7b871b2b379bd056f4e30df

Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7

SRPM
libsoup-2.62.2-12.el7_9.src.rpm SHA-256: fa13acb8078d7724734968cd7c8262540a644ee81c1daad5bf323d17434c4b6e
ppc64
libsoup-2.62.2-12.el7_9.ppc.rpm SHA-256: 571d82e1cb709a0f112f3be81770dabc36bcef2f7fe1723a62233a87c4cf2f1f
libsoup-2.62.2-12.el7_9.ppc64.rpm SHA-256: 3c5b56aa24ed2a8434b3de434368ead62c241a0b23f3f0a29b2172fb010c1071
libsoup-debuginfo-2.62.2-12.el7_9.ppc.rpm SHA-256: 20e8696416eea214e51302bfe978621e2055a6217d7a9b5e239ba791d13fd716
libsoup-debuginfo-2.62.2-12.el7_9.ppc64.rpm SHA-256: 2130c18706b26a0b5265668f54dd458bc8d19eb06be1a91a28e6e83dd619a37a
libsoup-devel-2.62.2-12.el7_9.ppc.rpm SHA-256: b70f5cc0c9cd6ca44e7850ed6a765c35e942e6d840a74495cab6ba37ddcb6ef3
libsoup-devel-2.62.2-12.el7_9.ppc64.rpm SHA-256: cecf21ec110658956afe82fbcd6505f73472d1a718efc9391eb9a4ea638a2b40

Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7

SRPM
libsoup-2.62.2-12.el7_9.src.rpm SHA-256: fa13acb8078d7724734968cd7c8262540a644ee81c1daad5bf323d17434c4b6e
ppc64le
libsoup-2.62.2-12.el7_9.ppc64le.rpm SHA-256: 5bf320742a8d7fbed6ec285fc5db5db807899a92f48b10571cacdf0e509b3392
libsoup-debuginfo-2.62.2-12.el7_9.ppc64le.rpm SHA-256: 2ae94592c3b2a47d903a71107ca40eb2dc93012ddbacdb1fa35130aaafea3397
libsoup-devel-2.62.2-12.el7_9.ppc64le.rpm SHA-256: 41a638c777a80838d5e29d8badc9eeb9999e23c7bc71b9dfdf62676f76aefeb1

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility