A flaw was found in libsoup's SoupServer HTTP Range header processing. The sort_ranges() comparator in soup-message-headers.c truncates a 64-bit subtraction result to 32-bit int, flipping the sign for range offsets differing by more than INT_MAX. This causes silent omission of requested byte ranges from HTTP 206 Partial Content responses on resources larger than approximately 2 GB.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-08-20 09:16
Updated : 2026-08-25 15:16
NVD link : CVE-2026-77014
Mitre link : CVE-2026-77014
CVE.ORG link : CVE-2026-77014
JSON object : View
Products Affected
No product.
CWE
CWE-197
Numeric Truncation Error
