CVE-2019-17266
libsoup from versions 2.65.1 until 2.68.1 have a heap-based buffer over-read because soup_ntlm_parse_challenge() in soup-auth-ntlm.c does not properly check an NTLM message’s length before proceeding with a memcpy.
Date published : 2019-10-06
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=941912
https://github.com/Kirin-say/Vulnerabilities/blob/master/CVE-2019-17266_POC.md
