Impact
Libsoup allows a Proxy-Authorization header that contains proxy credentials to be mistakenly attached to HTTPS requests after a CONNECT tunnel is established. The flaw results in proxy credentials being forwarded to the destination server, giving the server unintended visibility into authentication information. This vulnerability is classified as CWE-201 and directly leads to sensitive data exposure.
Affected Systems
The issue affects Red Hat Enterprise Linux releases 10, 6, 7, 8, and 9 through the embedded libsoup component. Version details are not specified, implying all current releases of these operating systems are impacted.
Risk and Exploitability
The CVSS score is 6.5, indicating a moderate severity. The EPSS score of less than 1% suggests a low probability of exploitation at the time of analysis, and the vulnerability is not listed in the CISA KEV catalog. Based on the description, the likely attack vector requires an attacker who can control or influence the HTTP proxy used by a client; such an attacker could submit a CONNECT request that triggers the header leakage, allowing the destination server to capture the credentials.
OpenCVE Enrichment