In libsoup's soup-form.c, the function find_boundary() is vulnerable to a buffer under-read issue when the function attempts to locate the boundary in a multipart form. If a malicious client submits a malformed multipart body, the function will attempt to read out of bonds.