libsoup prior to 3.6.2 is vulnerable to a null pointer dereference in soup_message_headers_get_content_disposition() . A malicious HTTP peer may crash a libsoup client or server that uses this function.