Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-32911

Опубликовано: 15 апр. 2025
Источник: debian
EPSS Низкий

Описание

A use-after-free type vulnerability was found in libsoup, in the soup_message_headers_get_content_disposition() function. This flaw allows a malicious HTTP client to cause memory corruption in the libsoup server.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libsoup3fixed3.6.4-1package
libsoup3fixed3.2.3-0+deb12u1bookwormpackage
libsoup2.4fixed2.74.3-10.1package
libsoup2.4no-dsabookwormpackage

Примечания

  • https://gitlab.gnome.org/GNOME/libsoup/-/issues/433

  • https://gitlab.gnome.org/GNOME/libsoup/-/merge_requests/422

  • Fixed by: https://gitlab.gnome.org/GNOME/libsoup/-/commit/f4a761fb66512fff59798765e8ac5b9e57dceef0 (3.6.2)

EPSS

Процентиль: 26%
0.00089
Низкий

Связанные уязвимости

CVSS3: 9
ubuntu
7 месяцев назад

A use-after-free type vulnerability was found in libsoup, in the soup_message_headers_get_content_disposition() function. This flaw allows a malicious HTTP client to cause memory corruption in the libsoup server.

CVSS3: 9
redhat
7 месяцев назад

A use-after-free type vulnerability was found in libsoup, in the soup_message_headers_get_content_disposition() function. This flaw allows a malicious HTTP client to cause memory corruption in the libsoup server.

CVSS3: 9
nvd
7 месяцев назад

A use-after-free type vulnerability was found in libsoup, in the soup_message_headers_get_content_disposition() function. This flaw allows a malicious HTTP client to cause memory corruption in the libsoup server.

CVSS3: 9
msrc
2 месяца назад

Libsoup: double free on soup_message_headers_get_content_disposition() through "soup-message-headers.c" via "params" ghashtable value

CVSS3: 9
github
7 месяцев назад

A flaw was found in libsoup, which is vulnerable to a use-after-free memory issue not on the heap in the soup_message_headers_get_content_disposition() function. This flaw allows a malicious HTTP client to cause memory corruption in the libsoup server.

EPSS

Процентиль: 26%
0.00089
Низкий