Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-32913

Опубликовано: 14 апр. 2025
Источник: debian
EPSS Низкий

Описание

A flaw was found in libsoup, where the soup_message_headers_get_content_disposition() function is vulnerable to a NULL pointer dereference. This flaw allows a malicious HTTP peer to crash a libsoup client or server that uses this function.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libsoup3fixed3.6.4-1package
libsoup3no-dsabookwormpackage
libsoup2.4fixed2.74.3-10.1package
libsoup2.4no-dsabookwormpackage

Примечания

  • https://gitlab.gnome.org/GNOME/libsoup/-/issues/435

  • https://gitlab.gnome.org/GNOME/libsoup/-/merge_requests/422

  • Fixed by: https://gitlab.gnome.org/GNOME/libsoup/-/commit/f4a761fb66512fff59798765e8ac5b9e57dceef0 (3.6.2)

EPSS

Процентиль: 34%
0.00132
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
2 месяца назад

A flaw was found in libsoup, where the soup_message_headers_get_content_disposition() function is vulnerable to a NULL pointer dereference. This flaw allows a malicious HTTP peer to crash a libsoup client or server that uses this function.

CVSS3: 7.5
redhat
2 месяца назад

A flaw was found in libsoup, where the soup_message_headers_get_content_disposition() function is vulnerable to a NULL pointer dereference. This flaw allows a malicious HTTP peer to crash a libsoup client or server that uses this function.

CVSS3: 7.5
nvd
2 месяца назад

A flaw was found in libsoup, where the soup_message_headers_get_content_disposition() function is vulnerable to a NULL pointer dereference. This flaw allows a malicious HTTP peer to crash a libsoup client or server that uses this function.

CVSS3: 7.5
msrc
около 2 месяцев назад

Описание отсутствует

CVSS3: 7.5
github
2 месяца назад

A flaw was found in libsoup, where the soup_message_headers_get_content_disposition() function is vulnerable to a NULL pointer dereference. This flaw allows a malicious HTTP peer to crash a libsoup client or server that uses this function.

EPSS

Процентиль: 34%
0.00132
Низкий
Уязвимость CVE-2025-32913