Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-32907

Опубликовано: 14 апр. 2025
Источник: nvd
CVSS3: 5.3
EPSS Низкий

Описание

A flaw was found in libsoup. The implementation of HTTP range requests is vulnerable to a resource consumption attack. This flaw allows a malicious client to request the same range many times in a single HTTP request, causing the server to use large amounts of memory. This does not allow for a full denial of service.

EPSS

Процентиль: 46%
0.00236
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-1050

Связанные уязвимости

CVSS3: 5.3
ubuntu
7 месяцев назад

A flaw was found in libsoup. The implementation of HTTP range requests is vulnerable to a resource consumption attack. This flaw allows a malicious client to request the same range many times in a single HTTP request, causing the server to use large amounts of memory. This does not allow for a full denial of service.

CVSS3: 5.3
redhat
7 месяцев назад

A flaw was found in libsoup. The implementation of HTTP range requests is vulnerable to a resource consumption attack. This flaw allows a malicious client to request the same range many times in a single HTTP request, causing the server to use large amounts of memory. This does not allow for a full denial of service.

CVSS3: 5.3
msrc
4 месяца назад

Описание отсутствует

CVSS3: 5.3
debian
7 месяцев назад

A flaw was found in libsoup. The implementation of HTTP range requests ...

CVSS3: 7.5
github
7 месяцев назад

A flaw was found in libsoup. The implementation of HTTP range requests is vulnerable to a resource consumption attack. This flaw allows a malicious client to request the same range many times in a single HTTP request, causing the server to use large amounts of memory.

EPSS

Процентиль: 46%
0.00236
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-1050