Описание
A flaw was found in libsoup. The libsoup append_param_quoted() function may contain an overflow bug resulting in a buffer under-read.
Меры по смягчению последствий
No mitigation is currently available for this vulnerability.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 10 | libsoup3 | Not affected | ||
Red Hat Enterprise Linux 6 | libsoup | Out of support scope | ||
Red Hat Enterprise Linux 7 | libsoup | Out of support scope | ||
Red Hat Enterprise Linux 8 | libsoup | Fixed | RHSA-2025:4560 | 06.05.2025 |
Red Hat Enterprise Linux 8 | mingw-freetype | Fixed | RHSA-2025:8292 | 29.05.2025 |
Red Hat Enterprise Linux 8 | spice-client-win | Fixed | RHSA-2025:8292 | 29.05.2025 |
Red Hat Enterprise Linux 8 | libsoup | Fixed | RHSA-2025:4560 | 06.05.2025 |
Red Hat Enterprise Linux 8.8 Extended Update Support | libsoup | Fixed | RHSA-2025:4568 | 06.05.2025 |
Red Hat Enterprise Linux 9 | libsoup | Fixed | RHSA-2025:7436 | 13.05.2025 |
Red Hat Enterprise Linux 9.2 Extended Update Support | libsoup | Fixed | RHSA-2025:4508 | 06.05.2025 |
Показывать по
10
Дополнительная информация
Статус:
Moderate
Дефект:
CWE-127
https://bugzilla.redhat.com/show_bug.cgi?id=2357067libsoup: Integer overflow in append_param_quoted
EPSS
Процентиль: 31%
0.00112
Низкий
5.9 Medium
CVSS3
Связанные уязвимости
CVSS3: 5.9
ubuntu
3 месяца назад
A flaw was found in libsoup. The libsoup append_param_quoted() function may contain an overflow bug resulting in a buffer under-read.
CVSS3: 5.9
nvd
3 месяца назад
A flaw was found in libsoup. The libsoup append_param_quoted() function may contain an overflow bug resulting in a buffer under-read.
CVSS3: 5.9
debian
3 месяца назад
A flaw was found in libsoup. The libsoup append_param_quoted() functio ...
CVSS3: 5.9
github
3 месяца назад
A flaw was found in libsoup. The libsoup append_param_quoted() function may contain an overflow bug resulting in a buffer under-read.
EPSS
Процентиль: 31%
0.00112
Низкий
5.9 Medium
CVSS3