Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-32908

Опубликовано: 14 апр. 2025
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

A flaw was found in libsoup. The HTTP/2 server in libsoup may not fully validate the values of pseudo-headers :scheme, :authority, and :path, which may allow a user to cause a denial of service (DoS).

Меры по смягчению последствий

Currently, no mitigation was found for this vulnerability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6libsoupOut of support scope
Red Hat Enterprise Linux 7libsoupNot affected
Red Hat Enterprise Linux 8libsoupNot affected
Red Hat Enterprise Linux 9libsoupNot affected
Red Hat Enterprise Linux 10libsoup3FixedRHSA-2025:750513.05.2025

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-115
https://bugzilla.redhat.com/show_bug.cgi?id=2359343libsoup: Denial of service on libsoup through HTTP/2 server

EPSS

Процентиль: 17%
0.00054
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
2 месяца назад

A flaw was found in libsoup. The HTTP/2 server in libsoup may not fully validate the values of pseudo-headers :scheme, :authority, and :path, which may allow a user to cause a denial of service (DoS).

CVSS3: 7.5
nvd
2 месяца назад

A flaw was found in libsoup. The HTTP/2 server in libsoup may not fully validate the values of pseudo-headers :scheme, :authority, and :path, which may allow a user to cause a denial of service (DoS).

CVSS3: 7.5
msrc
около 2 месяцев назад

Описание отсутствует

CVSS3: 7.5
debian
2 месяца назад

A flaw was found in libsoup. The HTTP/2 server in libsoup may not full ...

CVSS3: 7.5
github
2 месяца назад

A flaw was found in libsoup. The HTTP/2 server in libsoup may not fully validate the values of pseudo-headers :scheme, :authority, and :path, which may allow a user to cause a denial of service (DoS).

EPSS

Процентиль: 17%
0.00054
Низкий

7.5 High

CVSS3