Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-32910

Опубликовано: 14 апр. 2025
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

A flaw was found in libsoup, where soup_auth_digest_authenticate() is vulnerable to a NULL pointer dereference. This issue may cause the libsoup client to crash.

Отчет

This vulnerability is currently considered Moderate as this may only affect the client HTTP side.

Меры по смягчению последствий

Currently, no mitigation is available for this vulnerability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10libsoup3Not affected
Red Hat Enterprise Linux 6libsoupOut of support scope
Red Hat Enterprise Linux 7libsoupOut of support scope
Red Hat Enterprise Linux 9libsoupWill not fix
Red Hat Enterprise Linux 8mingw-freetypeFixedRHSA-2025:829229.05.2025
Red Hat Enterprise Linux 8spice-client-winFixedRHSA-2025:829229.05.2025

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=2359354libsoup: Null pointer deference on libsoup via /auth/soup-auth-digest.c through "soup_auth_digest_authenticate" on client when server omits the "realm" parameter in an Unauthorized response with Digest authentication

EPSS

Процентиль: 14%
0.00047
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
2 месяца назад

A flaw was found in libsoup, where soup_auth_digest_authenticate() is vulnerable to a NULL pointer dereference. This issue may cause the libsoup client to crash.

CVSS3: 6.5
nvd
2 месяца назад

A flaw was found in libsoup, where soup_auth_digest_authenticate() is vulnerable to a NULL pointer dereference. This issue may cause the libsoup client to crash.

CVSS3: 6.5
msrc
около 2 месяцев назад

Описание отсутствует

CVSS3: 6.5
debian
2 месяца назад

A flaw was found in libsoup, where soup_auth_digest_authenticate() is ...

CVSS3: 6.5
github
2 месяца назад

A flaw was found in libsoup, where soup_auth_digest_authenticate() is vulnerable to a NULL pointer dereference. This issue may cause the libsoup client to crash.

EPSS

Процентиль: 14%
0.00047
Низкий

6.5 Medium

CVSS3