Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-32912

Опубликовано: 14 апр. 2025
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

A flaw was found in libsoup, where SoupAuthDigest is vulnerable to a NULL pointer dereference. The HTTP server may cause the libsoup client to crash.

Меры по смягчению последствий

Currently, no mitigation is available for this vulnerability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6libsoupOut of support scope
Red Hat Enterprise Linux 7libsoupOut of support scope
Red Hat Enterprise Linux 8libsoupAffected
Red Hat Enterprise Linux 9libsoupWill not fix
Red Hat Enterprise Linux 10libsoup3FixedRHSA-2025:750513.05.2025

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=2359356libsoup: NULL pointer dereference in client when server omits the "nonce" parameter in an Unauthorized response with Digest authentication

EPSS

Процентиль: 14%
0.00047
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
2 месяца назад

A flaw was found in libsoup, where SoupAuthDigest is vulnerable to a NULL pointer dereference. The HTTP server may cause the libsoup client to crash.

CVSS3: 6.5
nvd
2 месяца назад

A flaw was found in libsoup, where SoupAuthDigest is vulnerable to a NULL pointer dereference. The HTTP server may cause the libsoup client to crash.

CVSS3: 6.5
msrc
около 2 месяцев назад

Описание отсутствует

CVSS3: 6.5
debian
2 месяца назад

A flaw was found in libsoup, where SoupAuthDigest is vulnerable to a N ...

CVSS3: 6.5
github
2 месяца назад

A flaw was found in libsoup, where SoupAuthDigest is vulnerable to a NULL pointer dereference. The HTTP server may cause the libsoup client to crash.

EPSS

Процентиль: 14%
0.00047
Низкий

6.5 Medium

CVSS3