Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2025:8126

Опубликовано: 04 окт. 2025
Источник: rocky
Оценка: Important

Описание

Important: libsoup security update

The libsoup packages provide an HTTP client and server library for GNOME.

Security Fix(es):

  • libsoup: Heap buffer over-read in skip_insignificant_space when sniffing content (CVE-2025-2784)

  • libsoup: Denial of Service attack to websocket server (CVE-2025-32049)

  • libsoup: OOB Read on libsoup through function "soup_multipart_new_from_message" in soup-multipart.c leads to crash or exit of process (CVE-2025-32914)

  • libsoup: Integer Underflow in soup_multipart_new_from_message() Leading to Denial of Service in libsoup (CVE-2025-4948)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
libsoupi68610.el9_6.2libsoup-2.72.0-10.el9_6.2.i686.rpm
libsoupx86_6410.el9_6.2libsoup-2.72.0-10.el9_6.2.x86_64.rpm
libsoup-develi68610.el9_6.2libsoup-devel-2.72.0-10.el9_6.2.i686.rpm
libsoup-develx86_6410.el9_6.2libsoup-devel-2.72.0-10.el9_6.2.x86_64.rpm

Показывать по

Связанные уязвимости

rocky
5 месяцев назад

Important: libsoup security update

oracle-oval
7 месяцев назад

ELSA-2025-8132: libsoup security update (IMPORTANT)

oracle-oval
7 месяцев назад

ELSA-2025-8126: libsoup security update (IMPORTANT)

oracle-oval
5 месяцев назад

ELSA-2025-9179: libsoup security update (IMPORTANT)

oracle-oval
4 дня назад

ELSA-2025-21657: libsoup security update (IMPORTANT)