Логотип exploitDog
bind:"BDU:2025-10260" OR bind:"CVE-2025-4945"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2025-10260" OR bind:"CVE-2025-4945"

Количество 14

Количество 14

fstec логотип

BDU:2025-10260

6 месяцев назад

Уязвимость библиотеки libsoup графического интерфейса GNOME, позволяющая нарушителю выполнить произвольный код

CVSS3: 3.7
EPSS: Низкий
ubuntu логотип

CVE-2025-4945

6 месяцев назад

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
EPSS: Низкий
redhat логотип

CVE-2025-4945

6 месяцев назад

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2025-4945

6 месяцев назад

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
EPSS: Низкий
debian логотип

CVE-2025-4945

6 месяцев назад

A flaw was found in the cookie parsing logic of the libsoup HTTP libra ...

CVSS3: 3.7
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03026-1

2 месяца назад

Security update for libsoup

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02277-1

4 месяца назад

Security update for libsoup2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02276-1

4 месяца назад

Security update for libsoup

EPSS: Низкий
github логотип

GHSA-mwcf-jv2p-mmpx

6 месяцев назад

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
EPSS: Низкий
oracle-oval логотип

ELSA-2025-19720

5 дней назад

ELSA-2025-19720: libsoup3 security update (LOW)

EPSS: Низкий
rocky логотип

RLSA-2025:19714

4 дня назад

Important: libsoup security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-19714

5 дней назад

ELSA-2025-19714: libsoup security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-19713

5 дней назад

ELSA-2025-19713: libsoup security update (IMPORTANT)

EPSS: Низкий
redos логотип

ROS-20250821-04

3 месяца назад

Множественные уязвимости libsoup

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2025-10260

Уязвимость библиотеки libsoup графического интерфейса GNOME, позволяющая нарушителю выполнить произвольный код

CVSS3: 3.7
0%
Низкий
6 месяцев назад
ubuntu логотип
CVE-2025-4945

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
0%
Низкий
6 месяцев назад
redhat логотип
CVE-2025-4945

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2025-4945

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
0%
Низкий
6 месяцев назад
debian логотип
CVE-2025-4945

A flaw was found in the cookie parsing logic of the libsoup HTTP libra ...

CVSS3: 3.7
0%
Низкий
6 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03026-1

Security update for libsoup

0%
Низкий
2 месяца назад
suse-cvrf логотип
SUSE-SU-2025:02277-1

Security update for libsoup2

0%
Низкий
4 месяца назад
suse-cvrf логотип
SUSE-SU-2025:02276-1

Security update for libsoup

0%
Низкий
4 месяца назад
github логотип
GHSA-mwcf-jv2p-mmpx

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
0%
Низкий
6 месяцев назад
oracle-oval логотип
ELSA-2025-19720

ELSA-2025-19720: libsoup3 security update (LOW)

5 дней назад
rocky логотип
RLSA-2025:19714

Important: libsoup security update

4 дня назад
oracle-oval логотип
ELSA-2025-19714

ELSA-2025-19714: libsoup security update (IMPORTANT)

5 дней назад
oracle-oval логотип
ELSA-2025-19713

ELSA-2025-19713: libsoup security update (IMPORTANT)

5 дней назад
redos логотип
ROS-20250821-04

Множественные уязвимости libsoup

CVSS3: 7.5
3 месяца назад

Уязвимостей на страницу