Логотип exploitDog
bind:"CVE-2025-11021" OR bind:"CVE-2025-4945"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-11021" OR bind:"CVE-2025-4945"

Количество 23

Количество 23

rocky логотип

RLSA-2025:19714

3 дня назад

Important: libsoup security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-19714

5 дней назад

ELSA-2025-19714: libsoup security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-19713

5 дней назад

ELSA-2025-19713: libsoup security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2025-11021

около 1 месяца назад

A flaw was found in the cookie date handling logic of the libsoup HTTP library, widely used by GNOME and other applications for web communication. When processing cookies with specially crafted expiration dates, the library may perform an out-of-bounds memory read. This flaw could result in unintended disclosure of memory contents, potentially exposing sensitive information from the process using libsoup.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2025-11021

около 1 месяца назад

A flaw was found in the cookie date handling logic of the libsoup HTTP library, widely used by GNOME and other applications for web communication. When processing cookies with specially crafted expiration dates, the library may perform an out-of-bounds memory read. This flaw could result in unintended disclosure of memory contents, potentially exposing sensitive information from the process using libsoup.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-11021

около 1 месяца назад

Libsoup: out-of-bounds read in cookie date handling of libsoup http library

EPSS: Низкий
debian логотип

CVE-2025-11021

около 1 месяца назад

A flaw was found in the cookie date handling logic of the libsoup HTTP ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2025-4945

6 месяцев назад

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
EPSS: Низкий
redhat логотип

CVE-2025-4945

6 месяцев назад

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2025-4945

6 месяцев назад

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
EPSS: Низкий
debian логотип

CVE-2025-4945

6 месяцев назад

A flaw was found in the cookie parsing logic of the libsoup HTTP libra ...

CVSS3: 3.7
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:3753-1

16 дней назад

Security update for libsoup

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:3752-1

16 дней назад

Security update for libsoup

EPSS: Низкий
rocky логотип

RLSA-2025:18183

21 день назад

Important: libsoup3 security update

EPSS: Низкий
github логотип

GHSA-fjfx-vwp2-gqr8

около 1 месяца назад

A flaw was found in the cookie date handling logic of the libsoup HTTP library, widely used by GNOME and other applications for web communication. When processing cookies with specially crafted expiration dates, the library may perform an out-of-bounds memory read. This flaw could result in unintended disclosure of memory contents, potentially exposing sensitive information from the process using libsoup.

CVSS3: 7.5
EPSS: Низкий
oracle-oval логотип

ELSA-2025-18183

24 дня назад

ELSA-2025-18183: libsoup3 security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03026-1

2 месяца назад

Security update for libsoup

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02277-1

4 месяца назад

Security update for libsoup2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02276-1

4 месяца назад

Security update for libsoup

EPSS: Низкий
github логотип

GHSA-mwcf-jv2p-mmpx

6 месяцев назад

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2025:19714

Important: libsoup security update

3 дня назад
oracle-oval логотип
ELSA-2025-19714

ELSA-2025-19714: libsoup security update (IMPORTANT)

5 дней назад
oracle-oval логотип
ELSA-2025-19713

ELSA-2025-19713: libsoup security update (IMPORTANT)

5 дней назад
ubuntu логотип
CVE-2025-11021

A flaw was found in the cookie date handling logic of the libsoup HTTP library, widely used by GNOME and other applications for web communication. When processing cookies with specially crafted expiration dates, the library may perform an out-of-bounds memory read. This flaw could result in unintended disclosure of memory contents, potentially exposing sensitive information from the process using libsoup.

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
nvd логотип
CVE-2025-11021

A flaw was found in the cookie date handling logic of the libsoup HTTP library, widely used by GNOME and other applications for web communication. When processing cookies with specially crafted expiration dates, the library may perform an out-of-bounds memory read. This flaw could result in unintended disclosure of memory contents, potentially exposing sensitive information from the process using libsoup.

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
msrc логотип
CVE-2025-11021

Libsoup: out-of-bounds read in cookie date handling of libsoup http library

0%
Низкий
около 1 месяца назад
debian логотип
CVE-2025-11021

A flaw was found in the cookie date handling logic of the libsoup HTTP ...

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
ubuntu логотип
CVE-2025-4945

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
0%
Низкий
6 месяцев назад
redhat логотип
CVE-2025-4945

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2025-4945

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
0%
Низкий
6 месяцев назад
debian логотип
CVE-2025-4945

A flaw was found in the cookie parsing logic of the libsoup HTTP libra ...

CVSS3: 3.7
0%
Низкий
6 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:3753-1

Security update for libsoup

0%
Низкий
16 дней назад
suse-cvrf логотип
SUSE-SU-2025:3752-1

Security update for libsoup

0%
Низкий
16 дней назад
rocky логотип
RLSA-2025:18183

Important: libsoup3 security update

0%
Низкий
21 день назад
github логотип
GHSA-fjfx-vwp2-gqr8

A flaw was found in the cookie date handling logic of the libsoup HTTP library, widely used by GNOME and other applications for web communication. When processing cookies with specially crafted expiration dates, the library may perform an out-of-bounds memory read. This flaw could result in unintended disclosure of memory contents, potentially exposing sensitive information from the process using libsoup.

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
oracle-oval логотип
ELSA-2025-18183

ELSA-2025-18183: libsoup3 security update (IMPORTANT)

24 дня назад
suse-cvrf логотип
SUSE-SU-2025:03026-1

Security update for libsoup

0%
Низкий
2 месяца назад
suse-cvrf логотип
SUSE-SU-2025:02277-1

Security update for libsoup2

0%
Низкий
4 месяца назад
suse-cvrf логотип
SUSE-SU-2025:02276-1

Security update for libsoup

0%
Низкий
4 месяца назад
github логотип
GHSA-mwcf-jv2p-mmpx

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
0%
Низкий
6 месяцев назад

Уязвимостей на страницу