Количество 21
Количество 21
GHSA-mwcf-jv2p-mmpx
A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.
CVE-2025-4945
A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.
CVE-2025-4945
A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.
CVE-2025-4945
A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.
CVE-2025-4945
A flaw was found in the cookie parsing logic of the libsoup HTTP libra ...
SUSE-SU-2025:03026-1
Security update for libsoup
SUSE-SU-2025:02277-1
Security update for libsoup2
SUSE-SU-2025:02276-1
Security update for libsoup
RLSA-2025:19720
Low: libsoup3 security update
ELSA-2025-19720
ELSA-2025-19720: libsoup3 security update (LOW)
BDU:2025-10260
Уязвимость библиотеки libsoup графического интерфейса GNOME, позволяющая нарушителю выполнить произвольный код
RLSA-2025:21032
Important: libsoup3 security update
RLSA-2025:20959
Important: libsoup security update
RLSA-2025:19714
Important: libsoup security update
RLSA-2025:19713
Important: libsoup security update
ELSA-2025-21032
ELSA-2025-21032: libsoup3 security update (IMPORTANT)
ELSA-2025-20959
ELSA-2025-20959: libsoup security update (IMPORTANT)
ELSA-2025-19714
ELSA-2025-19714: libsoup security update (IMPORTANT)
ELSA-2025-19713
ELSA-2025-19713: libsoup security update (IMPORTANT)
ELSA-2025-21657
ELSA-2025-21657: libsoup security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-mwcf-jv2p-mmpx A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines. | CVSS3: 3.7 | 0% Низкий | 7 месяцев назад | |
CVE-2025-4945 A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines. | CVSS3: 3.7 | 0% Низкий | 7 месяцев назад | |
CVE-2025-4945 A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines. | CVSS3: 3.7 | 0% Низкий | 7 месяцев назад | |
CVE-2025-4945 A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines. | CVSS3: 3.7 | 0% Низкий | 7 месяцев назад | |
CVE-2025-4945 A flaw was found in the cookie parsing logic of the libsoup HTTP libra ... | CVSS3: 3.7 | 0% Низкий | 7 месяцев назад | |
SUSE-SU-2025:03026-1 Security update for libsoup | 0% Низкий | 4 месяца назад | ||
SUSE-SU-2025:02277-1 Security update for libsoup2 | 0% Низкий | 6 месяцев назад | ||
SUSE-SU-2025:02276-1 Security update for libsoup | 0% Низкий | 6 месяцев назад | ||
RLSA-2025:19720 Low: libsoup3 security update | 0% Низкий | около 2 месяцев назад | ||
ELSA-2025-19720 ELSA-2025-19720: libsoup3 security update (LOW) | около 2 месяцев назад | |||
BDU:2025-10260 Уязвимость библиотеки libsoup графического интерфейса GNOME, позволяющая нарушителю выполнить произвольный код | CVSS3: 3.7 | 0% Низкий | 7 месяцев назад | |
RLSA-2025:21032 Important: libsoup3 security update | около 1 месяца назад | |||
RLSA-2025:20959 Important: libsoup security update | около 1 месяца назад | |||
RLSA-2025:19714 Important: libsoup security update | около 2 месяцев назад | |||
RLSA-2025:19713 Important: libsoup security update | около 2 месяцев назад | |||
ELSA-2025-21032 ELSA-2025-21032: libsoup3 security update (IMPORTANT) | 25 дней назад | |||
ELSA-2025-20959 ELSA-2025-20959: libsoup security update (IMPORTANT) | около 1 месяца назад | |||
ELSA-2025-19714 ELSA-2025-19714: libsoup security update (IMPORTANT) | около 2 месяцев назад | |||
ELSA-2025-19713 ELSA-2025-19713: libsoup security update (IMPORTANT) | около 2 месяцев назад | |||
ELSA-2025-21657 ELSA-2025-21657: libsoup security update (IMPORTANT) | 17 дней назад |
Уязвимостей на страницу