Логотип exploitDog
bind: "CVE-2025-4945"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2025-4945"

Количество 10

Количество 10

ubuntu логотип

CVE-2025-4945

4 месяца назад

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
EPSS: Низкий
redhat логотип

CVE-2025-4945

4 месяца назад

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2025-4945

4 месяца назад

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
EPSS: Низкий
debian логотип

CVE-2025-4945

4 месяца назад

A flaw was found in the cookie parsing logic of the libsoup HTTP libra ...

CVSS3: 3.7
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03026-1

11 дней назад

Security update for libsoup

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02277-1

2 месяца назад

Security update for libsoup2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02276-1

2 месяца назад

Security update for libsoup

EPSS: Низкий
github логотип

GHSA-mwcf-jv2p-mmpx

4 месяца назад

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
EPSS: Низкий
fstec логотип

BDU:2025-10260

4 месяца назад

Уязвимость библиотеки libsoup графического интерфейса GNOME, позволяющая нарушителю выполнить произвольный код

CVSS3: 3.7
EPSS: Низкий
redos логотип

ROS-20250821-04

20 дней назад

Множественные уязвимости libsoup

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-4945

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
0%
Низкий
4 месяца назад
redhat логотип
CVE-2025-4945

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
0%
Низкий
4 месяца назад
nvd логотип
CVE-2025-4945

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
0%
Низкий
4 месяца назад
debian логотип
CVE-2025-4945

A flaw was found in the cookie parsing logic of the libsoup HTTP libra ...

CVSS3: 3.7
0%
Низкий
4 месяца назад
suse-cvrf логотип
SUSE-SU-2025:03026-1

Security update for libsoup

0%
Низкий
11 дней назад
suse-cvrf логотип
SUSE-SU-2025:02277-1

Security update for libsoup2

0%
Низкий
2 месяца назад
suse-cvrf логотип
SUSE-SU-2025:02276-1

Security update for libsoup

0%
Низкий
2 месяца назад
github логотип
GHSA-mwcf-jv2p-mmpx

A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.

CVSS3: 3.7
0%
Низкий
4 месяца назад
fstec логотип
BDU:2025-10260

Уязвимость библиотеки libsoup графического интерфейса GNOME, позволяющая нарушителю выполнить произвольный код

CVSS3: 3.7
0%
Низкий
4 месяца назад
redos логотип
ROS-20250821-04

Множественные уязвимости libsoup

CVSS3: 7.5
20 дней назад

Уязвимостей на страницу