Количество 23
Количество 23
RLSA-2025:19714
Important: libsoup security update
ELSA-2025-19714
ELSA-2025-19714: libsoup security update (IMPORTANT)
ELSA-2025-19713
ELSA-2025-19713: libsoup security update (IMPORTANT)
CVE-2025-11021
A flaw was found in the cookie date handling logic of the libsoup HTTP library, widely used by GNOME and other applications for web communication. When processing cookies with specially crafted expiration dates, the library may perform an out-of-bounds memory read. This flaw could result in unintended disclosure of memory contents, potentially exposing sensitive information from the process using libsoup.
CVE-2025-11021
A flaw was found in the cookie date handling logic of the libsoup HTTP library, widely used by GNOME and other applications for web communication. When processing cookies with specially crafted expiration dates, the library may perform an out-of-bounds memory read. This flaw could result in unintended disclosure of memory contents, potentially exposing sensitive information from the process using libsoup.
CVE-2025-11021
Libsoup: out-of-bounds read in cookie date handling of libsoup http library
CVE-2025-11021
A flaw was found in the cookie date handling logic of the libsoup HTTP ...
CVE-2025-4945
A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.
CVE-2025-4945
A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.
CVE-2025-4945
A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.
CVE-2025-4945
A flaw was found in the cookie parsing logic of the libsoup HTTP libra ...
SUSE-SU-2025:3753-1
Security update for libsoup
SUSE-SU-2025:3752-1
Security update for libsoup
RLSA-2025:18183
Important: libsoup3 security update
GHSA-fjfx-vwp2-gqr8
A flaw was found in the cookie date handling logic of the libsoup HTTP library, widely used by GNOME and other applications for web communication. When processing cookies with specially crafted expiration dates, the library may perform an out-of-bounds memory read. This flaw could result in unintended disclosure of memory contents, potentially exposing sensitive information from the process using libsoup.
ELSA-2025-18183
ELSA-2025-18183: libsoup3 security update (IMPORTANT)
SUSE-SU-2025:03026-1
Security update for libsoup
SUSE-SU-2025:02277-1
Security update for libsoup2
SUSE-SU-2025:02276-1
Security update for libsoup
GHSA-mwcf-jv2p-mmpx
A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
RLSA-2025:19714 Important: libsoup security update | 3 дня назад | |||
ELSA-2025-19714 ELSA-2025-19714: libsoup security update (IMPORTANT) | 4 дня назад | |||
ELSA-2025-19713 ELSA-2025-19713: libsoup security update (IMPORTANT) | 4 дня назад | |||
CVE-2025-11021 A flaw was found in the cookie date handling logic of the libsoup HTTP library, widely used by GNOME and other applications for web communication. When processing cookies with specially crafted expiration dates, the library may perform an out-of-bounds memory read. This flaw could result in unintended disclosure of memory contents, potentially exposing sensitive information from the process using libsoup. | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
CVE-2025-11021 A flaw was found in the cookie date handling logic of the libsoup HTTP library, widely used by GNOME and other applications for web communication. When processing cookies with specially crafted expiration dates, the library may perform an out-of-bounds memory read. This flaw could result in unintended disclosure of memory contents, potentially exposing sensitive information from the process using libsoup. | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
CVE-2025-11021 Libsoup: out-of-bounds read in cookie date handling of libsoup http library | 0% Низкий | около 1 месяца назад | ||
CVE-2025-11021 A flaw was found in the cookie date handling logic of the libsoup HTTP ... | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
CVE-2025-4945 A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines. | CVSS3: 3.7 | 0% Низкий | 6 месяцев назад | |
CVE-2025-4945 A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines. | CVSS3: 3.7 | 0% Низкий | 6 месяцев назад | |
CVE-2025-4945 A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines. | CVSS3: 3.7 | 0% Низкий | 6 месяцев назад | |
CVE-2025-4945 A flaw was found in the cookie parsing logic of the libsoup HTTP libra ... | CVSS3: 3.7 | 0% Низкий | 6 месяцев назад | |
SUSE-SU-2025:3753-1 Security update for libsoup | 0% Низкий | 16 дней назад | ||
SUSE-SU-2025:3752-1 Security update for libsoup | 0% Низкий | 16 дней назад | ||
RLSA-2025:18183 Important: libsoup3 security update | 0% Низкий | 21 день назад | ||
GHSA-fjfx-vwp2-gqr8 A flaw was found in the cookie date handling logic of the libsoup HTTP library, widely used by GNOME and other applications for web communication. When processing cookies with specially crafted expiration dates, the library may perform an out-of-bounds memory read. This flaw could result in unintended disclosure of memory contents, potentially exposing sensitive information from the process using libsoup. | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
ELSA-2025-18183 ELSA-2025-18183: libsoup3 security update (IMPORTANT) | 23 дня назад | |||
SUSE-SU-2025:03026-1 Security update for libsoup | 0% Низкий | 2 месяца назад | ||
SUSE-SU-2025:02277-1 Security update for libsoup2 | 0% Низкий | 4 месяца назад | ||
SUSE-SU-2025:02276-1 Security update for libsoup | 0% Низкий | 4 месяца назад | ||
GHSA-mwcf-jv2p-mmpx A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME applications and other software. The vulnerability arises when processing the expiration date of cookies, where a specially crafted value can trigger an integer overflow. This may result in undefined behavior, allowing an attacker to bypass cookie expiration logic, causing persistent or unintended cookie behavior. The issue stems from improper validation of large integer inputs during date arithmetic operations within the cookie parsing routines. | CVSS3: 3.7 | 0% Низкий | 6 месяцев назад |
Уязвимостей на страницу