Pop-Up Thingie

>>> Magnum BBS <<<
  • Home
  • Forum
  • Files
  • Log in

  1. Forum
  2. Usenet
  3. LINUX.DEBIAN.BUGS.DIST
  • Bug#1103521: libsoup2.4: CVE-2025-32906

    From Salvatore Bonaccorso@21:1/5 to All on Fri Apr 18 16:20:01 2025
    Source: libsoup2.4
    Version: 2.74.3-10
    Severity: important
    Tags: security upstream
    Forwarded: https://gitlab.gnome.org/GNOME/libsoup/-/issues/404
    X-Debbugs-Cc: carnil@debian.org, Debian Security Team <team@security.debian.org>

    Hi,

    The following vulnerability was published for libsoup2.4.

    CVE-2025-32906[0]:
    | A flaw was found in libsoup, where the soup_headers_parse_request()
    | function may be vulnerable to an out-of-bound read. This flaw allows
    | a malicious user to use a specially crafted HTTP request to crash
    | the HTTP server.


    If you fix the vulnerability please also make sure to include the
    CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

    For further information see:

    [0] https://security-tracker.debian.org/tracker/CVE-2025-32906
    https://www.cve.org/CVERecord?id=CVE-2025-32906
    [1] https://gitlab.gnome.org/GNOME/libsoup/-/issues/404
    [2] https://gitlab.gnome.org/GNOME/libsoup/-/issues/407
    [3] https://gitlab.gnome.org/GNOME/libsoup/-/commit/af5b9a4a3945c52b940d5ac181ef51bb12011f1f

    Please adjust the affected versions in the BTS as needed.

    Regards,
    Salvatore

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)
  • Who's Online

  • Recent Visitors

    • Centurion
      Sun May 25 17:08:06 2025
      from Berea, Ohio via Telnet
    • Bob Worm
      Sun May 25 15:59:14 2025
      from Wales, Uk via Telnet
    • Darkone
      Sun May 25 13:42:42 2025
      from New Hampshire via SSH
    • Plume
      Sun May 25 12:59:53 2025
      from Uk via SSH
    • Dadogedev
      Sun May 25 10:52:24 2025
      from Nish, Serbia via SSH
    • Centurion
      Sun May 25 01:43:46 2025
      from Berea, Ohio via Telnet
    • Centurion
      Sun May 25 01:41:34 2025
      from Berea, Ohio via Telnet
    • Centurion
      Sat May 24 22:26:49 2025
      from Berea, Ohio via Telnet
  • System Info

    Sysop: Keyop
    Location: Huddersfield, West Yorkshire, UK
    Users: 483
    Nodes: 16 (0 / 16)
    Uptime: 81:26:27
    Calls: 9,576
    Calls today: 7
    Files: 13,666
    Messages: 6,143,069
    Posted today: 2

© >>> Magnum BBS <<<, 2025