CVE-2025-4969
EUVD-2025-1607721.05.2025, 06:16
A vulnerability was found in the libsoup package. This flaw stems from its failure to correctly verify the termination of multipart HTTP messages. This can allow a remote attacker to send a specially crafted multipart HTTP body, causing the libsoup-consuming server to read beyond its allocated memory boundaries (out-of-bounds read).Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libsoup2.4 |
| ||||||||||||||||||
| libsoup3 |
|
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libsoup-2_4-1 |
| ||||||||||||||||||||||||||||
| libsoup-2_4-1-32bit |
| ||||||||||||||||||||||||||||
| libsoup-3_0-0 |
| ||||||||||||||||||||||||||||
| libsoup-devel |
| ||||||||||||||||||||||||||||
| libsoup-lang |
| ||||||||||||||||||||||||||||
| libsoup2-devel |
| ||||||||||||||||||||||||||||
| libsoup2-lang |
| ||||||||||||||||||||||||||||
| typelib-1_0-Soup-2_4 |
| ||||||||||||||||||||||||||||
| typelib-1_0-Soup-3_0 |
|
Common Weakness Enumeration