Threats Tagged 'cve-2025-32906'
View all threats tagged with 'cve-2025-32906'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2025-32906'
Click on any threat for detailed analysis and mitigation recommendations
0 The libsoup packages provide an HTTP client and server library for GNOME. Security Fix(es): * libsoup: Heap buffer over-read in `skip_insignificant_space` when sniffing content (CVE-2025-2784) * libsoup: Denial of Service attack to websocket server (CVE-2025-32049) * libsoup: Out of bounds reads in soup_headers_parse_request() (CVE-2025-32906) * libsoup: Double free on soup_message_headers_get_content_disposition() through "soup-message-headers.c" via "params" GHashTable value (CVE-2025-32911) * libsoup: NULL pointer dereference in soup_message_headers_get_content_disposition when "filename" parameter is present, but has no value in Content-Disposition header (CVE-2025-32913) * libsoup: OOB Read on libsoup through function "soup_multipart_new_from_message" in soup-multipart.c leads to crash or exit of process (CVE-2025-32914) * libsoup: Integer Overflow in Cookie Expiration Date Handling in libsoup (CVE-2025-4945) * libsoup: Integer Underflow in soup_multipart_new_from_message() Leading to Denial of Service in libsoup (CVE-2025-4948) * libsoup: Out-of-Bounds Read in Cookie Date Handling of libsoup HTTP Library (CVE-2025-11021) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 11/18/2025, 06:04:55 UTC Added: 06/25/2026, 21:46:58 UTC |
This Red Hat security advisory addresses multiple vulnerabilities in the mingw-freetype library and libsoup components affecting Red Hat Enterprise Linux 8. The issues include out-of-bounds writes, integer overflows, heap buffer overflows, null pointer dereferences, double frees, and denial of service conditions. These vulnerabilities impact font parsing and HTTP request handling functionality. The advisory rates the overall security impact as Important and provides updates to mitigate these issues. Join the discussion | GCVE Database | 05/29/2025, 06:42:49 UTC Added: 06/02/2026, 21:43:37 UTC |
0 Multiple security vulnerabilities have been identified in the libsoup HTTP client and server library for GNOME, affecting Red Hat Enterprise Linux 9. These include integer overflow, heap buffer overflows, out-of-bounds reads, denial of service, double free, null pointer dereference, information disclosure, and memory leak issues. The vulnerabilities are addressed in a security update released by Red Hat. The update is rated as Important by Red Hat Product Security. Users of affected Red Hat Enterprise Linux 9 variants should apply the update to mitigate these issues. Join the discussion | GCVE Database | 05/13/2025, 14:01:06 UTC Added: 06/27/2026, 22:08:41 UTC |
0 Multiple security vulnerabilities have been identified in the libsoup HTTP client and server library for GNOME, affecting Red Hat Enterprise Linux 8.6 variants. These include out-of-bounds reads, double free, NULL pointer dereference, information disclosure via improper Authorization header handling on redirects, and memory leaks. Red Hat has issued an important security advisory with updates addressing these issues. The vulnerabilities have been assigned CVE identifiers CVE-2025-32906, CVE-2025-32911, CVE-2025-32913, CVE-2025-46420, and CVE-2025-46421. The advisory provides updated packages to remediate these flaws. Join the discussion | GCVE Database | 05/07/2025, 07:04:14 UTC Added: 06/27/2026, 22:08:42 UTC |
0 Multiple vulnerabilities have been identified in the libsoup HTTP client and server library for GNOME, including out-of-bounds reads, double free, NULL pointer dereference, information disclosure, and memory leaks. These issues affect Red Hat Enterprise Linux 8.4 variants and are rated with an important security impact by Red Hat. The vulnerabilities could lead to crashes, memory corruption, or unintended information disclosure. Red Hat has released security updates addressing these issues. Join the discussion | GCVE Database | 05/07/2025, 04:31:24 UTC Added: 06/27/2026, 22:08:42 UTC |
0 Multiple security vulnerabilities have been identified in the libsoup HTTP client and server library for GNOME, affecting Red Hat Enterprise Linux 8.8 Extended Update Support. These include integer overflow, heap buffer overflows, out of bounds reads, double free, NULL pointer dereference, information disclosure, and memory leak issues. The vulnerabilities are rated with high severity by Red Hat Product Security. An update addressing these issues is available for affected Red Hat Enterprise Linux 8.8 Extended Update Support versions. Join the discussion | GCVE Database | 05/06/2025, 16:48:22 UTC Added: 06/27/2026, 22:08:43 UTC |
0 Multiple security vulnerabilities have been identified and fixed in the libsoup HTTP client and server library for GNOME, as addressed by Red Hat in their security advisory RHSA-2025:4508. These include integer overflows, heap buffer overflows, out-of-bounds reads, denial of service, double free, null pointer dereference, information disclosure, and memory leaks. The vulnerabilities affect Red Hat Enterprise Linux 9.2 variants and related products. Red Hat has released updated packages to remediate these issues. Join the discussion | GCVE Database | 05/06/2025, 16:03:20 UTC Added: 06/27/2026, 22:08:44 UTC |
0 Multiple security vulnerabilities have been identified in the libsoup HTTP client and server library for GNOME, affecting Red Hat Enterprise Linux 8. These include integer overflows, heap buffer overflows, out-of-bounds reads, double free errors, null pointer dereferences, information disclosure, and memory leaks. The vulnerabilities are addressed in an important security update released by Red Hat. The update fixes several CVEs including CVE-2025-32050, CVE-2025-32052, CVE-2025-32053, CVE-2025-32906, CVE-2025-32911, CVE-2025-32913, CVE-2025-46420, and CVE-2025-46421. The advisory covers multiple architectures including x86_64, s390x, ppc64le, and aarch64. No known exploits in the wild have been reported at this time. Join the discussion | GCVE Database | 05/06/2025, 15:43:33 UTC Added: 06/27/2026, 22:08:43 UTC |
0 Multiple security vulnerabilities have been identified in the libsoup HTTP client and server library for GNOME, affecting Red Hat Enterprise Linux 9.4 Extended Update Support and related variants. These include integer overflow, heap buffer overflows, out-of-bounds reads, denial of service, double free, null pointer dereference, information disclosure, and memory leak issues. The vulnerabilities are addressed in an update provided by Red Hat. Users of affected Red Hat Enterprise Linux 9.4 Extended Update Support versions should apply the security update to remediate these issues. Join the discussion | GCVE Database | 05/05/2025, 01:24:57 UTC Added: 06/27/2026, 22:08:44 UTC |
0 A flaw was found in libsoup, where the soup_headers_parse_request() function may be vulnerable to an out-of-bound read. This flaw allows a malicious user to use a specially crafted HTTP request to crash the HTTP server. Join the discussion | GCVE Database | 04/14/2025, 13:58:39 UTC Added: 06/27/2026, 22:08:43 UTC |
Showing 1 to 10 of 10 results