[CLSA-2025:1753124055] libsoup: Fix of 7 CVEs
Type:
security
Severity:
Moderate
Release date:
2025-07-21 18:54:20 UTC
Description:
- CVE-2025-32050: fix overflow in append_param_quoted() - CVE-2025-32052: fix heap buffer overflow in soup_content_sniffer_sniff() - CVE-2025-32053: fix heap buffer overflow in sniff_feed_or_html() - CVE-2025-32907: soup-message-headers: correct merge of ranges - CVE-2025-46420: fix leak in soup_header_parse_quality_list() - CVE-2025-46421: strip authentication credentails on cross-origin redirect - CVE-2025-2784: fix heap buffer over-read when sniffing content via the skip_insight_whitespace() function
Updated packages:
  • libsoup-2.62.2-2.0.1.el7.tuxcare.els5.i686.rpm
    sha:0e9d03d86bd7ec30b6c8518f8773c19b1c60c128937f334f7819cdcd834dd62b
  • libsoup-2.62.2-2.0.1.el7.tuxcare.els5.x86_64.rpm
    sha:e971544f7919856913fb5a9f1b97a8385878e9aa02f13ed5c83e77395e1777c1
  • libsoup-devel-2.62.2-2.0.1.el7.tuxcare.els5.i686.rpm
    sha:2514a5ee4be562ec0f8bfdc749d2d58aab1e9ccfb1bc09b33d151fd0f1388869
  • libsoup-devel-2.62.2-2.0.1.el7.tuxcare.els5.x86_64.rpm
    sha:0e00813f9df6aecc87828d5e716401ac965039328fae6e15e817b81d8fc98ca8
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.