Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 954007 (CVE-2025-32049, CVE-2025-32050, CVE-2025-32051, CVE-2025-32052, CVE-2025-32053, CVE-2025-32906, CVE-2025-32908, CVE-2025-32909, CVE-2025-32910, CVE-2025-32911, CVE-2025-32912, CVE-2025-32913, CVE-2025-32914) - net-libs/libsoup: multiple vulnerabilities
Summary: net-libs/libsoup: multiple vulnerabilities
Status: CONFIRMED
Alias: CVE-2025-32049, CVE-2025-32050, CVE-2025-32051, CVE-2025-32052, CVE-2025-32053, CVE-2025-32906, CVE-2025-32908, CVE-2025-32909, CVE-2025-32910, CVE-2025-32911, CVE-2025-32912, CVE-2025-32913, CVE-2025-32914
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: Normal normal
Assignee: Gentoo Security
URL: https://marc.info/?l=oss-security&m=1...
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2025-04-18 22:11 UTC by Hank Leininger
Modified: 2025-04-21 22:50 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Hank Leininger 2025-04-18 22:11:23 UTC
See $URL for a rundown and links to individual issues. Wide range from client-side to server-side; memory corruption, overflows, denial of service.

Fixes for most but not all are included in the latest 3.6.x. We have only 2.74.x and 3.4.x in the tree. Ongoing discussion about backporting to 2.74 here:
https://gitlab.gnome.org/GNOME/libsoup/-/merge_requests/449