Release libsoup-2.72.0-10.el9_6.3 ALSA-2025:19713
- Dominant language
- No language data
- Stars
- 2
- Forks
- 0
- PR merge metrics
- No merged PRs in 30d
Description
libsoup security update
Severity: Important
Description
The libsoup packages provide an HTTP client and server library for GNOME.
Security Fix(es):
* libsoup: Integer Overflow in Cookie Expiration Date Handling in libsoup (CVE-2025-4945)
* libsoup: Out-of-Bounds Read in Cookie Date Handling of libsoup HTTP Library (CVE-2025-11021)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected packages:
libsoup-2.72.0-10.el9_6.3.i686
libsoup-2.72.0-10.el9_6.3.x86_64
libsoup-devel-2.72.0-10.el9_6.3.i686
libsoup-devel-2.72.0-10.el9_6.3.x86_64
libsoup-2.72.0-10.el9_6.3.s390x
libsoup-devel-2.72.0-10.el9_6.3.s390x
libsoup-2.72.0-10.el9_6.3.ppc64le
libsoup-devel-2.72.0-10.el9_6.3.ppc64le
libsoup-2.72.0-10.el9_6.3.aarch64
libsoup-devel-2.72.0-10.el9_6.3.aarch64
Contributor guide
Assessment
This issue has not been assessed yet.