CVE-2025-4948
published 2025-05-19CVE-2025-4948: A flaw was found in the soup_multipart_new_from_message() function of the libsoup HTTP library, which is commonly used by GNOME and other applications to…
PriorityP341high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.66%
47.3th percentile
A flaw was found in the soup_multipart_new_from_message() function of the libsoup HTTP library, which is commonly used by GNOME and other applications to handle web communications. The issue occurs when the library processes specially crafted multipart messages. Due to improper validation, an internal calculation can go wrong, leading to an integer underflow. This can cause the program to access invalid memory and crash. As a result, any application or server using libsoup could be forced to exit unexpectedly, creating a denial-of-service (DoS) risk.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libsoup2.4 | < libsoup2.4 2.72.0-2+deb11u3 (bullseye) | libsoup2.4 2.72.0-2+deb11u3 (bullseye) |
| debian | libsoup3 | < libsoup2.4 2.72.0-2+deb11u3 (bullseye) | libsoup2.4 2.72.0-2+deb11u3 (bullseye) |
| msrc | azl3_libsoup_3.4.4-7_on_azure_linux_3.0 | — | — |
| msrc | azl3_libsoup_3.4.4-8_on_azure_linux_3.0 | — | — |
| msrc | cbl2_libsoup_3.0.4-7_on_cbl_mariner_2.0 | — | — |
| msrc | cbl2_libsoup_3.0.4-8_on_cbl_mariner_2.0 | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_debian7.5HIGH
vendor_msrc7.5HIGH
vendor_redhat7.5HIGH
vendor_ubuntu5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
libsoup vulnerabilities
vendor_ubuntu·2025-07-17·CVSS 5.3
CVE-2025-4969 [MEDIUM] libsoup vulnerabilities
Title: libsoup vulnerabilities
Summary: Several security issues were fixed in libsoup.
Jan Różański discovered that libsoup incorrectly handled range headers in
an HTTP request. An attacker could possibly use this issue to cause libsoup
to consume excessive memory, resulting in a denial of service.
(CVE-2025-32907)
Alon Zahavi discovered that libsoup incorrectly handled memory when parsing
HTTP requests. An attacker could possibly use this issue to send a
maliciously crafted HTTP request to the server, causing a denial of service
or obtaining sensitive information. This issue only affected Ubuntu 25.04.
(CVE-2025-32914)
It was discovered that libsoup incorrectly handled memory when parsing
the expiration date of maliciously crafted cookies. An attacker could
possibly use this issue to
Red Hat
libsoup: Integer Underflow in soup_multipart_new_from_message() Leading to Denial of Service in libsoup
vendor_redhat·2025-05-19·CVSS 7.5
CVE-2025-4948 [HIGH] CWE-191 libsoup: Integer Underflow in soup_multipart_new_from_message() Leading to Denial of Service in libsoup
libsoup: Integer Underflow in soup_multipart_new_from_message() Leading to Denial of Service in libsoup
A flaw was found in the soup_multipart_new_from_message() function of the libsoup HTTP library, which is commonly used by GNOME and other applications to handle web communications. The issue occurs when the library processes specially crafted multipart messages. Due to improper validation, an internal calculation can go wrong, leading to an integer underflow. This can cause the program to access invalid memory and crash. As a result, any application or server using libsoup could be forced to exit unexpectedly, creating a denial-of-service (DoS) risk.
A flaw was found in the soup_multipart_new_from_message() function of the libsoup HTTP library, which is commonly used by GNOME and other
Microsoft
Libsoup: integer underflow in soup_multipart_new_from_message() leading to denial of service in libsoup
vendor_msrc·2025-05-13·CVSS 7.5
CVE-2025-4948 [HIGH] CWE-191 Libsoup: integer underflow in soup_multipart_new_from_message() leading to denial of service in libsoup
Libsoup: integer underflow in soup_multipart_new_from_message() leading to denial of service in libsoup
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Mariner: Mariner
redhat: redhat
Customer Action Required: Yes
Remediati
Debian
CVE-2025-4948: libsoup2.4 - A flaw was found in the soup_multipart_new_from_message() function of the libsou...
vendor_debian·2025·CVSS 7.5
CVE-2025-4948 [HIGH] CVE-2025-4948: libsoup2.4 - A flaw was found in the soup_multipart_new_from_message() function of the libsou...
A flaw was found in the soup_multipart_new_from_message() function of the libsoup HTTP library, which is commonly used by GNOME and other applications to handle web communications. The issue occurs when the library processes specially crafted multipart messages. Due to improper validation, an internal calculation can go wrong, leading to an integer underflow. This can cause the program to access invalid memory and crash. As a result, any application or server using libsoup could be forced to exit unexpectedly, creating a denial-of-service (DoS) risk.
Scope: local
bookworm: open
bullseye: resolved (fixed in 2.72.0-2+deb11u3)
trixie: open
Citrix
Citrix Security Bulletin CTX140984
vendor_citrix·CVSS 10.0
CVE-2014-4947 [CRITICAL] Citrix Security Bulletin CTX140984
Citrix Security Bulletin CTX140984
CVE References: CVE-2014-4947, CVE-2014-4948, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
OSV
libsoup3, libsoup2.4 vulnerabilities
osv·2025-07-17·CVSS 5.3
CVE-2025-32907 [MEDIUM] libsoup3, libsoup2.4 vulnerabilities
libsoup3, libsoup2.4 vulnerabilities
Jan Różański discovered that libsoup incorrectly handled range headers in
an HTTP request. An attacker could possibly use this issue to cause libsoup
to consume excessive memory, resulting in a denial of service.
(CVE-2025-32907)
Alon Zahavi discovered that libsoup incorrectly handled memory when parsing
HTTP requests. An attacker could possibly use this issue to send a
maliciously crafted HTTP request to the server, causing a denial of service
or obtaining sensitive information. This issue only affected Ubuntu 25.04.
(CVE-2025-32914)
It was discovered that libsoup incorrectly handled memory when parsing
the expiration date of maliciously crafted cookies. An attacker could
possibly use this issue to cause a denial of service. (CVE-2025-4945)
It was
GHSA
GHSA-5c6q-hvvg-576r: A flaw was found in the soup_multipart_new_from_message() function of the libsoup HTTP library, which is commonly used by GNOME and other applications
ghsa_unreviewed·2025-05-19
CVE-2025-4948 [HIGH] CWE-191 GHSA-5c6q-hvvg-576r: A flaw was found in the soup_multipart_new_from_message() function of the libsoup HTTP library, which is commonly used by GNOME and other applications
A flaw was found in the soup_multipart_new_from_message() function of the libsoup HTTP library, which is commonly used by GNOME and other applications to handle web communications. The issue occurs when the library processes specially crafted multipart messages. Due to improper validation, an internal calculation can go wrong, leading to an integer underflow. This can cause the program to access invalid memory and crash. As a result, any application or server using libsoup could be forced to exit unexpectedly, creating a denial-of-service (DoS) risk.
OSV
CVE-2025-4948: A flaw was found in the soup_multipart_new_from_message() function of the libsoup HTTP library, which is commonly used by GNOME and other applications
osv·2025-05-19·CVSS 7.5
CVE-2025-4948 [HIGH] CVE-2025-4948: A flaw was found in the soup_multipart_new_from_message() function of the libsoup HTTP library, which is commonly used by GNOME and other applications
A flaw was found in the soup_multipart_new_from_message() function of the libsoup HTTP library, which is commonly used by GNOME and other applications to handle web communications. The issue occurs when the library processes specially crafted multipart messages. Due to improper validation, an internal calculation can go wrong, leading to an integer underflow. This can cause the program to access invalid memory and crash. As a result, any application or server using libsoup could be forced to exit unexpectedly, creating a denial-of-service (DoS) risk.
No detection rules found.
No public exploits indexed.
https://access.redhat.com/errata/RHSA-2025:21657https://access.redhat.com/errata/RHSA-2025:8126https://access.redhat.com/errata/RHSA-2025:8128https://access.redhat.com/errata/RHSA-2025:8132https://access.redhat.com/errata/RHSA-2025:8139https://access.redhat.com/errata/RHSA-2025:8140https://access.redhat.com/errata/RHSA-2025:8252https://access.redhat.com/errata/RHSA-2025:8480https://access.redhat.com/errata/RHSA-2025:8481https://access.redhat.com/errata/RHSA-2025:8482https://access.redhat.com/errata/RHSA-2025:8663https://access.redhat.com/errata/RHSA-2025:9179https://access.redhat.com/security/cve/CVE-2025-4948https://bugzilla.redhat.com/show_bug.cgi?id=2367183https://gitlab.gnome.org/GNOME/libsoup/-/issues/449https://gitlab.gnome.org/GNOME/libsoup/-/work_items/449
2025-05-19
Published