PT-2025-14756 · Libsoup+7 · Libsoup+7

CVE-2025-32049

·

Published

2024-06-21

·

Updated

2026-06-30

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions libsoup (affected versions not specified)
Description A flaw in libsoup allows the SoupWebsocketConnection to accept a large WebSocket message. This may cause libsoup to allocate memory and lead to a denial of service (DoS).
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Allocation of Resources Without Limits

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025:8126
ALSA-2025:8128
ALSA-2025:8132
AZL-59539
AZL-59557
BDU:2025-07139
CESA-2025_8132
CVE-2025-32049
DLA-4140-1
ECHO-C0AC-D14A-83AB
INFSA-2025_8126
INFSA-2025_8132
MGASA-2025-0261
OESA-2026-2617
OESA-2026-2618
OESA-2026-2666
OESA-2026-2667
OESA-2026-2716
OESA-2026-2717
OPENSUSE-SU-2026:10208-1
OPENSUSE-SU-2026:10209-1
OPENSUSE-SU-2026:20354-1
OPENSUSE-SU-2026:20384-1
RHSA-2025:8126
RHSA-2025:8128
RHSA-2025:8132
RHSA-2025:8139
RHSA-2025:8140
RHSA-2025:8252
RHSA-2025:8480
RHSA-2025:8481
RHSA-2025:8482
RHSA-2025:8663
RHSA-2025:9179
RHSA-2025_8126
RHSA-2025_8132
SUSE-SU-2026:0657-1
SUSE-SU-2026:0658-1
SUSE-SU-2026:0689-1
SUSE-SU-2026:0690-1
SUSE-SU-2026:0703-1
SUSE-SU-2026:0834-1
SUSE-SU-2026:20529-1
SUSE-SU-2026:20649-1
SUSE-SU-2026:20752-1
SUSE-SU-2026:20902-1

Affected Products

Almalinux
Astra Linux
Centos
Debian
Red Hat
Red Os
Rocky Linux
Libsoup