PT-2025-30930 · Gnome+1 · Libsoup+1

Huang Zikang

+1

·

Published

2025-01-01

·

Updated

2025-08-14

·

CVE-2025-8197

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Libsoup (affected versions not specified)
Description A global buffer overflow vulnerability exists in the soup header name to string function. The function does not validate the name parameter, directly accessing soup header name strings[name]. When the name parameter exceeds the index range of soup header name strings, an out-of-bounds access occurs.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2025-8197

Affected Products

Debian
Libsoup