CVE-2025-32908

A flaw was found in libsoup. The HTTP/2 server in libsoup may not fully validate the values of pseudo-headers :scheme, :authority, and :path, which may allow a user to cause a denial of service (DoS).
Configurations

No configuration.

History

13 May 2025, 21:16

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:7505 -

15 Apr 2025, 18:39

Type Values Removed Values Added
Summary
  • (es) Se encontró una falla en libsoup. El servidor HTTP/2 de libsoup podría no validar completamente los valores de los pseudoencabezados :scheme, :authority y :path, lo que podría permitir que un usuario provoque una denegación de servicio (DoS).

14 Apr 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-14 14:15

Updated : 2025-05-13 21:16


NVD link : CVE-2025-32908

Mitre link : CVE-2025-32908

CVE.ORG link : CVE-2025-32908


JSON object : View

Products Affected

No product.

CWE
CWE-115

Misinterpretation of Input