Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: 323787fd by Salvatore Bonaccorso at 2025-04-24T22:21:55+02:00 Add CVE-2025-46421/libsoup - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -155,7 +155,11 @@ CVE-2025-46436 (Cross-Site Request Forgery (CSRF) vulnerability in Sebastian Ech CVE-2025-46435 (Cross-Site Request Forgery (CSRF) vulnerability in Yash Binani Time Ba ...) NOT-FOR-US: WordPress plugin or theme CVE-2025-46421 (A flaw was found in libsoup. When libsoup clients encounter an HTTP re ...) - TODO: check + - libsoup3 3.6.5-1 + - libsoup2.4 <unfixed> + NOTE: https://gitlab.gnome.org/GNOME/libsoup/-/issues/439 + NOTE: https://gitlab.gnome.org/GNOME/libsoup/-/merge_requests/436 + NOTE: Fixed by: https://gitlab.gnome.org/GNOME/libsoup/-/commit/3e5c26415811f19e7737238bb23305ffaf96f66b (3.6.5) CVE-2025-46420 (A flaw was found in libsoup. It is vulnerable to memory leaks in the s ...) - libsoup3 3.6.4-1 - libsoup2.4 <unfixed> View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/323787fddb8f28a0fa45f8e1096b9922ed4b1aa2 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/323787fddb8f28a0fa45f8e1096b9922ed4b1aa2 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list debian-security-tracker-commits@alioth-lists.debian.net https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits