First published: Mon Apr 14 2025(Updated: )
A flaw was found in libsoup, where soup_auth_digest_authenticate() is vulnerable to a NULL pointer dereference. This issue may cause the libsoup client to crash.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
libsoup | <3.6.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-32910 has a medium severity rating as it can lead to a crash of the libsoup client.
To fix CVE-2025-32910, upgrade libsoup to version 3.6.3 or later.
Versions of libsoup prior to 3.6.3 are affected by CVE-2025-32910.
CVE-2025-32910 is caused by a NULL pointer dereference in the soup_auth_digest_authenticate() function.
The impact of CVE-2025-32910 is that it may cause the libsoup client to crash.