CVE-2025-32911: Libsoup: double free on soup_message_headers_get_content_disposition() through "soup-message-headers.c" via "params" ghashtable value
A use-after-free type vulnerability was found in libsoup, in the soupmessageheadersgetcontentdisposition() function. This flaw allows a malicious HTTP client to cause memory corruption in the libsoup server.
Other sources
libsoup prior to version 3.6.3 is vulnerable to a free of memory not on the heap in soupmessageheadersgetcontentdisposition(). A malicious HTTP client may induce memory corruption in the libsoup server.
— Red Hat
Libsoup: double free on soupmessageheadersgetcontentdisposition() through "soup-message-headers.c" via "params" ghashtable value
— Microsoft
This CVE was automatically created from a reference found in an email or other text. If you are reading this, then this CVE entry is probably erroneous, since this text should be replaced by the official CVE description automatically.
— Launchpad
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/libsoup2.4to a version that resolves this vulnerability.Fixed in 2.72.0-2+deb11u2Fixed in 2.74.3-10.1 - Upgrade
Upgrade
debian/libsoup3to a version that resolves this vulnerability.Fixed in 3.6.5-1 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 3.4.4-3 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 3.0.4-3 - Upgrade
Upgrade
libsoupto a version that resolves this vulnerability.Fixed in 3.6.3
Event History
Frequently Asked Questions
What is the severity of CVE-2025-32911?
The severity of CVE-2025-32911 is considered high due to the potential for memory corruption.
How do I fix CVE-2025-32911?
To fix CVE-2025-32911, upgrade libsoup to version 3.6.3 or later.
What software is affected by CVE-2025-32911?
CVE-2025-32911 affects GNOME libsoup versions prior to 3.6.3.
What type of vulnerability is CVE-2025-32911?
CVE-2025-32911 is classified as a use-after-free memory issue.
How can CVE-2025-32911 be exploited?
CVE-2025-32911 can be exploited by a malicious HTTP client to cause memory corruption in the libsoup server.