USN-7432-1: libsoup vulnerabilities
It was discovered that libsoup could be made to read out of bounds. An attacker could possibly use this issue to cause applications using libsoup to crash, resulting in a denial of service. (CVE-2025-2784, CVE-2025-32050, CVE-2025-32052, CVE-2025-32053) It was discovered that libsoup could be made to dereference invalid memory. An attacker could possibly use this issue to cause applications using libsoup to crash, resulting in a denial of service. (CVE-2025-32051)
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the severity of USN-7432-1?
The severity of USN-7432-1 is classified as a potential denial of service due to out-of-bounds reads in libsoup.
How do I fix USN-7432-1?
To fix USN-7432-1, update the libsoup packages to the recommended versions provided in the Ubuntu security notice.
Which versions of libsoup are affected by USN-7432-1?
Affected versions of libsoup include versions prior to 2.74.3-7ubuntu0.2 and 3.6.0-2ubuntu0.2 on Ubuntu 24.10.
Can USN-7432-1 cause application crashes?
Yes, USN-7432-1 could lead to application crashes if libsoup is exploited due to out-of-bounds reads.
Is this vulnerability present in older versions of Ubuntu?
Yes, USN-7432-1 also affects older Ubuntu versions, including 20.04 and 22.04, with specific libsoup versions.