A denial-of-service vulnerability has been identified in the libsoup HTTP client library. This flaw can be triggered when a libsoup client receives a 401 (Unauthorized) HTTP response containing a specifically crafted domain parameter within the WWW-Authenticate header. Processing this malformed header can lead to a crash of the client application using libsoup. An attacker could exploit this by setting up a malicious HTTP server. If a user's application using the vulnerable libsoup library connects to this malicious server, it could result in a denial-of-service. Successful exploitation requires tricking a user's client application into connecting to the attacker's malicious server.
Advisories
Source ID Title
EUVD EUVD EUVD-2025-15540 A denial-of-service vulnerability has been identified in the libsoup HTTP client library. This flaw can be triggered when a libsoup client receives a 401 (Unauthorized) HTTP response containing a specifically crafted domain parameter within the WWW-Authenticate header. Processing this malformed header can lead to a crash of the client application using libsoup. An attacker could exploit this by setting up a malicious HTTP server. If a user's application using the vulnerable libsoup library connects to this malicious server, it could result in a denial-of-service. Successful exploitation requires tricking a user's client application into connecting to the attacker's malicious server.
Ubuntu USN Ubuntu USN USN-7543-1 libsoup vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

To mitigate the risk posed by this libsoup vulnerability, Red Hat strongly advises against connecting client applications relying on the libsoup library to untrusted HTTP servers until systems can be updated to a version of libsoup that includes the fix for this specific flaw. This precaution will help prevent potential denial-of-service scenarios within user sessions.

History

Fri, 30 May 2025 07:30:00 +0000

Type Values Removed Values Added
CPEs cpe:/o:redhat:enterprise_linux:10

Fri, 16 May 2025 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 16 May 2025 18:00:00 +0000

Type Values Removed Values Added
Description No description is available for this CVE. A denial-of-service vulnerability has been identified in the libsoup HTTP client library. This flaw can be triggered when a libsoup client receives a 401 (Unauthorized) HTTP response containing a specifically crafted domain parameter within the WWW-Authenticate header. Processing this malformed header can lead to a crash of the client application using libsoup. An attacker could exploit this by setting up a malicious HTTP server. If a user's application using the vulnerable libsoup library connects to this malicious server, it could result in a denial-of-service. Successful exploitation requires tricking a user's client application into connecting to the attacker's malicious server.
Title libsoup: Null pointer dereference in libsoup may lead to Denial Of Service Libsoup: null pointer dereference in libsoup may lead to denial of service
First Time appeared Redhat
Redhat enterprise Linux
CPEs cpe:/o:redhat:enterprise_linux:6
cpe:/o:redhat:enterprise_linux:7
cpe:/o:redhat:enterprise_linux:8
cpe:/o:redhat:enterprise_linux:9
Vendors & Products Redhat
Redhat enterprise Linux
References

Fri, 16 May 2025 02:30:00 +0000

Type Values Removed Values Added
Description No description is available for this CVE.
Title libsoup: Null pointer dereference in libsoup may lead to Denial Of Service
Weaknesses CWE-476
References
Metrics threat_severity

None

cvssV3_1

{'score': 4.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L'}

threat_severity

Low


cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2025-11-21T07:25:08.776Z

Reserved: 2025-05-08T21:17:08.702Z

Link: CVE-2025-4476

cve-icon Vulnrichment

Updated: 2025-05-16T18:08:14.080Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-05-16T18:16:10.970

Modified: 2025-05-19T13:35:20.460

Link: CVE-2025-4476

cve-icon Redhat

Severity : Low

Publid Date: 2025-05-08T00:00:00Z

Links: CVE-2025-4476 - Bugzilla

cve-icon OpenCVE Enrichment

No data.