ELSA-2025-21657

ELSA-2025-21657 - libsoup security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2025-12-10

Description


[2.62.2-2.0.7]
- Backport patch for CVE-2025-4945 and CVE-2025-11021 [Orabug: 38664275]

[2.62.2-2.0.5]
- Fixes CVE-2025-2784 CVE-2025-4948 CVE-2025-32049 [Orabug: 38085184]
- CVE-2025-32906 CVE-2025-32911 CVE-2025-32913 CVE-2025-32914

[2.62.2-2.0.3]
- Fixed CVE-2024-52531 buffer overflow via UTF-8 conversion in
- soup_header_parse_param_list_strict [Orabug: 37557504]


Related CVEs


CVE-2025-11021
CVE-2025-2784
CVE-2025-32049
CVE-2025-32906
CVE-2025-32911
CVE-2025-32913
CVE-2025-32914
CVE-2025-4945
CVE-2025-4948

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 7 (x86_64) libsoup-2.62.2-2.0.7.el7.src.rpm5b3a627001478d18ebd3c4f6ad70518edba4a8b6d96aa144fa5747227f50a541-ol7_x86_64_latest_ELS
libsoup-2.62.2-2.0.7.el7.i686.rpm16f370b5eb18fb1dc47418212570feff9fce6062e17624d25ae4d9aa4eb12c3c-ol7_x86_64_latest_ELS
libsoup-2.62.2-2.0.7.el7.x86_64.rpm5334bc0c6e56259a97087740e871be7558fdcae04ded644f853c78237e3eeb9a-ol7_x86_64_latest_ELS
libsoup-devel-2.62.2-2.0.7.el7.i686.rpm217758ac9ce45f557f2bd45d8bfef54af563ca5360b281fc8d8e1d100cfa91a2-ol7_x86_64_latest_ELS
libsoup-devel-2.62.2-2.0.7.el7.x86_64.rpmd633226ae6169694fec335e899223b9b6636478b370416dd189887ef71564b58-ol7_x86_64_latest_ELS



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete