Security Advisory

CVE-2025-32907

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-04-14 14:00:09
Last updated 2025-11-18 08:35:33
Assigner redhat
State PUBLISHED

Description

A flaw was found in libsoup. The implementation of HTTP range requests is vulnerable to a resource consumption attack. This flaw allows a malicious client to request the same range many times in a single HTTP request, causing the server to use large amounts of memory. This does not allow for a full denial of service.