[ubuntu/plucky-proposed] libsoup2.4 2.74.3-10 (Accepted)

Jeremy Bícha jeremy.bicha at canonical.com
Sat Apr 12 22:53:48 UTC 2025


libsoup2.4 (2.74.3-10) unstable; urgency=high

  [ Fabian Toepfer ]
  * SECURITY UPDATE: out-of-bounds read
    - debian/patches/CVE-2025-2784-1.patch: Fix potential overflow
    - debian/patches/CVE-2025-2784-2.patch: Add better coverage of
      skip_insignificant_space()
    - CVE-2025-2784 (Closes: #1102208) (LP: #2107263)
  * SECURITY UPDATE: out-of-bounds read
    - debian/patches/CVE-2025-32050.patch: Fix using int instead of
      size_t for strcspn return
    - CVE-2025-32050 (Closes: #1102212)
  * SECURITY UPDATE: out-of-bounds read
    - debian/patches/CVE-2025-32052.patch: Fix heap buffer overflow in
      soup_content_sniffer_sniff
    - CVE-2025-32052 (Closes: #1102214)
  * SECURITY UPDATE: out-of-bounds read
    - debian/patches/CVE-2025-32053.patch: Fix heap buffer overflow in
      sniff_feed_or_html()
    - CVE-2025-32053 (Closes: #1102215)

Date: 2025-04-12 22:37:27.308123+00:00
Signed-By: Jeremy Bícha <jeremy.bicha at canonical.com>
https://launchpad.net/ubuntu/+source/libsoup2.4/2.74.3-10
-------------- next part --------------
Sorry, changesfile not available.


More information about the plucky-changes mailing list