CVE-2025-32911

CVSS 3.1 Score 9 of 10 (high)

Details

Published Apr 15, 2025
Updated: May 13, 2025
CWE ID 590

Summary

CVE-2025-32911 is a serious use-after-free type vulnerability affecting the libsoup library. Specifically, the issue lies within the soup_message_headers_get_content_disposition() function, which can lead to memory corruption when processing malicious HTTP client requests. Successful exploitation of this vulnerability could allow an attacker to execute arbitrary code on the affected system, potentially leading to significant security risks for applications using libsoup. It is recommended that users apply the necessary patches as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share