[ALSA-2025:23139] Moderate: libsoup3 security update
Type:
security
Severity:
moderate
Release date:
2025-12-12
Description:
Libsoup is an HTTP library implementation in C. It was originally part of a SOAP (Simple Object Access Protocol) implementation called Soup, but the SOAP and non-SOAP parts have now been split into separate packages. libsoup uses the Glib main loop and is designed to work well with GTK applications. This enables GNOME applications to access HTTP servers on the network in a completely asynchronous fashion, very similar to the Gtk+ programming model (a synchronous operation mode is also supported for those who want it), but the SOAP parts were removed long ago. Security Fix(es): * libsoup: Heap Use-After-Free in libsoup message queue handling during HTTP/2 read completion (CVE-2025-12105) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 libsoup3-devel-3.6.5-3.el10_1.7.aarch64.rpm 67d45f4d123d3909b98d89842b8cc41b63469e732d2f0a01f211b945e60fe1e4
aarch64 libsoup3-3.6.5-3.el10_1.7.aarch64.rpm d200ab8526de9a5f97c956864004a75198fa01f45770ea2710d2d1a2d1fa0581
noarch libsoup3-doc-3.6.5-3.el10_1.7.noarch.rpm 92cdf9ad06b1c825280250ae11fd29775dd0a3a51cedad09418ace68e66b2555
ppc64le libsoup3-devel-3.6.5-3.el10_1.7.ppc64le.rpm 60e097cfc8bfb854503db76eca984d2d81ed22058ab07aac8bea008a4d5f06fb
ppc64le libsoup3-3.6.5-3.el10_1.7.ppc64le.rpm bce5bce0c450ebd8cef0df1a3eb532d38517c8e518bdc2d989ff161371dffa83
s390x libsoup3-3.6.5-3.el10_1.7.s390x.rpm 627edce44d85d0372057fcbd0f01936a7d91c7210197e0d18b3f86e1c1b1b99a
s390x libsoup3-devel-3.6.5-3.el10_1.7.s390x.rpm f377a464cb1bd8f051aa553ca4ae90f6856983951f3b7f1ff4421572ad7117d7
x86_64 libsoup3-devel-3.6.5-3.el10_1.7.x86_64.rpm 8456f4489dcf3b4b23a17ede72c249b45c198469792e7e02ce9564b8742369bc
x86_64 libsoup3-3.6.5-3.el10_1.7.x86_64.rpm d63e970ae5ae395e8d61e92261e8f192c0c8d99e1e308deabf5a4f534e8eda1f
x86_64_v2 libsoup3-3.6.5-3.el10_1.7.x86_64_v2.rpm 7d924af02beeb4490c1969b4e94b042f68e7b9802be035fde96121c5dba8a639
x86_64_v2 libsoup3-devel-3.6.5-3.el10_1.7.x86_64_v2.rpm d06d325551d6880b0bd484fe90c552c477d19dea83bb0e1d4814cdfed600fe74
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.