[ALSA-2026:0422] Important: libsoup security update
Type:
security
Severity:
important
Release date:
2026-01-16
Description:
The libsoup packages provide an HTTP client and server library for GNOME. Security Fix(es): * libsoup: libsoup: Duplicate Host Header Handling Causes Host-Parsing Discrepancy (First- vs Last-Value Wins) (CVE-2025-14523) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 libsoup-2.72.0-12.el9_7.3.aarch64.rpm 9ee2827533351bb5a66277b3a73ea369667d522336b06c1ca0feed089738a47d
aarch64 libsoup-devel-2.72.0-12.el9_7.3.aarch64.rpm adb438e16d81412ea0bba5ce9191a50d3c938b0fe23bacfdd45c1a1c6b141384
i686 libsoup-devel-2.72.0-12.el9_7.3.i686.rpm 541e093c3b57508ee165ee652b53e38a5bcf4ea1d4a94f9453a2909c16d5a7ca
i686 libsoup-2.72.0-12.el9_7.3.i686.rpm 6ee1445c4093689493ddac27169ef04d5f87ed29701576dbf7f67ccfc1de633b
ppc64le libsoup-devel-2.72.0-12.el9_7.3.ppc64le.rpm 5dcc187efd3b763607dd43f99133688bd8e8a3c52e9302874b6918fc55e2e8e9
ppc64le libsoup-2.72.0-12.el9_7.3.ppc64le.rpm c6011ed72e534f7ff49172e1dc67b0b2a8e01df0e8f709f3a6a62f1004a8749a
s390x libsoup-devel-2.72.0-12.el9_7.3.s390x.rpm a2d89deffadee3a05e7be1064db6d0e862e6b314ece85c840dd5de21a5e9a2c4
s390x libsoup-2.72.0-12.el9_7.3.s390x.rpm fd366e82c74f52cf8d6d519812e70f33acbb2365770258f0b802e12348369870
x86_64 libsoup-2.72.0-12.el9_7.3.x86_64.rpm 7e44a9b5f138779562fbd4854a50956fae9f5919c90de9d5cf7a1478c941c7ff
x86_64 libsoup-devel-2.72.0-12.el9_7.3.x86_64.rpm f942b16438fa5385847338e65867e171fa35c19033034a56a0c1745471a25235
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.