(RHSA-2025:8482) Important: libsoup security update

The libsoup packages provide an HTTP client and server library for GNOME. Security Fix(es): libsoup: Heap buffer over-read in skip_insignificant_space when sniffing content (CVE-2025-2784) libsoup ...

Continue Reading
(RHSA-2025:8481) Important: libsoup security update

The libsoup packages provide an HTTP client and server library for GNOME. Security Fix(es): libsoup: Heap buffer over-read in skip_insignificant_space when sniffing content (CVE-2025-2784) libsoup ...

Continue Reading
(RHSA-2025:8480) Important: libsoup security update

The libsoup packages provide an HTTP client and server library for GNOME. Security Fix(es): libsoup: Heap buffer over-read in skip_insignificant_space when sniffing content (CVE-2025-2784) libsoup ...

Continue Reading
CURL-CVE-2025-5399 WebSocket endless loop

Due to a mistake in libcurl's WebSocket code, a malicious server can send a particularly crafted packet which makes libcurl get trapped in an endless busy-loop. There is no other way for the appl ...

Continue Reading
Rapid7 Q1 2025 Incident Response Findings

Rapid7’s Q1 2025 incident response data highlights several key initial access vector (IAV) trends, shares salient examples of incidents investigated by the Rapid7 Incident Response (IR) team, and di ...

Continue Reading
curl: CVE-2025-5399: WebSocket endless loop

The function curl_ws_send() in libcurl contains an infinite loop that can be triggered by a malicious server under specific circumstances. The loop is caused by a condition in the code that is not pro ...

Continue Reading
CVE-2025-30360

webpack-dev-server allows users to use webpack with a development server that provides live reloading. Prior to version 5.2.1, webpack-dev-server users' source code may be stolen when you access ...

Continue Reading
CVE-2025-30360 webpack-dev-server users’ source code may be stolen when they access a malicious web site with non-Chromium based browser

webpack-dev-server allows users to use webpack with a development server that provides live reloading. Prior to version 5.2.1, webpack-dev-server users' source code may be stolen when you access ...

Continue Reading

Back to Main

Subscribe for the latest news: