Executive Summary

Informations
Name CVE-2025-46421 First vendor Publication 2025-04-24
Vendor Cve Last vendor Modification 2025-05-13

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

A flaw was found in libsoup. When libsoup clients encounter an HTTP redirect, they mistakenly send the HTTP Authorization header to the new host that the redirection points to. This allows the new host to impersonate the user to the original host that issued the redirect.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-46421

Sources (Detail)

https://access.redhat.com/errata/RHSA-2025:4439
https://access.redhat.com/errata/RHSA-2025:4440
https://access.redhat.com/errata/RHSA-2025:4508
https://access.redhat.com/errata/RHSA-2025:4538
https://access.redhat.com/errata/RHSA-2025:4560
https://access.redhat.com/errata/RHSA-2025:4568
https://access.redhat.com/errata/RHSA-2025:4609
https://access.redhat.com/errata/RHSA-2025:4624
https://access.redhat.com/errata/RHSA-2025:7436
https://access.redhat.com/errata/RHSA-2025:7505
https://access.redhat.com/security/cve/CVE-2025-46421
https://bugzilla.redhat.com/show_bug.cgi?id=2361962
Source Url

Alert History

If you want to see full details history, please login or register.
0
Date Informations
2025-05-27 02:58:11
  • First insertion