Skip to content

CVE-2025-46404

CVE

Threat entity extracted from intelligence sources

Frequency
4
occurrences
First Seen
November 12, 2025
Last Seen
November 18, 2025
API
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

Ubuntu versions 25.04, 24.04 LTS, and 22.04 LTS are affected by critical vulnerabilities in the Lasso library. These vulnerabilities allow remote attackers to exploit malformed SAML responses, potentially causing a denial of service. Two specific CVEs have been identified: CVE-2025-46404 and CVE-202...

Multiple critical vulnerabilities were identified in the Lasso library, affecting Ubuntu 25.04, 24.04 LTS, and 22.04 LTS. These vulnerabilities allow remote attackers to exploit malformed SAML responses, potentially causing the Lasso library to crash and resulting in a denial of service. Key vulnera...

SUSE and openSUSE have released updates for the Lasso software, addressing critical vulnerabilities including two denial of service issues (CVE-2025-46404 and CVE-2025-46705) and a type confusion vulnerability (CVE-2025-47151). Users are advised to apply the updates using recommended installation me...

Public Exploits

Checking GitHub for proof-of-concept code…