Описание
WebKitGTK and WPE WebKit prior to version 2.24.1 failed to properly apply configured HTTP proxy settings when downloading livestream video (HLS, DASH, or Smooth Streaming), an error resulting in deanonymization. This issue was corrected by changing the way livestreams are downloaded.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 6 | webkitgtk | Out of support scope | ||
Red Hat Enterprise Linux 7 | webkitgtk3 | Will not fix | ||
Red Hat Enterprise Linux 7 | webkitgtk4 | Fixed | RHSA-2020:4035 | 29.09.2020 |
Red Hat Enterprise Linux 8 | accountsservice | Fixed | RHSA-2019:3553 | 05.11.2019 |
Red Hat Enterprise Linux 8 | appstream-data | Fixed | RHSA-2019:3553 | 05.11.2019 |
Red Hat Enterprise Linux 8 | baobab | Fixed | RHSA-2019:3553 | 05.11.2019 |
Red Hat Enterprise Linux 8 | chrome-gnome-shell | Fixed | RHSA-2019:3553 | 05.11.2019 |
Red Hat Enterprise Linux 8 | evince | Fixed | RHSA-2019:3553 | 05.11.2019 |
Red Hat Enterprise Linux 8 | file-roller | Fixed | RHSA-2019:3553 | 05.11.2019 |
Red Hat Enterprise Linux 8 | gdk-pixbuf2 | Fixed | RHSA-2019:3553 | 05.11.2019 |
Показывать по
Дополнительная информация
Статус:
EPSS
6.5 Medium
CVSS3
Связанные уязвимости
WebKitGTK and WPE WebKit prior to version 2.24.1 failed to properly apply configured HTTP proxy settings when downloading livestream video (HLS, DASH, or Smooth Streaming), an error resulting in deanonymization. This issue was corrected by changing the way livestreams are downloaded.
WebKitGTK and WPE WebKit prior to version 2.24.1 failed to properly apply configured HTTP proxy settings when downloading livestream video (HLS, DASH, or Smooth Streaming), an error resulting in deanonymization. This issue was corrected by changing the way livestreams are downloaded.
WebKitGTK and WPE WebKit prior to version 2.24.1 failed to properly ap ...
WebKitGTK and WPE WebKit prior to version 2.24.1 failed to properly apply configured HTTP proxy settings when downloading livestream video (HLS, DASH, or Smooth Streaming), an error resulting in deanonymization. This issue was corrected by changing the way livestreams are downloaded.
Уязвимость конфигурации прокси-сервера HTTP модулей отображения веб-страниц WebKitGTK и WPE WebKit, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
EPSS
6.5 Medium
CVSS3