Описание
Security update for webkit2gtk3
This update for webkit2gtk3 fixes the following issues:
-webkit2gtk3 was updated to version 2.30.3 (bsc#1179122 bsc#1179451):
- CVE-2021-13543: Fixed a use after free which could have led to arbitrary code execution.
- CVE-2021-13584: Fixed a use after free which could have led to arbitrary code execution.
- CVE-2021-9948: Fixed a type confusion which could have led to arbitrary code execution.
- CVE-2021-9951: Fixed a use after free which could have led to arbitrary code execution.
- CVE-2021-9983: Fixed an out of bounds write which could have led to arbitrary code execution.
- Have the libwebkit2gtk package require libjavascriptcoregtk of the same version (bsc#1171531).
- Enable c_loop on aarch64: currently needed for compilation to succeed with JIT disabled. Also disable sampling profiler, since it conflicts with c_loop (bsc#1177087).
This update was imported from the SUSE:SLE-15-SP2:Update update project.
Список пакетов
openSUSE Leap 15.2
Ссылки
- E-Mail link for openSUSE-SU-2020:2310-1
- SUSE Security Ratings
- SUSE Bug 1171531
- SUSE Bug 1177087
- SUSE Bug 1179122
- SUSE Bug 1179451
- SUSE CVE CVE-2020-13543 page
- SUSE CVE CVE-2020-13584 page
- SUSE CVE CVE-2020-9948 page
- SUSE CVE CVE-2020-9951 page
- SUSE CVE CVE-2020-9983 page
Описание
A code execution vulnerability exists in the WebSocket functionality of Webkit WebKitGTK 2.30.0. A specially crafted web page can trigger a use-after-free vulnerability which can lead to remote code execution. An attacker can get a user to visit a webpage to trigger this vulnerability.
Затронутые продукты
Ссылки
- CVE-2020-13543
- SUSE Bug 1179451
Описание
An exploitable use-after-free vulnerability exists in WebKitGTK browser version 2.30.1 x64. A specially crafted HTML web page can cause a use-after-free condition, resulting in a remote code execution. The victim needs to visit a malicious web site to trigger this vulnerability.
Затронутые продукты
Ссылки
- CVE-2020-13584
- SUSE Bug 1179122
- SUSE Bug 1179910
- SUSE Bug 1179911
- SUSE Bug 1179912
Описание
A type confusion issue was addressed with improved memory handling. This issue is fixed in Safari 14.0. Processing maliciously crafted web content may lead to arbitrary code execution.
Затронутые продукты
Ссылки
- CVE-2020-9948
- SUSE Bug 1179122
- SUSE Bug 1179910
- SUSE Bug 1179911
- SUSE Bug 1179912
Описание
A use after free issue was addressed with improved memory management. This issue is fixed in Safari 14.0. Processing maliciously crafted web content may lead to arbitrary code execution.
Затронутые продукты
Ссылки
- CVE-2020-9951
- SUSE Bug 1179122
- SUSE Bug 1179910
- SUSE Bug 1179911
- SUSE Bug 1179912
Описание
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in Safari 14.0. Processing maliciously crafted web content may lead to code execution.
Затронутые продукты
Ссылки
- CVE-2020-9983
- SUSE Bug 1179122
- SUSE Bug 1179910
- SUSE Bug 1179911
- SUSE Bug 1179912