Описание
WebKitGTK through 2.26.4 and WPE WebKit through 2.26.4 (which are the versions right before 2.28.0) contains a memory corruption issue (use-after-free) that may lead to arbitrary code execution. This issue has been fixed in 2.28.0 with improved memory handling.
Релиз | Статус | Примечание |
---|---|---|
bionic | DNE | |
devel | DNE | |
eoan | ignored | end of life |
esm-infra-legacy/trusty | DNE | |
esm-infra/focal | DNE | |
focal | DNE | |
groovy | DNE | |
hirsute | DNE | |
impish | DNE | |
jammy | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | ignored | end of standard support, was needs-triage |
devel | ignored | |
eoan | ignored | end of life |
esm-apps/bionic | ignored | |
esm-apps/focal | ignored | |
esm-apps/jammy | ignored | |
esm-apps/noble | ignored | |
esm-infra-legacy/trusty | DNE | |
esm-infra/xenial | ignored | |
focal | ignored |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | ignored | end of standard support, was needs-triage |
devel | DNE | |
eoan | DNE | |
esm-apps/bionic | ignored | |
esm-apps/xenial | ignored | |
esm-infra-legacy/trusty | DNE | |
esm-infra/focal | DNE | |
focal | DNE | |
groovy | DNE | |
hirsute | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | released | 2.28.0-0ubuntu0.18.04.3 |
devel | released | 2.28.0-1ubuntu2 |
eoan | released | 2.28.0-0ubuntu0.19.10.2 |
esm-infra-legacy/trusty | DNE | |
esm-infra/bionic | not-affected | 2.28.0-0ubuntu0.18.04.3 |
esm-infra/focal | not-affected | 2.28.0-1ubuntu2 |
esm-infra/xenial | ignored | |
focal | released | 2.28.0-1ubuntu2 |
groovy | released | 2.28.0-1ubuntu2 |
hirsute | released | 2.28.0-1ubuntu2 |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | ignored | end of standard support, was needs-triage |
devel | DNE | |
eoan | DNE | |
esm-apps/bionic | ignored | |
esm-apps/xenial | ignored | |
esm-infra-legacy/trusty | DNE | |
esm-infra/focal | DNE | |
focal | DNE | |
groovy | DNE | |
hirsute | DNE |
Показывать по
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
WebKitGTK through 2.26.4 and WPE WebKit through 2.26.4 (which are the versions right before 2.28.0) contains a memory corruption issue (use-after-free) that may lead to arbitrary code execution. This issue has been fixed in 2.28.0 with improved memory handling.
WebKitGTK through 2.26.4 and WPE WebKit through 2.26.4 (which are the versions right before 2.28.0) contains a memory corruption issue (use-after-free) that may lead to arbitrary code execution. This issue has been fixed in 2.28.0 with improved memory handling.
WebKitGTK through 2.26.4 and WPE WebKit through 2.26.4 (which are the ...
accessibility/AXObjectCache.cpp in WebKit, as used in WebKitGTK through 2.26.4 and WPE WebKit through 2.26.4, allows a denial of service (application crash) because maintenance of the m_deferredFocusedNodeChange data structure mishandles removal.
Уязвимость модулей отображения веб-страниц WebKitGTK и WPE WebKit, связанная с использованием памяти после ее освобождения, позволяющая нарушителю выполнить произвольный код
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3