Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-21806

Опубликовано: 08 июл. 2021
Источник: ubuntu
Приоритет: medium
CVSS2: 6.8
CVSS3: 8.8

Описание

An exploitable use-after-free vulnerability exists in WebKitGTK browser version 2.30.3 x64. A specially crafted HTML web page can cause a use-after-free condition, resulting in remote code execution. The victim needs to visit a malicious web site to trigger the vulnerability.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needs-triage
devel

ignored

esm-apps/bionic

ignored

esm-apps/focal

ignored

esm-apps/jammy

ignored

esm-apps/noble

ignored

esm-infra-legacy/trusty

DNE

esm-infra/xenial

ignored

focal

ignored

groovy

ignored

end of life

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support, was needs-triage
devel

DNE

esm-apps/bionic

ignored

esm-apps/xenial

ignored

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

hirsute

DNE

impish

DNE

Показывать по

РелизСтатусПримечание
bionic

released

2.30.6-0ubuntu0.18.04.1
devel

released

2.32.0-1ubuntu3
esm-infra-legacy/trusty

DNE

esm-infra/bionic

released

2.30.6-0ubuntu0.18.04.1
esm-infra/focal

released

2.30.6-0ubuntu0.20.04.1
esm-infra/xenial

ignored

focal

released

2.30.6-0ubuntu0.20.04.1
groovy

released

2.30.6-0ubuntu0.20.10.1
hirsute

released

2.32.0-1ubuntu3
impish

released

2.32.0-1ubuntu3

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support, was needs-triage
devel

DNE

esm-apps/bionic

ignored

esm-apps/xenial

ignored

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

hirsute

DNE

impish

DNE

Показывать по

РелизСтатусПримечание
bionic

DNE

devel

DNE

esm-apps/focal

ignored

esm-apps/jammy

ignored

esm-infra-legacy/trusty

DNE

focal

ignored

groovy

ignored

end of life
hirsute

ignored

end of life
impish

ignored

end of life
jammy

ignored

Показывать по

6.8 Medium

CVSS2

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
redhat
больше 4 лет назад

An exploitable use-after-free vulnerability exists in WebKitGTK browser version 2.30.3 x64. A specially crafted HTML web page can cause a use-after-free condition, resulting in remote code execution. The victim needs to visit a malicious web site to trigger the vulnerability.

CVSS3: 8.8
nvd
больше 4 лет назад

An exploitable use-after-free vulnerability exists in WebKitGTK browser version 2.30.3 x64. A specially crafted HTML web page can cause a use-after-free condition, resulting in remote code execution. The victim needs to visit a malicious web site to trigger the vulnerability.

CVSS3: 8.8
debian
больше 4 лет назад

An exploitable use-after-free vulnerability exists in WebKitGTK browse ...

CVSS3: 8.8
github
больше 3 лет назад

An exploitable use-after-free vulnerability exists in WebKitGTK browser version 2.30.3 x64. A specially crafted HTML web page can cause a use-after-free condition, resulting in remote code execution. The victim needs to visit a malicious web site to trigger the vulnerability.

CVSS3: 8.8
fstec
около 5 лет назад

Уязвимость модулей отображения веб-страниц WebKitGTK и WPE WebKit, связанная с использованием памяти после ее освобождения, позволяющая нарушителю выполнить произвольный код

6.8 Medium

CVSS2

8.8 High

CVSS3