Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-44187

Опубликовано: 17 сент. 2024
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 6.5

Описание

A cross-origin issue existed with "iframe" elements. This was addressed with improved tracking of security origins. This issue is fixed in Safari 18, visionOS 2, watchOS 11, macOS Sequoia 15, iOS 18 and iPadOS 18, tvOS 18. A malicious website may exfiltrate data cross-origin.

РелизСтатусПримечание
devel

ignored

esm-apps/bionic

ignored

esm-apps/focal

ignored

esm-apps/jammy

ignored

esm-apps/noble

ignored

esm-infra/xenial

ignored

focal

ignored

jammy

ignored

noble

ignored

oracular

ignored

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

ignored

esm-apps/xenial

ignored

esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

released

2.46.1-0ubuntu1
esm-infra/bionic

ignored

esm-infra/focal

ignored

esm-infra/xenial

ignored

focal

ignored

jammy

released

2.46.1-0ubuntu0.22.04.3
noble

released

2.46.1-0ubuntu0.24.04.1
oracular

released

2.46.1-0ubuntu1
upstream

released

2.46.0

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

ignored

esm-apps/xenial

ignored

esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/focal

ignored

esm-apps/jammy

ignored

focal

ignored

jammy

ignored

noble

DNE

oracular

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 28%
0.00095
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
redhat
9 месяцев назад

A cross-origin issue existed with "iframe" elements. This was addressed with improved tracking of security origins. This issue is fixed in Safari 18, visionOS 2, watchOS 11, macOS Sequoia 15, iOS 18 and iPadOS 18, tvOS 18. A malicious website may exfiltrate data cross-origin.

CVSS3: 6.5
nvd
9 месяцев назад

A cross-origin issue existed with "iframe" elements. This was addressed with improved tracking of security origins. This issue is fixed in Safari 18, visionOS 2, watchOS 11, macOS Sequoia 15, iOS 18 and iPadOS 18, tvOS 18. A malicious website may exfiltrate data cross-origin.

CVSS3: 6.5
debian
9 месяцев назад

A cross-origin issue existed with "iframe" elements. This was addresse ...

CVSS3: 6.5
github
9 месяцев назад

A cross-origin issue existed with "iframe" elements. This was addressed with improved tracking of security origins. This issue is fixed in Safari 18, visionOS 2, watchOS 11, macOS Sequoia 15, iOS 18 and iPadOS 18, tvOS 18. A malicious website may exfiltrate data cross-origin.

CVSS3: 6.5
fstec
9 месяцев назад

Уязвимость модулей отображения веб-страниц WebKitGTK и WPE WebKit, связанная с недостатком в механизме подтверждения источника, позволяющая нарушителю получить доступ к конфиденциальным данным

EPSS

Процентиль: 28%
0.00095
Низкий

6.5 Medium

CVSS3

Уязвимость CVE-2024-44187