Search CVE reports


Toggle filters

111 – 120 of 1227 results


CVE-2023-32359

Medium priority

Some fixes available 2 of 18

This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 16.7.2 and iPadOS 16.7.2. A user's password may be read aloud by VoiceOver.

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Not affected Fixed Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
wpewebkit Not in release Ignored Ignored Ignored
Show less packages

CVE-2023-28205

Medium priority

Some fixes available 4 of 20

A use after free issue was addressed with improved memory management. This issue is fixed in Safari 16.4.1, iOS 15.7.5 and iPadOS 15.7.5, iOS 16.4.1 and iPadOS 16.4.1, macOS Ventura 13.3.1. Processing maliciously crafted...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Not affected Fixed Fixed Ignored
webkitgtk Not in release Not in release Not in release Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages

CVE-2023-28204

Medium priority

Some fixes available 2 of 20

An out-of-bounds read was addressed with improved input validation. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS 15.7.6, Safari 16.5, iOS 16.5 and iPadOS 16.5. Processing web content may...

5 affected packages

webkit2gtk, qtwebkit-opensource-src, webkitgtk, wpewebkit, qtwebkit-source

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkit2gtk Not affected Fixed Ignored Ignored
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
webkitgtk Not in release Not in release Not in release Ignored
wpewebkit Not in release Ignored Ignored Not in release
qtwebkit-source Not in release Not in release Not in release Ignored
Show less packages

CVE-2023-28198

Medium priority

Some fixes available 2 of 18

A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 16.4 and iPadOS 16.4, macOS Ventura 13.3. Processing web content may lead to arbitrary code execution.

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Not affected Fixed Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages

CVE-2023-27954

Low priority

Some fixes available 4 of 20

The issue was addressed by removing origin information. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, iOS 15.7.4 and iPadOS 15.7.4, tvOS 16.4, watchOS 9.4. A website may be able to...

5 affected packages

qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit, qtwebkit-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Not affected Fixed Fixed Ignored
webkitgtk Not in release Not in release Not in release Ignored
wpewebkit Not in release Ignored Ignored Not in release
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
Show less packages

CVE-2023-27932

Medium priority

Some fixes available 4 of 20

This issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, tvOS 16.4, watchOS 9.4. Processing maliciously crafted web content may bypass Same Origin Policy.

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Not affected Fixed Fixed Ignored
webkitgtk Not in release Not in release Not in release Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages

CVE-2023-25363

Medium priority
Ignored

A use-after-free vulnerability in WebCore::RenderLayer::updateDescendantDependentFlags in WebKitGTK before 2.36.8 allows attackers to execute code remotely.

1 affected package

webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Ignored
Show less packages

CVE-2023-25362

Medium priority
Ignored

A use-after-free vulnerability in WebCore::RenderLayer::repaintBlockSelectionGaps in WebKitGTK before 2.36.8 allows attackers to execute code remotely.

1 affected package

webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Ignored
Show less packages

CVE-2023-25361

Medium priority
Ignored

A use-after-free vulnerability in WebCore::RenderLayer::setNextSibling in WebKitGTK before 2.36.8 allows attackers to execute code remotely.

1 affected package

webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Ignored
Show less packages

CVE-2023-25360

Medium priority
Ignored

A use-after-free vulnerability in WebCore::RenderLayer::renderer in WebKitGTK before 2.36.8 allows attackers to execute code remotely.

1 affected package

webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Ignored
Show less packages