Search CVE reports


Toggle filters

121 – 130 of 1227 results


CVE-2023-25358

Medium priority

Some fixes available 3 of 19

A use-after-free vulnerability in WebCore::RenderLayer::addChild in WebKitGTK before 2.36.8 allows attackers to execute code remotely.

5 affected packages

webkitgtk, qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Not affected Fixed Fixed Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages

CVE-2023-23529

High priority

Some fixes available 2 of 17

A type confusion issue was addressed with improved checks. This issue is fixed in iOS 15.7.4 and iPadOS 15.7.4, iOS 16.3.1 and iPadOS 16.3.1, macOS Ventura 13.2.1, Safari 16.3. Processing maliciously crafted web content may lead...

5 affected packages

webkit2gtk, qtwebkit-source, wpewebkit, qtwebkit-opensource-src, webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkit2gtk Not affected Fixed Fixed Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
wpewebkit Not in release Ignored Ignored Not in release
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
webkitgtk Not in release Not in release Ignored
Show less packages

CVE-2023-23518

Medium priority

Some fixes available 6 of 22

The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.6.3, macOS Ventura 13.2, watchOS 9.3, macOS Big Sur 11.7.3, Safari 16.3, tvOS 16.3, iOS 16.3 and iPadOS 16.3. Processing maliciously...

5 affected packages

qtwebkit-opensource-src, webkitgtk, qtwebkit-source, webkit2gtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
webkitgtk Not in release Not in release Ignored
qtwebkit-source Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Ignored
wpewebkit Ignored Ignored Not in release
Show less packages

CVE-2023-23517

Medium priority

Some fixes available 6 of 22

The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.6.3, macOS Ventura 13.2, watchOS 9.3, macOS Big Sur 11.7.3, Safari 16.3, tvOS 16.3, iOS 16.3 and iPadOS 16.3. Processing maliciously...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Ignored
webkitgtk Not in release Not in release Ignored
wpewebkit Ignored Ignored Not in release
Show less packages

CVE-2023-2203

Medium priority
Ignored

A flaw was found in the WebKitGTK package. An improper input validation issue may lead to a use-after-free vulnerability. This flaw allows attackers with network access to pass specially crafted web content files, causing a denial...

5 affected packages

webkitgtk, wpewebkit, qtwebkit-opensource-src, qtwebkit-source, webkit2gtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Not affected
wpewebkit Not in release Not affected Not affected Not in release
qtwebkit-opensource-src Not affected Not affected Not affected Not affected
qtwebkit-source Not in release Not in release Not in release Not affected
webkit2gtk Not affected Not affected Not affected Ignored
Show less packages

CVE-2022-48503

Medium priority

Some fixes available 2 of 18

The issue was addressed with improved bounds checks. This issue is fixed in tvOS 15.6, watchOS 8.7, iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5, Safari 15.6. Processing web content may lead to arbitrary code execution.

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Not affected Fixed Fixed Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages

CVE-2022-46725

Medium priority

Some fixes available 5 of 20

A spoofing issue existed in the handling of URLs. This issue was addressed with improved input validation. This issue is fixed in iOS 16.4 and iPadOS 16.4. Visiting a malicious website may lead to address bar spoofing.

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages

CVE-2022-46705

Medium priority

Some fixes available 5 of 20

A spoofing issue existed in the handling of URLs. This issue was addressed with improved input validation. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, Safari 16.2. Visiting a malicious website may lead to...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages

CVE-2022-46700

Medium priority

Some fixes available 6 of 22

A memory corruption issue was addressed with improved input validation. This issue is fixed in Safari 16.2, tvOS 16.2, macOS Ventura 13.1, iOS 15.7.2 and iPadOS 15.7.2, iOS 16.2 and iPadOS 16.2, watchOS 9.2. Processing maliciously...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Ignored
webkitgtk Not in release Not in release Ignored
wpewebkit Ignored Ignored Not in release
Show less packages

CVE-2022-46699

Medium priority

Some fixes available 6 of 22

A memory corruption issue was addressed with improved state management. This issue is fixed in Safari 16.2, tvOS 16.2, macOS Ventura 13.1, iOS 16.2 and iPadOS 16.2, watchOS 9.2. Processing maliciously crafted web content may lead...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Ignored
webkitgtk Not in release Not in release Ignored
wpewebkit Ignored Ignored Not in release
Show less packages