Search CVE reports


Toggle filters

191 – 200 of 1231 results


CVE-2021-30851

Medium priority

Some fixes available 8 of 28

A memory corruption vulnerability was addressed with improved locking. This issue is fixed in Safari 15, tvOS 15, watchOS 8, iOS 15 and iPadOS 15. Processing maliciously crafted web content may lead to code execution.

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Ignored
webkitgtk Not in release Not in release Not in release Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages

CVE-2021-30846

Medium priority

Some fixes available 8 of 28

A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 14.8 and iPadOS 14.8, Safari 15, tvOS 15, iOS 15 and iPadOS 15, watchOS 8. Processing maliciously crafted web content may lead to...

5 affected packages

qtwebkit-source, qtwebkit-opensource-src, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
webkit2gtk Fixed Fixed Fixed Ignored
webkitgtk Not in release Not in release Not in release Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages

CVE-2021-42762

Medium priority

Some fixes available 8 of 27

BubblewrapLauncher.cpp in WebKitGTK and WPE WebKit before 2.34.1 allows a limited sandbox bypass that allows a sandboxed process to trick host processes into thinking the sandboxed process is not confined by the sandbox, by...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Not affected
webkitgtk Not in release Not in release Not in release Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages

CVE-2021-30849

Medium priority

Some fixes available 3 of 22

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 14.8 and iPadOS 14.8, watchOS 8, Safari 15, tvOS 15, iOS 15 and iPadOS 15, iTunes 12.12 for Windows. Processing maliciously...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Not affected Not affected Fixed Fixed
webkitgtk Not in release Not in release Not in release Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages

CVE-2021-30848

Medium priority

Some fixes available 3 of 22

A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 14.8 and iPadOS 14.8, Safari 15, iOS 15 and iPadOS 15. Processing maliciously crafted web content may lead to code execution.

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, wpewebkit, webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Not affected Not affected Fixed Fixed
wpewebkit Not in release Ignored Ignored Not in release
webkitgtk Not in release Not in release Not in release Ignored
Show less packages

CVE-2021-30682

Medium priority

Some fixes available 9 of 28

A logic issue was addressed with improved restrictions. This issue is fixed in tvOS 14.6, iOS 14.6 and iPadOS 14.6, Safari 14.1.1, macOS Big Sur 11.4, watchOS 7.5. A malicious application may be able to leak sensitive user information.

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Fixed
webkitgtk Not in release Not in release Not in release Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages

CVE-2021-30666

Medium priority

Some fixes available 1 of 20

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 12.5.3. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Not affected Not affected Not affected Fixed
webkitgtk Not in release Not in release Not in release Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages

CVE-2021-30661

Medium priority

Some fixes available 9 of 28

A use after free issue was addressed with improved memory management. This issue is fixed in Safari 14.1, iOS 12.5.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. Processing maliciously crafted web content...

5 affected packages

qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit, qtwebkit-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Fixed
webkitgtk Not in release Not in release Not in release Ignored
wpewebkit Not in release Ignored Ignored Not in release
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
Show less packages

CVE-2021-1826

Medium priority

Some fixes available 9 of 28

A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. Processing maliciously crafted web content may lead to universal cross site scripting.

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkitgtk, wpewebkit, webkit2gtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
webkitgtk Not in release Not in release Not in release Ignored
wpewebkit Not in release Ignored Ignored Not in release
webkit2gtk Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-1825

Medium priority

Some fixes available 9 of 28

An input validation issue was addressed with improved input validation. This issue is fixed in iTunes 12.11.3 for Windows, iCloud for Windows 12.3, macOS Big Sur 11.3, Safari 14.1, watchOS 7.4, tvOS 14.5, iOS 14.5 and iPadOS 14.5....

5 affected packages

webkit2gtk, webkitgtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkit2gtk Fixed Fixed Fixed Fixed
webkitgtk Not in release Not in release Not in release Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages