Search CVE reports


Toggle filters

231 – 240 of 1231 results


CVE-2021-1801

Medium priority

Some fixes available 10 of 31

This issue was addressed with improved iframe sandbox enforcement. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4....

5 affected packages

qtwebkit-opensource-src, webkit2gtk, wpewebkit, qtwebkit-source, webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
webkit2gtk Fixed Fixed Fixed Fixed
wpewebkit Not in release Ignored Ignored Not in release
qtwebkit-source Not in release Not in release Not in release Ignored
webkitgtk Not in release Not in release Not in release Ignored
Show less packages

CVE-2021-1799

Medium priority

Some fixes available 10 of 31

A port redirection issue was addressed with additional port validation. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, tvOS 14.4, watchOS 7.3, iOS 14.4 and iPadOS...

5 affected packages

qtwebkit-opensource-src, wpewebkit, qtwebkit-source, webkitgtk, webkit2gtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
wpewebkit Not in release Ignored Ignored Not in release
qtwebkit-source Not in release Not in release Not in release Ignored
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-1789

Medium priority

Some fixes available 10 of 31

A type confusion issue was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, tvOS 14.4, watchOS 7.3, iOS 14.4 and iPadOS 14.4,...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, wpewebkit, webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Fixed
wpewebkit Not in release Ignored Ignored Not in release
webkitgtk Not in release Not in release Not in release Ignored
Show less packages

CVE-2021-1765

Medium priority

Some fixes available 10 of 31

This issue was addressed with improved iframe sandbox enforcement. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave. Maliciously crafted web content may violate iframe...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, wpewebkit, webkitgtk, webkit2gtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
wpewebkit Not in release Ignored Ignored Not in release
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Fixed
Show less packages

CVE-2020-13558

Medium priority

Some fixes available 10 of 31

A code execution vulnerability exists in the AudioSourceProviderGStreamer functionality of Webkit WebKitGTK 2.30.1. A specially crafted web page can lead to a use after free.

6 affected packages

qtwebkit, qtwebkit-source, webkit2gtk, webkitgtk, qtwebkit-opensource-src, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit Not in release Not in release Not in release Not in release
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Fixed
webkitgtk Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages

CVE-2020-29623

Medium priority

Some fixes available 10 of 31

"Clear History and Website Data" did not clear the history. The issue was addressed with improved data deletion. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, iOS...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Fixed
webkitgtk Not in release Not in release Not in release Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages

CVE-2020-22592

Medium priority
Vulnerable

[A logic issue was addressed with improved state management]

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Needs evaluation
webkit2gtk Needs evaluation Vulnerable
qtwebkit-source Not in release Needs evaluation
qtwebkit-opensource-src Needs evaluation Needs evaluation
wpewebkit Needs evaluation Not in release
Show less packages

CVE-2020-9947

Medium priority

Some fixes available 10 of 31

A use after free issue was addressed with improved memory management. This issue is fixed in watchOS 7.0, iOS 14.0 and iPadOS 14.0, iTunes for Windows 12.10.9, iCloud for Windows 11.5, tvOS 14.0, Safari 14.0....

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Fixed
webkitgtk Not in release Not in release Not in release Ignored
wpewebkit Not in release Ignored Ignored Not in release
Show less packages

CVE-2020-13584

Medium priority

Some fixes available 10 of 31

An exploitable use-after-free vulnerability exists in WebKitGTK browser version 2.30.1 x64. A specially crafted HTML web page can cause a use-after-free condition, resulting in a remote code execution. The victim needs to visit a...

6 affected packages

qtwebkit-opensource-src, wpewebkit, qtwebkit, qtwebkit-source, webkit2gtk, webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
wpewebkit Not in release Ignored Ignored Not in release
qtwebkit Not in release Not in release Not in release Not in release
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Fixed Fixed
webkitgtk Not in release Not in release Not in release Ignored
Show less packages

CVE-2020-13543

Medium priority

Some fixes available 10 of 31

A code execution vulnerability exists in the WebSocket functionality of Webkit WebKitGTK 2.30.0. A specially crafted web page can trigger a use-after-free vulnerability which can lead to remote code execution. An attacker can get...

6 affected packages

qtwebkit-source, qtwebkit, qtwebkit-opensource-src, wpewebkit, webkit2gtk, webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit Not in release Not in release Not in release Not in release
qtwebkit-opensource-src Ignored Ignored Ignored Ignored
wpewebkit Not in release Ignored Ignored Not in release
webkit2gtk Fixed Fixed Fixed Fixed
webkitgtk Not in release Not in release Not in release Ignored
Show less packages