[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-5397-1 wpewebkit -- wpewebkit

ID: oval:org.secpod.oval:def:93331Date: (C)2023-09-27   (M)2024-02-19
Class: PATCHFamily: unix




The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2022-0108 Luan Herrera discovered that an HTML document may be able to render iframes with sensitive user information. CVE-2022-32885 P1umer and Q1IQ discovered that processing maliciously crafted web content may lead to arbitrary code execution. CVE-2023-27932 An anonymous researcher discovered that processing maliciously crafted web content may bypass Same Origin Policy. CVE-2023-27954 An anonymous researcher discovered that a website may be able to track sensitive user information. CVE-2023-28205 Clement Lecigne and Donncha O Cearbhaill discovered that processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.

Platform:
Linux Mint 5
Product:
libwpewebkit-1.0-doc
wpewebkit-driver
libwpewebkit-1.0-3
libwpewebkit-1.0-dev
Reference:
DSA-5397-1
CVE-2022-0108
CVE-2022-32885
CVE-2023-27932
CVE-2023-27954
CVE-2023-28205
CVE    5
CVE-2023-28205
CVE-2022-32885
CVE-2022-0108
CVE-2023-27932
...
CPE    5
cpe:/a:wpewebkit:libwpewebkit-1.0-dev
cpe:/a:libwpewebkit-1.0-3:libwpewebkit-1.0-3
cpe:/a:libwpewebkit-1.0-doc:libwpewebkit-1.0-doc
cpe:/a:wpewebkit-driver:wpewebkit-driver
...

© SecPod Technologies