Document webkit2-gtk3 vulnability

This commit is contained in:
Koop Mast 2020-04-18 11:35:25 +00:00
parent 3a29847c76
commit 85ce22a8b5
Notes: svn2git 2021-03-31 03:12:20 +00:00
svn path=/head/; revision=532023

View file

@ -58,6 +58,32 @@ Notes:
* Do not forget port variants (linux-f10-libxml2, libxml2, etc.)
-->
<vuxml xmlns="http://www.vuxml.org/apps/vuxml-1">
<vuln vid="e418b8f0-9abb-420b-a7f1-1d8231b352e2">
<topic>webkit2-gtk3 -- Denial of service</topic>
<affects>
<package>
<name>webkit2-gtk3</name>
<range><lt>2.28.1</lt></range>
</package>
</affects>
<description>
<body xmlns="http://www.w3.org/1999/xhtml">
<p>The WebKitGTK project reports the following vulnerability.</p>
<blockquote cite="https://webkitgtk.org/security/WSA-2020-0004.html">
<p>Processing maliciously crafted web content may lead to arbitrary code execution or application crash (denial of service). Description: A memory corruption issue (use-after-free) was addressed with improved memory handling.</p>
</blockquote>
</body>
</description>
<references>
<url>https://webkitgtk.org/security/WSA-2020-0004.html</url>
<cvename>CVE-2020-11793</cvename>
</references>
<dates>
<discovery>2020-04-16</discovery>
<entry>2020-04-18</entry>
</dates>
</vuln>
<vuln vid="e24fd421-8128-11ea-aa57-000ffec73f06">
<topic>drupal -- Drupal Core - Moderately critical - Third-party library</topic>
<affects>