From 85ce22a8b551159a306f5387454abd751e6b0233 Mon Sep 17 00:00:00 2001 From: Koop Mast Date: Sat, 18 Apr 2020 11:35:25 +0000 Subject: [PATCH] Document webkit2-gtk3 vulnability --- security/vuxml/vuln.xml | 26 ++++++++++++++++++++++++++ 1 file changed, 26 insertions(+) diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 1999ba2d7878..25fe25a89918 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -58,6 +58,32 @@ Notes: * Do not forget port variants (linux-f10-libxml2, libxml2, etc.) --> + + webkit2-gtk3 -- Denial of service + + + webkit2-gtk3 + 2.28.1 + + + + +

The WebKitGTK project reports the following vulnerability.

+
+

Processing maliciously crafted web content may lead to arbitrary code execution or application crash (denial of service). Description: A memory corruption issue (use-after-free) was addressed with improved memory handling.

+
+ +
+ + https://webkitgtk.org/security/WSA-2020-0004.html + CVE-2020-11793 + + + 2020-04-16 + 2020-04-18 + +
+ drupal -- Drupal Core - Moderately critical - Third-party library