Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Debian: DSA-4515-1 Critical Update for WebKit2GTK Security Threats

debian
Calendar Grey September 4, 2019
Debian Logo
Investigate the significant patch for webkit2gtk that tackles multiple vulnerabilities related to memory corruption and cross-site scripting threats.
Several vulnerabilities have been discovered in the webkit2gtk web engine: CVE-2019-8644

Summary

Several vulnerabilities have been discovered in the webkit2gtk web
engine:

CVE-2019-8644

G. Geshev discovered memory corruption issues that can lead to
arbitrary code execution.

CVE-2019-8649

Sergei Glazunov discovered an issue that may lead to universal
cross site scripting.

CVE-2019-8658

akayn discovered an issue that may lead to universal cross site
scripting.

CVE-2019-8666

Zongming Wang and Zhe Jin discovered memory corruption issues that
can lead to arbitrary code execution.

CVE-2019-8669

akayn discovered memory corruption issues that can lead to
arbitrary code execution.

CVE-2019-8671

Apple discovered memory corruption issues that can lead to
arbitrary code execution.

CVE-2019-8672

Samuel Gross discovered memory corruption issues that can lead to
arbitrary code execution.

CVE-2019-8673

Soyeon Park and Wen Xu discovered memory corruption issues that
can lead to arbitrary code execution.

CVE-2019-8676

Soyeon Park and Wen Xu discovered mem...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Package: webkit2gtk
CVE ID: CVE-2019-8644 CVE-2019-8649 CVE-2019-8658 CVE-2019-8666

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here