Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Mageia 8: 2021-0584 Moderate: Webkit2 Vulnerability in XSS Potential

mageia
Calendar Grey December 23, 2021
Dist Mageia Esm H88
Mageia released a crucial security patch fixing various vulnerabilities in web content management. Check the detailed release notes for full effects and remedies
Processing maliciously crafted web content may lead to unexpectedly unenforced Content Security Policy

Summary

Processing maliciously crafted web content may lead to unexpectedly unenforced Content Security Policy. (CVE-2021-30887)
Processing maliciously crafted web content may lead to universal cross site scripting. (CVE-2021-30890)

References

- https://bugs.mageia.org/show_bug.cgi?id=29793

- https://webkitgtk.org/security/WSA-2021-0007.html

- https://www.cve.org/CVERecord?id=CVE-2021-30887

- https://www.cve.org/CVERecord?id=CVE-2021-30890

Resolution

SRPMS

- 8/core/webkit2-2.34.3-1.mga8

Publication date: 23 Dec 2021
URL: https://advisories.mageia.org/MGASA-2021-0583.html
Type: security
CVE: CVE-2021-30887, CVE-2021-30890

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here