Red Hat Security Advisory: webkitgtk4 security, bug fix, and enhancement update
🔗 CVE IDs covered (104)
📋 Description
CVE-2019-6237 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-6251 — webkitgtk: processing maliciously crafted web content lead to URI spoofing CVE-2019-8506 — webkitgtk: malicous web content leads to arbitrary code execution CVE-2019-8524 — webkitgtk: malicious web content leads to arbitrary code execution CVE-2019-8535 — webkitgtk: malicious crafted web content leads to arbitrary code execution CVE-2019-8536 — webkitgtk: malicious crafted web content leads to arbitrary code execution CVE-2019-8544 — webkitgtk: malicious crafted web content leads to arbitrary we content CVE-2019-8551 — webkitgtk: malicious web content leads to cross site scripting CVE-2019-8558 — webkitgtk: malicious crafted web content leads to arbitrary code execution CVE-2019-8559 — webkitgtk: malicious web content leads to arbitrary code execution CVE-2019-8563 — webkitgtk: malicious web content leads to arbitrary code execution CVE-2019-8571 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8583 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8584 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8586 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8587 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8594 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8595 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8596 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8597 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8601 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8607 — webkitgtk: Out-of-bounds read leading to memory disclosure CVE-2019-8608 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8609 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8610 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8611 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8615 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8619 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8622 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8623 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8625 — webkitgtk: Incorrect state management leading to universal cross-site scripting CVE-2019-8644 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8649 — webkitgtk: Incorrect state management leading to universal cross-site scripting CVE-2019-8658 — webkitgtk: Incorrect state management leading to universal cross-site scripting CVE-2019-8666 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8669 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8671 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8672 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8673 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8674 — webkitgtk: Incorrect state management leading to universal cross-site scripting CVE-2019-8676 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8677 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8678 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8679 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8680 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8681 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8683 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8684 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8686 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8687 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8688 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8689 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8690 — webkitgtk: Incorrect state management leading to universal cross-site scripting CVE-2019-8707 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8710 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8719 — webkitgtk: Incorrect state management leading to universal cross-site scripting CVE-2019-8720 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8726 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8733 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8735 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8743 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8763 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8764 — webkitgtk: Incorrect state management leading to universal cross-site scripting CVE-2019-8765 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8766 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8768 — webkitgtk: Browsing history could not be deleted CVE-2019-8769 — webkitgtk: Websites could reveal browsing history CVE-2019-8771 — webkitgtk: Violation of iframe sandboxing policy CVE-2019-8782 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8783 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8808 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8811 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8812 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8813 — webkitgtk: Incorrect state management leading to universal cross-site scripting CVE-2019-8814 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8815 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8816 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8819 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8820 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8821 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8822 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8823 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2019-8835 — webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution CVE-2019-8844 — webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution CVE-2019-8846 — webkitgtk: Use after free issue may lead to remote code execution CVE-2019-11070 — webkitgtk: HTTP proxy setting deanonymization information disclosure CVE-2020-3862 — webkitgtk: Denial of service via incorrect memory handling CVE-2020-3864 — webkitgtk: Non-unique security origin for DOM object contexts CVE-2020-3865 — webkitgtk: Incorrect security check for a top-level DOM object context CVE-2020-3867 — webkitgtk: Incorrect state management leading to universal cross-site scripting CVE-2020-3868 — webkitgtk: Multiple memory corruption issues leading to arbitrary code execution CVE-2020-3885 — webkitgtk: Incorrect processing of file URLs CVE-2020-3894 — webkitgtk: Race condition allows reading of restricted memory CVE-2020-3895 — webkitgtk: Memory corruption triggered by a malicious web content CVE-2020-3897 — webkitgtk: Type confusion leading to arbitrary code execution CVE-2020-3899 — webkitgtk: Memory consumption issue leading to arbitrary code execution CVE-2020-3900 — webkitgtk: Memory corruption triggered by a malicious web content CVE-2020-3901 — webkitgtk: Type confusion leading to arbitrary code execution CVE-2020-3902 — webkitgtk: Input validation issue leading to cross-site script attack CVE-2020-10018 — webkitgtk: Use-after-free issue in accessibility/AXObjectCache.cpp CVE-2020-11793 — webkitgtk: use-after-free via crafted web content CVE-2021-30666 — webkitgtk: Buffer overflow leading to arbitrary code execution CVE-2021-30761 — webkitgtk: Memory corruption leading to arbitrary code execution CVE-2021-30762 — webkitgtk: Use-after-free leading to arbitrary code execution
🔗 References (106)
- selfhttps://access.redhat.com/errata/RHSA-2020:4035
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/7.9_release_notes/index
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1667409
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1709289
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1719199
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1719209
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1719210
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1719213
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1719224
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1719231
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1719235
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1719237
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1719238
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1811721
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1816678
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1816684
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1816686
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1817144
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1829369
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876462
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876463
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876465
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876468
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876470
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876472
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876473
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876476
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876516
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876518
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876521
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876522
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876523
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876536
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876537
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876540
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876542
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876543
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876545
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876548
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876549
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876550
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876552
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876553
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876554
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876555
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876556
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876590
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876591
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876592
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876593
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876594
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876607
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876608
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876609
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876610
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876611
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876612
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876613
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876614
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876615
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876616
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876617
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876619
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876626
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876628
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876629
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876630
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876631
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876632
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876634
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876643
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876644
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876645
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876646
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876647
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876648
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876650
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876651
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876652
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876653
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876655
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876656
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876657
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876664
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876880
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876881
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876882
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876883
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876884
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876887
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876891
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876892
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876893
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876894
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876895
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876897
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876898
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876899
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1876900
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1877045
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1877046
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1877047
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1877048
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1877049
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2020/rhsa-2020_4035.json