cbcvebase.

Debian Wpewebkit vulnerabilities

315 known vulnerabilities affecting debian/wpewebkit.

Total CVEs
315
CISA KEV
36
actively exploited
Public exploits
12
Exploited in wild
44
Severity breakdown
CRITICAL14HIGH166MEDIUM130LOW5

Vulnerabilities

Page 4 of 16
CVE-2021-30951P3HIGHCVSS 8.8fixed in webkit2gtk 2.34.4-1 (bookworm)2021
CVE-2021-30951 [HIGH] CVE-2021-30951: webkit2gtk - A use after free issue was addressed with improved memory management. This issue... A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.2, macOS Monterey 12.1, Safari 15.2, iOS 15.2 and iPadOS 15.2, watchOS 8.3. Processing maliciously crafted web content may lead to arbitrary code execution. Scope: local bookworm: resolved (fixed in 2.34.4-1) bullseye: resolved (fixed in 2.34.4-1~deb11u1) forky: r
debian
CVE-2021-30936P3HIGHCVSS 8.8fixed in webkit2gtk 2.34.4-1 (bookworm)2021
CVE-2021-30936 [HIGH] CVE-2021-30936: webkit2gtk - A use after free issue was addressed with improved memory management. This issue... A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.2, macOS Monterey 12.1, Safari 15.2, iOS 15.2 and iPadOS 15.2, watchOS 8.3. Processing maliciously crafted web content may lead to arbitrary code execution. Scope: local bookworm: resolved (fixed in 2.34.4-1) bullseye: resolved (fixed in 2.34.4-1~deb11u1) forky: r
debian
CVE-2022-42823P3HIGHCVSS 8.8fixed in webkit2gtk 2.38.2-1 (bookworm)2022
CVE-2022-42823 [HIGH] CVE-2022-42823: webkit2gtk - A type confusion issue was addressed with improved memory handling. This issue i... A type confusion issue was addressed with improved memory handling. This issue is fixed in tvOS 16.1, macOS Ventura 13, watchOS 9.1, Safari 16.1, iOS 16.1 and iPadOS 16. Processing maliciously crafted web content may lead to arbitrary code execution. Scope: local bookworm: resolved (fixed in 2.38.2-1) bullseye: resolved (fixed in 2.38.2-1~deb11u1) forky: resolved
debian
CVE-2023-38611P3HIGHCVSS 8.8fixed in webkit2gtk 2.40.5-1~deb12u1 (bookworm)2023
CVE-2023-38611 [HIGH] CVE-2023-38611: webkit2gtk - The issue was addressed with improved memory handling. This issue is fixed in iO... The issue was addressed with improved memory handling. This issue is fixed in iOS 16.6 and iPadOS 16.6, tvOS 16.6, macOS Ventura 13.5, Safari 16.6, watchOS 9.6. Processing web content may lead to arbitrary code execution. Scope: local bookworm: resolved (fixed in 2.40.5-1~deb12u1) bullseye: resolved (fixed in 2.40.5-1~deb11u1) forky: resolved (fixed in 2.40.5-1)
debian
CVE-2022-46699P3HIGHCVSS 8.8fixed in webkit2gtk 2.38.3-1 (bookworm)2022
CVE-2022-46699 [HIGH] CVE-2022-46699: webkit2gtk - A memory corruption issue was addressed with improved state management. This iss... A memory corruption issue was addressed with improved state management. This issue is fixed in Safari 16.2, tvOS 16.2, macOS Ventura 13.1, iOS 16.2 and iPadOS 16.2, watchOS 9.2. Processing maliciously crafted web content may lead to arbitrary code execution. Scope: local bookworm: resolved (fixed in 2.38.3-1) bullseye: resolved (fixed in 2.38.3-1~deb11u1) forky:
debian
CVE-2024-4558P3CRITICALCVSS 9.6fixed in chromium 124.0.6367.155-1~deb12u1 (bookworm)2024
CVE-2024-4558 [CRITICAL] CVE-2024-4558: chromium - Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remot... Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) Scope: local bookworm: resolved (fixed in 124.0.6367.155-1~deb12u1) bullseye: open forky: resolved (fixed in 124.0.6367.155-1) sid: resolved (fixed in 124.0.6367.155-1) trixie
debian
CVE-2021-1844P3HIGHCVSS 8.8fixed in webkit2gtk 2.32.0-2 (bookworm)2021
CVE-2021-1844 [HIGH] CVE-2021-1844: webkit2gtk - A memory corruption issue was addressed with improved validation. This issue is ... A memory corruption issue was addressed with improved validation. This issue is fixed in iOS 14.4.1 and iPadOS 14.4.1, Safari 14.0.3 (v. 14610.4.3.1.7 and 15610.4.3.1.7), watchOS 7.3.2, macOS Big Sur 11.2.3. Processing maliciously crafted web content may lead to arbitrary code execution. Scope: local bookworm: resolved (fixed in 2.32.0-2) bullseye: resolved (fixed
debian
CVE-2021-30851P3HIGHCVSS 8.8fixed in webkit2gtk 2.34.0-1 (bookworm)2021
CVE-2021-30851 [HIGH] CVE-2021-30851: webkit2gtk - A memory corruption vulnerability was addressed with improved locking. This issu... A memory corruption vulnerability was addressed with improved locking. This issue is fixed in Safari 15, tvOS 15, watchOS 8, iOS 15 and iPadOS 15. Processing maliciously crafted web content may lead to code execution. Scope: local bookworm: resolved (fixed in 2.34.0-1) bullseye: resolved (fixed in 2.34.1-1~deb11u1) forky: resolved (fixed in 2.34.0-1) sid: resolve
debian
CVE-2020-3900P3HIGHCVSS 8.8fixed in webkit2gtk 2.28.0-2 (bookworm)2020
CVE-2020-3900 [HIGH] CVE-2020-3900: webkit2gtk - A memory corruption issue was addressed with improved memory handling. This issu... A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, watchOS 6.2, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. Processing maliciously crafted web content may lead to arbitrary code execution. Scope: local bookworm: resolved (fixed in 2.28.0-
debian
CVE-2021-30818P3HIGHCVSS 8.8fixed in webkit2gtk 2.34.1-1 (bookworm)2021
CVE-2021-30818 [HIGH] CVE-2021-30818: webkit2gtk - A type confusion issue was addressed with improved state handling. This issue is... A type confusion issue was addressed with improved state handling. This issue is fixed in iOS 14.8 and iPadOS 14.8, tvOS 15, iOS 15 and iPadOS 15, Safari 15, watchOS 8. Processing maliciously crafted web content may lead to arbitrary code execution. Scope: local bookworm: resolved (fixed in 2.34.1-1) bullseye: resolved (fixed in 2.34.1-1~deb11u1) forky: resolved
debian
CVE-2020-10018P3CRITICALCVSS 9.8fixed in webkit2gtk 2.28.0-2 (bookworm)2020
CVE-2020-10018 [CRITICAL] CVE-2020-10018: webkit2gtk - WebKitGTK through 2.26.4 and WPE WebKit through 2.26.4 (which are the versions r... WebKitGTK through 2.26.4 and WPE WebKit through 2.26.4 (which are the versions right before 2.28.0) contains a memory corruption issue (use-after-free) that may lead to arbitrary code execution. This issue has been fixed in 2.28.0 with improved memory handling. Scope: local bookworm: resolved (fixed in 2.28.0-2) bullseye: resolved (fixed in 2.28.0-2) forky: r
debian
CVE-2022-32886P3HIGHCVSS 8.8fixed in webkit2gtk 2.38.0-1 (bookworm)2022
CVE-2022-32886 [HIGH] CVE-2022-32886: webkit2gtk - A buffer overflow issue was addressed with improved memory handling. This issue ... A buffer overflow issue was addressed with improved memory handling. This issue is fixed in Safari 16, iOS 16, iOS 15.7 and iPadOS 15.7. Processing maliciously crafted web content may lead to arbitrary code execution. Scope: local bookworm: resolved (fixed in 2.38.0-1) bullseye: resolved (fixed in 2.38.0-1~deb11u1) forky: resolved (fixed in 2.38.0-1) sid: resolve
debian
CVE-2022-26717P3HIGHCVSS 8.8fixed in webkit2gtk 2.36.3-1 (bookworm)2022
CVE-2022-26717 [HIGH] CVE-2022-26717: webkit2gtk - A use after free issue was addressed with improved memory management. This issue... A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.5, watchOS 8.6, iOS 15.5 and iPadOS 15.5, macOS Monterey 12.4, Safari 15.5, iTunes 12.12.4 for Windows. Processing maliciously crafted web content may lead to arbitrary code execution. Scope: local bookworm: resolved (fixed in 2.36.3-1) bullseye: resolved (fixed i
debian
CVE-2023-38594P3HIGHCVSS 8.8fixed in webkit2gtk 2.40.5-1~deb12u1 (bookworm)2023
CVE-2023-38594 [HIGH] CVE-2023-38594: webkit2gtk - The issue was addressed with improved checks. This issue is fixed in iOS 15.7.8 ... The issue was addressed with improved checks. This issue is fixed in iOS 15.7.8 and iPadOS 15.7.8, iOS 16.6 and iPadOS 16.6, tvOS 16.6, macOS Ventura 13.5, Safari 16.6, watchOS 9.6. Processing web content may lead to arbitrary code execution. Scope: local bookworm: resolved (fixed in 2.40.5-1~deb12u1) bullseye: resolved (fixed in 2.40.5-1~deb11u1) forky: resolved
debian
CVE-2022-32888P3HIGHCVSS 8.8fixed in webkit2gtk 2.38.0-1 (bookworm)2022
CVE-2022-32888 [HIGH] CVE-2022-32888: webkit2gtk - An out-of-bounds write issue was addressed with improved bounds checking. This i... An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.7, macOS Ventura 13, iOS 16, iOS 15.7 and iPadOS 15.7, watchOS 9, macOS Monterey 12.6, tvOS 16. Processing maliciously crafted web content may lead to arbitrary code execution. Scope: local bookworm: resolved (fixed in 2.38.0-1) bullseye: resolved (fi
debian
CVE-2022-42863P3HIGHCVSS 8.8fixed in webkit2gtk 2.38.0-1 (bookworm)2022
CVE-2022-42863 [HIGH] CVE-2022-42863: webkit2gtk - A memory corruption issue was addressed with improved state management. This iss... A memory corruption issue was addressed with improved state management. This issue is fixed in Safari 16.2, tvOS 16.2, macOS Ventura 13.1, iOS 16.2 and iPadOS 16.2, watchOS 9.2. Processing maliciously crafted web content may lead to arbitrary code execution. Scope: local bookworm: resolved (fixed in 2.38.0-1) bullseye: resolved (fixed in 2.38.0-1~deb11u1) forky:
debian
CVE-2023-43010P3HIGHCVSS 8.8fixed in webkit2gtk 2.44.1-1~deb12u1 (bookworm)2023
CVE-2023-43010 [HIGH] CVE-2023-43010: webkit2gtk - The issue was addressed with improved memory handling. This issue is fixed in iO... The issue was addressed with improved memory handling. This issue is fixed in iOS 17.2 and iPadOS 17.2, macOS Sonoma 14.2, Safari 17.2, iOS 16.7.15 and iPadOS 16.7.15, iOS 15.8.7 and iPadOS 15.8.7. Processing maliciously crafted web content may lead to memory corruption. Scope: local bookworm: resolved (fixed in 2.44.1-1~deb12u1) bullseye: resolved (fixed in 2.44
debian
CVE-2022-32885P3HIGHCVSS 8.8fixed in webkit2gtk 2.40.1-1 (bookworm)2022
CVE-2022-32885 [HIGH] CVE-2022-32885: webkit2gtk - A memory corruption issue was addressed with improved validation. This issue is ... A memory corruption issue was addressed with improved validation. This issue is fixed in iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5, Safari 15.6. Processing maliciously crafted web content may lead to arbitrary code execution Scope: local bookworm: resolved (fixed in 2.40.1-1) bullseye: resolved (fixed in 2.40.1-1~deb11u1) forky: resolved (fixed in 2.40.1-1) s
debian
CVE-2020-3897P3HIGHCVSS 8.8fixed in webkit2gtk 2.28.0-2 (bookworm)2020
CVE-2020-3897 [HIGH] CVE-2020-3897: webkit2gtk - A type confusion issue was addressed with improved memory handling. This issue i... A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, watchOS 6.2, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. A remote attacker may be able to cause arbitrary code execution. Scope: local bookworm: resolved (fixed in 2.28.0-2) bullseye: resolv
debian
CVE-2020-3899P3HIGHCVSS 8.8fixed in webkit2gtk 2.28.2-1 (bookworm)2020
CVE-2020-3899 [HIGH] CVE-2020-3899: webkit2gtk - A memory consumption issue was addressed with improved memory handling. This iss... A memory consumption issue was addressed with improved memory handling. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, watchOS 6.2, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. A remote attacker may be able to cause arbitrary code execution. Scope: local bookworm: resolved (fixed in 2.28.2-1) bullseye: re
debian
Debian Wpewebkit vulnerabilities | cvebase