Search CVE reports
1111 – 1120 of 1300 results
WebKit in Apple Safari before 5.1.4 does not properly implement "From third parties and advertisers" cookie blocking, which makes it easier for remote web servers to track users via a cookie.
3 affected packages
qtwebkit-source, webkit, webkitgtk
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| qtwebkit-source | — | — | — | — | — |
| webkit | — | — | — | — | — |
| webkitgtk | — | — | — | — | — |
Use-after-free vulnerability in WebKit, as used in Apple Safari before 5.0.6, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and application crash) via vectors related to...
3 affected packages
qtwebkit-source, webkit, webkitgtk
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| qtwebkit-source | — | — | — | — | — |
| webkit | — | — | — | — | — |
| webkitgtk | — | — | — | — | — |
Some fixes available 12 of 36
Google Chrome before 17.0.963.56 does not properly perform a cast of an unspecified variable during handling of columns, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a...
4 affected packages
chromium-browser, qtwebkit-source, webkit, webkitgtk
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | — |
| qtwebkit-source | — | — | — | — | — |
| webkit | — | — | — | — | — |
| webkitgtk | — | — | — | — | — |
Some fixes available 12 of 36
Google Chrome before 17.0.963.56 does not properly parse H.264 data, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
4 affected packages
chromium-browser, qtwebkit-source, webkit, webkitgtk
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | — |
| qtwebkit-source | — | — | — | — | — |
| webkit | — | — | — | — | — |
| webkitgtk | — | — | — | — | — |
Some fixes available 12 of 36
Google Chrome before 17.0.963.56 allows remote attackers to cause a denial of service (application crash) via an empty X.509 certificate.
4 affected packages
chromium-browser, qtwebkit-source, webkit, webkitgtk
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | — |
| qtwebkit-source | — | — | — | — | — |
| webkit | — | — | — | — | — |
| webkitgtk | — | — | — | — | — |
Some fixes available 12 of 36
Use-after-free vulnerability in Google Chrome before 17.0.963.56 allows user-assisted remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to drag-and-drop operations.
4 affected packages
chromium-browser, qtwebkit-source, webkit, webkitgtk
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | — |
| qtwebkit-source | — | — | — | — | — |
| webkit | — | — | — | — | — |
| webkitgtk | — | — | — | — | — |
Some fixes available 12 of 36
translate/translate_manager.cc in Google Chrome before 17.0.963.56 and 19.x before 19.0.1036.7 uses an HTTP session to exchange data for translation, which allows remote attackers to obtain sensitive information by sniffing the network.
4 affected packages
chromium-browser, qtwebkit-source, webkit, webkitgtk
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | — |
| qtwebkit-source | — | — | — | — | — |
| webkit | — | — | — | — | — |
| webkitgtk | — | — | — | — | — |
Some fixes available 12 of 36
Use-after-free vulnerability in Google Chrome before 17.0.963.56 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to subframe loading.
4 affected packages
chromium-browser, qtwebkit-source, webkit, webkitgtk
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | — |
| qtwebkit-source | — | — | — | — | — |
| webkit | — | — | — | — | — |
| webkitgtk | — | — | — | — | — |
Some fixes available 12 of 36
Unspecified vulnerability in the Native Client validator implementation in Google Chrome before 17.0.963.56 has unknown impact and remote attack vectors.
4 affected packages
chromium-browser, qtwebkit-source, webkit, webkitgtk
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | — |
| qtwebkit-source | — | — | — | — | — |
| webkit | — | — | — | — | — |
| webkitgtk | — | — | — | — | — |
Some fixes available 12 of 36
Heap-based buffer overflow in Google Chrome before 17.0.963.56 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted Matroska video (aka MKV) file.
4 affected packages
chromium-browser, qtwebkit-source, webkit, webkitgtk
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| chromium-browser | — | — | — | — | — |
| qtwebkit-source | — | — | — | — | — |
| webkit | — | — | — | — | — |
| webkitgtk | — | — | — | — | — |