Search CVE reports
1 – 10 of 1180 results
CVE-2024-44187
Medium prioritySome fixes available 3 of 18
A cross-origin issue existed with "iframe" elements. This was addressed with improved tracking of security origins. This issue is fixed in Safari 18, visionOS 2, watchOS 11, macOS Sequoia 15, iOS 18 and iPadOS 18, tvOS 18. A...
5 affected packages
qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
qtwebkit-opensource-src | Ignored | Ignored | Ignored | Ignored | Ignored |
qtwebkit-source | Not in release | Not in release | Not in release | Ignored | Ignored |
webkit2gtk | Fixed | Fixed | Ignored | Ignored | Ignored |
webkitgtk | Not in release | Not in release | Not in release | Ignored | Ignored |
wpewebkit | Not in release | Ignored | Ignored | — | — |
CVE-2024-40866
Medium prioritySome fixes available 3 of 18
The issue was addressed with improved UI. This issue is fixed in Safari 18, macOS Sequoia 15. Visiting a malicious website may lead to address bar spoofing.
5 affected packages
qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
qtwebkit-opensource-src | Ignored | Ignored | Ignored | Ignored | Ignored |
qtwebkit-source | Not in release | Not in release | Not in release | Ignored | Ignored |
webkit2gtk | Fixed | Fixed | Ignored | Ignored | Ignored |
webkitgtk | Not in release | Not in release | Not in release | Ignored | Ignored |
wpewebkit | Not in release | Ignored | Ignored | — | — |
CVE-2024-45751
Medium prioritySome fixes available 1 of 8
tgt (aka Linux target framework) before 1.0.93 attempts to achieve entropy by calling rand without srand. The PRNG seed is always 1, and thus the sequence of challenges is always identical.
2 affected packages
iscsitarget, tgt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
iscsitarget | Not in release | Not in release | Not in release | — | Needs evaluation |
tgt | Needs evaluation | Needs evaluation | Fixed | Needs evaluation | Needs evaluation |
CVE-2024-40789
Medium prioritySome fixes available 2 of 16
An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, Safari 17.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, visionOS 1.3, macOS Sonoma...
5 affected packages
qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
qtwebkit-opensource-src | Ignored | Ignored | Ignored | Ignored | Ignored |
qtwebkit-source | Not in release | Not in release | Not in release | Ignored | Ignored |
webkit2gtk | Fixed | Fixed | Ignored | Ignored | Ignored |
webkitgtk | Not in release | Not in release | Not in release | Ignored | Ignored |
wpewebkit | Not in release | Ignored | Ignored | — | — |
CVE-2024-40782
Medium prioritySome fixes available 2 of 16
A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, Safari 17.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, visionOS 1.3, macOS Sonoma 14.6. Processing...
5 affected packages
qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
qtwebkit-opensource-src | Ignored | Ignored | Ignored | Ignored | Ignored |
qtwebkit-source | Not in release | Not in release | Not in release | Ignored | Ignored |
webkit2gtk | Fixed | Fixed | Ignored | Ignored | Ignored |
webkitgtk | Not in release | Not in release | Not in release | Ignored | Ignored |
wpewebkit | Not in release | Ignored | Ignored | — | — |
CVE-2024-40780
Medium prioritySome fixes available 2 of 16
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, Safari 17.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, visionOS 1.3, macOS Sonoma 14.6. Processing...
5 affected packages
qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
qtwebkit-opensource-src | Ignored | Ignored | Ignored | Ignored | Ignored |
qtwebkit-source | Not in release | Not in release | Not in release | Ignored | Ignored |
webkit2gtk | Fixed | Fixed | Ignored | Ignored | Ignored |
webkitgtk | Not in release | Not in release | Not in release | Ignored | Ignored |
wpewebkit | Not in release | Ignored | Ignored | — | — |
CVE-2024-40779
Medium prioritySome fixes available 2 of 16
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, Safari 17.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, visionOS 1.3, macOS Sonoma 14.6. Processing...
5 affected packages
qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
qtwebkit-opensource-src | Ignored | Ignored | Ignored | Ignored | Ignored |
qtwebkit-source | Not in release | Not in release | Not in release | Ignored | Ignored |
webkit2gtk | Fixed | Fixed | Ignored | Ignored | Ignored |
webkitgtk | Not in release | Not in release | Not in release | Ignored | Ignored |
wpewebkit | Not in release | Ignored | Ignored | — | — |
CVE-2024-40776
Medium prioritySome fixes available 2 of 16
A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, Safari 17.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, visionOS 1.3, macOS Sonoma 14.6. Processing...
5 affected packages
qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
qtwebkit-opensource-src | Ignored | Ignored | Ignored | Ignored | Ignored |
qtwebkit-source | Not in release | Not in release | Not in release | Ignored | Ignored |
webkit2gtk | Fixed | Fixed | Ignored | Ignored | Ignored |
webkitgtk | Not in release | Not in release | Not in release | Ignored | Ignored |
wpewebkit | Not in release | Ignored | Ignored | — | — |
CVE-2024-27851
Medium prioritySome fixes available 3 of 18
The issue was addressed with improved bounds checks. This issue is fixed in tvOS 17.5, visionOS 1.2, Safari 17.5, iOS 17.5 and iPadOS 17.5, watchOS 10.5, macOS Sonoma 14.5. Processing maliciously crafted web content may lead to...
5 affected packages
qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
qtwebkit-opensource-src | Ignored | Ignored | Ignored | Ignored | Ignored |
qtwebkit-source | Not in release | Not in release | Not in release | Ignored | Ignored |
webkit2gtk | Fixed | Fixed | Ignored | Ignored | Ignored |
webkitgtk | Not in release | Not in release | Not in release | Ignored | Ignored |
wpewebkit | Not in release | Needs evaluation | Needs evaluation | — | — |
CVE-2024-27850
Medium priorityThis issue was addressed with improvements to the noise injection algorithm. This issue is fixed in visionOS 1.2, macOS Sonoma 14.5, Safari 17.5, iOS 17.5 and iPadOS 17.5. A maliciously crafted webpage may be able to fingerprint the user.
5 affected packages
qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
qtwebkit-opensource-src | Ignored | Ignored | Ignored | Ignored | Ignored |
qtwebkit-source | Not in release | Not in release | Not in release | Ignored | Ignored |
webkit2gtk | Not affected | Not affected | Ignored | Ignored | Ignored |
webkitgtk | Not in release | Not in release | Not in release | Ignored | Ignored |
wpewebkit | Not in release | Ignored | Ignored | — | — |