ALT-BU-2018-3304-1
Branch sisyphus update bulletin.
Package libwebkitgtk4 updated to version 2.20.3-alt1 for branch sisyphus in task 208284.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-11646
webkitFaviconDatabaseSetIconForPageURL and webkitFaviconDatabaseSetIconURLForPageURL in UIProcess/API/glib/WebKitFaviconDatabase.cpp in WebKit, as used in WebKitGTK+ through 2.21.3, mishandle an unset pageURL, leading to an application crash.
Modified: 2024-11-21
CVE-2018-12293
The getImageData function in the ImageBufferCairo class in WebCore/platform/graphics/cairo/ImageBufferCairo.cpp in WebKit, as used in WebKitGTK+ prior to version 2.20.3 and WPE WebKit prior to version 2.20.1, is vulnerable to a heap-based buffer overflow triggered by an integer overflow, which could be abused by crafted HTML content.
- http://packetstormsecurity.com/files/148200/WebKitGTK-Data-Leak-Code-Execution.html
- http://packetstormsecurity.com/files/148200/WebKitGTK-Data-Leak-Code-Execution.html
- [oss-security] 20180614 WebKitGTK+ and WPE WebKit Security Advisory WSA-2018-0005
- [oss-security] 20180614 WebKitGTK+ and WPE WebKit Security Advisory WSA-2018-0005
- 20180614 WebKitGTK+ and WPE WebKit Security Advisory WSA-2018-0005
- 20180614 WebKitGTK+ and WPE WebKit Security Advisory WSA-2018-0005
- https://bugs.webkit.org/show_bug.cgi?id=186384
- https://bugs.webkit.org/show_bug.cgi?id=186384
- GLSA-201808-04
- GLSA-201808-04
- https://trac.webkit.org/changeset/232618
- https://trac.webkit.org/changeset/232618
- USN-3687-1
- USN-3687-1
- 45205
- 45205
Modified: 2024-11-21
CVE-2018-4190
An issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11.1.1 is affected. iCloud before 7.5 on Windows is affected. iTunes before 12.7.5 on Windows is affected. tvOS before 11.4 is affected. The issue involves the "WebKit" component. It allows remote attackers to obtain sensitive credential information that is transmitted during a CSS mask-image fetch.
- 1041029
- 1041029
- GLSA-201808-04
- GLSA-201808-04
- https://support.apple.com/HT208848
- https://support.apple.com/HT208848
- https://support.apple.com/HT208850
- https://support.apple.com/HT208850
- https://support.apple.com/HT208852
- https://support.apple.com/HT208852
- https://support.apple.com/HT208853
- https://support.apple.com/HT208853
- https://support.apple.com/HT208854
- https://support.apple.com/HT208854
- USN-3687-1
- USN-3687-1
Modified: 2024-11-21
CVE-2018-4199
An issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11.1.1 is affected. iCloud before 7.5 on Windows is affected. iTunes before 12.7.5 on Windows is affected. tvOS before 11.4 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow and application crash) via a crafted web site.
- 1041029
- 1041029
- GLSA-201808-04
- GLSA-201808-04
- https://support.apple.com/HT208848
- https://support.apple.com/HT208848
- https://support.apple.com/HT208850
- https://support.apple.com/HT208850
- https://support.apple.com/HT208852
- https://support.apple.com/HT208852
- https://support.apple.com/HT208853
- https://support.apple.com/HT208853
- https://support.apple.com/HT208854
- https://support.apple.com/HT208854
- USN-3687-1
- USN-3687-1
Modified: 2024-11-21
CVE-2018-4218
An issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11.1.1 is affected. iCloud before 7.5 on Windows is affected. iTunes before 12.7.5 on Windows is affected. tvOS before 11.4 is affected. watchOS before 4.3.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site that triggers an @generatorState use-after-free.
- 1041029
- 1041029
- https://bugs.chromium.org/p/project-zero/issues/detail?id=1553
- https://bugs.chromium.org/p/project-zero/issues/detail?id=1553
- GLSA-201808-04
- GLSA-201808-04
- https://support.apple.com/HT208848
- https://support.apple.com/HT208848
- https://support.apple.com/HT208850
- https://support.apple.com/HT208850
- https://support.apple.com/HT208851
- https://support.apple.com/HT208851
- https://support.apple.com/HT208852
- https://support.apple.com/HT208852
- https://support.apple.com/HT208853
- https://support.apple.com/HT208853
- https://support.apple.com/HT208854
- https://support.apple.com/HT208854
- USN-3687-1
- USN-3687-1
- 44861
- 44861
Modified: 2024-11-21
CVE-2018-4222
An issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11.1.1 is affected. iCloud before 7.5 on Windows is affected. iTunes before 12.7.5 on Windows is affected. tvOS before 11.4 is affected. watchOS before 4.3.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code via a crafted web site that leverages a getWasmBufferFromValue out-of-bounds read during WebAssembly compilation.
- 1041029
- 1041029
- https://bugs.chromium.org/p/project-zero/issues/detail?id=1545
- https://bugs.chromium.org/p/project-zero/issues/detail?id=1545
- GLSA-201808-04
- GLSA-201808-04
- https://support.apple.com/HT208848
- https://support.apple.com/HT208848
- https://support.apple.com/HT208850
- https://support.apple.com/HT208850
- https://support.apple.com/HT208851
- https://support.apple.com/HT208851
- https://support.apple.com/HT208852
- https://support.apple.com/HT208852
- https://support.apple.com/HT208853
- https://support.apple.com/HT208853
- https://support.apple.com/HT208854
- https://support.apple.com/HT208854
- USN-3687-1
- USN-3687-1
- 44859
- 44859
Modified: 2024-11-21
CVE-2018-4232
An issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11.1.1 is affected. iCloud before 7.5 on Windows is affected. iTunes before 12.7.5 on Windows is affected. tvOS before 11.4 is affected. The issue involves the "WebKit" component. It allows remote attackers to overwrite cookies via a crafted web site.
- 1041029
- 1041029
- GLSA-201808-04
- GLSA-201808-04
- https://support.apple.com/HT208848
- https://support.apple.com/HT208848
- https://support.apple.com/HT208850
- https://support.apple.com/HT208850
- https://support.apple.com/HT208852
- https://support.apple.com/HT208852
- https://support.apple.com/HT208853
- https://support.apple.com/HT208853
- https://support.apple.com/HT208854
- https://support.apple.com/HT208854
- USN-3687-1
- USN-3687-1
Modified: 2024-11-21
CVE-2018-4233
An issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11.1.1 is affected. iCloud before 7.5 on Windows is affected. iTunes before 12.7.5 on Windows is affected. tvOS before 11.4 is affected. watchOS before 4.3.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.
- http://packetstormsecurity.com/files/153148/Safari-Webkit-Proxy-Object-Type-Confusion.html
- http://packetstormsecurity.com/files/153148/Safari-Webkit-Proxy-Object-Type-Confusion.html
- 1041029
- 1041029
- GLSA-201808-04
- GLSA-201808-04
- https://support.apple.com/HT208848
- https://support.apple.com/HT208848
- https://support.apple.com/HT208850
- https://support.apple.com/HT208850
- https://support.apple.com/HT208851
- https://support.apple.com/HT208851
- https://support.apple.com/HT208852
- https://support.apple.com/HT208852
- https://support.apple.com/HT208853
- https://support.apple.com/HT208853
- https://support.apple.com/HT208854
- https://support.apple.com/HT208854
- USN-3687-1
- USN-3687-1
- 45998
- 45998
Modified: 2024-11-21
CVE-2018-4246
An issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11.1.1 is affected. iCloud before 7.5 on Windows is affected. iTunes before 12.7.5 on Windows is affected. tvOS before 11.4 is affected. watchOS before 4.3.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code via a crafted web site that leverages type confusion.
- 1041029
- 1041029
- https://support.apple.com/HT208848
- https://support.apple.com/HT208848
- https://support.apple.com/HT208850
- https://support.apple.com/HT208850
- https://support.apple.com/HT208851
- https://support.apple.com/HT208851
- https://support.apple.com/HT208852
- https://support.apple.com/HT208852
- https://support.apple.com/HT208853
- https://support.apple.com/HT208853
- https://support.apple.com/HT208854
- https://support.apple.com/HT208854
- USN-3743-1
- USN-3743-1
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-5815
An integer overflow error within the "parse_qt()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.12 can be exploited to trigger an infinite loop via a specially crafted Apple QuickTime file.
- https://github.com/LibRaw/LibRaw/blob/master/Changelog.txt
- https://github.com/LibRaw/LibRaw/blob/master/Changelog.txt
- https://github.com/LibRaw/LibRaw/commit/1334647862b0c90b2e8cb2f668e66627d9517b17
- https://github.com/LibRaw/LibRaw/commit/1334647862b0c90b2e8cb2f668e66627d9517b17
- 83507
- 83507
- https://secuniaresearch.flexerasoftware.com/secunia_research/2018-14/
- https://secuniaresearch.flexerasoftware.com/secunia_research/2018-14/
- USN-3838-1
- USN-3838-1
Modified: 2024-11-21
CVE-2018-5816
An integer overflow error within the "identify()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.12 can be exploited to trigger a division by zero via specially crafted NOKIARAW file (Note: This vulnerability is caused due to an incomplete fix of CVE-2018-5804).
- https://github.com/LibRaw/LibRaw/blob/master/Changelog.txt
- https://github.com/LibRaw/LibRaw/blob/master/Changelog.txt
- https://github.com/LibRaw/LibRaw/commit/1d8d1b452e5dc74033ee9f846081a0efb616cc39
- https://github.com/LibRaw/LibRaw/commit/1d8d1b452e5dc74033ee9f846081a0efb616cc39
- 83507
- 83507
- https://secuniaresearch.flexerasoftware.com/secunia_research/2018-14/
- https://secuniaresearch.flexerasoftware.com/secunia_research/2018-14/
- USN-3838-1
- USN-3838-1
Package gutenprint updated to version 5.2.14-alt1 for branch sisyphus in task 207971.
Closed bugs
древняя версия, которая не пересобирается с нынешней libijs-devel